Page internet intempestive

tondawa Messages postés 7 Statut Membre -  
lacoxinelle-douzecent Messages postés 830 Statut Membre -
Bonjour,
Bonjour,
Je reçois depuis quelques jours des pages internet qui s'ouvrent seules et je n'arrive pas à en venir à bout. J'ai spy bot, ad aware , kaperski comme antivirus et le firewall de windows XP SP2. J'ai téléchargé AVG anti root kit, a sqared free sans aucun résultat. Voici un exemple parmi tant d'autres de pages : http://www.system-defender.com/freeware/2/?wmid=6010&mid=MjI6Mzc6MjA1&lndid=37&p=01
Merci

Configuration: Windows XP
Firefox 2.0.0.12
A voir également:

13 réponses

lacoxinelle-douzecent Messages postés 830 Statut Membre 46
 
Bonjour tondawa

Fais ceci pour commencer

Télécharge Navilog1
Clique sur ce lien :
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe

http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
Clique sur navilog1.zip pour télécharger navilog1.exe.

enregistre-le sur ton bureau.

Ensuite Double Clique sur navilog1.exe pour Lancer l'Installation.
Une fois l'installation terminée, le fix s'exécutera automatiquement.
(Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).

Laisse-toi guider. Au menu principal, choisis 1 et valides.
(ne fais pas le choix 2,3 ou 4 sans notre avis/accord)

Patiente jusqu'au message :
*** Analyse Termine le ..... ***
Appuie sur une touche comme demandé, le blocnote va s'ouvrir.

Copie-colle l'intégralité dans une réponse. Referme le blocnote.
Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)

poste le rapport ici
a plus
0
tondawa Messages postés 7 Statut Membre
 
bonjour j'avais deja fait un rapport avec sdfix est ce que cela convient ?

[b][u]SDFix: Version 1.143[/u][/b]

Run by Administrateur on 19/02/2008 at 18:02

Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix

[b][u]Checking Services[/u][/b]:

Restoring Windows Registry Values
Restoring Windows Default Hosts File
Restoring Default HomePage Value
Restoring Default Desktop Components Value

Rebooting...

[b][u]Checking Files[/u][/b]:

Trojan Files Found:

C:\WINDOWS\admggxp.dll - Deleted
C:\WINDOWS\dat.txt - Deleted
C:\WINDOWS\dmdqdrxqdv.dll - Deleted
C:\WINDOWS\fsxloqf.exe - Deleted

Removing Temp Files...

[b][u]ADS Check[/u][/b]:

[b][u]Final Check[/u][/b]:

catchme 0.3.1344.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-19 18:27:31
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

scanning hidden registry entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 1

[b][u]Remaining Services[/u][/b]:

Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\eChanblard\\emule.exe"="C:\\Program Files\\eChanblard\\emule.exe:*:Enabled:eChanblard"
"C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
"C:\\Program Files\\Internet Explorer\\iexplore.exe"="C:\\Program Files\\Internet Explorer\\iexplore.exe:*:Enabled:Internet Explorer"
"C:\\Program Files\\Kaspersky Lab\\Kaspersky Anti-Virus 7.0\\avp.exe"="C:\\Program Files\\Kaspersky Lab\\Kaspersky Anti-Virus 7.0\\avp.exe:*:Enabled:Kaspersky Anti-Virus"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

[b][u]Remaining Files[/u][/b]:

File Backups: - C:\SDFix\backups\backups.zip

[b][u]Files with Hidden Attributes[/u][/b]:

