2 ME ETAPE NAVILOG OU NON ?

Résolu
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   -  
afideg Messages postés 10517 Date d'inscription   Statut Contributeur sécurité Dernière intervention   -
Bonjour,
j ai un rapport navilog pour des dizaines de fenetre intempestive pui jes passer a l option 2 merci d'avance


VOILA CELUI DE NAVILOG
PAR CONTRE CELUI DE HIJACKTHIS JE L AI TELECHARGER MAIS IL VEUT PAS ME SORTIR LE RAPPORT JE SAIS PAS SI L ANTIVIRUS LE PREND POUR UNE MENACE TU CROIS QUE DEVRAI DESACTIVER LE PARFEU ,EN ATTENTEND REGARDER CELUI DE NAVILOG JE VAIS REESSAYER MERCI A+




Search Navipromo version 3.5.4 commencé le 23/04/2008 à 14:16:27,64

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "zoher"

Mise à jour le 15.04.2008 à 18h00 par IL-MAFIOSO

Microsoft Windows Vista 6.0.6000
Internet Explorer : 7.0.6000.16643
Système de fichiers : NTFS

Executé en mode normal



*** Recherche dossiers dans "C:\Windows" ***



*** Recherche dossiers dans "C:\Program Files" ***


*** Recherche dossiers dans "C:\ProgramData" ***


*** Recherche dossiers dans "C:\ProgramData\Microsoft\Windows\Start Menu\Programs" ***


*** Recherche dossiers dans "c:\users\zoher\appdata\roaming\microsoft\windows\start menu\programs" ***


*** Recherche dossiers dans "C:\Users\zoher\AppData\Local\virtualstore\Program Files" ***



*** Recherche dossiers dans "C:\Users\zoher\AppData\Roaming" ***


*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier trouvé



*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\Windows\system32" *

* Recherche dans "C:\Users\zoher\AppData\Local\Microsoft" *

* Recherche dans "C:\Users\zoher\AppData\Local" *



*** Recherche fichiers ***




*** Recherche clés spécifiques dans le Registre ***


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans "C:\Windows\system32" :


* Dans "C:\Users\zoher\AppData\Local\Microsoft" :


* Dans "C:\Users\zoher\AppData\Local" :


3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche fichiers connus :



*** Analyse terminée le 23/04/2008 à 14:23:40,83 ***
A voir également:

96 réponses

autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
j espere que c est le bon



ComboFix 08-04-26.3 - zoher 2008-04-28 18:28:10.2 - NTFSx86 MINIMAL
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6000.0.1252.1.1036.18.2721 [GMT 2:00]
Endroit: C:\Users\zoher\Desktop\TRISTAN.EXE
Command switches used :: C:\Users\zoher\Desktop\CFScript1.txt

FILE ::
C:\WINDOWS\cdti.exe
C:\WINDOWS\System32\cfmom.exe
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\cdti.exe
C:\WINDOWS\System32\cfmom.exe

.
((((((((((((((((((((((((((((( Fichiers créés 2008-03-28 to 2008-04-28 ))))))))))))))))))))))))))))))))))))
.

