Virus indetectable, que dois je faire ??

Fermé
Cha - 8 mars 2008 à 17:10
 Cha - 10 mars 2008 à 16:13
Bonjour,

Je crois que mon ordi s'est chopé un virus mais mon antivirus avg n'arrive pas à le detecter, spybot non plus.
Voila le problème : lorsque j'ouvre msn, tous mes contacts revoivents ce msg : ""hey ya ta tof sur ce site " avec un lien en plus, msn.photo.isuisse ou qqch comme ca...
De plus, des fenetres de conversation s'ouvrent et se referment en moins de temps qu'il n'en faut pour le dire.

Parfois, AVG m'informe avoir reperé un cheval de troie que je "move to vault" mais à chaque fois, cette fenetre réapparait et un nouveau cheval de troie réapparait. Le nom change à chaque fois : voila un ptit peu tout ce que je me suis chopé les derniers jours...

[url=https://imageshack.com/][img=http://img379.imageshack.us/img379/6244/virushj5.th.png][/url]

Que dois je faire ? Comment faire pour reperer ce méchant virus et le mettre définitivement hors d'état de nuire ?

Merci à tous
A voir également:

2 réponses

up personne pour nous aider svp?
0
Rebonjour,

J'ai regardé un peu les sujets postés et ai fait les opérations nécessaires, cependant, mon problème ne semble pas résolu. Voici les rapports ;



D'abord avec MSNFix


MSNFix 1.678-c

C:\Documents and Settings\Charlotte C\Bureau\MSNFix
Fix exécuté le 10/03/2008 - 14:07:30,17 By Charlotte C
mode normal

************************ Recherche les fichiers présents

... C:\autorun.inf
... C:\Autorun.inf
... C:\DOCUME~1\CHARLO~1\LOCALS~1\Temp\services.exe

************************ Recherche les dossiers présents

Aucun dossier trouvé




************************ Suppression des fichiers

.. OK ... C:\autorun.inf
.. OK ... C:\Autorun.inf
/!\ ... C:\DOCUME~1\CHARLO~1\LOCALS~1\Temp\services.exe



************************ Nettoyage du registre



Les fichiers encore présents seront supprimés au prochain redémarrage


************************ Suppression des fichiers

.. OK ... C:\DOCUME~1\CHARLO~1\LOCALS~1\Temp\services.exe



************************ Fichiers suspects

/!\ ces fichiers nécessitent un avis expérimenté avant toute intervention

[C:\DOCUME~1\CHARLO~1\LOCALS~1\Temp\taismttg.zip] 3A39005AA5A1B542CD7E0DC4ACF136E8

[color=#FF0000][b]==>/b/color SVP merci d'envoyer le fichier [b] C:\DOCUME~1\CHARLO~1\Bureau\Upload_Me.zip /b sur http://upload.changelog.fr



Les fichiers et clés de registre supprimés ont été sauvegardés dans le fichier 10032008_14112026.zip



------------------------------------------------------------------------
Auteur : !aur3n7 Contact: https://www.ionos.fr/
------------------------------------------------------------------------

--------------------------------------------- END ---------------------------------------------






Puis avec HijackThis





Logfile of HijackThis v1.99.1
Scan saved at 14:21:10, on 10/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Creative\Mixer\CTSVolFE.exe
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Ares\Ares.exe
C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Documents and Settings\Charlotte C\Mes documents\Mes fichiers reçus\ObjectDock\ObjectDock.exe
C:\Program Files\Microsoft Office\Office12\WINWORD.EXE
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Java\jre1.6.0_01\bin\jucheck.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
C:\Documents and Settings\Charlotte C\Bureau\VERSION TRADUITE ORIGINALE.EXE

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.dell.com/fr-fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\CHARLO~1\LOCALS~1\Temp\services.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.1.2.7.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [CTSVolFE.exe] "C:\Program Files\Creative\Mixer\CTSVolFE.exe" /r
O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [MSKDetectorExe] C:\Program Files\McAfee\SpamKiller\MSKDetct.exe /uninstall
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [amva] C:\WINDOWS\system32\amvo.exe
O4 - Startup: Stardock ObjectDock.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/pr02/resources/MSNPUpld.cab
O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/FacebookPhotoUploader.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe



L'analyse du fichier C:\DOCUME~1\Dangas\LOCALS~1\Temp\epurcfrver20.dll.zip sur https://www.virustotal.com/gui/ me donne 0 comme résultat. J'ai donc téléchargé SDFix.