Tue 19 Feb 2008 195,568,888 A..H. --- "C:\Downloads\Software\nero-8_nero_8.2.8.0_francais_45172.exe"
Thu 14 Oct 2004 1,694,208 ..SH. --- "C:\Program Files\Messenger\msmsgs.exe"
Sun 17 Feb 2008 5 A.SH. --- "C:\WINDOWS\system32\bedcda_g.dll"
Thu 14 Feb 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1.tmp"
Sat 16 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT10.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT100.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT101.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT102.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT103.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT104.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT105.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT106.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT107.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT108.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT109.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT10A.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT10B.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT10C.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT10D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT10E.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT10F.tmp"
Sat 16 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT11.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT110.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT111.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT112.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT113.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT114.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT115.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT116.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT116D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT117.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT118.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT119.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT11A.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT11B.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT11C.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT11D.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT11E.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT11F.tmp"
Sat 16 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT12.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT120.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT121.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT122.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT123.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT124.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT125.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT126.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT127.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT128.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT129.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT12A.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT12B.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT12C.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT12D.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT12E.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT12F.tmp"
Sat 16 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT130.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT131.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT132.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT133.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT134.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT135.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT136.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT137.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT138.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT139.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13A.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13B.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13C.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13D9.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13E.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13F.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13FB.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13FD.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13FE.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT13FF.tmp"
Sat 16 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT14.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT140.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1400.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1401.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1402.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1403.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1404.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT141.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT142.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT143.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT144.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT145.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT146.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT147.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT148.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT149.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT14A.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT14B.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT14C.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT14D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT14E.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT14F.tmp"
Sat 16 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT15.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT150.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT151.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT152.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT153.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT154.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT155.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT156.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT157.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT158.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT159.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT15A.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT15B.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT15C.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT15D.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT15E.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT15F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT16.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT160.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT161.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT168.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT16F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT17.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT170.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT171.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT172.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT173.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT174.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT176.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT177.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT178.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT179.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT17A.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT17B.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT17C.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT17D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT17E.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT17F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT18.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT180.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT182.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT183.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT185.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT186.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT187.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT188.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT189.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT18A.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT18B.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT18C.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT18D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT18E.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT18F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT19.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT190.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT191.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT192.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT193.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT194.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT195.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT196.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT199.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT19A.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT19B.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT19C.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT19D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT19E.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT19F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A0.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A1.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A2.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A3.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A4.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A5.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A6.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A7.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A8.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1A9.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1AA.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1AB.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1AC.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1AD.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1AE.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1AF.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B0.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B1.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B2.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B3.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B4.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B5.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B6.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B7.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B8.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1B9.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1BA.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1BB.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1BC.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1BD.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1BE.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1BF.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C0.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C1.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C2.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C3.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C4.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C5.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C6.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C7.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C8.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1C9.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1CA.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1CB.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1CC.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1CD.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1CE.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1CF.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D0.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D1.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D2.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D3.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D4.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D5.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D6.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D7.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D8.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1D9.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1DA.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1DB.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1DC.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1DD.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1DE.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1DF.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E0.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E1.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E2.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E3.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E4.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E5.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E6.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E7.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E8.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1E9.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1EA.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1EB.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1EC.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1ED.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1EE.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1EF.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F0.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F1.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F2.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F3.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F4.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F5.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F6.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F7.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F8.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1F9.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1FA.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1FB.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1FC.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1FD.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1FE.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT1FF.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT2.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT20.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT200.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT201.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT202.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT203.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT204.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT205.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT206.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT207.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT208.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT209.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT20A.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT20B.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT20C.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT20D.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT20E.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT20F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT21.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT210.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT211.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT212.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT213.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT214.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT215.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT216.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT217.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT218.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT219.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT21A.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT21B.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT21C.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT21D.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT21E.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT21F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT22.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT220.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT221.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT222.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT223.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT224.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT225.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT226.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT227.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT228.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT229.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT22A.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT22B.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT22C.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT22D.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT22E.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT22F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT23.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT230.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT231.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT232.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT233.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT234.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT235.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT236.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT237.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT238.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT239.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT23A.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT23B.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT23C.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT23D.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT23F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT24.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT241.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT242.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT243.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT244.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT246.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT247.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT248.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT249.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT24A.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT24B.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT24C.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT24D.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT24E.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT24F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT25.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT250.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT251.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT252.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT253.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT254.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT255.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT256.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT257.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT258.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT259.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT25A.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT25B.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT25C.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT25D.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT25E.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT25F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT26.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT260.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT261.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT262.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT263.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT264.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT265.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT26D.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT27.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT276.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT279.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT27A.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT27C.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT27E.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT27F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT28.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT281.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT283.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT284.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT285.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT288.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT289.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT28C.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT28D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT28E.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT29.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT2A.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT2B.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT2C.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT2D.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT2E.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT2F.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT3.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT30.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT31.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT32.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT33.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT34.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT35.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT36.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT37.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT38.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT39.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT3A.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT3B.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT3C.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT3D.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT3D3.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT3E.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT3F.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT4.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT40.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT41.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT42.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT43.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT44.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT45.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT46.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT47.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT48.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT49.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT4A.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT4B.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT4C.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT4D.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT4E.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT4F.tmp"
Mon 18 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT5.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT50.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT51.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT52.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT53.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT54.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT55.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT56.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT57.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT58.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT59.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT5A.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT5B.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT5C.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT5D.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT5E.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT5F.tmp"
Tue 19 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT6.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT60.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT61.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT62.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT63.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT64.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT65.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT66.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT67.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT68.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT69.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT6A.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT6B.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT6C.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT6D.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT6E.tmp"
Sun 17 Feb 2008 0 A..H. --- "C:\Documents and Settings\Fred et Delph\Local Settings\Temp\BIT6F.tmp"
Tue 19 Feb 2008
0
lacoxinelle-douzecent Messages postés 830 Statut Membre 46
 
c'est bien de l'avoir mis ;-) cependant, effectue le post que je t'ai mis...
j'attends ton rapport

a tout a l'heure
0
tondawa Messages postés 7 Statut Membre
 
Voila donc le fameux rapports ...

Search Navipromo version 3.4.5 commencé le 19/02/2008 à 20:22:32,71

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 11.02.2008 à 20h00 par IL-MAFIOSO

Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.13
Système de fichiers : NTFS

Executé en mode normal

*** Recherche Programmes installés ***

*** Recherche dossiers dans C:\WINDOWS ***

*** Recherche dossiers dans C:\Program Files ***

*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\APPLIC~1 ***

*** Recherche dossiers dans "C:\Documents and Settings\Fred et Delph\applic~1" ***

*** Recherche dossiers dans "C:\Documents and Settings\Fred et Delph\locals~1\applic~1" ***

*** Recherche dossiers dans "C:\Documents and Settings\Fred et Delph\MENUDM~1\PROGRA~1" ***

*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1 ***

*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier trouvé

*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans C:\WINDOWS\system32 *

* Recherche dans "C:\Documents and Settings\Fred et Delph\locals~1\applic~1" *

*** Recherche fichiers ***

*** Recherche clés spécifiques dans le Registre ***

*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :

2)Recherche Heuristique :

* Dans C:\WINDOWS\system32 :

* Dans "C:\Documents and Settings\Fred et Delph\locals~1\applic~1" :

3)Recherche Certificats :

Certificat Egroup absent !

