Probleme IEXPLORE

Résolu/Fermé
le halam Messages postés 186 Statut Membre -  
FillPCA Messages postés 2264 Statut Contributeur sécurité -
bonjour, j'ai trouvé la présence dans mon processus de trois IEXPLORE.EXE qui me prennent 50 mo, 7 mo, et 6 mo de mémoire vive ainsi qu'un cheval de troie. comment pourrai-je faire? j'ai tout essayé.

Voici mon rapport avec HIJACKTHIS que je ne sais pas trop utiliser :s:

Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 23:41:58, on 20/06/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\gearsec.exe
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\oodag.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
C:\WINDOWS\system32\ctfmon.exe
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\svchost.exe
C:\Documents and Settings\thomas torrente\Bureau\HiJackThis_v2.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - - (no file)
O2 - BHO: (no name) - {066A2CDC-319E-4460-BA45-C24562CD51AA} - C:\WINDOWS\system32\urqppop.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {10042A99-A756-4323-8AD8-08806385C017} - C:\WINDOWS\system32\mljjh.dll (file missing)
O2 - BHO: (no name) - {131B7E47-D157-4891-9832-2B3EBB04C1B4} - C:\WINDOWS\system32\vtsqp.dll (file missing)
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
O2 - BHO: My Global Search Bar BHO - {37B85A21-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL
O2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: TGTSoft Explorer Toolbar Changer - {C333CF63-767F-4831-94AC-E683D962C63C} - C:\Program Files\TGTSoft\StyleXP\TGT_BHO.dll
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll
O3 - Toolbar: My Global Search Bar - {37B85A29-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL
O3 - Toolbar: FlashGet - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\Program Files\FlashGet\fgiebar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [fafkbqpc.exe] C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Nphb] "C:\PROGRA~1\COMMON~1\ICROSO~1.NET\netdde.exe" -vt yazb
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Search - http://kx.bar.need2find.com/KX/menusearch.html?p=KX
O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: &Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=https://www.acer.com/worldwide/selection.html
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://di.imgag.com/imgag/cp/install/Crusher.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{601EC332-33D6-4B07-BFCF-B72B5829009A}: NameServer = 85.68.0.8,85.68.0.7
O20 - AppInit_DLLs: pushow42.dll,wbsys.dll MsgPlusLoader.dll
O20 - Winlogon Notify: geede - C:\WINDOWS\system32\geede.dll (file missing)
O20 - Winlogon Notify: ljjifgh - ljjifgh.dll (file missing)
O20 - Winlogon Notify: ssqnoom - ssqnoom.dll (file missing)
O20 - Winlogon Notify: urqppop - C:\WINDOWS\SYSTEM32\urqppop.dll
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe
O23 - Service: gearsec - GEAR Software - C:\WINDOWS\system32\gearsec.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
O23 - Service: Pinnacle Systems Media Service (PinnacleSys.MediaServer) - Pinnacle Systems - C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - NetGroup - Politecnico di Torino - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - Unknown owner - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe
O23 - Service: Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\WMPNetwk.exe

--
End of file - 11912 bytes

Merci d'avance ...
Configuration: Windows XP
Internet Explorer 7.0

17 réponses

  1. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Sans doute. C'est pour cela qu'il faut ouvrir un sujet pour obtenir une aide personnalisée.

    Le problème cité ici n'a rien à voir avec l'énoncé du problème à l'origine de ce sujet :
    bonjour, j'ai trouvé la présence dans mon processus de trois IEXPLORE.EXE qui me prennent 50 mo, 7 mo, et 6 mo de mémoire vive ainsi qu'un cheval de troie. comment pourrai-je faire? j'ai tout essayé. 


    Il ne faut pas tout mélanger si on veut obtenir de l'aide de la part des bénévoles et respecter les règles des forums.

    FillPCA
    5
  2. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Re,

    Symantec est un antivirus et non un firewall.

    Le firewall de Windows ne filtre aucun flux sortant. Il est donc insuffisant.
    Zone alarm : https://www.zonealarm.com/

    Outpost : http://www.agnitum.com/products/outpostfree/index.php

    Sygate : http://www.simtel.net/product.php?id=53687

    FillPCA
    3
  3. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Re,

    1) Désinstalle ceci dans ajout/suppression des programmes :
    Megaupload toolbar
    Adverts
    Else plus


    Redémarre le PC.

    2)
    * Télécharge FixWareout d'un de ces deux sites sur le bureau:

    http://downloads.subratam.org/Fixwareout.exe
    http://swandog46.geekstogo.com/Fixwareout.exe

    * Lance le fix: clique sur Next, puis Install, puis assure toi que "Run fixit" est activé puis clique sur Finish.
    * Le fix va commencer, suis les messages à l'écran.
    * Il te sera demandé de redémarrer ton ordinateur, fais le. Ton système mettra un peu plus de temps au démarrage, c'est normal.
    * Poste (Copie/colle) le contenu du rapport qui va s'afficher à l'écran (report.txt)

    3) * Prière d'imprimer ces instructions, ou de les coller dans un fichier texte pour lecture en mode Sans Échec.

    * Télécharge Brute Force Uninstaller (de Merijn) : http://www.merijn.org/files/bfu.zip
    * Créé un nouveau dossier directement sur le C:\ et nomme-le BFU. Décompresse le fichier téléchargé dans ce nouveau dossier (C:\BFU).
    * Fais un clic droit ici : http://perso.orange.fr/Chercheur-perso/scripts/toolbar.bfu
    et choisis "Enregistrer la cible sous..." afin de télécharger toolbar.bfu (de Chercheur). Sauvegarde dans le dossier créé (C:\BFU). **Note : si tu utlises Internet Explorer; lors de la sauvegarde, assure-toi que le champs "Type :" affiche "Tous les fichiers". Tu dois maintenant avoir deux fichiers dans le dossier C:\BFU : toolbar.bfu et BFU.exe (très important).
    * Redémarre en mode Sans Échec : au redémarrage, tapote immédiatement la touche F8 ou F5 ; tu verras un écran avec choix de démarrages apparaître. Utilisant les flèches du clavier, choisis "Mode Sans Échec" et valide avec "Entrée". Choisis ton compte usuel, et non Administrateur.
    * Démarre le "Brute Force Uninstaller" en double-cliquant BFU.exe (du dossier C:\BFU).
    o Clique sur le petit dossier jaune, à la droite de la boîte Scriptline to execute, et double-clique sur : toolbar.bfu
    o Dans la boîte "Scriptline to execute", tu devrais maintenant voir ceci : C:\BFU\toolbar.bfu
    o Clique sur Execute et laisse-le faire son travail.
    o Attendre que Complete script execution apparaîsse et clique sur OK.
    o Clique Exit pour fermer le programme BFU.
    * Redémarre normalement.

    4) Déplace Hijackthis dans un répertoire dédié comme C:\HJT. Pour cela, fais un clic droit sur l'archive et choisis "extraire vers...">C:\HJT

    5) Ouvre Hijackthis>"Do a scan only" et coche ceci :
    R3 - URLSearchHook: (no name) - - (no file)
    O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
    O4 - HKLM\..\Run: [fafkbqpc.exe] C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
    O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe


    6) * Télécharge OTMoveIt (de Old_Timer) sur ton bureau : http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe
    * Double-clique sur OTMoveIt.exe pour lancer le programme,
    * Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste List Of Files/Folders to be moved" :

    C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
    C:\Documents and Settings\LocalService\Local Settings\Application Data\Else plus
    C:\WINDOWS\Tasks\AD992BE591A6A18D.job
    C:\Program Files\Adverts
    C:\Program Files\Else plus


    * Clique sur MoveIt! pour lancer la suppression,
    * Le résultat appraraîtra dans le cadre Results.
    * Clique sur Exit pour fermer le programme.
    * Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
    * Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.

    7) Télécharge Ccleaner : http://www.filehippo.com/download/9838386a743262a2d7aaedfb3b432ae2/download/
    Installe-le en décochant la toolbar Yahoo !
    Ouvre Ccleaner, clique sur "analyse" puis "lancer le nettoyage".

    8) Télécharge AVGantispyware : https://www.avg.com/en-ww/free-antivirus-download
    Tu l'installes.
    Lance AVG Anti-Spyware et clique sur le bouton Mise à jour. Patiente.

    Clique sur le bouton Analyse (de la barre d'outils)
    Puis sur l'onglets Comment réagir, clique sur Actions recommandées. Sélectionne Quarantaine.
    Reviens à l'onglet Analyse. Clique sur Analyse complète du système.
    A la fin du scan, choisis l'option " Appliquer toutes les actions " en bas. Ensuite.
    Clique sur "Enregistrer le rapport". Ceci génère un rapport en fichier texte qui se trouve dans le dossier Reports du dossier d'AVG Anti-Spyware.

    9) * Télécharge DiagHelp.zip sur ton bureau(Merci Malekal) : http://www.malekal.com/download/DiagHelp.zip
    Tuto : http://www.malekal.com/DiagHelp/DiagHelp.php
    * Ne double-clique pas dessus !! Fais un clic droit sur le fichier et extraire tout.
    * Un nouveau dossier chercher va être créé.
    * Ouvre le et double-clic sur go.cmd (le .cmd peut ne pas apparaître)
    * Une fenêtre va s'ouvrir, choisis l'option 1
    * L'analyse va commencer, ceci peut durer quelques minutes, laisse faire et appuie sur une touche quand on te le demande.
    * A la fin de l'analyse, le programme de dmeande de redémarrer ton PC. Fais-le.
    * Une fenêtre avec le rapport s'ouvre alors. Copie/colle son contenu. (Il se trouve aussi ici : c:\resultat.txt)
    * Double-clique sur ce fichier, Fais CTRL+A puis CTRL+C.
    * Dans ta prochaine réponse, colle le rapport en faisant CTRL+V.

    10) Edite ces rapports :
    Fixwareout, OTMoveIt, AVGantispyware, diaghelp et nouveau rapport Hijackthis.

    A demain.

    FillPCA
    2
    1. le halam
       
      Re FillPCA,

      Voici les résultats de ta demande ^^:

      1)rapport fixwareout:


      Fixwareout Last edited 6/20/2007
      Post this report in the forums please
      ...
      »»»»»Prerun check

      Cache de résolution DNS vidé.



      2)rapport OTMOVEIT...:


      C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe moved successfully.
      File/Folder C:\Documents and Settings\LocalService\Local Settings\Application Data\Else plus not found.
      C:\WINDOWS\Tasks\AD992BE591A6A18D.job moved successfully.
      C:\Program Files\Adverts moved successfully.
      C:\Program Files\Else plus moved successfully.

      Created on 06/23/2007 00:10:11

      3)rapport DiagHelp:


      DiagHelp version v1.1.2 - http://www.malekal.com
      excute le 23/06/2007 à 2:10:02,54


      Liste des derniers fichies modifies/crees dans windir\system32
      C:\WINDOWS\System32/drivers\AvgAsCln.sys -->30/05/2007 14:10:42
      C:\WINDOWS\System32/drivers\bbcap.sys -->18/05/2007 21:39:56
      C:\WINDOWS\System32/drivers\sptd.sys -->29/04/2007 23:42:58
      C:\WINDOWS\System32/drivers\aswmon.sys -->14/04/2007 09:47:46
      C:\WINDOWS\System32/drivers\aswmon2.sys -->14/04/2007 09:47:32
      C:\WINDOWS\System32/drivers\aswRdr.sys -->14/04/2007 09:45:36
      C:\WINDOWS\System32/drivers\aswTdi.sys -->14/04/2007 09:44:52

      C:\WINDOWS\System32\PerfStringBackup.TMP -->23/06/2007 02:06:00
      C:\WINDOWS\System32\CompiledAdapter -->23/06/2007 02:02:14
      C:\WINDOWS\System32\ddeeg.ini -->23/06/2007 02:01:40
      C:\WINDOWS\System32\OODBS.lor -->23/06/2007 02:01:16
      C:\WINDOWS\System32\ddeeg.bak1 -->22/06/2007 23:03:12
      C:\WINDOWS\System32\geedd.dll -->22/06/2007 23:02:58
      C:\WINDOWS\System32\wpa.dbl -->22/06/2007 18:16:22
      C:\WINDOWS\System32\CONFIG.NT -->21/06/2007 14:25:30
      C:\WINDOWS\System32\iklog.log -->20/06/2007 21:32:36
      C:\WINDOWS\System32\ClickToFindandFixErrors_Intl.ico -->20/06/2007 13:11:48
      C:\WINDOWS\System32\qrutv.bak1 -->20/06/2007 12:53:18
      C:\WINDOWS\System32\qrutv.ini -->20/06/2007 12:53:18
      C:\WINDOWS\System32\6_exception.nls -->20/06/2007 11:27:18
      C:\WINDOWS\System32\CmdLineExt03.dll -->20/06/2007 00:08:44
      C:\WINDOWS\System32\FNTCACHE.DAT -->19/06/2007 15:33:34
      C:\WINDOWS\System32\GDIPFONTCACHEV1.DAT -->19/06/2007 11:55:38
      C:\WINDOWS\System32\ioloBootDefrag.cfg -->10/06/2007 09:36:38
      C:\WINDOWS\System32\libssl32.dll -->25/05/2007 23:00:08
      C:\WINDOWS\System32\d3d8caps.dat -->18/05/2007 21:54:38
      C:\WINDOWS\System32\bbchlp.dll -->18/05/2007 21:39:56
      C:\WINDOWS\System32\bbcap.dll -->18/05/2007 21:39:56
      C:\WINDOWS\System32\MsgPlusLoader.dll -->17/05/2007 16:19:18
      C:\WINDOWS\System32\BASSMOD.dll -->13/05/2007 15:24:24
      C:\WINDOWS\System32\rlxf.dll -->10/05/2007 12:46:08
      C:\WINDOWS\System32\tcggtmxl.ini -->02/05/2007 12:24:48

      C:\WINDOWS\setupapi.log -->23/06/2007 02:07:18
      C:\WINDOWS\wiadebug.log -->23/06/2007 02:03:44
      C:\WINDOWS\bootstat.dat -->23/06/2007 02:01:20
      C:\WINDOWS\SchedLgU.Txt -->23/06/2007 02:00:16
      C:\WINDOWS\wiaservc.log -->23/06/2007 01:59:52
      C:\WINDOWS\bthservsdp.dat -->23/06/2007 01:59:48
      C:\WINDOWS\WindowsUpdate.log -->23/06/2007 01:59:42
      C:\WINDOWS\SysMech6.INI -->21/06/2007 00:49:32
      C:\WINDOWS\_MSRSTRT.EXE -->20/06/2007 22:34:32
      C:\WINDOWS\wr.txt -->20/06/2007 11:48:04
      C:\WINDOWS\NeroDigital.ini -->20/06/2007 10:58:04
      C:\WINDOWS\MovingPicture.ini -->19/06/2007 16:16:48
      C:\WINDOWS\ODBCINST.INI -->19/06/2007 00:57:22
      C:\WINDOWS\win.ini -->25/05/2007 17:04:08
      C:\WINDOWS\langorig.ini -->19/05/2007 14:13:46


      Le volume dans le lecteur C s'appelle ACER
      Le numéro de série du volume est 320D-180E

      Répertoire de C:\WINDOWS\system

      23/08/2001 05:00 9 728 regsvr32.exe
      1 fichier(s) 9 728 octets
      0 Rép(s) 50 584 125 440 octets libres
      Le volume dans le lecteur C s'appelle ACER
      Le numéro de série du volume est 320D-180E

      Répertoire de C:\WINDOWS\system32

      05/08/2004 05:00 6 144 csrss.exe
      1 fichier(s) 6 144 octets
      0 Rép(s) 50 584 125 440 octets libres

      Contenu de Downloaded Program Files
      Le volume dans le lecteur C s'appelle ACER
      Le numéro de série du volume est 320D-180E

      Répertoire de C:\WINDOWS\Downloaded Program Files

      22/03/2005 14:20 <REP> .
      22/03/2005 14:20 <REP> ..
      22/03/2005 14:20 65 desktop.ini
      14/08/2005 00:26 113 664 MsnMessengerSetupDownloader.ocx
      08/10/2004 16:01 372 736 MsnPUpld.dll
      25/07/2002 18:13 24 576 dwusplay.dll
      25/07/2002 18:13 196 608 dwusplay.exe
      16/06/2004 06:02 323 584 isusweb.dll
      31/05/2006 04:15 10 oscan81.ocx_x
      18/02/2005 16:22 126 live.ini
      09/03/2005 15:43 6 828 scanoptions.tsi
      09/03/2005 15:42 6 742 lang.ini
      01/03/2005 14:08 53 248 ipsupd.dll
      01/03/2005 14:08 118 784 bdupd.dll
      07/12/2004 16:07 32 libfn.dll
      07/12/2004 16:07 32 bdcore.dll
      01/06/2006 02:54 471 040 oscan8.ocx
      01/06/2006 02:57 1 331 oscan8.inf
      16 fichier(s) 1 689 406 octets

      Total des fichiers listés :
      16 fichier(s) 1 689 406 octets
      2 Rép(s) 50 584 125 440 octets libres

      Recherche de rootkit! (Merci S!Ri)

      Recherche d'infections connues

      Export des clefs sensibles..