Rapport







[b]SDFix: Version 1.155 /b

Run by Charlotte C on 10/03/2008 at 14:33

Microsoft Windows XP [version 5.1.2600]
Running From: C:\DOCUME~1\CHARLO~1\Bureau\SDFix

[b]Checking Services /b:


Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting


[b]Checking Files /b:

No Trojan Files Found






Removing Temp Files

[b]ADS Check /b:



[b]Final Check /b:

catchme 0.3.1344.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-10 14:40:17
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\000a94019844]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\BTHPORT\Parameters\Keys\000a94019844]

scanning hidden registry entries ...

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\System]
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

scanning hidden files ...


scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 1242


[b]Remaining Services /b:



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Grisoft\\AVG Free\\avginet.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avginet.exe:*:Enabled:avginet.exe"
"C:\\StubInstaller.exe"="C:\\StubInstaller.exe:*:Enabled:LimeWire swarmed installer"
"C:\\WINDOWS\\system32\\rtcshare.exe"="C:\\WINDOWS\\system32\\rtcshare.exe:*:Enabled:Partage de l'application RTC"
"C:\\Program Files\\NetMeeting\\conf.exe"="C:\\Program Files\\NetMeeting\\conf.exe:*:Enabled:Windows© NetMeeting©"
"C:\\Program Files\\Grisoft\\AVG Free\\avgcc.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avgcc.exe:*:Enabled:avgcc.exe"
"C:\\Program Files\\Grisoft\\AVG Free\\avgamsvr.exe"="C:\\Program Files\\Grisoft\\AVG Free\\avgamsvr.exe:*:Enabled:avgamsvr.exe"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\\WINNT\\FRANCAIS\\DISK1\\SETUP.EXE"="E:\\WINNT\\FRANCAIS\\DISK1\\SETUP.EXE:*:Enabled:HP Setup Stub"
"C:\\Program Files\\BitComet\\BitComet.exe"="C:\\Program Files\\BitComet\\BitComet.exe:*:Disabled:BitComet - a BitTorrent Client"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"C:\\Program Files\\Ares MP3\\AresMP3.exe"="C:\\Program Files\\Ares MP3\\AresMP3.exe:*:Disabled:AresMP3"
"C:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe"="C:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe:*:Enabled:Veoh Client"
"C:\\Program Files\\Atari\\Neverwinter Nights 2\\nwn2main.exe"="C:\\Program Files\\Atari\\Neverwinter Nights 2\\nwn2main.exe:*:Enabled:Neverwinter Nights 2 Main"
"C:\\Program Files\\Atari\\Neverwinter Nights 2\\nwn2main_amdxp.exe"="C:\\Program Files\\Atari\\Neverwinter Nights 2\\nwn2main_amdxp.exe:*:Enabled:Neverwinter Nights 2 AMD"
"C:\\Program Files\\Atari\\Neverwinter Nights 2\\nwupdate.exe"="C:\\Program Files\\Atari\\Neverwinter Nights 2\\nwupdate.exe:*:Enabled:Neverwinter Nights 2 Updater"
"C:\\Program Files\\Atari\\Neverwinter Nights 2\\nwn2server.exe"="C:\\Program Files\\Atari\\Neverwinter Nights 2\\nwn2server.exe:*:Enabled:Neverwinter Nights 2 Server"
"C:\\Program Files\\Ares\\Ares.exe"="C:\\Program Files\\Ares\\Ares.exe:*:Enabled:Ares p2p for windows"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\Documents and Settings\\Charlotte C\\Bureau\\Mercury\\Mercury.exe"="C:\\Documents and Settings\\Charlotte C\\Bureau\\Mercury\\Mercury.exe:*:Enabled:Mercury"
"C:\\DOCUME~1\\CHARLO~1\\LOCALS~1\\Temp\\services.exe"="C:\\DOCUME~1\\CHARLO~1\\LOCALS~1\\Temp\\services.exe:*:Enabled:Flash Media"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

[b]Remaining Files /b:


File Backups: - C:\DOCUME~1\CHARLO~1\Bureau\SDFix\backups\backups.zip

[b]Files with Hidden Attributes /b:

Mon 28 Jan 2008 1,404,240 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 28 Jan 2008 5,146,448 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 28 Jan 2008 2,097,488 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Sat 4 Nov 2006 88 ..SHR --- "C:\WINDOWS\system32\186948BB4A.sys"
Fri 6 Oct 2006 56 ..SHR --- "C:\WINDOWS\system32\4ABB486918.sys"
Sat 4 Nov 2006 6,580 A.SH. --- "C:\WINDOWS\system32\KGyGaAvL.sys"
Sun 30 Jul 2006 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Fri 29 Dec 2006 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Mon 17 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\0a67b6c406b1d7e0f5c1e6f6d44a3f6e\BITB.tmp"
Mon 17 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\18b19374451d28a8fbaf1939cf31ff45\BITE.tmp"
Mon 17 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\22fb973e059470cc1b5d76c4ae605351\BIT12.tmp"
Mon 17 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\26924cbc8132a10b438ce6e2b49d4652\BITA.tmp"
Mon 17 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\2769b111678c52099a3b3123b12f2325\BITF.tmp"
Mon 17 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\30285791903730fbf957a83562db4ff4\BITC.tmp"
Thu 31 Jan 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\585dc2612ebcefc90e7dee4c276ee95e\BIT15.tmp"
Mon 17 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\9e870549834e2bceb796e44a1e3ac6f5\BIT11.tmp"
Mon 17 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\cb8921d0c7830b2f33c00fa4c8a10d17\BITD.tmp"
Mon 17 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\d77b9b5b8fed23dd91f50d167cce60d3\BIT10.tmp"
Mon 12 Feb 2007 3,096,576 A..H. --- "C:\Documents and Settings\Charlotte C\Application Data\U3\temp\Launchpad Removal.exe"
Sun 30 Jul 2006 4,348 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Ma musique\Sauvegarde de la licence\drmv1key.bak"
Sun 29 Oct 2006 20 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Ma musique\Sauvegarde de la licence\drmv1lic.bak"
Sun 30 Jul 2006 312 A.SH. --- "C:\Documents and Settings\Charlotte C\Mes documents\Ma musique\Sauvegarde de la licence\drmv2key.bak"
Fri 18 Jan 2008 3,726,336 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Mes images\2008\~WRL1633.tmp"
Sun 22 Oct 2006 32,768 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Espagnol\~WRL1376.tmp"
Fri 5 Jan 2007 41,472 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Etudes Europeenes\~WRL0008.tmp"
Wed 3 Jan 2007 24,576 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Etudes Europeenes\~WRL1569.tmp"
Wed 3 Jan 2007 24,576 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Etudes Europeenes\~WRL1861.tmp"
Thu 4 Jan 2007 34,304 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Etudes Europeenes\~WRL3305.tmp"
Fri 5 Jan 2007 43,008 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Etudes Europeenes\~WRL3693.tmp"
Thu 4 Jan 2007 33,792 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Etudes Europeenes\~WRL3761.tmp"
Sun 8 Oct 2006 20,992 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\GRH\~WRL0754.tmp"
Fri 10 Nov 2006 100,352 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Marketing\~WRL0042.tmp"
Thu 9 Nov 2006 942,080 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Marketing\~WRL1088.tmp"
Thu 9 Nov 2006 846,848 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Marketing\~WRL1163.tmp"
Fri 10 Nov 2006 98,816 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Marketing\~WRL2759.tmp"
Thu 9 Nov 2006 184,832 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Marketing\~WRL3019.tmp"
Thu 2 Nov 2006 921,088 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Marketing\~WRL3436.tmp"
Mon 5 Jun 2006 294,400 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\~WRL0005.tmp"
Tue 30 May 2006 19,968 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\~WRL3160.tmp"
Sun 2 Mar 2008 209,920 ...H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 2\Anglais\Biophone\~WRL0212.tmp"
Sun 30 Oct 2005 23,552 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL0168.tmp"
Sun 30 Oct 2005 35,328 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL0239.tmp"
Sun 30 Oct 2005 34,816 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL0247.tmp"
Sun 30 Oct 2005 33,280 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL0482.tmp"
Sun 30 Oct 2005 37,376 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL0487.tmp"
Sun 30 Oct 2005 33,280 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL0501.tmp"
Sun 30 Oct 2005 34,304 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL0598.tmp"
Sun 30 Oct 2005 20,992 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL1429.tmp"
Sun 30 Oct 2005 32,256 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL1469.tmp"
Sun 30 Oct 2005 32,768 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL1947.tmp"
Sun 30 Oct 2005 23,040 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL2373.tmp"
Sun 30 Oct 2005 24,064 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL3244.tmp"