4)Recherche fichiers connus :

*** Analyse terminée le 19/02/2008 à 20:26:58,46 ***
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
lacoxinelle-douzecent Messages postés 830 Statut Membre 46
 
ok, tu peux supprimer navilog, , il n'y a rien

fais ceci

Télecharge ceci (Merci à S!Ri)
http://siri.urz.free.fr/Fix/SmitfraudFix.zip
*Désactive l'Antivirus tu le remettra apres le Telechargement de Smitfraudfix

Avec SmitfraudFix
Double-clique sur l'icône de Smitfraudfix
Appuye sur une touche de ton clavier pour continuer.
au menu principal de SmitfraudFix : :
Sélectionne 1 >Recherche et Clic sur Entrée
Une fois terminé, SmitfraudFix ouvre le rapport qu'il aura généré.
le rapport sera sauvegardé dans le fichier suivant : "rapport.txt" à la racine de votre disque dur (ex : C:\rapport.txt).

poste moi le rapport stp
a plus
0
tondawa Messages postés 7 Statut Membre
 
Encore un nouveau rapport

SmitFraudFix v2.290

Rapport fait à 20:47:08,87, 19/02/2008
Executé à partir de C:\Documents and Settings\Fred et Delph\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal

»»»»»»»»»»»»»»»»»»»»»»»» Process

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Calendrier\Cld2000.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\InstantTimeZone\InstantTimeZone.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\PopTray\PopTray.exe
C:\Program Files\Fichiers communs\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\a-squared Free\a2service.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv4.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\WINDOWS\system32\cmd.exe

»»»»»»»»»»»»»»»»»»»»»»»» hosts

»»»»»»»»»»»»»»»»»»»»»»»» C:\

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles

»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Fred et Delph

»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Fred et Delph\Application Data

»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer

»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\FREDET~1\Favoris

»»»»»»»»»»»»»»»»»»»»»»»» Bureau

»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files

»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues

»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"

»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» VACFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""

»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""

»»»»»»»»»»»»»»»»»»»»»»»» Rustock

»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: Linksys Wireless-G USB Network Adapter - Miniport d'ordonnancement de paquets
DNS Server Search Order: 192.168.1.254

HKLM\SYSTEM\CCS\Services\Tcpip\..\{0E8B3A70-FA9E-4505-82E9-8EB5EFF8D7B7}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS1\Services\Tcpip\..\{0E8B3A70-FA9E-4505-82E9-8EB5EFF8D7B7}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS2\Services\Tcpip\..\{0E8B3A70-FA9E-4505-82E9-8EB5EFF8D7B7}: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.254
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.254

»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll

»»»»»»»»»»»»»»»»»»»»»»»» Fin
0
lacoxinelle-douzecent Messages postés 830 Statut Membre 46
 
faut poursuivre...

Telecharge ComboFix (ne l'utilise pas maintenant)
http://download.bleepingcomputer.com/sUBs/ComboFix.exe

puis

télécharge HijackThis
http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis
Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !

Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif
Lance le puis:
clique sur "do a system scan and save logfile"

faire un copier coller du log entier sur le forum
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm

https://leblogdeclaude.blogspot.com/2006/10/informatique-section-hijackthis.html

poste moi le rapport hijack
0
tondawa Messages postés 7 Statut Membre
 
Voici le rapport

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:03:28, on 19/02/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Calendrier\Cld2000.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\InstantTimeZone\InstantTimeZone.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\PopTray\PopTray.exe
C:\Program Files\Fichiers communs\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\a-squared Free\a2service.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv4.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\Mozilla Thunderbird\thunderbird.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ustart.org
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ustart.org
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O3 - Toolbar: emotrlq - {380F14D3-BD6F-4F5A-984A-70CC23EEA61D} - (no file)
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Cld2000.exe] C:\Program Files\Calendrier\Cld2000.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: PopTray.lnk = C:\Program Files\PopTray\PopTray.exe
O4 - Global Startup: InstantTimeZone.lnk = C:\Program Files\InstantTimeZone\InstantTimeZone.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: Statistiques d’Anti-Virus Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Upload - {FD4E2FF8-973C-4A19-89BD-8E86B3CFCFE1} - C:\Program Files\Free Download Manager\FUM\fumiebtn.dll
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: WUSB54Gv4SVC - GEMTEKS - C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
0
lacoxinelle-douzecent Messages postés 830 Statut Membre 46
 
re,

télécharge CCLEANER
http://www.commentcamarche.net/telecharger/telecharger 168 ccleaner

Lors de l'installation ccleaner

Laisse Coché Ajouter un raccourci dans le menu Démarrer

Décoche Ceci: Ajouter l'option 'Lancer CCleaner' dans le menu contextuel de la poubelle
. Ajouter l'option 'Ouvrir CCleaner...' dans le menu contextuel de la poubelle
Contrôler automatiquement les mises à jour de CCleaner
Ajouter la barre d'Outils Yahoo! CCleaner

enregistre ce qui va suivre dans un doc texte pour ne rien oublier, prends ton mal en patience :-)
effectues les étapes une par une