      Liste des fichiers en exception sur le pare-feu XP SP2

      "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
      "C:\\Program Files\\Messenger\\MSMSGS.EXE"="C:\\Program Files\\Messenger\\MSMSGS.EXE:*:Enabled:Windows Messenger"
      "C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
      "C:\\WINDOWS\\System32\\dpvsetup.exe"="C:\\WINDOWS\\System32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
      "C:\\WINDOWS\\System32\\RUNDLL32.EXE"="C:\\WINDOWS\\System32\\RUNDLL32.EXE:*:Enabled:Exécuter une DLL en tant qu'application"
      "C:\\Program Files\\JVTorrent\\btdownloadgui.exe"="C:\\Program Files\\JVTorrent\\btdownloadgui.exe:*:Enabled:btdownloadgui"
      "C:\\Program Files\\VideoLAN\\VLC\\vlc.exe"="C:\\Program Files\\VideoLAN\\VLC\\vlc.exe:*:Enabled:VLC media player"
      "C:\\Program Files\\BearShare\\BearShare.exe"="C:\\Program Files\\BearShare\\BearShare.exe:*:Enabled:BearShare"
      "C:\\Program Files\\BitComet\\BitComet.exe"="C:\\Program Files\\BitComet\\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client"
      "C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14A.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14A.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
      "c:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osC.tmp\\ossproxy.exe"="c:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osC.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
      "C:\\Program Files\\eChanblard\\emule.exe"="C:\\Program Files\\eChanblard\\emule.exe:*:Enabled:eMule"
      "C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osFC.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osFC.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
      "C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14E.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14E.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
      "C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os14.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
      "C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osB.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osB.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
      "C:\\Documents and Settings\\thomas torrente\\Bureau\\Emule Xtreme\\emule.exe"="C:\\Documents and Settings\\thomas torrente\\Bureau\\Emule Xtreme\\emule.exe:*:Enabled:eMule"
      "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
      "C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os2D.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os2D.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
      "C:\\Program Files\\Azureus\\Azureus.exe"="C:\\Program Files\\Azureus\\Azureus.exe:*:Enabled:Azureus"
      "C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"="C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE:*:Enabled:Internet Explorer"
      "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
      "C:\\Program Files\\FlashGet\\FlashGet.exe"="C:\\Program Files\\FlashGet\\FlashGet.exe:*:Enabled:Flashget"
      "C:\\Documents and Settings\\thomas torrente\\Mes documents\\DL\\IPmsn.exe"="C:\\Documents and Settings\\thomas torrente\\Mes documents\\DL\\IPmsn.exe:*:Enabled:IPmsn"
      "C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os4.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~os4.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
      "C:\\Program Files\\BitLord\\BitLord.exe"="C:\\Program Files\\BitLord\\BitLord.exe:*:Enabled:BitLord"
      "C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\PES6.exe"="C:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\PES6.exe:*:Enabled:pes6.exe"
      "C:\\Program Files\\Pinnacle\\MediaCenter\\Pmc.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\Pmc.exe:LocalSubNet:Enabled:Pmc.exe"
      "C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Spooler.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Spooler.exe:LocalSubNet:Enabled:PMC.Tvtv.Spooler.exe"
      "C:\\Program Files\\Pinnacle\\MediaCenter\\PSST.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\PSST.exe:LocalSubNet:Enabled:PSST.exe"
      "C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaManager\\PMSManager.exe"="C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaManager\\PMSManager.exe:LocalSubNet:Enabled:PMSManager.exe"
      "C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaServer\\PMSInstallInit.exe"="C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaServer\\PMSInstallInit.exe:LocalSubNet:Enabled:PMSInstallInit.exe"
      "C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Wizard.exe"="C:\\Program Files\\Pinnacle\\MediaCenter\\PMC.Tvtv.Wizard.exe:LocalSubNet:Enabled:PMC.Tvtv.Wizard.exe"
      "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"
      "C:\\Program Files\\counter strike source\\srcds.exe"="C:\\Program Files\\counter strike source\\srcds.exe:*:Enabled:srcds"
      "C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaCenterService\\PMC.Service.Main.exe"="C:\\Program Files\\Pinnacle\\Shared Files\\Programs\\MediaCenterService\\PMC.Service.Main.exe:LocalSubNet:Disabled:PMCService"
      "C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
      "C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osA.tmp\\ossproxy.exe"="C:\\Documents and Settings\\thomas torrente\\Local Settings\\Temp\\~osA.tmp\\ossproxy.exe:*:Enabled:ossproxy.exe"
      "C:\\Program Files\\Pinnacle\\Studio 11\\programs\\RM.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\RM.exe:*:Enabled:Render Manager"
      "C:\\Program Files\\Pinnacle\\Studio 11\\programs\\Studio.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\Studio.exe:*:Enabled:Studio"
      "C:\\Program Files\\Pinnacle\\Studio 11\\programs\\PMSRegisterFile.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\PMSRegisterFile.exe:*:Enabled:PMSRegisterFile"
      "C:\\Program Files\\Pinnacle\\Studio 11\\programs\\umi.exe"="C:\\Program Files\\Pinnacle\\Studio 11\\programs\\umi.exe:*:Enabled:umi"
      "C:\\Valve\\Condition Zero\\czero.exe"="C:\\Valve\\Condition Zero\\czero.exe:*:Enabled:Condition Zero Launcher"

      "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
      "C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
      "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
      "C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
      "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"

      Export de la clef SharedTaskScheduler

      [SharedTaskScheduler]
      "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
      "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"

      Rechercher adresses sensibles dans le fichier HOSTS...
      127.0.0.1 trial.updates.winsoftware.com ## added by CiD
      REGEDIT4

      [taskmgr.exe]



      catchme 0.3.692 W2K/XP/Vista - userland rootkit detector by Gmer, http://www.gmer.net
      Rootkit scan 2007-06-23 02:10:43
      Windows 5.1.2600 Service Pack 2 FAT NTAPI

      scanning hidden files ...

      scan completed successfully
      hidden files: 0


      KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)

      Process list by traversal of KiWaitListHead

      4 - System
      188 - PMSHOST.EXE
      360 - SPOOLSV.EXE
      668 - taskmgr.exe
      700 - guard.exe
      780 - DEVSVC.EXE
      876 - SQLSERVR.EXE
      1004 - CSRSS.EXE
      1028 - WINLOGON.EXE
      1072 - SERVICES.EXE
      1084 - LSASS.EXE
      1272 - SVCHOST.EXE
      1324 - SVCHOST.EXE
      1384 - SVCHOST.EXE
      1420 - STYLEXPSERVICE.
      1444 - SVCHOST.EXE
      1552 - SVCHOST.EXE
      1604 - OODAG.EXE
      1672 - RTVSCAN.EXE
      1844 - ASHSERV.EXE
      1860 - ATI2EVXX.EXE
      1884 - cmd.exe
      2148 - ashMaiSv.exe
      2200 - ashWebSv.exe
      2844 - iexplore.exe
      3132 - ctfmon.exe
      3788 - wmiprvse.exe

      Total number of processes = 27
      NOTE: Under WinXP, this will not show all processes.

      KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)

      Driver/Module list by traversal of PsLoadedModuleList

      804D7000 - \WINDOWS\system32\KERNEL1.EXE
      80717000 - \WINDOWS\system32\hal.dll
      F8C50000 - \WINDOWS\system32\KDCOM.DLL
      F8B60000 - \WINDOWS\system32\BOOTVID.dll
      F8647000 - sptd.sys
      F8C52000 - \WINDOWS\System32\Drivers\WMILIB.SYS
      F862F000 - \WINDOWS\System32\Drivers\SCSIPORT.SYS
      F8609000 - d347bus.sys
      F85DA000 - ACPI.sys
      F8750000 - isapnp.sys
      F85C9000 - pci.sys
      F8D18000 - pciide.sys
      F89D0000 - \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
      F8C54000 - intelide.sys
      F8760000 - MountMgr.sys
      F85AA000 - ftdisk.sys
      F89D8000 - PartMgr.sys
      F8770000 - VolSnap.sys
      F8592000 -
      F8C56000 - d347prt.sys
      F8780000 - disk.sys
      F8790000 - \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
      F8572000 - fltMgr.sys
      F8560000 - sr.sys
      F89E0000 - PxHelp20.sys
      F853D000 - Fastfat.sys
      F8526000 - KSecDD.sys
      F8513000 - WudfPf.sys
      F84E6000 - NDIS.sys
      F87A0000 - ohci1394.sys
      F87B0000 - \WINDOWS\system32\DRIVERS\1394BUS.SYS
      F84CB000 - Mup.sys
      F89E8000 - BTHidMgr.sys
      F87E0000 - \SystemRoot\system32\DRIVERS\nic1394.sys
      F8C24000 - \SystemRoot\system32\DRIVERS\tunmp.sys
      F87F0000 - \SystemRoot\system32\DRIVERS\intelppm.sys
      F8387000 - \SystemRoot\system32\DRIVERS\ati2mtag.sys
      F8373000 - \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
      F834E000 - \SystemRoot\system32\DRIVERS\HDAudBus.sys
      F8A10000 - \SystemRoot\system32\DRIVERS\usbuhci.sys
      F832B000 - \SystemRoot\system32\DRIVERS\USBPORT.SYS
      F8A18000 - \SystemRoot\system32\DRIVERS\usbehci.sys
      F8267000 - \SystemRoot\system32\DRIVERS\3xHybrid.sys
      F8244000 - \SystemRoot\system32\DRIVERS\ks.sys
      F8C28000 - \SystemRoot\system32\DRIVERS\BdaSup.SYS
      F820B000 - \SystemRoot\system32\DRIVERS\Rtlnic51.sys
      F8A20000 - \SystemRoot\system32\DRIVERS\fdc.sys
      F81FA000 - \SystemRoot\system32\DRIVERS\serial.sys
      F8C2C000 - \SystemRoot\system32\DRIVERS\serenum.sys
      F81E6000 - \SystemRoot\system32\DRIVERS\parport.sys
      F8800000 - \SystemRoot\system32\DRIVERS\i8042prt.sys
      F8A28000 - \SystemRoot\system32\DRIVERS\kbdclass.sys
      F8810000 - \SystemRoot\system32\DRIVERS\imapi.sys
      F8C58000 - \SystemRoot\System32\Drivers\ElbyDelay.sys
      F8A30000 - \SystemRoot\System32\Drivers\ElbyCDFL.sys
      F8A38000 - \SystemRoot\system32\drivers\ASAPIW2k.sys
      F8820000 - \SystemRoot\system32\DRIVERS\cdrom.sys
      F8830000 - \SystemRoot\system32\DRIVERS\redbook.sys
      F8C5A000 - \SystemRoot\system32\DRIVERS\NTIDrvr.sys
      F8A40000 - \SystemRoot\SYSTEM32\DRIVERS\GEARAspiWDM.sys
      F8036000 - \SystemRoot\System32\Drivers\albfaqc4.SYS
      F7FF6000 - \SystemRoot\system32\DRIVERS\bbcap.sys
      F7FF5000 - \SystemRoot\system32\DRIVERS\audstub.sys
      F8840000 - \SystemRoot\system32\DRIVERS\rasl2tp.sys
      F848F000 - \SystemRoot\system32\DRIVERS\ndistapi.sys
      F7F7F000 - \SystemRoot\system32\DRIVERS\ndiswan.sys
      F8850000 - \SystemRoot\system32\DRIVERS\raspppoe.sys
      F8860000 - \SystemRoot\system32\DRIVERS\raspptp.sys
      F8AA0000 - \SystemRoot\system32\DRIVERS\TDI.SYS
      F7F6E000 - \SystemRoot\system32\DRIVERS\psched.sys
      F8870000 - \SystemRoot\system32\DRIVERS\msgpc.sys
      F8AA8000 - \SystemRoot\system32\DRIVERS\ptilink.sys
      F8AB0000 - \SystemRoot\system32\DRIVERS\raspti.sys
      F8880000 - \SystemRoot\system32\DRIVERS\termdd.sys
      F8AB8000 - \SystemRoot\system32\DRIVERS\mouclass.sys
      F8C60000 - \SystemRoot\system32\DRIVERS\swenum.sys
      F7F3A000 - \SystemRoot\system32\DRIVERS\update.sys
      F8483000 - \SystemRoot\system32\DRIVERS\mssmbios.sys
      F7F0C000 - \SystemRoot\system32\DRIVERS\MarvinBus.sys
      F8890000 - \SystemRoot\System32\Drivers\NDProxy.SYS
      B2D92000 - \SystemRoot\system32\drivers\RtkHDAud.sys
      B2D70000 - \SystemRoot\system32\drivers\portcls.sys
      F88C0000 - \SystemRoot\system32\drivers\drmk.sys
      F88D0000 - \SystemRoot\system32\DRIVERS\usbhub.sys
      F8C64000 - \SystemRoot\system32\DRIVERS\USBD.SYS
      B2CD1000 - \??\C:\Program Files\Symantec AntiVirus\savrt.sys
      B2CB4000 - \??\C:\Program Files\Symantec\SYMEVENT.SYS
      F88F0000 - \??\C:\Program Files\Symantec AntiVirus\Savrtpel.sys
      B2BE5000 - \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20070621.017\navex15.sys
      B2BD3000 - \??\C:\PROGRA~1\FICHIE~1\SYMANT~1\VIRUSD~1\20070621.017\naveng.sys
      F8C66000 - \SystemRoot\System32\Drivers\Fs_Rec.SYS
      F7FB3000 - \SystemRoot\System32\Drivers\Null.SYS
      F8C68000 - \SystemRoot\System32\Drivers\Beep.SYS
      F7FB1000 - \SystemRoot\System32\DRIVERS\AvgAsCln.sys
      F8AD0000 - \SystemRoot\system32\DRIVERS\USBSTOR.SYS
      F8AD8000 - \SystemRoot\System32\drivers\vga.sys
      F8C6A000 - \SystemRoot\System32\Drivers\mnmdd.SYS
      F8C6C000 - \SystemRoot\System32\DRIVERS\RDPCDD.sys
      F8AE0000 - \SystemRoot\System32\Drivers\Msfs.SYS
      F8AE8000 - \SystemRoot\System32\Drivers\Npfs.SYS
      F8497000 - \SystemRoot\system32\DRIVERS\rasacd.sys
      B2BA0000 - \SystemRoot\system32\DRIVERS\ipsec.sys
      B2B48000 - \SystemRoot\system32\DRIVERS\tcpip.sys
      B2B27000 - \SystemRoot\system32\DRIVERS\ipnat.sys
      F8900000 - \SystemRoot\System32\Drivers\aswTdi.SYS
      F8910000 - \SystemRoot\system32\DRIVERS\wanarp.sys
      B2ABF000 - \SystemRoot\System32\Drivers\SYMTDI.SYS
      F8920000 - \SystemRoot\system32\DRIVERS\arp1394.sys
      B2A97000 - \SystemRoot\system32\DRIVERS\netbt.sys
      B2A5F000 - \SystemRoot\system32\DRIVERS\tcpip6.sys
      F7E5C000 - \SystemRoot\System32\drivers\ws2ifsl.sys
      B2A3D000 - \SystemRoot\System32\drivers\afd.sys
      F8930000 - \SystemRoot\system32\DRIVERS\netbios.sys
      F7E58000 - \??\C:\Program Files\TGTSoft\StyleXP\StyleXPHelper.exe
      B2972000 - \SystemRoot\system32\DRIVERS\rdbss.sys
      B2903000 - \SystemRoot\system32\DRIVERS\mrxsmb.sys
      F8AF8000 - \SystemRoot\system32\DRIVERS\Ip6Fw.sys
      F8940000 - \SystemRoot\System32\Drivers\Fips.SYS
      F810E000 - \??\C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys
      F8B00000 - \SystemRoot\System32\Drivers\Aavmker4.SYS
      B2D6C000 - \SystemRoot\system32\DRIVERS\hidusb.sys
      F8960000 - \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
      F8B08000 - \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
      B2D68000 - \SystemRoot\system32\DRIVERS\mouhid.sys
      F8970000 - \SystemRoot\System32\Drivers\Cdfs.SYS
      B28C3000 - \SystemRoot\System32\Drivers\dump_atapi.sys
      F8CDC000 - \SystemRoot\System32\Drivers\dump_WMILIB.SYS
      BF800000 - \SystemRoot\System32\win32k.sys
      B2D54000 - \SystemRoot\System32\drivers\Dxapi.sys
      F8B10000 - \SystemRoot\System32\watchdog.sys
      BF9C3000 - \SystemRoot\System32\drivers\dxg.sys
      F8E27000 - \SystemRoot\System32\drivers\dxgthk.sys
      BF9D5000 - \SystemRoot\System32\ati2dvag.dll
      BFA0E000 - \SystemRoot\System32\ati2cqag.dll
      BFA4B000 - \SystemRoot\System32\ati3duag.dll
      BFC79000 - \SystemRoot\System32\ativvaxx.dll
      B078B000 - \SystemRoot\system32\DRIVERS\ndisuio.sys
      B0565000 - \SystemRoot\System32\Drivers\aswMon2.SYS
      B0320000 - \SystemRoot\system32\drivers\wdmaud.sys
      F8980000 - \SystemRoot\system32\drivers\sysaudio.sys
      F8C70000 - \SystemRoot\System32\Drivers\ElbyCDIO.sys
      B009E000 - \SystemRoot\system32\DRIVERS\srv.sys
      B0026000 - \SystemRoot\system32\DRIVERS\secdrv.sys
      F8CAE000 - \??\C:\WINDOWS\system32\Drivers\Vcs.sys
      AFEA2000 - \SystemRoot\System32\Drivers\aswRdr.SYS
      F8DA0000 - \SystemRoot\System32\DRIVERS\KProcCheck.sys