Sun 30 Oct 2005 38,400 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL3309.tmp"
Sun 30 Oct 2005 22,016 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL3410.tmp"
Sun 30 Oct 2005 23,552 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\etude euro\ETUDES EURO\~WRL3726.tmp"
Mon 22 Jan 2007 19,968 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Etudes Europeenes\Part 2\~WRL2423.tmp"
Thu 21 Sep 2006 20,992 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Projet - Laguiole\Laguiole\~WRL1996.tmp"
Wed 20 Sep 2006 20,480 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Projet - Laguiole\Laguiole\~WRL2763.tmp"
Thu 21 Sep 2006 21,504 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Projet - Laguiole\Laguiole\~WRL3421.tmp"
Wed 20 Sep 2006 21,504 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\CESEM william\Projet - Laguiole\Laguiole\~WRL3941.tmp"
Fri 1 Jun 2007 38,912 A.SH. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Marketing\Markops team 3 - thebest\P‚riode 3-4\~WRL0361.tmp"
Fri 1 Jun 2007 35,840 A.SH. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Marketing\Markops team 3 - thebest\P‚riode 3-4\~WRL3372.tmp"
Fri 1 Jun 2007 39,936 A.SH. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Marketing\Markops team 3 - thebest\P‚riode 3-4\~WRL3456.tmp"
Mon 22 Jan 2007 49,152 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL0004.tmp"
Tue 23 Jan 2007 68,096 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL0061.tmp"
Tue 23 Jan 2007 53,760 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL0271.tmp"
Tue 23 Jan 2007 51,712 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL0373.tmp"
Tue 23 Jan 2007 64,512 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL0882.tmp"
Tue 23 Jan 2007 52,224 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL1027.tmp"
Tue 23 Jan 2007 68,096 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL1099.tmp"
Tue 23 Jan 2007 59,392 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL1239.tmp"
Tue 23 Jan 2007 64,512 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL1315.tmp"
Tue 23 Jan 2007 65,024 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL1362.tmp"
Tue 23 Jan 2007 70,656 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL1632.tmp"
Tue 23 Jan 2007 68,096 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL2301.tmp"
Tue 23 Jan 2007 54,784 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL2738.tmp"
Tue 23 Jan 2007 68,096 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL3038.tmp"
Tue 23 Jan 2007 70,656 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL3179.tmp"
Tue 23 Jan 2007 59,392 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL3318.tmp"
Tue 23 Jan 2007 70,656 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL3568.tmp"
Tue 23 Jan 2007 59,392 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL3684.tmp"
Tue 23 Jan 2007 61,440 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Etudes europ‚ennes\UE saison 2 !\cours de cha\Etudes euro\~WRL3925.tmp"
Wed 12 Oct 2005 82,432 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\Bloc1\Dossier 7 - Le manager et la r‚mun‚ration\~WRL1573.tmp"
Tue 15 Nov 2005 31,232 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL0693.tmp"
Tue 15 Nov 2005 31,744 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL0832.tmp"
Tue 15 Nov 2005 22,528 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL1242.tmp"
Tue 15 Nov 2005 28,160 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL1425.tmp"
Tue 15 Nov 2005 27,136 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL1645.tmp"
Tue 15 Nov 2005 20,480 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL2093.tmp"
Tue 15 Nov 2005 27,136 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL2098.tmp"
Tue 15 Nov 2005 32,256 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL2290.tmp"
Tue 15 Nov 2005 31,744 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL2823.tmp"
Tue 15 Nov 2005 32,256 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL2893.tmp"
Tue 15 Nov 2005 31,232 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL3295.tmp"
Tue 15 Nov 2005 28,160 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL3533.tmp"
Tue 15 Nov 2005 31,744 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL3796.tmp"
Tue 15 Nov 2005 28,160 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 3 le manager et la flexibilit‚les restructurations\~WRL3893.tmp"
Tue 22 Nov 2005 25,088 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 4 Le Manager et le dialogue social\~WRL1561.tmp"
Tue 22 Nov 2005 21,504 A..H. --- "C:\Documents and Settings\Charlotte C\Mes documents\Travail\Cesem 1\Cesem Arno\GRH\GRH\GRH\S‚ance 4 Le Manager et le dialogue social\~WRL3660.tmp"

[b]Finished!/b






Et voilà que je fait un scan avec Panda Total Scan. Voila le rapport : " 47 exemples de logiciels malveillants moyennement dangereux. 1 fichier suspect." J'ai beau fouiller les sujets, là je vous avoue que je suis un peu perdue...

Une suggestion ?
0