Demarre en mode sans echec

Démo-->https://www.malekal.com/demarrer-windows-mode-sans-echec/

1) lance hijackthis

coches les lignes suivantes
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O3 - Toolbar: emotrlq - {380F14D3-BD6F-4F5A-984A-70CC23EEA61D} - (no file)
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

clic sur fix cheked

2) Affiche Dossiers Cachés et Demasque les Extansions
Démarrer>poste de travail>outil (en haut)>option dossier>affichage

Coche> "afficher les dossiers cachés"
Décoche> "masquer les extansions des fichiers dont le type est connu
Répondre oui au message de windows
Décoche> "masquer les fichiers protégés du système (recommandé)
Répondre oui au message de windows
Puis> appliquer >ok

3)recherche et supprimes si tu trouves les fichiers ci dessous

C:\WINDOWS\admggxp.dll -
C:\WINDOWS\dat.txt -
C:\WINDOWS\dmdqdrxqdv.dll -
C:\WINDOWS\fsxloqf.exe -

4)Lance combofix

Double cliquer combofix.exe.
Appuyer sur la touche Y (Yes) pour démarrer le scan
Le rapport sera crée dans: C:\Combofix.txt

5) lance un scan complet avec ton anti virus

6) lance spybot
-->verifier tout

7) lance ccleaner
Clic sur nettoyeur application puis analyse puis lancer nettoyage (refais la manip plusieurs fois si besoin,)
Clic sur Nettoyeur puis Windows, Analyse, Lancer le Nettoyage
Clic sur Registre /Chercher des Erreurs / Reparer les Erreurs ( plusieurs fois aussi, si besoin)
Acceptes les Sauvegardes

8) recache remasque extantions (inverse étapes 2)

9) redemarre normalement

10) poste rapport combo ,+ nouveau hijackthis

allez bon courage a toi
a plus tard
0
tondawa
 
Voila combo fix à la fin le deuxième rapport

ComboFix 08-02-19.2 - Administrateur 2008-02-20 20:42:02.1 - NTFSx86 MINIMAL
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.1290 [GMT 11:00]
Endroit: C:\Downloads\Software\ComboFix.exe

[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
C:\WINDOWS\system32\bedcda_g.dll

----- BITS: Possible sites infectés -----

hxxp://softworldnetwork.com
hxxp://onsafepro.com
hxxp://softworldnetwork2.com
.
((((((((((((((((((((((((((((( Fichiers créés 2008-01-20 to 2008-02-20 ))))))))))))))))))))))))))))))))))))
.