      Total number of drivers = 146

      Liste des programmes installes

      0x1
      Ad-Aware SE Professional
      Adobe Bridge 1.0
      Adobe Common File Installer
      Adobe Flash Player 9 ActiveX
      Adobe Help Center 2.0
      Adobe Photoshop CS2 Portable Par Le Nettoyeur
      Adobe Premiere Pro 2.0
      Adobe Premiere Pro 2.0
      Adobe Reader 6.0 - Français
      Adobe Stock Photos 1.0
      Agere Systems PCI Soft Modem
      AlienGUIse Theme Manager
      Apple Software Update
      Archiveur WinRAR
      ASIO4ALL
      ATI Display Driver
      AV Voice Changer Software DIAMOND 4.0
      avast! Antivirus
      Avex DVD to Mobile Converter (remove only)
      Avex DVD to Mobile Video Suite (remove only)
      Avex Mobile Video Converter (remove only)
      AVG Anti-Spyware 7.5
      AVS Video Converter 4.3.1.371
      Azureus
      Barre d'outils Outlook de Windows Live (Windows Live Toolbar)
      BB FlashBack
      BB FlashBack
      BearShare
      BitComet 0.70
      BitLord 1.1
      Bloqueur de fenêtres pop-up (Windows Live Toolbar)
      CCleaner (remove only)
      CINEMA 4D Release 10
      ClipFactory
      CloneCD
      CloneDVD2
      ClubDJ Pro
      Collab
      Conseiller de mise à niveau Windows Vista
      Correctif pour Windows XP (KB914440)
      Correctif pour Windows XP (KB935448)
      Correctif Windows XP - KB873333
      Correctif Windows XP - KB873339
      Correctif Windows XP - KB885250
      Correctif Windows XP - KB885835
      Correctif Windows XP - KB885836
      Correctif Windows XP - KB886185
      Correctif Windows XP - KB887472
      Correctif Windows XP - KB887742
      Correctif Windows XP - KB888113
      Correctif Windows XP - KB888302
      Correctif Windows XP - KB890859
      Correctif Windows XP - KB891781
      Correctif Windows XP - KB893086
      Crucible
      DAEMON Tools
      Driver Genius Professional Edition 2007
      Détecteur de flux Windows Live Toolbar (Windows Live Toolbar)
      DVD Shrink 3.2
      e-zshopper
      East-Tec Eraser 2007 Version 8.0
      Edgar Torronteras' Extreme Biker
      eMule
      EPSON Logiciel imprimante
      EPSON PhotoQuicker3.4
      EPSON PRINT Image Framer Tool2.0
      ESC64 Guide de référence
      ESC64 Guide des logiciels
      Extension de Windows Live Toolbar (Windows Live Toolbar)
      FaceOnBody
      FlashGet 1.8.2.1001
      FLV Player
      Folder Password Protect 2.7
      GameShadow
      Gif Movie Gear 4
      Google Earth Pro
      Google Toolbar for Internet Explorer
      Google Toolbar for Internet Explorer
      Hide IP Platinum 2.8
      High Definition Audio Driver Package - KB835221
      High Definition Audio Driver Package - KB888111
      HijackThis 1.99.1
      Hollywood FX Pack 26 - Extra FX
      Hotfix for Windows Media Format 11 SDK (KB929399)
      Hotfix for Windows XP (KB915865)
      Hotfix for Windows XP (KB926239)
      IL Download Manager
      Internet Cyclone 1.92
      InterVideo DeviceService
      iolo technologies' System Mechanic 6
      ISO Recorder
      J2SE Runtime Environment 5.0 Update 4
      J2SE Runtime Environment 5.0 Update 6
      Java 2 Runtime Environment, SE v1.4.2_05
      JVTorrent 1.1
      K-Lite Codec Pack 2.48 Full
      Konvertor
      Lavasoft Reghance 2.1
      Lecteur Windows Media 11
      LimeWire PRO 4.13.0
      LiveUpdate 2.0 (Symantec Corporation)
      Magic ISO Maker v5.4 (build 0239)
      Menus intelligents (Windows Live Toolbar)
      Messenger Plus! 3 & Sponsor
      Messenger Plus! Live & Sponsor (CiD)
      Microsoft .NET Framework 1.1
      Microsoft .NET Framework 1.1
      Microsoft .NET Framework 1.1 Hotfix (KB886903)
      Microsoft .NET Framework 2.0
      Microsoft .NET Framework 2.0
      Microsoft Compression Client Pack 1.0 for Windows XP
      Microsoft Internationalized Domain Names Mitigation APIs
      Microsoft National Language Support Downlevel APIs
      Microsoft Office Access MUI (French) 2007
      Microsoft Office Excel MUI (French) 2007
      Microsoft Office InfoPath MUI (French) 2007
      Microsoft Office Outlook MUI (French) 2007
      Microsoft Office PowerPoint MUI (French) 2007
      Microsoft Office Professional Plus 2007
      Microsoft Office Professional Plus 2007
      Microsoft Office Proof (Arabic) 2007
      Microsoft Office Proof (Dutch) 2007
      Microsoft Office Proof (English) 2007
      Microsoft Office Proof (French) 2007
      Microsoft Office Proof (German) 2007
      Microsoft Office Proof (Spanish) 2007
      Microsoft Office Proofing (French) 2007
      Microsoft Office Publisher MUI (French) 2007
      Microsoft Office Shared MUI (French) 2007
      Microsoft Office Word MUI (French) 2007
      Microsoft Software Update for Web Folders (French) 12
      Microsoft SQL Server Desktop Engine (PINNACLESYS)
      Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
      Microsoft User-Mode Driver Framework Feature Pack 1.0
      Microsoft Visual C++ 2005 Redistributable
      Mise à jour de sécurité pour Lecteur Windows Media (KB911564)
      Mise à jour de sécurité pour Lecteur Windows Media 10 (KB911565)
      Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734)
      Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398)
      Mise à jour de sécurité pour Windows Internet Explorer 7 (KB928090)
      Mise à jour de sécurité pour Windows Internet Explorer 7 (KB929969)
      Mise à jour de sécurité pour Windows Internet Explorer 7 (KB931768)
      Mise à jour de sécurité pour Windows XP (KB890046)
      Mise à jour de sécurité pour Windows XP (KB893066)
      Mise à jour de sécurité pour Windows XP (KB893756)
      Mise à jour de sécurité pour Windows XP (KB896358)
      Mise à jour de sécurité pour Windows XP (KB896422)
      Mise à jour de sécurité pour Windows XP (KB896423)
      Mise à jour de sécurité pour Windows XP (KB896424)
      Mise à jour de sécurité pour Windows XP (KB896428)
      Mise à jour de sécurité pour Windows XP (KB896688)
      Mise à jour de sécurité pour Windows XP (KB899587)
      Mise à jour de sécurité pour Windows XP (KB899588)
      Mise à jour de sécurité pour Windows XP (KB899591)
      Mise à jour de sécurité pour Windows XP (KB900725)
      Mise à jour de sécurité pour Windows XP (KB901017)
      Mise à jour de sécurité pour Windows XP (KB901190)
      Mise à jour de sécurité pour Windows XP (KB901214)
      Mise à jour de sécurité pour Windows XP (KB902400)
      Mise à jour de sécurité pour Windows XP (KB904706)
      Mise à jour de sécurité pour Windows XP (KB905414)
      Mise à jour de sécurité pour Windows XP (KB905749)
      Mise à jour de sécurité pour Windows XP (KB905915)
      Mise à jour de sécurité pour Windows XP (KB908519)
      Mise à jour de sécurité pour Windows XP (KB908531)
      Mise à jour de sécurité pour Windows XP (KB911280)
      Mise à jour de sécurité pour Windows XP (KB911562)
      Mise à jour de sécurité pour Windows XP (KB911567)
      Mise à jour de sécurité pour Windows XP (KB911927)
      Mise à jour de sécurité pour Windows XP (KB912812)
      Mise à jour de sécurité pour Windows XP (KB912919)
      Mise à jour de sécurité pour Windows XP (KB913446)
      Mise à jour de sécurité pour Windows XP (KB913580)
      Mise à jour de sécurité pour Windows XP (KB914388)
      Mise à jour de sécurité pour Windows XP (KB914389)
      Mise à jour de sécurité pour Windows XP (KB916281)
      Mise à jour de sécurité pour Windows XP (KB917159)
      Mise à jour de sécurité pour Windows XP (KB917344)
      Mise à jour de sécurité pour Windows XP (KB917422)
      Mise à jour de sécurité pour Windows XP (KB917953)
      Mise à jour de sécurité pour Windows XP (KB918118)
      Mise à jour de sécurité pour Windows XP (KB918439)
      Mise à jour de sécurité pour Windows XP (KB918899)
      Mise à jour de sécurité pour Windows XP (KB919007)
      Mise à jour de sécurité pour Windows XP (KB920213)
      Mise à jour de sécurité pour Windows XP (KB920214)
      Mise à jour de sécurité pour Windows XP (KB920670)
      Mise à jour de sécurité pour Windows XP (KB920683)
      Mise à jour de sécurité pour Windows XP (KB920685)
      Mise à jour de sécurité pour Windows XP (KB921398)
      Mise à jour de sécurité pour Windows XP (KB921883)
      Mise à jour de sécurité pour Windows XP (KB922616)
      Mise à jour de sécurité pour Windows XP (KB922760)
      Mise à jour de sécurité pour Windows XP (KB922819)
      Mise à jour de sécurité pour Windows XP (KB923191)
      Mise à jour de sécurité pour Windows XP (KB923414)
      Mise à jour de sécurité pour Windows XP (KB923689)
      Mise à jour de sécurité pour Windows XP (KB923694)
      Mise à jour de sécurité pour Windows XP (KB923980)
      Mise à jour de sécurité pour Windows XP (KB924191)
      Mise à jour de sécurité pour Windows XP (KB924270)
      Mise à jour de sécurité pour Windows XP (KB924496)
      Mise à jour de sécurité pour Windows XP (KB924667)
      Mise à jour de sécurité pour Windows XP (KB925454)
      Mise à jour de sécurité pour Windows XP (KB925486)
      Mise à jour de sécurité pour Windows XP (KB925902)
      Mise à jour de sécurité pour Windows XP (KB926255)
      Mise à jour de sécurité pour Windows XP (KB926436)
      Mise à jour de sécurité pour Windows XP (KB927779)
      Mise à jour de sécurité pour Windows XP (KB927802)
      Mise à jour de sécurité pour Windows XP (KB928255)
      Mise à jour de sécurité pour Windows XP (KB928843)
      Mise à jour de sécurité pour Windows XP (KB930178)
      Mise à jour de sécurité pour Windows XP (KB931261)
      Mise à jour de sécurité pour Windows XP (KB931784)
      Mise à jour de sécurité pour Windows XP (KB932168)
      Mise à jour pour Windows XP (KB894391)
      Mise à jour pour Windows XP (KB896727)
      Mise à jour pour Windows XP (KB898461)
      Mise à jour pour Windows XP (KB900485)
      Mise à jour pour Windows XP (KB904942)
      Mise à jour pour Windows XP (KB910437)
      Mise à jour pour Windows XP (KB916595)
      Mise à jour pour Windows XP (KB920872)
      Mise à jour pour Windows XP (KB922582)
      Mise à jour pour Windows XP (KB927891)
      Mise à jour pour Windows XP (KB929338)
      Mise à jour pour Windows XP (KB930916)
      Mise à jour pour Windows XP (KB931836)
      MixMeister BPM Analyzer 1.0
      MixMeister Pro 6
      Morgan Stream Switcher
      Mozilla Firefox (2.0.0.4)
      MSN Messenger 7.5
      MSXML 4.0 SP2 (KB927978)
      MSXML 4.0 SP2 Parser and SDK
      Nero 7 Demo
      NET Render Release 10
      NTI Backup NOW! 3
      NTI Backup NOW! 3
      NTI CD & DVD-Maker
      NTI CD & DVD-Maker Gold
      O&O Defrag Professional Edition
      OneCare Advisor (Windows Live Toolbar)
      OpenSSL 0.9.6m
      Oro Messenger Skin
      Philips SPC 200NC PC Camera
      PhotoFiltre Studio
      Photoshop CS2
      PIF DESIGNER2.0
      Pinnacle device drivers
      Pinnacle Hollywood FX Pack0 - Extra FX
      Pinnacle Hollywood FX Pack1 - Holiday FX
      Pinnacle Hollywood FX Pack2 - Family FX
      Pinnacle Instant DVD Recorder
      Pinnacle MediaCenter
      Pinnacle MediaServer
      PowerDVD
      PQ DVD to 3GP Video Suite (remove only)
      Pro Evolution Soccer 6
      Pro Evolution Soccer 6
      proDAD Heroglyph 2.5
      proDAD Vitascene 1.0
      QuickTime
      RAR Password Cracker 4.12
      Realtek High Definition Audio Driver
      Registry Mechanic 6.0
      RM-X® Audio Extractor
      ScanToWeb
      Security Update for CAPICOM (KB931906)
      Security Update for CAPICOM (KB931906)
      Security Update for Excel 2007 (KB934670)
      Security Update for Microsoft .NET Framework 2.0 (KB922770)
      Security Update for Office 2007 (KB934062)
      Security Update pour Microsoft .NET Framework 2.0 (KB917283)
      Smart PC 4.0
      Smartalec PC Accelerator 2007 Professional Suite 1.1
      SmartSound Quicktracks Plugin
      SmartSound Quicktracks Plugin
      Sony DVD Architect 4.0
      Sony Media Manager 2.0
      Sony Media Manager 2.2
      Sony Noise Reduction Plug-In 2.0e
      Sony Sound Forge 9.0
      Sony Vegas 7.0
      SphereXP 1.1.626
      Spyware Doctor 5.0
      Steam
      Studio 11
      Studio 11
      Studio 11 Bonus DVD
      StuffPlug-NG (Messenger Plus! Plugins)
      StyleXP (remove only)
      SuperMegaSpoof 2.0
      Symantec AntiVirus
      The Matrix Revolutions 3D Screen Saver v3.2
      The Matrix Screen Saver
      Themexp.org File
      Total Video Converter 3.10
      TuneUp Utilities 2007
      Turbo Connect
      Tweak-SE plug-in for Ad-Aware SE
      Ulead VideoStudio 11
      Update for Office 2007 (KB932080)
      Update for Office 2007 (KB933688)
      Update for Office 2007 (KB934393)
      Update for Outlook 2007 Junk Email Filter (KB934655)
      Update for Word 2007 (KB934173)
      Utilidades Sierra
      Utilitaires Sierra
      VD Codec Pack 1.3
      VideoAvatar
      VideoLAN VLC media player 0.8.2
      VideoStudio
      Virtual DJ - Atomix Productions
      Wave11 Glass
      WebFldrs XP
      Winamp (remove only)
      WindowBlinds
      Windows Genuine Advantage v1.3.0254.0
      Windows Installer 3.1 (KB893803)
      Windows Internet Explorer 7
      Windows Live Favorites pour Windows Live Toolbar
      Windows Live Sign-in Assistant
      Windows Live Toolbar
      Windows Live Toolbar
      Windows Media Format 11 runtime
      Windows Media Format 11 runtime
      Windows Media Player 11
      Windows Movie Maker 2.0
      WinISO 5.3
      WinPcap 3.1 beta3
      WinSessionPasswordCasseur 1.0
      WinXMedia AVI/WMV 3GP Converter 2.35
      WinZip
      Yahoo! Desktop Login
      Yahoo! Widget Engine



      Le volume dans le lecteur C s'appelle ACER
      Le numéro de série du volume est 320D-180E

      Répertoire de C:\Program Files

      22/03/2005 14:15 <REP> .
      22/03/2005 14:15 <REP> ..
      22/03/2005 14:21 <REP> Adobe
      19/06/2007 16:11 <REP> AdorageI-GfxDatas
      19/06/2007 16:11 <REP> AdorageI-SAL
      15/09/2005 13:39 <REP> Ahead
      01/04/2007 13:29 <REP> Alex Feinman
      16/04/2007 19:29 <REP> AlienGUIse
      20/06/2007 16:38 <REP> Alwil Software
      22/09/2006 17:18 <REP> Apple Software Update
      30/03/2007 13:42 <REP> ASIO4ALL v2
      12/05/2007 12:08 <REP> AV Vcs 4.0 DIAMOND
      14/04/2007 12:10 <REP> Avex
      14/02/2006 23:13 <REP> AVSMedia
      25/03/2007 22:35 <REP> Azureus
      05/11/2006 11:31 <REP> BearShare
      03/08/2006 01:12 <REP> BitComet
      29/04/2007 16:19 <REP> BitLord
      18/05/2007 21:39 <REP> Blueberry Software
      13/05/2006 15:28 <REP> CA
      01/05/2007 21:53 <REP> CAPCOM
      23/06/2007 00:18 <REP> CCleaner
      17/10/2005 20:35 <REP> CheckFlow
      19/06/2007 00:57 <REP> ClubDJ Pro
      04/10/2005 19:05 <REP> Common Files
      22/03/2005 14:19 <REP> ComPlus Applications
      18/10/2004 19:22 <REP> counter strike source
      22/03/2005 14:31 <REP> CyberLink
      29/04/2007 23:44 <REP> DAEMON Tools
      09/09/2005 11:54 <REP> Dafhsp
      30/08/2006 20:43 <REP> DivX
      28/10/2005 16:24 4 096 dmfafr39.Dlk
      23/10/2005 21:38 8 192 dmfafr39.Ock
      04/10/2005 16:31 <REP> Doom 3
      16/04/2007 20:11 <REP> Driver-Soft
      19/06/2007 15:39 <REP> D-Tools
      28/05/2007 20:03 <REP> DVD Shrink
      29/03/2006 14:25 <REP> EA GAMES
      19/06/2007 01:00 <REP> East-Tec Eraser 2007
      03/10/2006 19:59 <REP> eChanblard
      04/09/2006 14:46 <REP> Edovia AntiSpam
      13/08/2006 17:52 <REP> Eidos
      07/01/2007 13:49 <REP> Elaborate Bytes
      01/10/2005 16:07 <REP> Empire Interactive
      10/08/2005 21:15 <REP> eMule
      31/10/2006 14:05 <REP> EPSON
      12/10/2005 17:43 <REP> e-zshopper
      16/04/2007 19:52 <REP> FaceOnBody
      22/03/2005 14:15 <REP> Fichiers communs
      23/07/2006 16:00 <REP> FileZilla
      13/08/2006 15:49 <REP> flashFXP
      15/04/2007 11:32 <REP> FlashGet
      18/05/2007 23:51 <REP> FLV Player
      30/04/2007 03:24 <REP> Folder Password Protect
      05/11/2005 19:12 <REP> Fx Audio Conveter
      13/08/2006 17:50 <REP> GameShadow
      04/05/2007 00:34 <REP> GeoVid
      05/08/2006 13:40 <REP> Google
      23/06/2007 00:25 <REP> Grisoft
      17/04/2007 16:04 <REP> Hide IP Platinum
      03/08/2006 01:42 <REP> ICOO Loader
      19/11/2005 20:18 <REP> Illustrate
      29/10/2006 15:48 <REP> Image-Line
      25/03/2007 15:34 <REP> ImTOO
      22/03/2005 14:26 <REP> Intel
      05/05/2007 13:01 <REP> Internet Cyclone
      22/03/2005 14:19 <REP> Internet Explorer
      10/06/2007 01:24 <REP> iolo
      09/01/2007 19:11 <REP> Jasc Software Inc
      22/03/2005 14:27 <REP> Java
      01/10/2005 16:30 <REP> JVTorrent
      14/08/2005 20:22 <REP> K-Lite Codec Pack
      29/04/2007 23:52 <REP> KONAMI
      05/11/2005 19:16 <REP> Konvertor
      08/04/2007 02:47 <REP> Lavasoft
      08/04/2007 02:48 <REP> Lavasoft RegHance
      30/12/2006 19:54 <REP> LimeWire
      08/05/2007 11:45 <REP> MagicISO
      08/05/2007 12:18 <REP> MAXON
      16/04/2007 18:08 <REP> MegaSpoof
      22/03/2005 14:18 <REP> Messenger
      07/05/2007 12:25 <REP> Messenger Plus! Live
      10/08/2005 20:06 <REP> MessengerPlus! 3
      10/05/2007 03:04 <REP> Microsoft CAPICOM 2.1.0.2
      22/03/2005 14:22 <REP> microsoft frontpage
      18/10/2005 21:58 <REP> Microsoft Office
      26/11/2005 18:33 <REP> Microsoft SQL Server
      15/04/2007 19:40 <REP> Microsoft Visual Studio
      18/04/2007 12:32 <REP> Microsoft Windows Vista Upgrade Advisor
      15/04/2007 19:41 <REP> Microsoft Works
      15/04/2007 19:39 <REP> Microsoft.NET
      05/09/2005 03:11 <REP> MilkShape 3D 1.7.3
      18/10/2004 19:45 20 480 MISE EN SERVICE CS SOURCE.doc
      29/10/2006 15:25 <REP> MixMeister BPM Analyzer
      03/06/2007 12:37 <REP> MixMeister Pro 6
      19/11/2005 23:59 <REP> Morgan
      22/03/2005 14:19 <REP> Movie Maker
      08/04/2007 10:45 <REP> Mozilla Firefox
      15/04/2007 19:40 <REP> MSBuild
      15/04/2007 19:31 <REP> MSECache
      22/03/2005 14:18 <REP> MSN
      22/03/2005 14:18 <REP> MSN Gaming Zone
      10/08/2005 19:57 <REP> MSN Messenger
      15/04/2007 16:43 <REP> MsnChecker
      04/10/2005 19:04 <REP> MSNShell
      10/08/2005 23:56 <REP> MSXML 4.0
      16/04/2007 17:43 <REP> Nero
      22/03/2005 14:19 <REP> NetMeeting
      22/03/2005 14:33 <REP> NewTech Infosystems
      22/03/2005 14:29 <REP> Norton AntiVirus
      22/03/2005 14:19 <REP> Online Services
      17/04/2007 22:50 <REP> OO Software
      22/03/2005 14:19 <REP> Outlook Express
      19/11/2005 20:14 <REP> Oxilog
      09/01/2007 19:10 <REP> Panicware
      17/04/2007 22:55 <REP> PC Accelerator Professional
      08/10/2005 17:34 <REP> Philips
      01/08/2006 01:44 <REP> PhotoFiltre Studio
      17/04/2007 16:13 <REP> PhotoZoom Professional
      18/08/2005 19:00 <REP> Pinnacle
      12/10/2005 17:49 <REP> Plus!
      14/04/2007 12:11 <REP> PQDVD
      19/06/2007 16:15 <REP> proDAD
      11/08/2005 00:46 <REP> Project64 v1.5
      23/10/2005 23:46 <REP> PROMT5
      12/05/2006 17:42 <REP> QuickTime
      18/10/2004 20:12 36 747 racourci.JPG
      01/04/2007 13:23 <REP> RAR Password Cracker
      22/03/2005 14:26 <REP> Realtek
      12/08/2005 13:31 <REP> Red Storm Entertainment
      10/06/2007 01:32 <REP> Registry Mechanic
      10/06/2007 01:16 <REP> RM-X® Audio Extractor
      22/03/2005 14:20 <REP> Services en ligne
      17/08/2005 15:14 <REP> Sierra On-Line
      30/04/2007 00:02 <REP> SlySoft
      16/04/2007 21:03 <REP> Smart PC Solutions
      14/05/2007 02:19 <REP> SmartSound Software
      20/11/2005 18:34 <REP> SmartSound Software Inc
      25/04/2007 01:38 <REP> Softwin
      18/08/2005 15:59 <REP> Sonic Foundry Setup
      05/12/2005 18:32 <REP> Sony
      18/08/2005 19:53 <REP> Sony Setup
      26/04/2007 21:51 <REP> SphereXP
      06/06/2007 23:57 <REP> Spyware Doctor
      09/01/2007 19:12 <REP> Steinberg
      22/03/2005 14:28 <REP> Symantec
      14/04/2007 00:45 <REP> Symantec AntiVirus
      07/05/2006 23:24 <REP> TGTSoft
      12/10/2005 17:43 <REP> themexp
      07/01/2007 18:25 <REP> Torrent101
      21/04/2007 00:48 <REP> Total Video Converter
      15/04/2007 17:40 <REP> TuneUp Utilities 2007
      30/04/2007 03:21 <REP> TurboConnect
      28/09/2005 12:55 <REP> Ubisoft
      25/05/2007 10:37 <REP> Ulead Systems
      24/09/2005 19:37 <REP> UselessCreations
      11/08/2005 12:39 <REP> Valve
      14/08/2005 00:05 <REP> VDCodecPack1.3
      19/11/2005 23:42 <REP> VideoLAN
      11/08/2006 17:38 <REP> VirtualDJ
      09/02/2006 13:42 <REP> Visicom Media
      28/10/2005 16:24 4 096 vmfafr.Dlk
      23/10/2005 21:38 8 192 vmfafr.Ock
      30/08/2005 10:36 <REP> Vstplugins
      19/11/2005 16:20 <REP> Winamp
      07/05/2007 12:22 <REP> Windows Live Favorites
      10/12/2006 20:24 <REP> Windows Live Toolbar
      25/05/2007 10:39 <REP> Windows Media Components
      03/01/2007 11:38 <REP> Windows Media Connect 2
      22/03/2005 14:19 <REP> Windows Media Player
      22/03/2005 14:18 <REP> Windows NT
      18/03/2006 12:05 <REP> WinISO
      15/04/2007 16:43 <REP> WinPcap
      28/01/2006 18:17 <REP> WinRAR
      29/04/2007 16:14 <REP> WinSessionPasswordCasseur 1.0
      14/04/2007 12:10 <REP> WinXMedia
      05/08/2006 13:39 <REP> WinZip
      22/03/2005 14:22 <REP> xerox
      04/09/2005 11:47 <REP> XRadiance
      19/06/2007 00:54 <REP> Yahoo!
      6 fichier(s) 81 803 octets
      174 Rép(s) 50 583 764 992 octets libres
      Le volume dans le lecteur C s'appelle ACER
      Le numéro de série du volume est 320D-180E

      Répertoire de C:\Program Files\fichiers communs

      22/03/2005 14:15 <REP> .
      22/03/2005 14:15 <REP> ..
      22/03/2005 14:15 <REP> Microsoft Shared
      22/03/2005 14:15 <REP> SpeechEngines
      22/03/2005 14:15 <REP> ODBC
      22/03/2005 14:19 <REP> System
      22/03/2005 14:19 <REP> MSSoap
      22/03/2005 14:19 <REP> Services
      22/03/2005 14:25 <REP> InstallShield
      22/03/2005 14:27 <REP> Java
      22/03/2005 14:29 <REP> Symantec Shared
      14/08/2005 20:23 <REP> Ahead
      05/09/2005 03:28 <REP> Adobe
      05/09/2005 03:28 <REP> Vbox
      23/10/2005 23:27 <REP> Adobe Systems Shared
      14/02/2006 23:13 <REP> AVSMedia
      28/03/2006 20:36 <REP> SWF Studio
      28/10/2006 19:34 <REP> Digidesign
      28/12/2006 18:34 <REP> Teleca Shared
      15/04/2007 19:40 <REP> DESIGNER
      16/04/2007 19:29 <REP> Stardock
      25/04/2007 01:35 <REP> Softwin
      18/05/2007 21:39 <REP> Blueberry Software
      22/05/2007 21:36 <REP> Wise Installation Wizard
      25/05/2007 10:40 <REP> InterVideo
      25/05/2007 11:11 <REP> Ulead Systems
      0 fichier(s) 0 octets
      26 Rép(s) 50 583 764 992 octets libres
      Le volume dans le lecteur C s'appelle ACER
      Le numéro de série du volume est 320D-180E

      Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders

      22/03/2005 14:25 <REP> .
      22/03/2005 14:25 <REP> ..
      07/03/2001 07:00 127 033 MSOWS40c.DLL
      03/06/1999 12:09 122 937 MSOWS409.DLL
      18/03/1999 06:37 593 977 RAGENT.DLL
      15/04/2007 19:34 <REP> 1036
      26/10/2006 20:12 40 256 MSOSV.DLL
      26/10/2006 19:49 970 528 MSONSEXT.DLL
      20/06/2007 11:27 73 605 ibm00001.dll
      20/06/2007 11:27 58 098 ibm00002.dll
      7 fichier(s) 1 986 434 octets
      3 Rép(s) 50 583 764 992 octets libres
      Le volume dans le lecteur C s'appelle ACER
      Le numéro de série du volume est 320D-180E

      Répertoire de C:\Program Files\common files

      04/10/2005 19:05 <REP> .
      04/10/2005 19:05 <REP> ..
      04/10/2005 19:05 <REP> msnshell
      31/10/2006 14:07 <REP> UDL
      20/06/2007 11:26 <REP> ?icrosoft.NET
      0 fichier(s) 0 octets
      5 Rép(s) 50 583 764 992 octets libres
      Le volume dans le lecteur C s'appelle ACER
      Le numéro de série du volume est 320D-180E

      Répertoire de C:\

      20/06/2007 23:31 1 308 216 scan.exe
      16/02/2005 11:06 218 112 HijackThis.exe
      12/05/2007 18:22 68 096 diff.exe
      12/05/2007 18:22 103 424 grep.exe
      24/05/2001 12:59 162 304 UNWISE.EXE
      5 fichier(s) 1 860 152 octets
      0 Rép(s) 50 583 764 992 octets libres
      Le volume dans le lecteur C s'appelle ACER
      Le numéro de série du volume est 320D-180E

      Répertoire de C:\

      c:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\AimMix.exe
      c:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\glue lite.exe
      c:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\MetaFour.exe
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\BB FlashBack.exe
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPDRNTLEXFRGDRFFFFFF0\DrvInstaller.exe
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFBLSLACEXEAGDIFFFF0\FB_Launcher.exe
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPLOYSVEXFRGDRFFFFFF0\LogSysServer.exe
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPREREHEEEFTGTRFFFFF0\RecorderChecker.exe
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUFBLSASAKTCXOEXTRTDFFFF0\FlashBack Batch Export.exe
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUPFBLSASAKCOEEFTGTRFFFF0\FlashBack Recorder.exe
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCNEUPFBLSASAKAYEEARTIFFFF0\FlashBack Player.exe
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPINMCNEUPFRFABAPAREFAETRFFFF0\Free FlashBack Player.exe
      c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Shareaza\Incomplete\7XPUCROFSODWBJVO645DJ42I6CKKB2ZX Shareaza_2.2.1.0.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\reverso.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\traducteur_Reverso Expert 5 Fr (Francais-Anglais-Allemand-Espagnol) + Crack.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\MInstall.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\GFFG\instmsia.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\GFFG\instmsiw.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\GFFG\setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\UTILS\PIE5CLR.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR - Français Allemand\FRENCH\UTILS\STSetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\MInstall.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\FS\instmsia.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\FS\instmsiw.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\FS\setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\UTILS\PIE5CLR.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert 5.0 FR Français - Espagnol\FRENCH\UTILS\STSetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\MInstall.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\instmsia.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\instmsiw.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\msi2xml.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\EFFE\setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\UTILS\PIE5CLR.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\Reverso Expert 5 FR\Reverso Expert v5.0 FR - Français Anglais\FRENCH\UTILS\STSetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Family Fun FX Pass studiodeluxe.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\hfxpack0-extrafx.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\hfxpack1-holidayfx-pp pass holiday.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Hollywood fx pack0-extrafx.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Hollywood FX.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\HollywoodFX.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\Hollywoof FX 5 Keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-Bundle1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-KidsSports1(1).exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-KidsSports1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle.Studio.Plus.v9.3+Hollywood FX Mega-Incl.Serial\MFX-Wedding1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Welcome.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Driver\PCLEBendPCI.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Driver\PCLEUSB.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\Family Fun FX Pass studiodeluxe.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\hfxpack0-extrafx.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\hfxpack1-holidayfx-pp pass holiday.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\HollywoodFX.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-Bundle1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1(1).exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Hollywood FX 5.1\FX 5.1\MFX-Wedding1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\HollywoodFX\hfx5studiosilent.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Pixie5\PixieTool.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Pixie5\RegisterStudio\LicenseTool.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Setup\setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Tools\amcap.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Tools\PPE114.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Pinnacle Studio 9.0 Multilanguage Hollywood Fx 5.1 Plus Extra Packs\Tutorial\Tutorial.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.1.2\Pinnacle_Studio_Patch_9_1_2_15d.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.3.5\Pinnacle_Studio_Patch_9_3_5.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.4.1\Pinnacle_Studio_Patch_9_4_1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.4.2\Pinnacle_Studio_Patch_9_3_5To9_4_2_Light.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Dossiers\EMULE\LOGI\PINNACLE\Pinnacle Studio 9.4.2 [Multilanguage]\Update 9.4.2\Pinnacle_Studio_Patch_9_4_2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\crystalblue.exe
      c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\Install.exe
      c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\Install_MSN_Messenger.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\wrar36b1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\My eBooks\Elegance\elegance.exe
      c:\Documents and Settings\thomas torrente\Mes docu
      0
    2. le halam
       
      SUITE ET FIN, CA RENTRAIT PAS DSL :s :