2008-02-20 20:39 . 2008-02-20 20:39 <REP> d-------- C:\backups
2008-02-19 21:03 . 2008-02-19 21:03 396,288 --a------ C:\HijackThis.exe
2008-02-19 20:21 . 2008-02-19 20:27 <REP> d-------- C:\Program Files\Navilog1
2008-02-19 18:00 . 2008-02-19 18:00 <REP> d-------- C:\WINDOWS\ERUNT
2008-02-19 17:59 . 2008-02-14 10:38 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage réseau
2008-02-19 17:59 . 2008-02-14 10:38 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage d'impression
2008-02-19 17:59 . 2008-02-19 17:59 <REP> d--h----- C:\Documents and Settings\Administrateur\Modèles
2008-02-19 17:59 . 2008-02-14 10:38 <REP> d-------- C:\Documents and Settings\Administrateur\Mes documents
2008-02-19 17:59 . 2008-02-14 10:38 <REP> d-------- C:\Documents and Settings\Administrateur\Menu Démarrer
2008-02-19 17:59 . 2008-02-14 10:38 <REP> d-------- C:\Documents and Settings\Administrateur\Favoris
2008-02-19 17:59 . 2008-02-19 18:01 <REP> d-------- C:\Documents and Settings\Administrateur\Bureau
2008-02-19 17:48 . 2008-02-19 18:29 <REP> d-------- C:\SDFix
2008-02-19 17:05 . 2008-02-19 17:05 <REP> d-------- C:\Program Files\Panicware
2008-02-18 23:06 . 2008-02-20 20:12 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2008-02-18 23:06 . 2008-02-20 20:32 2,395,936 --ahs---- C:\WINDOWS\system32\drivers\fidbox.dat
2008-02-18 23:06 . 2008-02-18 23:35 91,700 --a------ C:\WINDOWS\system32\drivers\klin.dat
2008-02-18 23:06 . 2008-02-18 23:06 85,860 --a------ C:\WINDOWS\system32\drivers\klick.dat
2008-02-18 23:06 . 2008-02-20 20:32 34,208 --ahs---- C:\WINDOWS\system32\drivers\fidbox.idx
2008-02-18 23:06 . 2008-02-20 20:32 25,888 --ahs---- C:\WINDOWS\system32\drivers\fidbox2.dat
2008-02-18 23:06 . 2008-02-20 20:32 4,544 --ahs---- C:\WINDOWS\system32\drivers\fidbox2.idx
2008-02-18 23:05 . 2008-02-18 23:05 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2008-02-18 19:50 . 2008-02-18 19:50 <REP> d-------- C:\Program Files\Kaspersky Lab
2008-02-18 19:45 . 2008-02-18 19:45 <REP> d-------- C:\kav
2008-02-18 14:45 . 2008-02-18 14:45 <REP> d-------- C:\WINDOWS\system32\Kaspersky Lab
2008-02-18 10:08 . 2008-02-20 20:25 <REP> d-------- C:\Program Files\Mozilla Thunderbird
2008-02-18 10:08 . 2008-02-18 10:08 <REP> d-------- C:\Documents and Settings\Fred et Delph\Application Data\Thunderbird
2008-02-18 00:05 . 2008-02-19 20:47 1,458 --a------ C:\WINDOWS\system32\tmp.reg
2008-02-17 23:44 . 2008-02-17 23:44 <REP> d-------- C:\Program Files\RegSupreme
2008-02-17 23:44 . 2008-02-17 23:44 5 --a------ C:\WINDOWS\system32\eaaff_g.ocx
2008-02-17 18:45 . 2008-02-17 18:45 32 --a------ C:\Documents and Settings\All Users\Application Data\ezsid.dat
2008-02-17 11:58 . 2008-02-18 23:17 117 --a------ C:\WINDOWS\wininit.ini
2008-02-17 11:16 . 2008-02-17 11:16 <REP> d-------- C:\Program Files\MSXML 4.0
2008-02-16 20:44 . 2007-01-18 23:00 3,968 --a------ C:\WINDOWS\system32\drivers\AvgArCln.sys
2008-02-16 20:30 . 2008-02-16 20:30 <REP> d-------- C:\Documents and Settings\All Users\Application Data\AVS4YOU
2008-02-16 20:28 . 2008-02-16 20:30 <REP> d-------- C:\Program Files\AVS4YOU
2008-02-16 20:27 . 2003-06-19 01:31 17,920 --a------ C:\WINDOWS\system32\mdimon.dll
2008-02-16 20:27 . 2008-02-16 20:27 385 --a------ C:\WINDOWS\ODBC.INI
2008-02-16 20:25 . 2008-02-16 20:26 <REP> d-------- C:\WINDOWS\SHELLNEW
2008-02-16 20:25 . 2008-02-16 20:25 <REP> d-------- C:\Program Files\Microsoft Works
2008-02-16 20:24 . 2008-02-16 20:24 <REP> d-------- C:\Program Files\Microsoft.NET
2008-02-16 20:22 . 2008-02-16 20:22 <REP> dr-h----- C:\MSOCache
2008-02-16 20:14 . 2008-02-20 19:14 <REP> d-------- C:\Documents and Settings\Fred et Delph\Application Data\skypePM
2008-02-16 20:13 . 2008-02-20 19:55 <REP> d-------- C:\Documents and Settings\Fred et Delph\Application Data\Skype
2008-02-16 20:12 . 2008-02-16 20:12 <REP> d-------- C:\Program Files\Skype
2008-02-16 20:12 . 2008-02-16 20:12 <REP> d-------- C:\Program Files\Fichiers communs\Skype
2008-02-16 20:12 . 2008-02-16 20:12 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Skype
2008-02-16 18:57 . 2008-02-16 18:57 <REP> d-------- C:\Documents and Settings\All Users\Application Data\InstallShield
2008-02-16 18:56 . 2008-02-16 18:56 <REP> d-------- C:\Program Files\Jasc Software Inc
2008-02-16 18:56 . 2008-02-16 18:57 <REP> d-------- C:\Program Files\Fichiers communs\Jasc Software Inc
2008-02-16 18:56 . 2008-02-16 18:56 <REP> d-------- C:\Documents and Settings\Fred et Delph\Application Data\Jasc Software Inc
2008-02-16 18:40 . 2008-02-16 18:40 <REP> d-------- C:\Documents and Settings\Fred et Delph\Application Data\TuneUp Software
2008-02-16 18:39 . 2008-02-16 19:10 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
2008-02-16 18:39 . 2008-02-16 18:39 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2008-02-16 18:39 . 2008-02-16 19:10 306,432 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
2008-02-16 18:39 . 2007-12-20 10:41 29,440 --a------ C:\WINDOWS\system32\uxtuneup.dll
2008-02-15 21:20 . 2008-02-19 17:36 <REP> d-------- C:\Program Files\a-squared Free
2008-02-15 20:23 . 2008-02-15 20:26 <REP> d-------- C:\Program Files\InstantTimeZone
2008-02-15 19:40 . 2008-02-15 19:40 <REP> d-------- C:\Program Files\Microsoft Games
2008-02-15 19:34 . 2001-08-23 17:47 244,224 --a--c--- C:\WINDOWS\system32\dllcache\camext20.ax
2008-02-15 19:23 . 2004-05-21 05:04 79,622 --a------ C:\WINDOWS\system32\EBPMON24.DLL
2008-02-15 19:23 . 2003-05-21 02:27 64,000 --a------ C:\WINDOWS\system32\ECBTEG.DLL
2008-02-15 19:23 . 2000-06-07 01:01 34,304 --a------ C:\WINDOWS\system32\EBPCHP.DLL
2008-02-15 19:23 . 2003-07-16 13:14 31,744 --a------ C:\WINDOWS\system32\E_DCINST.DLL
2008-02-15 19:20 . 2004-08-03 23:01 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
2008-02-15 19:20 . 2004-08-03 23:01 25,856 --a--c--- C:\WINDOWS\system32\dllcache\usbprint.sys
2008-02-15 19:19 . 2008-02-15 19:23 <REP> d-------- C:\Program Files\EPSON
2008-02-15 17:11 . 2008-02-15 17:11 <REP> d-------- C:\Program Files\Microsoft Silverlight
2008-02-15 13:56 . 2007-07-30 19:19 271,224 --a------ C:\WINDOWS\system32\mucltui.dll
2008-02-15 13:56 . 2007-07-30 19:18 30,072 --a------ C:\WINDOWS\system32\mucltui.dll.mui
2008-02-15 09:15 . 2008-02-15 09:15 <REP> d-------- C:\Program Files\Winamp
2008-02-15 09:15 . 2008-02-15 09:17 <REP> d-------- C:\Documents and Settings\Fred et Delph\Application Data\Winamp
2008-02-15 03:07 . 2008-02-15 03:07 0 --a------ C:\WINDOWS\ativpsrm.bin
2008-02-15 03:01 . 2008-02-15 03:01 <REP> d-------- C:\Program Files\MSXML 6.0
2008-02-14 23:04 . 2008-02-14 23:04 <REP> d-------- C:\Program Files\Eraser
2008-02-14 23:04 . 2008-02-14 23:04 <REP> d--h----- C:\Documents and Settings\All Users\Application Data\{74D61F17-FFC2-41AF-96E5-1DCB0631B6D1}
2008-02-14 22:15 . 2008-02-18 00:33 <REP> d-------- C:\Documents and Settings\Fred et Delph\Application Data\Lavasoft
2008-02-14 22:13 . 2008-02-14 22:13 <REP> d-------- C:\Program Files\Calendrier
2008-02-14 22:13 . 2008-02-14 22:55 <REP> d-------- C:\Documents and Settings\Fred et Delph\Application Data\Calendrier Xtra
2008-02-14 22:12 . 2008-02-14 22:12 <REP> d-------- C:\Program Files\Capturino 1.4
2008-02-14 22:12 . 2008-02-14 22:12 <REP> d-------- C:\Program Files\ATI
2008-02-14 22:10 . 2008-02-14 22:10 <REP> d-------- C:\Program Files\Photo Story 3 for Windows
2008-02-14 22:09 . 2008-02-19 15:35 <REP> d--h----- C:\WINDOWS\Fred
2008-02-14 22:04 . 2008-01-22 14:42 593,920 --------- C:\WINDOWS\system32\ati2sgag.exe
2008-02-14 22:03 . 2008-02-14 22:03 <REP> d-------- C:\ATI
2008-02-14 21:57 . 2008-02-14 21:57 360,064 --a------ C:\WINDOWS\system32\drivers\TCPIP.SYS.ORIGINAL
2008-02-14 21:55 . 2008-02-20 09:16 <REP> d-------- C:\Program Files\eChanblard
2008-02-14 21:49 . 2008-02-14 21:54 <REP> d-------- C:\Documents and Settings\Fred et Delph\Contacts
2008-02-14 21:48 . 2008-02-14 21:48 <REP> d----c--- C:\WINDOWS\system32\DRVSTORE
2008-02-14 21:37 . 2008-02-14 21:40 <REP> d-------- C:\Program Files\PopTray
2008-02-14 21:07 . 2008-02-14 21:48 <REP> d-------- C:\Program Files\Windows Live
2008-02-14 21:07 . 2008-02-14 21:48 <REP> d--hsc--- C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-02-14 21:07 . 2008-02-14 21:07 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-02-14 14:31 . 2008-02-14 14:31 <REP> d-------- C:\Program Files\MSBuild
2008-02-14 14:28 . 2008-02-15 10:41 <REP> d-------- C:\WINDOWS\system32\XPSViewer
2008-02-14 14:27 . 2008-02-14 14:27 <REP> d-------- C:\Program Files\Reference Assemblies
2008-02-14 14:27 . 2006-06-29 13:07 14,048 --------- C:\WINDOWS\system32\spmsg2.dll
2008-02-14 14:26 . 2008-02-14 14:26 <REP> d-------- C:\Program Files\Windows Media Connect 2
2008-02-14 14:25 . 2008-02-16 20:51 <REP> d-------- C:\WINDOWS\system32\LogFiles
2008-02-14 14:25 . 2008-02-14 14:25 <REP> d-------- C:\WINDOWS\system32\drivers\UMDF
2008-02-14 14:24 . 2008-02-14 21:02 <REP> d-------- C:\WINDOWS\system32\fr-fr