      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\ASIO4ALL.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\atomixmp3_trial.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Azureus_2.5.0.4a_Win32.setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\BearShareV6int.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\BitComet_0.70_setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\bob_down_1.1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\daemon347.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\dBpowerAMP-r2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\DivXPlay.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\dotnetfx.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\eChanblard.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\eMule0.46c-Installer.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\eMule0.47a-Installer.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\FileZilla_2_2_26_setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\flashget181en.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\ftpexpert3.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\FxACSU.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\hfxpack0-extrafx.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\hfxpack0-extrafx.exe2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Install_Messenger.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Install_Messenger22.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Install_MSN_Messenger.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\iTunesSetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\klcodec248f.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\megauploadtoolbarsetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\mmswitch.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\mp10setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MsgPlus-354.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MsgPlusLive-411.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\msn_wave11glass.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MSNChecker.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\MsnSearchToolbarSetup_fr-fr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\PandoSetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\patch-pinnacle-studio_patch_pinnacle_studio_9.4.3_francais_13278.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\pfs-setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Shareaza_2.1.0.0.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\SPNG2.2.397.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\SteamInstall.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\steaminstall_hl2demo.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\StudioPatch10_7_0.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\video.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\vlc-0.8.2-win32.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\winamp5111_full.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\WINISO53.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\wrar351fr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\50comupd.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\hhupd.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\InstMsi-x86a.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\InstMsi-x86w.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\Setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\Setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\msde\MDAC_TYP.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\msde\MSDESetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\Acid pro 6\mediamgr\msde\msisetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\3gpconv\3gp-video-converter.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\3gpconv\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\tune up 2007 french\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\logiciels\tune up 2007 french\TU2007TrialFR.exe
      c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\[NTi]_S.T.A.L.K.E.R.Shadow.of.Chernobyl-ViTALiTY.CRACK.ONLY\XR_3DA.exe
      c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\Steam Keygen (Counter-Strike Source) Working\HalfLifeCSKeyGen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\rld-pes6c\pes6.exe
      c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\ResidentEvil4v1.1.0FixedexeEuro\game.exe
      c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\Pinacle Hollywood Fx Crack\hfx5cc.exe
      c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\Pinacle Hollywood Fx Crack\Crack\14.12 Pinnacle Hollywood FX v5.1\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\[PC GAME FR] Splinter Cell 4 Double Agent - crack NOCD fr\SCDA-Offline\System\SplinterCell4.exe
      c:\Documents and Settings\thomas torrente\Mes documents\CRACKS\[PC GAME FR] Splinter Cell 4 Double Agent - crack NOCD fr\SCDA-Online\System\SCDA_Online.exe
      c:\Documents and Settings\thomas torrente\Mes documents\Google Hacker\Google Hacker v2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\aaw2007.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\akira76'sFPS L'anti-mule.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\BitLord_1.0.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\daemon-tools_daemon_tools_4.0.9.1_anglais_10729.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\dotnetfx.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\FLVPlayerSetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Install_Messenger.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\IPmsn.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\MsgPlusLive-420.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\RapidShare Time Resetter.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Setup_MagicISO.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\SteamInstall.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\SuperMegaSpoof.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\TurboConnect.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\tvc.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Xenomorph_slim.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Crack vista\Installer.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\SaveAsPDFandXPS.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\SETUP.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\OFFICE.FR-FR\DW20.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\OFFICE.FR-FR\DWTRIG20.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Microsoft.Office.Professional.2007.FR.By Gervais\PROPLUS.WW\OSE.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Google earth pro installation\Patch.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Google earth pro installation\Setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Néro 7.0 Prémium\Nero-7.0.1.2_fra.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Face On Body v2.1.3\Face On Body v2.1.3.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Face On Body v2.1.3\Patch Face On Body v2.1.3.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\driver\drvgenpro.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Smart.PC.4.0 CRKEXE-\SmartPC.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Smart.PC.4.0 CRKEXE-\smartpcsetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\winrar3.60 Fr\Crack WinRAR 3.x.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\winrar3.60 Fr\wrar360fr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\adobephotoshop\Adobe Photoshop CS2 Portable Fr 9.0.2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\adobephotoshop\crack_photoshop_cs2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe DNG Converter\Adobe DNG Converter.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe Reader 7.0\AdbeRdr70_fra_full.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe(R) Photoshop(R) CS2\instmsia.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe(R) Photoshop(R) CS2\instmsiw.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Adobe(R) Photoshop(R) CS2\setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Adobe Photoshop CS2 (9.0) Fr\Goodies\Modules externes facultatifs\Seiko Epson\PIM II Installer.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Crack et Keygen\Crack Activation Photoshop CS2 Fr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Adobe Photoshop CS2\Crack et Keygen\Keygen Photoshop CS2 Fr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\hide ip platinium\Hide IP Platinum 2.8.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\hide ip platinium\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\PZP_v1.2\PhotoZoom Professional Setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\PC Accelerator 2007 Pro Suite 1.3\pcupdate1.3.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\PC Accelerator 2007 Pro Suite 1.3\Setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\OO.Defrag.Professional.Edition.v8.5.1788.WinALL.Incl.Keygen-ViRiLiTY\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\OO.Defrag.Professional.Edition.v8.5.1788.WinALL.Incl.Keygen-ViRiLiTY\OODefrag_FRA.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\ProRat 1.9 Special Edition Patch\ipscan.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\ProRat 1.9 Special Edition Patch\ProRat 1.9 Special Edition Patch.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\DX9.0\directx_9c_oct05sdk_redist.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\DX9.0\DXSETUP.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\ADOBE PREMIERE\instmsi30.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\ADOBE PREMIERE\setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\ADOBE PREMIERE\directx\dxsetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\SphereXp1.1.626 full\SphereXP.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\xbox backup creator\Xbox Backup Creator v2.5.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\xbox backup creator\Xbox Backup Creator.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\Setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\WinSessionPasswordCasseur 1.0.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\Programme Installé\uninstall.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Casseur de Mot de Passe\Programme Installé\WinSessionPasswordCasseur 1.0.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Google Earth Pro 4.0.2737\Setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Google Earth Pro 4.0.2737\Crack\Patch.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Video avatar\video_avatar_2.3.0.53.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Video avatar\Crack\videoavatar.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Clone CD\SetupCloneCD5291.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Clone CD\Patch-SND\Slysoft_1.31.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\CloneDVD.v2.9.0.1.Incl.KeyMaker-DVT\DVT\KeyMaker.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\CloneDVD.v2.9.0.1.Incl.KeyMaker-DVT\Setup\SetupCloneDVD2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony Sound Forge 9.0a Build 297 + Patch\soundforge90a_enu.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony Vegas6\sonyvegasv6.0akeygenssg\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Internet.Cyclone.v1.92\setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Internet.Cyclone.v1.92\Crack\Internet Cyclone.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony.Vegas.v7.0e.Incl.Keygen-SSG\dvdarchitect40b_enu.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony.Vegas.v7.0e.Incl.Keygen-SSG\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Sony.Vegas.v7.0e.Incl.Keygen-SSG\vegas70e_enu.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Keygen\eclkv346.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\KEYGEN-FFF\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\install.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kawd.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kenum.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kftp.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmedia.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmediaaudio.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmpeg.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Kmpegavi.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Konvertor.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\Krip.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Konvertor v3.46.4\Install\uninst.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\photofiltre studio 8. 0.2\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\photofiltre studio 8. 0.2\pfs-setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Install CINEMA 4D.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Install MODULES.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Install NET Render.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\Uninstall MODULES.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\MAXON_CINEMA_4D_Studio_v10\MAXON_CINEMA_4D_Studio_v10\PANTHEON\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\FL.Studio.v7.0.0.XXL-POPUP\flstudio7.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\updatefull.4.0.41.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\vcs_diamond.4.0.41.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\!crack\Vcs4Core.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack3.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack4.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Effects\EffectsPack5.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.CeleVoicesPack.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.CeleVoicesPack2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackAnimals.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackFabulousCreatures.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackForMale.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Diamond.NickvoicesPackMusic2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\Music1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\NP1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Nickvoices\NP2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\Skins\SkinDiamondNew.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Av Voice Changer Software Diamond 4.0.41 Fullll\àß½¿ ¡Ñ ºá»Ò߬áÑÔß´ update\AV.VCS.4.0.41_update_all_plugins_and_nickvoices_FULL_new.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\Family Fun FX Pass studiodeluxe.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\hfxpack0-extrafx.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\hfxpack1-holidayfx-pp pass holiday.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\HollywoodFX.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-Bundle1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1(1).exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-KidsSports1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Hollywood FX 5.1\FX 5.1\MFX-Wedding1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\AVS VIDEO TOOLS\bbflbk.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\AVS VIDEO TOOLS\keygen\keygen.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WindowBlinds_Enhanced_5.10\WindowBlinds Enhanced 5.10\setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WindowBlinds_Enhanced_5.10\WindowBlinds Enhanced 5.10\Crack\crack.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Unlead video studio 11\UVS11PDISK0001BIDJAN\Setup_.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Unlead video studio 11\UVS11PDISK0001BIDJAN\UVS11Plus_FULL_E(UK).exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\setup cubase\setup cubase.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\RGtut\rapget.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\RGtut\Win32OpenSSL-v0.9.6m.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Photoshop CS2 9.0.2\Adobe Photoshop CS2 Portable Fr 9.0.2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Xara 3D v6\Xara3D.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\diskeeper2007-propremier\Diskeeper2007-ProPremier.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\diskeeper2007-propremier\patch\cracked\DK-PATCH.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\diskeeper2007-propremier\patch\Fix\Dk07reg_alt.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\oRipa_MSN_Recorder\ejoystudio_oripa.msn.webcam.recorder_v1.2.1.x_patch-GEAR\ejoystudio_oripa.msn.webcam.recorder_v1.2.0.x_patch-GEAR.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\photoshop cs2 fr\Adobe Photoshop CS2 Fr 9.0.2.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\DVDSHRINK\dvdshrink32setup_FR.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Mixmeister 6\mmp6160_full\mmp6160_full.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\SETUP.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\AGENTSVR.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\AUTOCHK.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\AUTOFMT.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\EXPAND.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\FAXPATCH.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\NETSETUP.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\NTSD.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\REGEDIT.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SPNPINST.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SYSPARSE.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\TELNET.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\USETUP.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WINNT.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WINNT32.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WINNTUPG\AUTORUN.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WIN9XUPG\TWID.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WIN9XMIG\FAX\AWDVSTUB.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\WIN9XMIG\MAPI\DLL\MKNTFRMCACHE.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SYSTEM32\SMSS.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\GENUINE.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\KB890830-V1.22.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\KB918093.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\MSJAVAVM.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\NDP20.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\NDP20B.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600001.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600002.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600003.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600004.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600005.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600006.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600007.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600008.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600009.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600010.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\ORK600011.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\PHOTOFILTRE.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\VBRUN.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\VCREDIT.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\WINRAR.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\SVCPACK\XPSCRIPT.EXE.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\I386\DRW\DWWIN.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Win Orkas\BOOT\MODULES\rpm\part.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Spyware Doctor v5.0.0.179\sdsetup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Spyware Doctor v5.0.0.179\crack\Update.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\rmxaudioextractor\rmxaudioextractor.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\System Mechanic 6 by flo\system-mechanic_patch_francais_anglais_9702.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\System Mechanic 6 by flo\system-mechanic_system_mechanic_6.0s_anglais_9702.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\craagle_alexman2189\craagle_alexman2189\craagle\craagle.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\Convert.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\PowerrsoftFC.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\unins000.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\WinMPGVideoConvert.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\AddiTunes.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\allconvert.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\ATOMChanger.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\app\QT3GPPFlatten.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\WinMPG VideoConvert\WinMPG Video Convert v6.6.3\Cracked\WinMPGVideoConvert.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\registry mechanic\rminstall.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\snapshot\snapshot.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\peinst\mkbt.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\peinst\nt2peldr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\Nu2Menu\nu2menu.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\Nu2Menu\setres.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\bst5\bst5.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\Programs\A43\a43.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\explorer.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\attrib.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\autochk.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\autofmt.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\bartpe.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\cacls.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\calc.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\chkdsk.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\clipsrv.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\cmd.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\comp.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\compact.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\convert.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\csrss.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\diskpart.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ditrace.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\dmadmin.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\eqndiag.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\eqnlogr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\eqnloop.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\expand.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\fc.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\find.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\findstr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\finger.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\fltmc.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ftp.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\hostname.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ipconfig.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\keyboard.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\keydown.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\label.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\locator.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\lpq.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\lpr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\lsass.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\makecab.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\mountvol.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\mspaint.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\mstsc.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nbtstat.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\net.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\net1.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\netconfig.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\notepad.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nslookup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ntkrnlmp.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ntoskrnl.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ntsd.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nu2menumsg.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\nu2shell.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\odbcad32.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\odbcconf.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\pathping.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\peer.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\penetcfg.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\pentnt.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\ping.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\portmon.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\print.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\reg.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\regedit.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\regedt32.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\regsvr32.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\replace.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\route.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\rsvp.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\rundll32.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\services.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\setup.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\smss.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\sort.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\spoolsv.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\subst.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\svchost.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\taskmgr.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\tftp.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\tracert.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\userinit.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\winlogon.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\wordpad.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\xcopy.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Windows.XP.USB.Stick.Edition\INSTALLDIR\i386\system32\xlog.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Club_DJ_Pro_2.1.4\ClubDJPro.EXE
      c:\Documents and Settings\thomas torrente\Mes documents\DL\SmSFree_up_by_dj_moska\widgetsus.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\eteraser_trial.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\crack\etdrivewiper.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\crack\eteraser.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\East-Tec_Eraser_2007_francais\crack\etscheduler.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Anti_moustique\moustique.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Avast Antivirus Pro 4 By Talimlove\Avast Antivirus French [Gamers-spirit.ws]\CCleaner.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Avast Antivirus Pro 4 By Talimlove\Avast Antivirus French [Gamers-spirit.ws]\Crack.exe
      c:\Documents and Settings\thomas torrente\Mes documents\DL\Avast Antivirus Pro 4 By Talimlove\Avast Antivirus French [Gamers-spirit.ws]\Installer Avast Pro.exe
      c:\Documents and Settings\thomas torrente\Bureau\avgas-setup-7.5.1.43.exe
      c:\Documents and Settings\thomas torrente\Bureau\ccsetup140.exe
      c:\Documents and Settings\thomas torrente\Bureau\Fixwareout.exe
      c:\Documents and Settings\thomas torrente\Bureau\OTMoveIt.exe
      c:\Documents and Settings\thomas torrente\Bureau\RemAdvertisemen.exe
      c:\Documents and Settings\thomas torrente\Bureau\virtualdj.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Install_Messenger.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\MsgPlusLive-420.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Sesamv2.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\SPNG2.2.397.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\trial patch\VirtualDJ3.1Patch(Trial).exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\AutoRun.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\instmsia.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\instmsiw.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Keygen.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\setup.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\EvalBrowse.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\hhupd.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\JETCOMP.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\LiveUpdate.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\NewEditionClew.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\RegProduct.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\REGSVR32.EXE
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Setup.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDPProBrowse.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\WebReg.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\WMFASetup.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DriveFiles\Win2kXP\VPlay801.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DriveFiles\Win9x\VPlay801.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DriveFiles\WinNT\VPlay801.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Building.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Burning.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\DriverSetup.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\DVDCreator.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\DVDCTrayIconShl.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\EasyBakup.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\FSSer.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\FSUdfUnInst.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\IEbkS.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\InstantBurn.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Retriever.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\Start.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\UDFUndeletor.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\DVDCreator\video.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\Adver.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\FSXDCommon.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\InstDriveExe.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\MGR.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\RemDriveExe.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\SetDL.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\VDrive.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\vdtask.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\Rache9x\rCache.EXE
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\VDP\RacheNT\rCache.EXE
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\inVHDDrvExe.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\RamDrive.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\RDTask.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Vhd\unVHDDrvExe.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Windows\DxpAppEx.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\virtudrive\Files\Windows\FSRunCmd.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\VIRTUAL DJ 4,0 FULL CRACK\install_virtualdj_v4.0.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Popup.Stopper.Professional.v1.60.1002-PWP\crack.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\Popup.Stopper.Professional.v1.60.1002-PWP\PopUpStopperProfessional.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\EMULATEURS\Cubextender2 Nintendo Gamecube Emulator Ger.exe
      c:\Documents and Settings\thomas torrente\Bureau\BUREAU (suite)\EMULATEURS\GameCubeXP.exe
      c:\Documents and Settings\thomas torrente\Bureau\CRAAGLE\craagle.exe
      c:\Documents and Settings\thomas torrente\Bureau\Emule Xtreme\emule.exe
      c:\Documents and Settings\thomas torrente\Bureau\DOSSIER SPECIAL TROJAN\KillBox.exe
      c:\Documents and Settings\thomas torrente\Bureau\DOSSIER SPECIAL TROJAN\VundoFix.exe
      c:\Documents and Settings\thomas torrente\Bureau\DOSSIER SPECIAL TROJAN\ProcessExplorer\procexp.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\catchme.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\diff.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\dumphive.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\FilesInfoCmd.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\find2.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\Fport.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\grep.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\KProcCheck.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\LFiles.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\LISTDLLS.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\pslist.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\streams.exe
      c:\Documents and Settings\thomas torrente\Bureau\DiagHelp\swreg.exe
      c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\ARPPRODUCTICON.exe
      c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\GameShadow.exe_0A3DE514292C4EBA987823B82B0B2BA2.exe
      c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\GameShadow.exe1_0A3DE514292C4EBA987823B82B0B2BA2.exe
      c:\Documents and Settings\thomas torrente\Application Data\Microsoft\Installer\{B77398BC-94A4-4B31-9757-421D4A2657A1}\Uninstall_GameShadow_B77398BC94A44B319757421D4A2657A1.exe
      c:\Documents and Settings\thomas torrente\Application Data\Else plus\AXISNEW.exe
      c:\Documents and Settings\thomas torrente\Application Data\Else plus\dkxwltcu.exe
      c:\Documents and Settings\thomas torrente\Application Data\Else plus\JoyPokeForkBlue.exe
      c:\Documents and Settings\thomas torrente\Application Data\Else plus\Thunkdeafgreat.exe
      c:\Documents and Settings\thomas torrente\Application Data\Else plus\wkxdnvpj.exe
      c:\Documents and Settings\thomas torrente\Application Data\Else plus\wxeobbmr.exe
      c:\Documents and Settings\thomas torrente\.limewire\.NetworkShare\LimeWireWin4.12.11.exe
      c:\_OTMoveIt\MovedFiles\Documents and Settings\All Users\Application Data\fafkbqpc.exe
      c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll
      c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\mia.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\mIDEFunc.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPBONMLLTAGEDIFFFFFF0\BORLNDMM.DLL
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPCC6MLLTAGEDIFFFFFF0\cc3260mt.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFBAEPILTGEDIFFFFFF0\FBPLAYERAPI.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFLHAHODLARTIFFFFFF0\FlashBackHook.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPFLHAINALLFREIRFFFF0\FlashBackInstall.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPLAECLFARETIRFFFFFF0\lame_enc.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPLOYITAEDFTGTRFFFFF0\LogSysInstaller.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPMPIDLFTRGTDRFFFFFF0\mpglib.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPPNBEDLTRGTDRFFFFFF0\PNGObject.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPSTM4LLTAGEDIFFFFFF0\stlpmt45.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPWMNDDLTRGTDRFFFFFF0\WMIIntDll.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFEPINMCNEUPWMXODLTRGTDRFFFFFF0\WMVExport.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUBBNDFCMNLELERROTREFFFF0\bbppnt.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\IFPIMCEUPLOYUOAETCLNDFTGTRFFFF0\LogSysUploadCenterClient.dll
      c:\Documents and Settings\All Users\Application Data\{F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}\offline\mIDEFunc.dll\mEXEFunc.dll
      c:\Documents and Settings\All Users\Application Data\Grisoft\AVG Anti-Spyware 7.5\Downloads\help.dll
      c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
      c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\7zAes.dll
      c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Aes.dll
      c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Branch.dll
      c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Copy.dll
      c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\LZMA.dll
      c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Codecs\Swap.dll
      c:\Documents and Settings\thomas torrente\Local Settings\Application Data\Seven Zip\Formats\7z.dll
      c:\Documents and Settings\thomas torrente\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll

      ****** Fin du rapport DiagHelp


      4)rapport HIJACKTHIS:


      Logfile of HijackThis v1.99.1
      Scan saved at 02:17:14, on 23/06/2007
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v7.00 (7.00.6000.16441)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\SYSTEM32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
      C:\WINDOWS\system32\svchost.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\SYSTEM32\Ati2evxx.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
      C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
      C:\Program Files\Symantec AntiVirus\DefWatch.exe
      C:\WINDOWS\system32\gearsec.exe
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\oodag.exe
      C:\Program Files\Symantec AntiVirus\Rtvscan.exe
      C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\SYSTEM32\notepad.exe
      C:\HJT\HijackThis.exe

      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O3 - Toolbar: (no name) - {37B85A29-692B-4205-9CAD-2626E4993404} - (no file)
      O3 - Toolbar: FlashGet - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\Program Files\FlashGet\fgiebar.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
      O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
      O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
      O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
      O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
      O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
      O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
      O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
      O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
      O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
      O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
      O8 - Extra context menu item: &Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
      O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
      O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
      O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
      O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
      O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
      O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
      O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O11 - Options group: [INTERNATIONAL] International*
      O14 - IERESET.INF: START_PAGE_URL=https://www.acer.com/worldwide/selection.html
      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
      O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
      O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
      O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://di.imgag.com/imgag/cp/install/Crusher.cab
      O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
      O17 - HKLM\System\CCS\Services\Tcpip\..\{601EC332-33D6-4B07-BFCF-B72B5829009A}: NameServer = 85.68.0.8,85.68.0.7
      O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
      O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
      O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
      O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
      O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
      O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
      O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
      O23 - Service: gearsec - GEAR Software - C:\WINDOWS\system32\gearsec.exe
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\Instal
      0
  4. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Bonsoir,

    Surveille tes comptes car l'une des infections est spécialisée dans le vol d'identité bancaire.

    1) Vide ta quarantaine Norton,

    2) * Double-clique sur OTMoveIt.exe pour lancer le programme,
    * Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste List Of Files/Folders to be moved" :

    C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE

    * Clique sur MoveIt! pour lancer la suppression,
    * Le résultat appraraîtra dans le cadre Results.
    * Clique sur Exit pour fermer le programme.
    * Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
    * Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.

    3) Si tu n'as plus de problèmes, je te donne les derniers conseils.

    FillPCA
    2
    1. le halam
       
      Re,

      --Je n'arrive pas nettoyer ma quarantaine norton il reste un fichier .EXE impossible à supprimer.
      --Je n'ai pas d'informations trés importantes sur cet ordinateurs donc je ne pense pas risquer grand chose appart si tu insiste.


      Rapport OTMOVEIT:


      C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE moved successfully.

      Created on 06-23-2007 20:39:44




      ------> Non je n'ai plus aucun problème comme avant, mon bureau est de nouveau visible je peux accéder plus vites à mes données... tout est nikel j'espère juste que ça va tenir...
      prêt à recevoir tes conseils ^^...
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Re,

    * Lance OTmoveIT.
    * Clique sur CleanUp! (le programme va télécharger un fichier texte qui servira a nettoyer les programmes que l'on a téléchargés).
    NOTE : Normalement, ton firewall (parefeu) devrait te demander si OTmoveIT peut accéder à internet, Autorise le.
    * Une liste apparaît dans la partie gauche d'OTmoveIT.
    * Un message apparaît pour confirmer le nettoyage. Confirme.
    * Les fichiers infectés qui se trouvent dans les quarantaines seront supprimés aussi..

    Tu dois désactiver la restauration système. Pour cela, fais un clic droit sur « poste de travail ». Dans l’onglet « restauration du système », coche la case « désactiver la restauration système ». Clique sur appliquer>OK.
    Décoche cette case, clique sur aapliquer>OK et redémarre le PC.

    Si tu n'as plus de soucis, tu peux marquer le sujet comme "résolu".

    Comme je te le disais, surveille tes comptes bancaires.

    Bon surf.

    FillPCA
    2
    1. Le halam
       
      Oui tout fonctionne à merveille mais je ne cmprends pas pourquoi à chaque foi sque j'allume mon PC à l'arrivée sur mon bureau et bien "L'assistant d'ajout de matériel s'ouvre plein de fois ^o)" ça ralenti l'ouverture de mon système c'est lourd !!! :s

      et une dernière chose que me coneil tu pour protéger mon PC ? Antivirus/antispyware... tout ces trucs, juste ça et je ne t'embetterait plus !!!



      Encore merci pour le temps que tu m'as accordé et pour ta patience et ta manière d'expliquer aux gens clairement ...

      Tu m'as sauvé la vie lol ;)
      0
  7. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Bonjour,
    Pour la détection de nouveau matériel, regarde dans le panneau de config si des périphériques sont mal installés. C'est anormal en effet.

    Sauf erreur de ma part, tu ne semble pas avoir de firewall. Il t'en faut un (Outpost, Zone alarm et Kerio ont des versions gratuites).

    Sinon, la meilleure protection se situe au niveau de la prudence dans le surf (Keygens et cracks, P2P sont à proscrire).

    Bon surf !

    FillPCA
    2
    1. Le halam
       
      Bonjour,

      Le firewall windows ne suffit alors? mais je ne comprends pas, j'ai SYMANTEC CORPORATE EDITION comme antivirus et je n'ai jamais trouvé comment activer le firewall. et je n'arrive pas à supprimer cet antivirus pour en mettre un autre car un message d'erreur s'affiche stoppant la désinstallation. bref je ne capte pas (:/)

      et les firewall que tu m'as dit de prendre sont valable maximum 15 jours alors bon ...( :s)


      Merci quand même!!
      0
  8. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Ouvre ton propre sujet.
    2
  9. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Salut,

    Ca ne parait pas prudent du tout de laisser ces infos. Supprime ton adresse E-mail et ton mot de passe du forum et change cle mot de passe au plus vite.

    FillPCA
    2
  10. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Salut,

    Pas la peine d'être grossier. Je ne comprends rien à ce que tu dis. En plus, tu remontes un sujet ancien. Crée ton propre sujet si tu es ennuyé.

    FillPCA
    2
  11. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Bonjour,

    1) * Télécharger Remadvertisemen (d'Attribune)et l'enregistrer sur le bureau : http://www.atribune.org/ccount/click.php?id=11
    * Double-cliquer sur remadvertisemen.exe.
    * Quand le programme démarre, cliquer sur "start removal" et attendre que "done removal. Please rebbot your computer now" soit indiqué.
    * Une fois que ceci est indiqué, redémarrer le PC.

    2) # Télécharge Vundofix (par Atribune) sur ton Bureau : http://www.atribune.org/ccount/click.php?id=4
    # Double-clique VundoFix.exe afin de le lancer.
    # Clique sur le bouton Scan for Vundo.
    # Lorsque le scan est complété, clique sur le bouton Remove Vundo (uniquement si des fichiers infectieux sont trouvés).
    # Une invite te demandera si tu veux supprimer les fichiers, clique YES.
    # Après avoir cliqué "Yes", le Bureau disparaîtra un moment lors de la suppression des fichiers.
    # Tu verras une invite qui t'annonce que ton PC va redémarrer; clique OK.
    # Copie/colle le contenu du rapport situé dans C:\vundofix.txt ainsi qu'un nouveau rapport HijackThis! dans ta prochaine réponse.

    FillPCA
    1
    1. Torrente
       
      Merci pour votre aide.

      Avec vundofix je ne trouve pas le fichier texte où figure le rapport il est introuvable donc j'ai copié collé ces infos ainsi que mon nouveau rapport HIJACKTHIS:


      VUNDOFIX BACKUPS:

      ehhkj.ini.bad
      hjjlm.ini.bad
      jkhhe.dll.bad
      kjjlm.bak1.bad
      kjjlm.bak2.bad
      kjjlm.ini.bad
      mljjh.dll.bad
      mljjk.dll.bad
      pqstv.bak1.bad
      pqstv.ini.bad
      vtsqp.dll.bad
      vturq.dll.bad


      NOUVEAU RAPPORT HIJACKTHIS:

      Logfile of HijackThis v1.99.1
      Scan saved at 21:29:28, on 22/06/2007
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v7.00 (7.00.6000.16441)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\SYSTEM32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\SYSTEM32\Ati2evxx.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
      C:\Program Files\Symantec AntiVirus\DefWatch.exe
      C:\WINDOWS\system32\gearsec.exe
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\oodag.exe
      C:\Program Files\Symantec AntiVirus\Rtvscan.exe
      C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\WINDOWS\SYSTEM32\taskmgr.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\system32\NOTEPAD.EXE
      C:\WINDOWS\system32\NOTEPAD.EXE
      C:\Program Files\WinRAR\WinRAR.exe
      C:\DOCUME~1\THOMAS~1\LOCALS~1\Temp\Rar$EX00.719\HijackThis.exe

      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      R3 - URLSearchHook: (no name) - - (no file)
      O3 - Toolbar: My Global Search Bar - {37B85A29-692B-4205-9CAD-2626E4993404} - C:\Program Files\MyGlobalSearch\bar\1.bin\MGSBAR.DLL
      O3 - Toolbar: FlashGet - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\Program Files\FlashGet\fgiebar.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
      O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~1\MEGAUP~1.DLL
      O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
      O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
      O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
      O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
      O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
      O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
      O4 - HKLM\..\Run: [fafkbqpc.exe] C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe
      O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
      O4 - HKLM\..\Run: [avast!] "C:\Program Files\Alwil Software\Avast4\ashDisp.exe"
      O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe
      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
      O8 - Extra context menu item: &Search - http://kx.bar.need2find.com/KX/menusearch.html?p=KX
      O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
      O8 - Extra context menu item: &Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
      O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
      O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
      O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
      O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
      O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
      O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
      O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O11 - Options group: [INTERNATIONAL] International*
      O14 - IERESET.INF: START_PAGE_URL=https://www.acer.com/worldwide/selection.html
      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - https://onedrive.live.com/
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
      O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
      O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
      O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://di.imgag.com/imgag/cp/install/Crusher.cab
      O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
      O17 - HKLM\System\CCS\Services\Tcpip\..\{601EC332-33D6-4B07-BFCF-B72B5829009A}: NameServer = 85.68.0.8,85.68.0.7
      O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
      O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
      O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
      O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: Capture Device Service - InterVideo Inc. - C:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe
      O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
      O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
      O23 - Service: gearsec - GEAR Software - C:\WINDOWS\system32\gearsec.exe
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
      O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe
      O23 - Service: Pinnacle Systems Media Service (PinnacleSys.MediaServer) - Pinnacle Systems - C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
      O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
      O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
      O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe
      O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
      O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
      O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
      O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe


      Merci beaucoup pour votre aide ... :)
      0
  12. le halam
     
    Excuse moi je suis nouveau sur ce forum donc j'ai vue Nom j'ai mis mon nom de famille. ui en effet mon PC est bien infecter et ne marche vraiment pas bien. au moment où je te parle mon bureau est invisible, pour accéder à internet je suis obligé de fair ctrl+alt+suppr nouvelle tâche .... pareil pour l'accés à mes fichiers... et cela dure depuis quelques jours et je veux à tout prix éviter le formatage.(si possible biensur).j'ai tout éssayé et rien ne va malheureusement donc voilà j'espere que tu pourra m'aider davantage et c'est trés gentil de ta part...

    J'ai exécuté tes ordres et voici le rapport :

    Rapport lopxpMH2 version 2.0 fait à 22:08:12,03 le 22/06/2007
    C:\Documents and Settings\thomas torrente\Bureau

    ******************************************
    ## Répertoires Application Data

    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Documents and Settings\Default User\Application Data

    22/03/2005 14:15 <REP> .
    22/03/2005 14:15 <REP> ..
    10/08/2005 16:21 <REP> Identities
    22/03/2005 14:15 <REP> Microsoft
    10/08/2005 16:21 <REP> Sun
    10/08/2005 16:21 <REP> Symantec
    22/03/2005 14:15 62 desktop.ini
    1 fichier(s) 62 octets
    6 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data

    22/03/2005 14:15 <REP> .
    22/03/2005 14:15 <REP> ..
    10/08/2005 16:21 <REP> {7148F0A6-6813-11D6-A77B-00B0D0142050}
    22/03/2005 14:21 <REP> Microsoft
    17/04/2007 03:01 <REP> Microsoft Help
    10/08/2005 16:21 1 993 876 IconCache.db
    1 fichier(s) 1 993 876 octets
    5 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Documents and Settings\All Users\Application Data

    22/03/2005 14:15 <REP> .
    22/03/2005 14:15 <REP> ..
    18/05/2007 21:39 <REP> {F9228DAD-21AA-4BC3-8B63-E19AA9EEA5F8}
    22/03/2005 14:21 <REP> Adobe
    23/10/2005 23:34 <REP> Adobe Systems
    13/09/2005 13:45 <REP> Ahead
    11/09/2005 12:57 <REP> Apple Computer
    08/05/2006 14:05 <REP> AUDIO IDOL MORE SIZE
    18/05/2007 21:39 <REP> Blueberry
    22/03/2005 14:31 <REP> CyberLink
    28/05/2007 20:03 <REP> DVD Shrink
    15/04/2007 11:32 <REP> Google
    09/01/2007 19:11 <REP> InstallShield
    25/05/2007 11:12 <REP> InterVideo
    11/08/2005 13:47 <REP> Messenger Plus!
    22/03/2005 14:15 <REP> Microsoft
    18/04/2007 12:33 <REP> Microsoft Corporation
    15/04/2007 19:34 <REP> Microsoft Help
    10/08/2005 20:06 <REP> Ooze Ace Surf Drive
    22/10/2005 00:47 <REP> Pinnacle
    08/01/2007 23:30 <REP> Pinnacle Studio
    11/09/2005 12:57 <REP> QuickTime
    30/04/2007 00:02 <REP> SlySoft
    14/05/2007 02:19 <REP> SmartSound Software Inc
    05/12/2005 18:32 <REP> Sony
    22/03/2005 14:28 <REP> Symantec
    19/06/2007 00:57 <REP> TEMP
    05/03/2006 21:32 <REP> TuneUp Software
    25/05/2007 11:11 <REP> Ulead Systems
    19/11/2005 22:01 <REP> Windows Genuine Advantage
    10/12/2006 20:29 <REP> Windows Live Toolbar
    30/04/2007 00:02 40 .zreglib
    19/06/2007 12:00 24 __FileUploader.log
    22/03/2005 14:15 86 desktop.ini
    20/06/2007 11:26 57 344 fafkbqpc.exe
    4 fichier(s) 57 494 octets
    31 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Documents and Settings\NetworkService\Application Data

    22/03/2005 14:25 <REP> .
    22/03/2005 14:25 <REP> ..
    22/03/2005 14:25 <REP> Microsoft
    0 fichier(s) 0 octets
    3 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data

    22/03/2005 14:25 <REP> .
    22/03/2005 14:25 <REP> ..
    22/03/2005 14:25 <REP> Microsoft
    0 fichier(s) 0 octets
    3 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Documents and Settings\LocalService\Application Data

    22/03/2005 14:25 <REP> .
    22/03/2005 14:25 <REP> ..
    22/03/2005 14:25 <REP> Microsoft
    0 fichier(s) 0 octets
    3 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data

    22/03/2005 14:25 <REP> .
    22/03/2005 14:25 <REP> ..
    22/03/2005 14:25 <REP> Microsoft
    0 fichier(s) 0 octets
    3 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Documents and Settings\thomas torrente\Application Data