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-16 09:30 --------- d-----w C:\Program Files\Fichiers communs\AVSMedia
2008-02-16 07:57 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-02-14 11:12 --------- d-----w C:\Program Files\ATI Technologies
2008-02-14 11:10 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-14 11:06 --------- d-----w C:\Documents and Settings\Fred et Delph\Application Data\ATI
2008-02-14 10:57 360,064 ----a-w C:\WINDOWS\system32\drivers\TCPIP.SYS
2008-02-13 23:39 --------- d-----w C:\Documents and Settings\Fred et Delph\Application Data\Talkback
2008-02-13 23:16 --------- d-----w C:\Program Files\My Company Name
2008-02-13 23:09 --------- d-----w C:\Documents and Settings\Fred et Delph\Application Data\Logitech
2008-02-13 23:07 --------- d-----w C:\Program Files\Fichiers communs\Logitech
2008-02-13 23:06 --------- d-----w C:\Program Files\Logitech
2008-02-13 23:03 --------- d-----w C:\Program Files\Realtek
2008-02-13 23:02 4,501 ----a-w C:\WINDOWS\gdrv.sys
2008-02-13 23:00 --------- d-----w C:\Program Files\Intel
2008-02-13 22:59 --------- d-----w C:\Program Files\AVSMedia
2008-02-13 22:55 --------- d-----w C:\Program Files\Alwil Software
2008-02-13 22:48 --------- d-----w C:\Program Files\microsoft frontpage
2008-02-13 22:47 --------- d-----w C:\Program Files\Services en ligne
2008-01-22 21:38 2,845,696 ----a-w C:\WINDOWS\system32\drivers\ati2mtag.sys
2008-01-22 20:43 272,384 ----a-w C:\WINDOWS\system32\ati2dvag.dll
2008-01-22 20:39 307,200 ----a-w C:\WINDOWS\system32\atiiiexx.dll
2008-01-22 20:35 43,520 ----a-w C:\WINDOWS\system32\ati2edxx.dll
2008-01-22 20:35 26,112 ----a-w C:\WINDOWS\system32\Ati2mdxx.exe
2008-01-22 20:35 147,456 ----a-w C:\WINDOWS\system32\atipdlxx.dll
2008-01-22 20:35 122,880 ----a-w C:\WINDOWS\system32\Oemdspif.dll
2008-01-22 20:35 122,880 ----a-w C:\WINDOWS\system32\ati2evxx.dll
2008-01-22 20:34 512,000 ----a-w C:\WINDOWS\system32\ati2evxx.exe
2008-01-22 20:33 53,248 ----a-w C:\WINDOWS\system32\ATIDDC.DLL
2008-01-22 20:25 3,121,920 ----a-w C:\WINDOWS\system32\ati3duag.dll
2008-01-22 20:14 1,664,256 ----a-w C:\WINDOWS\system32\ativvaxx.dll
2008-01-22 20:01 385,024 ----a-w C:\WINDOWS\system32\atikvmag.dll
2008-01-22 19:59 17,408 ----a-w C:\WINDOWS\system32\atitvo32.dll
2008-01-22 19:58 5,435,392 ----a-w C:\WINDOWS\system32\atioglxx.dll
2008-01-22 19:58 49,152 ----a-w C:\WINDOWS\system32\drivers\ati2erec.dll
2008-01-22 19:53 503,808 ----a-w C:\WINDOWS\system32\ati2cqag.dll
2007-12-17 13:44 219,664 ----a-w C:\WINDOWS\system32\klogon.dll
2007-12-14 00:32 12,632 ----a-w C:\WINDOWS\system32\lsdelete.exe
2007-12-07 02:08 824,832 ----a-w C:\WINDOWS\system32\wininet.dll
2007-12-04 18:41 550,912 ----a-w C:\WINDOWS\system32\oleaut32.dll
.