    10/08/2005 16:21 <REP> .
    10/08/2005 16:21 <REP> ..
    05/09/2005 03:29 <REP> Adobe
    05/09/2005 12:11 <REP> AdobeUM
    13/09/2005 13:48 <REP> Ahead
    11/09/2005 12:57 <REP> Apple Computer
    25/03/2007 22:35 <REP> Azureus
    18/05/2007 21:39 <REP> Blueberry
    17/10/2005 20:35 <REP> Checkflow
    11/08/2005 03:10 <REP> CyberLink
    26/10/2006 15:18 <REP> Desperate Housewives
    31/12/2005 22:50 <REP> dvdcss
    19/06/2007 01:02 <REP> EAST Technologies
    10/08/2005 20:06 <REP> Else plus
    07/01/2007 15:03 <REP> FarStone
    28/09/2005 13:04 <REP> Gearbox Software
    04/05/2007 00:36 <REP> GeoVid
    17/08/2006 15:43 <REP> Google
    18/08/2005 12:21 <REP> Help
    10/08/2005 16:21 <REP> Identities
    09/01/2007 20:04 <REP> InstallShield
    20/03/2006 18:51 <REP> iShell
    07/05/2006 22:41 <REP> Lavasoft
    25/11/2006 15:16 <REP> Leadertech
    14/08/2005 19:45 <REP> Macromedia
    10/08/2005 23:03 <REP> Media Player Classic
    15/04/2007 16:00 <REP> MegauploadToolbar
    10/08/2005 16:21 <REP> Microsoft
    18/10/2005 21:58 <REP> Microsoft Web Folders
    03/06/2007 12:37 <REP> MixMeister Technology
    08/04/2007 10:45 <REP> Mozilla
    18/08/2005 18:46 <REP> NetMedia Providers
    06/06/2007 23:57 <REP> PC Tools
    26/11/2005 19:02 <REP> Pinnacle Systems
    19/06/2007 16:12 <REP> proDAD
    18/08/2005 18:46 <REP> Publish Providers
    20/06/2007 15:48 <REP> Sammsoft
    07/05/2007 12:30 <REP> Screenshot Sender
    14/09/2005 20:23 <REP> SecuROM
    08/01/2006 22:33 <REP> Shareaza
    30/04/2007 00:08 <REP> SlySoft
    16/04/2007 21:01 <REP> Smart PC Solutions
    18/08/2005 18:46 <REP> Sonic Foundry
    30/08/2005 10:33 <REP> Sony
    23/03/2007 20:59 <REP> STOPzilla!
    10/08/2005 16:21 <REP> Sun
    10/08/2005 16:21 <REP> Symantec
    28/12/2006 18:36 <REP> Teleca
    07/01/2007 18:25 <REP> Torrent101
    05/03/2006 21:39 <REP> TuneUp Software
    25/05/2007 11:13 <REP> Ulead Systems
    15/08/2006 03:01 <REP> uTorrent
    22/07/2006 21:44 <REP> Visicom Media
    19/11/2005 23:44 <REP> vlc
    20/06/2007 11:45 <REP> ??crosoft.NET
    20/06/2006 11:01 47 104 CDRusersDB.v12
    10/08/2005 16:21 86 desktop.ini
    2 fichier(s) 47 190 octets
    55 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Documents and Settings\thomas torrente\Local Settings\Application Data

    10/08/2005 16:21 <REP> .
    10/08/2005 16:21 <REP> ..
    10/08/2005 16:21 <REP> {7148F0A6-6813-11D6-A77B-00B0D0142050}
    15/04/2007 14:45 <REP> {C0DAB3BD-FE6D-43C8-BADB-6E6D26647526}
    05/09/2005 12:11 <REP> Adobe
    15/09/2005 15:56 <REP> Ahead
    11/09/2005 12:57 <REP> Apple Computer
    17/10/2005 20:35 <REP> ApplicationHistory
    04/09/2006 14:46 <REP> Edovia
    05/08/2006 13:40 <REP> Google
    18/08/2005 12:21 <REP> Help
    03/09/2005 22:48 <REP> Identities
    26/11/2005 18:51 <REP> IsolatedStorage
    10/08/2005 16:21 <REP> Microsoft
    15/04/2007 19:34 <REP> Microsoft Help
    18/04/2007 12:29 <REP> MigWiz
    08/04/2007 10:45 <REP> Mozilla
    15/04/2007 14:46 <REP> Pando
    18/05/2007 21:38 <REP> Seven Zip
    12/08/2005 15:46 <REP> Shareaza
    30/12/2006 20:53 <REP> Sony
    19/01/2007 17:28 <REP> Sony Ericsson
    16/04/2007 19:31 <REP> Stardock
    18/10/2005 21:08 <REP> Symantec
    10/08/2005 20:39 <REP> WMTools Downloaded Files
    19/06/2007 00:54 <REP> Yahoo
    08/05/2007 12:08 2 731 ASUS.xrm-ms
    10/08/2005 21:01 96 768 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    17/10/2005 20:35 138 fusioncache.dat
    11/08/2005 02:18 8 224 GDIPFONTCACHEV1.DAT
    19/05/2007 14:14 17 060 058 IconCache.db
    08/05/2007 12:08 240 128 royal86.sys
    6 fichier(s) 17 408 047 octets
    26 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data

    22/03/2005 14:24 <REP> .
    22/03/2005 14:24 <REP> ..
    10/08/2005 16:21 <REP> Identities
    22/03/2005 14:24 <REP> Microsoft
    10/08/2005 16:21 <REP> Sun
    10/08/2005 16:21 <REP> Symantec
    22/03/2005 14:24 62 desktop.ini
    1 fichier(s) 62 octets
    6 Rép(s) 50 233 606 144 octets libres
    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data

    22/03/2005 14:24 <REP> .
    22/03/2005 14:24 <REP> ..
    10/08/2005 16:21 <REP> {7148F0A6-6813-11D6-A77B-00B0D0142050}
    22/03/2005 14:24 <REP> Microsoft
    10/08/2005 16:21 1 993 876 IconCache.db
    1 fichier(s) 1 993 876 octets
    4 Rép(s) 50 233 606 144 octets libres

    ******************************************
    Recherche des taches planifiées dans C:\WINDOWS\tasks

    C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
    $€ˆ55šA€ 1<kF ê <
    : C : \ P r o g r a m F i l e s \ A p p l e S o f t w a r e U p d a t e \ S o f t w a r e U p d a t e . e x e - T a s k S Y S T E M 0 ×

    C:\WINDOWS\Tasks\Vérifier
    Vérifier inexploitable

    C:\WINDOWS\Tasks\AD992BE591A6A18D.job
    s "€!× : c : \ d o c u m e ~ 1 \ t h o m a s ~ 1 \ a p p l i c ~ 1 \ e l s e p l ~ 1 \ T h u n k d e a f g r e a t . e x e t h o m a s t o r r e n t e 0 Ë
    <

    C:\WINDOWS\Tasks\Maintenance
    Maintenance inexploitable

    ******************************************
    ## Répertoires de C:\Program Files

    Le volume dans le lecteur C s'appelle ACER
    Le numéro de série du volume est 320D-180E

    Répertoire de C:\Program Files

    22/03/2005 14:15 <REP> .
    22/03/2005 14:15 <REP> ..
    22/03/2005 14:21 <REP> Adobe
    19/06/2007 16:11 <REP> AdorageI-GfxDatas
    19/06/2007 16:11 <REP> AdorageI-SAL
    12/10/2005 20:20 <REP> Adverts
    15/09/2005 13:39 <REP> Ahead
    01/04/2007 13:29 <REP> Alex Feinman
    16/04/2007 19:29 <REP> AlienGUIse
    20/06/2007 16:38 <REP> Alwil Software
    22/09/2006 17:18 <REP> Apple Software Update
    30/03/2007 13:42 <REP> ASIO4ALL v2
    12/05/2007 12:08 <REP> AV Vcs 4.0 DIAMOND
    14/04/2007 12:10 <REP> Avex
    14/02/2006 23:13 <REP> AVSMedia
    25/03/2007 22:35 <REP> Azureus
    05/11/2006 11:31 <REP> BearShare
    03/08/2006 01:12 <REP> BitComet
    29/04/2007 16:19 <REP> BitLord
    18/05/2007 21:39 <REP> Blueberry Software
    13/05/2006 15:28 <REP> CA
    01/05/2007 21:53 <REP> CAPCOM
    17/10/2005 20:35 <REP> CheckFlow
    19/06/2007 00:57 <REP> ClubDJ Pro
    04/10/2005 19:05 <REP> Common Files
    22/03/2005 14:19 <REP> ComPlus Applications
    18/10/2004 19:22 <REP> counter strike source
    22/03/2005 14:31 <REP> CyberLink
    29/04/2007 23:44 <REP> DAEMON Tools
    09/09/2005 11:54 <REP> Dafhsp
    30/08/2006 20:43 <REP> DivX
    28/10/2005 16:24 4 096 dmfafr39.Dlk
    23/10/2005 21:38 8 192 dmfafr39.Ock
    04/10/2005 16:31 <REP> Doom 3
    16/04/2007 20:11 <REP> Driver-Soft
    19/06/2007 15:39 <REP> D-Tools
    28/05/2007 20:03 <REP> DVD Shrink
    29/03/2006 14:25 <REP> EA GAMES
    19/06/2007 01:00 <REP> East-Tec Eraser 2007
    03/10/2006 19:59 <REP> eChanblard
    04/09/2006 14:46 <REP> Edovia AntiSpam
    13/08/2006 17:52 <REP> Eidos
    07/01/2007 13:49 <REP> Elaborate Bytes
    17/05/2007 16:19 <REP> Else plus
    01/10/2005 16:07 <REP> Empire Interactive
    10/08/2005 21:15 <REP> eMule
    31/10/2006 14:05 <REP> EPSON
    12/10/2005 17:43 <REP> e-zshopper
    16/04/2007 19:52 <REP> FaceOnBody
    22/03/2005 14:15 <REP> Fichiers communs
    23/07/2006 16:00 <REP> FileZilla
    13/08/2006 15:49 <REP> flashFXP
    15/04/2007 11:32 <REP> FlashGet
    18/05/2007 23:51 <REP> FLV Player
    30/04/2007 03:24 <REP> Folder Password Protect
    05/11/2005 19:12 <REP> Fx Audio Conveter
    13/08/2006 17:50 <REP> GameShadow
    04/05/2007 00:34 <REP> GeoVid
    05/08/2006 13:40 <REP> Google
    17/04/2007 16:04 <REP> Hide IP Platinum
    03/08/2006 01:42 <REP> ICOO Loader
    19/11/2005 20:18 <REP> Illustrate
    29/10/2006 15:48 <REP> Image-Line
    25/03/2007 15:34 <REP> ImTOO
    22/03/2005 14:26 <REP> Intel
    05/05/2007 13:01 <REP> Internet Cyclone
    22/03/2005 14:19 <REP> Internet Explorer
    10/06/2007 01:24 <REP> iolo
    09/01/2007 19:11 <REP> Jasc Software Inc
    22/03/2005 14:27 <REP> Java
    01/10/2005 16:30 <REP> JVTorrent
    14/08/2005 20:22 <REP> K-Lite Codec Pack
    29/04/2007 23:52 <REP> KONAMI
    05/11/2005 19:16 <REP> Konvertor
    08/04/2007 02:47 <REP> Lavasoft
    08/04/2007 02:48 <REP> Lavasoft RegHance
    30/12/2006 19:54 <REP> LimeWire
    08/05/2007 11:45 <REP> MagicISO
    08/05/2007 12:18 <REP> MAXON
    16/04/2007 18:08 <REP> MegaSpoof
    15/04/2007 16:00 <REP> MegauploadToolbar
    22/03/2005 14:18 <REP> Messenger
    07/05/2007 12:25 <REP> Messenger Plus! Live
    10/08/2005 20:06 <REP> MessengerPlus! 3
    10/05/2007 03:04 <REP> Microsoft CAPICOM 2.1.0.2
    22/03/2005 14:22 <REP> microsoft frontpage
    18/10/2005 21:58 <REP> Microsoft Office
    26/11/2005 18:33 <REP> Microsoft SQL Server
    15/04/2007 19:40 <REP> Microsoft Visual Studio
    18/04/2007 12:32 <REP> Microsoft Windows Vista Upgrade Advisor
    15/04/2007 19:41 <REP> Microsoft Works
    15/04/2007 19:39 <REP> Microsoft.NET
    05/09/2005 03:11 <REP> MilkShape 3D 1.7.3
    18/10/2004 19:45 20 480 MISE EN SERVICE CS SOURCE.doc
    29/10/2006 15:25 <REP> MixMeister BPM Analyzer
    03/06/2007 12:37 <REP> MixMeister Pro 6
    19/11/2005 23:59 <REP> Morgan
    22/03/2005 14:19 <REP> Movie Maker
    08/04/2007 10:45 <REP> Mozilla Firefox
    15/04/2007 19:40 <REP> MSBuild
    15/04/2007 19:31 <REP> MSECache
    22/03/2005 14:18 <REP> MSN
    22/03/2005 14:18 <REP> MSN Gaming Zone
    10/08/2005 19:57 <REP> MSN Messenger
    15/04/2007 16:43 <REP> MsnChecker
    04/10/2005 19:04 <REP> MSNShell
    10/08/2005 23:56 <REP> MSXML 4.0
    04/08/2006 12:02 <REP> MyGlobalSearch
    12/08/2005 15:57 <REP> Need2Find
    16/04/2007 17:43 <REP> Nero
    22/03/2005 14:19 <REP> NetMeeting
    22/03/2005 14:33 <REP> NewTech Infosystems
    22/03/2005 14:29 <REP> Norton AntiVirus
    22/03/2005 14:19 <REP> Online Services
    17/04/2007 22:50 <REP> OO Software
    22/03/2005 14:19 <REP> Outlook Express
    19/11/2005 20:14 <REP> Oxilog
    09/01/2007 19:10 <REP> Panicware
    17/04/2007 22:55 <REP> PC Accelerator Professional
    08/10/2005 17:34 <REP> Philips
    01/08/2006 01:44 <REP> PhotoFiltre Studio
    17/04/2007 16:13 <REP> PhotoZoom Professional
    18/08/2005 19:00 <REP> Pinnacle
    12/10/2005 17:49 <REP> Plus!
    14/04/2007 12:11 <REP> PQDVD
    19/06/2007 16:15 <REP> proDAD
    11/08/2005 00:46 <REP> Project64 v1.5
    23/10/2005 23:46 <REP> PROMT5
    12/05/2006 17:42 <REP> QuickTime
    18/10/2004 20:12 36 747 racourci.JPG
    01/04/2007 13:23 <REP> RAR Password Cracker
    22/03/2005 14:26 <REP> Realtek
    12/08/2005 13:31 <REP> Red Storm Entertainment
    10/06/2007 01:32 <REP> Registry Mechanic
    10/06/2007 01:16 <REP> RM-X® Audio Extractor
    22/03/2005 14:20 <REP> Services en ligne
    17/08/2005 15:14 <REP> Sierra On-Line
    30/04/2007 00:02 <REP> SlySoft
    16/04/2007 21:03 <REP> Smart PC Solutions
    14/05/2007 02:19 <REP> SmartSound Software
    20/11/2005 18:34 <REP> SmartSound Software Inc
    25/04/2007 01:38 <REP> Softwin
    18/08/2005 15:59 <REP> Sonic Foundry Setup
    05/12/2005 18:32 <REP> Sony
    18/08/2005 19:53 <REP> Sony Setup
    26/04/2007 21:51 <REP> SphereXP
    06/06/2007 23:57 <REP> Spyware Doctor
    09/01/2007 19:12 <REP> Steinberg
    22/03/2005 14:28 <REP> Symantec
    14/04/2007 00:45 <REP> Symantec AntiVirus
    07/05/2006 23:24 <REP> TGTSoft
    12/10/2005 17:43 <REP> themexp
    07/01/2007 18:25 <REP> Torrent101
    21/04/2007 00:48 <REP> Total Video Converter
    15/04/2007 17:40 <REP> TuneUp Utilities 2007
    30/04/2007 03:21 <REP> TurboConnect
    28/09/2005 12:55 <REP> Ubisoft
    25/05/2007 10:37 <REP> Ulead Systems
    24/09/2005 19:37 <REP> UselessCreations
    11/08/2005 12:39 <REP> Valve
    14/08/2005 00:05 <REP> VDCodecPack1.3
    19/11/2005 23:42 <REP> VideoLAN
    11/08/2006 17:38 <REP> VirtualDJ
    09/02/2006 13:42 <REP> Visicom Media
    28/10/2005 16:24 4 096 vmfafr.Dlk
    23/10/2005 21:38 8 192 vmfafr.Ock
    30/08/2005 10:36 <REP> Vstplugins
    19/11/2005 16:20 <REP> Winamp
    07/05/2007 12:22 <REP> Windows Live Favorites
    10/12/2006 20:24 <REP> Windows Live Toolbar
    25/05/2007 10:39 <REP> Windows Media Components
    03/01/2007 11:38 <REP> Windows Media Connect 2
    22/03/2005 14:19 <REP> Windows Media Player
    22/03/2005 14:18 <REP> Windows NT
    18/03/2006 12:05 <REP> WinISO
    15/04/2007 16:43 <REP> WinPcap
    28/01/2006 18:17 <REP> WinRAR
    29/04/2007 16:14 <REP> WinSessionPasswordCasseur 1.0
    14/04/2007 12:10 <REP> WinXMedia
    05/08/2006 13:39 <REP> WinZip
    22/03/2005 14:22 <REP> xerox
    04/09/2005 11:47 <REP> XRadiance
    19/06/2007 00:54 <REP> Yahoo!
    6 fichier(s) 81 803 octets
    177 Rép(s) 50 233 606 144 octets libres

    ******************************************
    ## Popups autorisées

    * Internet Explorer

    ! REG.EXE VERSION 3.0

    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow
    cache.yacast.fr/ REG_BINARY
    webmessenger.msn.com/ REG_BINARY
    entertainment.msn.com/radio REG_BINARY
    my.msn.com/video REG_BINARY
    betavideo.my.msn.com REG_BINARY
    my.msn.com REG_BINARY
    launchcast.launch.yahoo.com/radio REG_BINARY
    stream1.adsertion.com/radio REG_BINARY
    www.wlsam.com REG_BINARY
    www.streamaudio.com REG_BINARY
    windowsmedia.com REG_BINARY
    www.89.com/ REG_BINARY
    www.fuckcams4free.com REG_BINARY
    www.bestromsites.com REG_BINARY
    6olncnn7p4.rapidsafe.de REG_BINARY
    www.fullxxxmovies.net REG_BINARY
    www.filefront.com REG_BINARY
    www.wawa-mania.fr REG_BINARY
    *.rapidshare.com REG_BINARY
    netbios-wait.com REG_SZ
    www.netbios-wait.com REG_SZ
    www.megarotic.com REG_BINARY

    * Mozilla Firefox (1 autorisé 2 interdit)

    ---------- C:\DOCUMENTS AND SETTINGS\THOMAS TORRENTE\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\XVO5CMIP.DEFAULT\HOSTPERM.1

    ******************************************
    ## Registre

    * [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
    Search Bar REG_SZ http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

    * [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    fafkbqpc.exe REG_SZ C:\Documents and Settings\All Users\Application Data\fafkbqpc.exe

    * [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    book ante REG_SZ C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\book ante]
    command REG_SZ C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe

    ******************************************
    ## Zones de sécurité

    * HKCU Domains (4)

    * P3P History (5)

    ******************************************
    ## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"

    *************** Fin du rapport ****************

    Merci de m'aider :)
    1
  13. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Bonjour,

    Tu as oublié le rapport AVGantispyware. Peux-tu l'éditer ?

    1)
    * Double-clique sur OTMoveIt.exe pour lancer le programme,
    * Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste List Of Files/Folders to be moved" :

    C:\Documents and Settings\thomas torrente\Application Data\Else plus
    C:\Program Files\common files\?icrosoft.NET


    * Clique sur MoveIt! pour lancer la suppression,
    * Le résultat appraraîtra dans le cadre Results.
    * Clique sur Exit pour fermer le programme.
    * Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
    * Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.

    2) Ouvre Hijackthis>"Do a scan only" et coche ceci :
    O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\THOMAS~1\APPLIC~1\ELSEPL~1\AXISNEW.exe

    Clique sur fix/réparer.

    4) * Télécharge combofix.exe (par sUBs) sur ton Bureau : http://download.bleepingcomputer.com/sUBs/ComboFix.exe
    * Double clique combofix.exe et suis les invites.
    * Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.

    5) * Fais un scan en ligne en cliquant ici : http://assiste.com.free.fr/...
    * Choisis Kaspersky.
    * Tu dois réaliser le scan en utilisant Internet explorer. Une information apparait en haut, près de la barre d'état. Tu dois accepter et installer l'activeX proposé. La mise à jour de l'antivirus se lance.
    * Réalise un scan complet du système (Poste de travail).
    * Sauvegarde le rapport en mode texte à l'issue du scan.

    5) Edite le rapport AVGantispyware, Combofix, OTMoveIt et Kaspersky.

    FillPCA
    1
    1. le halam
       
      Bonjour, et dsl pour le retard mais le site ne marchait pas!!!(:/)


      >>>>J'ai signalé dans ma précédente réponse que j'avais complètement oublié le rapport AVG. et quand je vais dans rapport et bien il me signale que aucun rapport n'est présent. pourtant l'analyse a durée prêt d'1h20, aucun échec ne m'as été signalé pour la quarantaine...

      ---> Dit moi ce que je peux faire pour ce rapport parce que si je refait mon analyse les erreurs ne seront plus présentent vue que le progr me dit "tout est normal" ...



      1)Rapport OTMOVEIT:


      C:\Documents and Settings\thomas torrente\Application Data\Else plus moved successfully.
      File/Folder C:\Program Files\common files\?icrosoft.NET not found.

      Created on 06/23/2007 12:24:37


      2)Rapport Combofix:"Aucun rapport C:\COMBOFIX.TXT ne s'est ouvert comme me le disait le progr donc je suis aller dans C: et j'ai copié/collé le rapport QUARANTAINE"

      "Au redémarrage, écran bleu est apparu me disant de redémarrer donc j'ai éteint d'urgence et rallumé tout s'est bien passé...":

      Rapport COMBOFIX:

      [code]
      2003-05-21 23:50 24576 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\msxml3a.dll.vir
      2004-01-15 07:01 53299 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\pthreadVC.dll.vir
      2004-05-14 11:30 61440 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\wanpacket.dll.vir
      2004-05-14 11:30 81920 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\packet.dll.vir
      2004-05-14 11:37 32896 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\drivers\npf.sys.vir
      2004-05-14 13:02 225280 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\wpcap.dll.vir
      2006-05-19 00:00 902 --a------ C:\Qoobox\Quarantine\C\WINDOWS\hosts.vir
      2006-09-08 17:20 926241 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\model.dat.vir
      2007-05-10 12:46 249856 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\rlxf.dll.vir
      2007-06-20 11:27 0 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\6_exception.nls.vir
      2007-06-20 11:27 40183 --a------ C:\Qoobox\Quarantine\C\Program Files\Fichiers communs\Yazzle1162OinUninstaller.exe.vir
      2007-06-20 11:27 58098 --a------ C:\Qoobox\Quarantine\C\Program Files\Fichiers communs\Microsoft Shared\Web Folders\ibm00002.dll.vir
      2007-06-20 11:27 73605 --a------ C:\Qoobox\Quarantine\C\Program Files\Fichiers communs\Microsoft Shared\Web Folders\ibm00001.dll.vir
      2007-06-20 11:48 77 --a------ C:\Qoobox\Quarantine\C\WINDOWS\wr.txt.vir
      2007-06-22 23:02 266336 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\geedd.dll.vir
      2007-06-22 23:03 6369 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\ddeeg.bak1.vir
      2007-06-23 11:50 6409 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\ddeeg.bak2.vir
      2007-06-23 11:50 6749 --a------ C:\Qoobox\Quarantine\C\WINDOWS\system32\ddeeg.ini.vir
      2007-06-23 12:37 1308 --a------ C:\Qoobox\Quarantine\Registry_backups\LEGACY_NM.reg.cf
      2007-06-23 12:37 1326 --a------ C:\Qoobox\Quarantine\Registry_backups\LEGACY_NPF.reg.cf
      2007-06-23 12:37 14100 --a------ C:\Qoobox\Quarantine\Registry_backups\services_nm.reg.cf
      2007-06-23 12:37 212 --a------ C:\Qoobox\Quarantine\Registry_backups\services_poof.reg.cf
      2007-06-23 12:37 2418 --a------ C:\Qoobox\Quarantine\Registry_backups\services_NPF.reg.cf
      2007-06-23 12:37 860 --a------ C:\Qoobox\Quarantine\Registry_backups\LEGACY_RUNTIME.reg.cf


      Structure du dossier pour le volume ACER
      Le num‚ro de s‚rie du volume est 320D-180E
      C:\QOOBOX
      \---Quarantine
      +---Registry_backups
      | LEGACY_NM.reg.cf
      | LEGACY_NPF.reg.cf
      | LEGACY_RUNTIME.reg.cf
      | services_nm.reg.cf
      | services_NPF.reg.cf
      | services_poof.reg.cf
      |
      \---C
      +---Program Files
      | \---Fichiers communs
      | | Yazzle1162OinUninstaller.exe.vir
      | |
      | \---Microsoft Shared
      | \---Web Folders
      | ibm00001.dll.vir
      | ibm00002.dll.vir
      |
      \---WINDOWS
      | hosts.vir
      | wr.txt.vir
      |
      \---system32
      | 6_exception.nls.vir
      | packet.dll.vir
      | pthreadVC.dll.vir
      | wanpacket.dll.vir
      | wpcap.dll.vir
      | rlxf.dll.vir
      | msxml3a.dll.vir
      | model.dat.vir
      | ddeeg.ini.vir
      | ddeeg.bak1.vir
      | ddeeg.bak2.vir
      | geedd.dll.vir
      |
      \---drivers
      npf.sys.vir

      [/code]


      3)Rapport KAPERSKY:


      -------------------------------------------------------------------------------
      KASPERSKY ONLINE SCANNER REPORT
      2007-06-23 16:11
      Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
      Kaspersky Online Scanner version: 5.0.83.0
      Kaspersky Anti-Virus database last update: 23/06/2007
      Kaspersky Anti-Virus database records: 329688
      -------------------------------------------------------------------------------

      Scan Settings:
      Scan using the following antivirus database: standard
      Scan Archives: true
      Scan Mail Bases: true

      Scan Target - My Computer:
      C:\
      D:\
      E:\
      F:\
      G:\
      H:\
      I:\
      J:\

      Scan Statistics:
      Total number of scanned objects: 187890
      Number of viruses found: 22
      Number of infected objects: 103 / 0
      Number of suspicious objects: 6
      Duration of the scan process: 02:51:17

      Infected Object Name / Virus Name / Last Action
      C:\WINDOWS\system32\config\system.LOG Object is locked skipped
      C:\WINDOWS\system32\config\software.LOG Object is locked skipped
      C:\WINDOWS\system32\config\default.LOG Object is locked skipped
      C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
      C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
      C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
      C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
      C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
      C:\WINDOWS\system32\config\OSession.evt Object is locked skipped
      C:\WINDOWS\system32\config\ODiag.evt Object is locked skipped
      C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
      C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
      C:\WINDOWS\system32\config\SECURITY Object is locked skipped
      C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
      C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
      C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
      C:\WINDOWS\system32\config\SAM Object is locked skipped
      C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
      C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
      C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
      C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
      C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
      C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
      C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
      C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
      C:\WINDOWS\system32\h323log.txt Object is locked skipped
      C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
      C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
      C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
      C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
      C:\WINDOWS\Temp\Perflib_Perfdata_7e4.dat Object is locked skipped
      C:\WINDOWS\Temp\Perflib_Perfdata_4c0.dat Object is locked skipped
      C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
      C:\WINDOWS\wiaservc.log Object is locked skipped
      C:\WINDOWS\wiadebug.log Object is locked skipped
      C:\WINDOWS\Sti_Trace.log Object is locked skipped
      C:\WINDOWS\WindowsUpdate.log Object is locked skipped
      C:\WINDOWS\SchedLgU.Txt Object is locked skipped
      C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
      C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
      C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0E940000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CF80000.VBN Infected: EICAR-Test-File skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0000.VBN Infected: Exploit.JS.ADODB.Stream.ac skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0001.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0002.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0003.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BBC0004.VBN Infected: Backdoor.Win32.Bifrose.aci skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F700000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C400000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\09040000.VBN Infected: HackTool.Win32.ProRat.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140000.VBN Infected: HackTool.Win32.ProRat.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140001.VBN Infected: HackTool.Win32.ProRat.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140002.VBN Infected: HackTool.Win32.ProRat.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B140003.VBN Infected: HackTool.Win32.ProRat.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B100000.VBN Infected: Backdoor.Win32.Prorat.19 skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BDC0000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B500001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B500002.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B4C0001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C840001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C840002.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C840004.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C800000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A900001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BC40000.VBN Suspicious: Packed.Win32.Morphine.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BC40001.VBN Suspicious: Packed.Win32.Morphine.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BC00001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C780000.VBN Suspicious: Packed.Win32.Morphine.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0C780001.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F380000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\07600002.VBN Suspicious: Packed.Win32.Morphine.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\07600004.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\09580000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\09300000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B200000.VBN Infected: Trojan-Spy.Win32.ProAgent.21 skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AC40000.VBN Infected: Trojan-Spy.Win32.ProAgent.21 skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AC00000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B280000.VBN Infected: Trojan.Win32.BHO.g skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A100000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A540000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AE40000.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0AE00001.VBN Infected: Backdoor.Win32.Agent.amb skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380000.VBN Infected: Backdoor.Win32.Agent.amb skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380001.VBN Infected: Backdoor.Win32.Delf.avq skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380002.VBN Infected: Backdoor.Win32.Delf.avq skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380003.VBN Infected: Backdoor.Win32.Delf.avq skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380004.VBN Infected: Backdoor.Win32.Delf.avq skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\01380005.VBN Infected: Backdoor.Win32.Agent.amb skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0B4C0002.VBN Infected: Backdoor.Win32.Prorat.19 skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA80000.VBN Infected: Trojan.Win32.BHO.o skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA80006.VBN Infected: Trojan.Win32.BHO.g skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA8000E.VBN Suspicious: Packed.Win32.Morphine.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA8000F.VBN Suspicious: Packed.Win32.Morphine.a skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0CA80010.VBN Infected: Trojan-Spy.Win32.VBStat.h skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0001.VBN Infected: Trojan-Clicker.Win32.Costrat.ba skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0002.VBN Infected: Rootkit.Win32.Agent.dp skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0003.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0004.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0005.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0006.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0007.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0008.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0009.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000A.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000B.VBN Infected: Rootkit.Win32.Agent.ey skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000C.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000D.VBN Infected: Trojan-Proxy.Win32.Dlena.ad skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000E.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C000F.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0010.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0011.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0012.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0013.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0014.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0015.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0016.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0F9C0017.VBN Infected: Trojan.Win32.Agent.ama skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\096C0000.VBN Infected: Trojan.Win32.Dialer.qn skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\096C0001.VBN Infected: Trojan.Win32.Dialer.qn skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0BB00000.VBN Infected: Trojan.Win32.Dialer.qn skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0E5C0000.VBN Infected: Trojan.Win32.Dialer.qn skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0FB80000.VBN Infected: Trojan-Downloader.Win32.Tiny.ha skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0FB80001.VBN Infected: Rootkit.Win32.Agent.dp skipped
      C:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\Quarantine\0A180000.VBN Infected: Trojan-Downloader.Win32.Tiny.ha skipped
      C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\AimMix.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\MetaFour.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\Documents and Settings\All Users\Application Data\AUDIO IDOL MORE SIZE\glue lite.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
      C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
      C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
      C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
      C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
      C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
      C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
      C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
      C:\Documents and Settings\thomas torrente\NTUSER.DAT Object is locked skipped
      C:\Documents and Settings\thomas torrente\ntuser.dat.LOG Object is locked skipped
      C:\Documents and Settings\thomas torrente\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
      C:\Documents and Settings\thomas torrente\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
      C:\Documents and Settings\thomas torrente\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
      C:\Documents and Settings\thomas torrente\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
      C:\Documents and Settings\thomas torrente\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
      C:\Documents and Settings\thomas torrente\Local Settings\Application Data\Microsoft\Media Player\CurrentDatabase_360.wmdb Object is locked skipped
      C:\Documents and Settings\thomas torrente\Cookies\index.dat Object is locked skipped
      C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
      C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
      C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
      C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped
      C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped
      C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
      C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\LOG\ERRORLOG Object is locked skipped
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\master.mdf Object is locked skipped
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\mastlog.ldf Object is locked skipped
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\model.mdf Object is locked skipped
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\modellog.ldf Object is locked skipped
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\tempdb.mdf Object is locked skipped
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\templog.ldf Object is locked skipped
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\PinnacleSys_GlobalContext.mdf Object is locked skipped
      C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Data\PinnacleSys_GlobalContext_log.LDF Object is locked skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP802\A0174132.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP802\A0174139.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP804\A0174275.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP804\A0174281.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP804\A0174282.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177112.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177118.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177119.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP815\A0177120.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP733\A0159758.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP733\A0159763.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP733\A0159945.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP863\A0186248.exe Infected: Trojan-Proxy.Win32.Agent.mx skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\A0200963.exe Infected: Trojan-Downloader.Win32.Agent.brk skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\A0201134.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\A0201135.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\System Volume Information\_restore{53F3D8E2-EF6F-4054-B8B0-9FB5F7C12ECC}\RP868\change.log Object is locked skipped
      C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\JoyPokeForkBlue.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\Thunkdeafgreat.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\AXISNEW.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\wkxdnvpj.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\dkxwltcu.exe Infected: Trojan.Win32.Obfuscated.en skipped
      C:\_OTMoveIt\MovedFiles\Documents and Settings\thomas torrente\Application Data\Else plus\wxeobbmr.exe Infected: Trojan.Win32.Obfuscated.en skipped

      Scan process completed.
      0
  14. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Re,

    Tu as changé de pseudo ? Ton PC est très infecté donc il y aura de nombreuses étapes pour traiter les différentes infections.

    Merci à Lazzzy

    * Télécharger lopxpMH : http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2.zip
    * Dézippe-le au moyen d'un clic droit et extrais-le sur le bureau.
    * Edite le rapport généré.

    FillPCA
    0
  15. FillPCA Messages postés 2264 Statut Contributeur sécurité 123
     
    Bonsoir,

    Je ne sais pas pourquoi tu remontes ce sujet vieux de 8 mois.

    FillPCA
    0
  16. chahinovic9
     
    j'ai telechargé virtual dj (avec tout : skins , effets..) et quand je vais dans config et plugins , je n'arrive pas a ajouter les effets conmen t je peut les ajoute ?
    0
  17. Simio Messages postés 1 Statut Membre
     
    Microsoft Visual C++ Runtime Library
    ---------------------------
    Runtime Error!

    Program: ...\Symantec Client Security\Symantec AntiVirus\Rtvscan.exe

    This application has requested the Runtime to terminate it in an unusual way.
    Please contact the application's support team for more information.

    Progammme installer dans l'ordi:

    O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - Unknown owner - C:\Program Files\Spyware Doctor\svcntaux.exe
    O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
    ..............................
    Le problème n'est pas là l'antivirus...
    Le problème est créer par le Spyware Doctor 5.1 de merde qui est installer sur l'ordinateur...
    Une des mises à jours du Spyware Doctor 5.1 entre en conflit avec le RTVSCAN.EXE de l'antivirus.
    Enlever la version 5.1 du Spyware et mettre la vouvelle 5.5 et voilà le problème est résolu... :o)
    0
  18. Faf_La_rage
     
    Salut all.

    ça n'explique toujours pas comment résoudre le problème du Runtime...

    Cordialement.

    Faf_La_Rage
    -1