------- Sigcheck -------

"C:\WINDOWS\system32\drivers\tcpip.sys"
----a-w 360,832 2007-10-30 16:53:32 C:\WINDOWS\$hf_mig$\KB941644\SP2QFE\tcpip.sys
----a-w 360,064 2008-02-14 10:57:48 C:\WINDOWS\system32\drivers\TCPIP.SYS
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDCPL"="RTHDCPL.EXE" [2005-12-09 18:49 15691264 C:\WINDOWS\RTHDCPL.exe]
"Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" [2005-05-21 00:46 28160 C:\WINDOWS\KHALMNPR.Exe]
"AVP"="C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe" [2007-12-18 00:43 227856]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 23:00 15360]

C:\Documents and Settings\Fred et Delph\Menu D‚marrer\Programmes\D‚marrage\
PopTray.lnk - C:\Program Files\PopTray\PopTray.exe [2006-09-17 00:01:16 1666048]

C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
InstantTimeZone.lnk - C:\Program Files\InstantTimeZone\InstantTimeZone.exe [2007-01-14 03:07:23 1498551]
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe [2008-02-14 10:06:59 450560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATICCC]
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATICustomerCare]
--a------ 2007-10-04 18:38 307200 C:\Program Files\ATI\ATICustomerCare\ATICustomerCare.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Eraser]
--a------ 2007-07-29 08:05 277328 C:\Program Files\Eraser\Eraser.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Download Manager]
--a------ 2007-12-16 20:39 2449455 C:\Program Files\Free Download Manager\fdm.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Upload Manager]
--a------ 2007-07-29 19:13 253952 C:\Program Files\Free Download Manager\fum\fum.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Free Uploader Oe Integration]
--a------ 2007-06-10 18:02 40960 C:\Program Files\Free Download Manager\FUM\fumoei.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC]
--a------ 2006-11-10 12:35 90112 C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Raccourci vers la page des propriétés de High Definition Audio"=HDAShCut.exe
"EPSON Stylus Photo R200 Series"=C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0H2.EXE /P30 "EPSON Stylus Photo R200 Series" /O6 "USB001" /M "Stylus Photo R200"

S2 UxTuneUp;TuneUp Extension de thème;C:\WINDOWS\System32\svchost.exe [2004-08-05 23:00]
S2 WUSB54Gv4SVC;WUSB54Gv4SVC;"C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe" "WUSB54Gv4.exe" []
S3 camvid20;Philips ToUcam Camera; Video;C:\WINDOWS\system32\DRIVERS\camdrv21.sys []
S3 gdrv;gdrv;C:\WINDOWS\gdrv.sys [2008-02-14 10:02]
S3 klim5;Kaspersky Anti-Virus NDIS Filter;C:\WINDOWS\system32\DRIVERS\klim5.sys [2007-12-13 13:28]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-02-16 19:10]
S3 WUSB54GPV4SRV;Linksys Home Wireless-G USB Adaptor Driver;C:\WINDOWS\system32\DRIVERS\rt2500usb.sys [2005-01-08 03:05]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp

.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-16 07:40:07 C:\WINDOWS\Tasks\Maintenance en 1 clic.job"
- C:\Program Files\TuneUp Utilities 2008\OneClick.exe
.
**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-20 20:43:37
Windows 5.1.2600 Service Pack 2 NTFS

Balayage processus cachés ...

Balayage caché autostart entries ...

Balayage des fichiers cachés ...

Scan terminé avec succès
Les fichiers cachés: 0

**************************************************************************
.
Temps d'accomplissement: 2008-02-20 20:44:17
ComboFix-quarantined-files.txt 2008-02-20 09:44:15
.
2008-02-17 07:51:24 --- E O F ---

HIJACKTHIS

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:47:19, on 20/02/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Calendrier\Cld2000.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\InstantTimeZone\InstantTimeZone.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\PopTray\PopTray.exe
C:\Program Files\Fichiers communs\Logitech\KHAL\KHALMNPR.EXE
C:\Program Files\a-squared Free\a2service.exe
C:\WINDOWS\ATKKBService.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv4.exe
C:\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ustart.org
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ustart.org
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - (no file)
O3 - Toolbar: emotrlq - {380F14D3-BD6F-4F5A-984A-70CC23EEA61D} - (no file)
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Cld2000.exe] C:\Program Files\Calendrier\Cld2000.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: PopTray.lnk = C:\Program Files\PopTray\PopTray.exe
O4 - Global Startup: InstantTimeZone.lnk = C:\Program Files\InstantTimeZone\InstantTimeZone.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: Statistiques d’Anti-Virus Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\SCIEPlgn.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Upload - {FD4E2FF8-973C-4A19-89BD-8E86B3CFCFE1} - C:\Program Files\Free Download Manager\FUM\fumiebtn.dll
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: Kaspersky Anti-Virus 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 7.0\avp.exe
O23 - Service: PsExec (PSEXESVC) - Unknown owner - C:\WINDOWS\PSEXESVC.EXE (file missing)
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: WUSB54Gv4SVC - GEMTEKS - C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
0
lacoxinelle-douzecent Messages postés 830 Statut Membre 46
 
Bonsoir tondaw

as tu fais toutes les étapes,?..je vois que les lignes sont encore la..
Peux tu me dire quelle est ta version de Kaspersky Anti-Virus 7.0, essais? officielle? non off?

j'aurais du y penser avant..faut mettre un autre pare feu (celui de windows ne vaut rien)

1) mettre un pare feu
Télécharge Kério (en francais et gratuit)

http://www.commentcamarche.net/telecharger/telecharger 206 kério

http://www.malekal.com/kerio_firewall.php#mozTocId745600

ou Zone Alarme

https://www.malekal.com/tutoriel-zonealarm-firewall/

Désactives le Pare Feu de Wndows -->Sinon Conflits entre les Deux..

Demarrer, / Paneau de Config, / Centre de Sécurité / Pare Feu Windows--> Désactives

2) Désactive la restauration du systeme

Clique sur Démarrer.
Clique sur Poste de travail, puis clic droit sur -->Propriétés.
onglet «Restauration du système».
Sélectionne «Désactiver la Restauration du système»
Clique sur Appliquer puis sur OK.

3) demarre en mode sans echec
(tapote sur F8 ou F5 au demarrage de windows
Démo-->https://www.malekal.com/demarrer-windows-mode-sans-echec/

4) lance hijackthis
coches ces lignes

O2 - BHO: (no name) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - (no file)
O3 - Toolbar: emotrlq - {380F14D3-BD6F-4F5A-984A-70CC23EEA61D} - (no file)
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab

-->clic sur fix checked

5) redemarre

6) reactive la restauration du système
Poste de travail /Propriétés. /onglet «Restauration du système
Décoche la case "désactiver la Restauration du système"
Clique sur Appliquer puis sur OK.

7) ce programme te parle t'il ?
C:\Program Files\Calendrier\Cld2000.exe

poste le rapport hijackthis + precisions demandées

a plus tard
lacox
0
tondawa
 
Tout d'abord désolé du retard mais j'étais absent, je m'aperçoit et ce sans avoir rien touché que tout est redevenu dans l'ordre ... lorsque je passe spybot il n'y a plus rien alors qu'avant il voyait des trucs les supprimait mais a chaque fois cela revenait ... aujourd'hui plus rien ... super je te remercie beaucoup pour tes conseils et ta patience ...
0
lacoxinelle-douzecent Messages postés 830 Statut Membre 46
 
Bonjour tondawa,

j'espère tout de meme que tu as fais toutes les étapes demandées #11 ;-/
sinon faut le faire
tu peux supprimer les outils utilisés; navilog, sdfix; smitfraudfix, combofix..hijackthis .ainsi que tous les rapports

Ne jamais Répondre a ce type de messages
-->Prends le temps de lire

http://forum.malekal.com/ftopic3412.php
http://siri.urz.free.fr/Fix/ScreenShot.php

A lire aussi
https://www.malekal.com/projet-antimalware-2/

Bon surf ;-)

Kénavo
0