Pas de nouveau fichier créé dans cet espace de temps

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-04-28 16:25 5,776 ----a-w C:\Windows\ upd.dll
2008-04-28 15:26 --------- d-----w C:\Users\zoher\AppData\Roaming\Uniblue
2008-04-28 15:26 --------- d-----w C:\Program Files\Uniblue
2008-04-28 14:24 --------- d-----w C:\Program Files\Common Files\InstallShield
2008-04-28 14:23 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-04-28 00:54 396,288 ----a-w C:\Program Files\HijackThis.exe
2008-04-27 23:57 --------- d-----w C:\Program Files\Navilog1
2008-04-27 23:39 --------- d-----w C:\Program Files\Avira
2008-04-27 23:11 --------- d-----w C:\Program Files\Hijackthis Version Française
2008-04-24 23:10 --------- d-----w C:\Users\zoher\AppData\Roaming\Malwarebytes
2008-04-24 23:10 --------- d-----w C:\Program Files\Malwarebytes' Anti-Malware
2008-04-24 17:46 --------- d-----w C:\Program Files\Alwil Software
2008-04-24 17:32 --------- d-----w C:\Program Files\Lopxp
2008-04-24 17:04 --------- d-----w C:\Program Files\Symantec
2008-04-23 09:52 --------- d-----w C:\Program Files\Packard Bell
2008-04-23 09:51 --------- d-----w C:\Program Files\Windows Live
2008-04-23 09:46 --------- d-----w C:\Program Files\AskTBar
2008-04-22 23:21 --------- d-----w C:\Program Files\NCH Swift Sound
2008-04-22 23:02 --------- d-----w C:\Program Files\Common Files\Adobe
2008-04-22 22:40 --------- d-----w C:\Users\zoher\AppData\Roaming\InstallShield
2008-04-22 21:57 --------- d-----w C:\Program Files\Ares
2008-04-22 21:48 --------- d-----w C:\Program Files\DivX
2008-04-22 21:48 --------- d-----w C:\Program Files\Common Files\PX Storage Engine
2008-04-22 21:05 --------- d-----w C:\Program Files\Norton 360
2008-04-22 20:46 467,968 ----a-w C:\Windows\ IEXPLORE.EXE
2008-04-22 19:13 --------- d-----w C:\Program Files\Trend Micro
2008-04-21 16:46 --------- d-----w C:\Users\zoher\AppData\Roaming\LimeWire
2008-04-20 21:07 --------- d-----w C:\Users\zoher\AppData\Roaming\Skype
2008-04-20 19:07 32 ----a-w C:\Users\All Users\ezsid.dat
2008-04-20 19:07 --------- d-----w C:\Users\zoher\AppData\Roaming\skypePM
2008-04-14 11:52 --------- d-----w C:\Program Files\NCH Software
2008-04-14 11:51 --------- d-----w C:\Users\zoher\AppData\Roaming\NCH Software
2008-04-12 10:48 --------- d-----w C:\Users\zoher\AppData\Roaming\NCH Swift Sound
2008-04-09 21:53 --------- d-----w C:\Program Files\Windows Mail
2008-04-06 23:36 --------- d-----w C:\Users\zoher\AppData\Roaming\DivX
2008-04-06 09:28 --------- d-----w C:\Program Files\Microsoft SQL Server Compact Edition
2008-04-03 23:18 --------- d-----w C:\Program Files\eMule
2008-03-31 21:25 161,096 ----a-w C:\Windows\System32\DivXCodecVersionChecker.exe
2008-03-30 11:54 --------- d-----w C:\Program Files\NavigationAdvisor
2008-03-27 23:44 --------- d-----w C:\Users\zoher\AppData\Roaming\Template
2008-03-22 12:43 --------- d-----w C:\Program Files\AviSynth 2.5
2008-03-22 12:42 --------- d-----w C:\Program Files\eRightSoft
2008-03-21 14:12 --------- d-----w C:\Program Files\BearShare Applications
2008-03-21 14:11 --------- d-----w C:\Program Files\AVS4YOU
2008-03-21 14:08 --------- d-----w C:\Program Files\Common Files\AVSMedia
2008-03-20 09:12 --------- d-----w C:\Users\zoher\AppData\Roaming\AVS4YOU
2008-03-18 14:54 --------- d-----w C:\Users\zoher\AppData\Roaming\STOIK
2008-03-16 11:30 --------- d-----w C:\Users\zoher\AppData\Roaming\eMule
2008-03-15 15:54 --------- d-----w C:\Program Files\Yahoo!
2008-03-14 19:06 --------- d-----w C:\Users\zoher\AppData\Roaming\Ahead
2008-03-14 19:05 --------- d-----w C:\Program Files\Common Files\Ahead
2008-03-14 09:52 --------- d-----w C:\Program Files\Java
2008-03-13 10:33 --------- d-----w C:\Program Files\Common Files\Java
2008-03-10 01:55 --------- d-----w C:\Users\zoher\AppData\Roaming\TVU networks
2008-03-07 20:02 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-03-06 20:32 706 ----a-w C:\Windows\system32\drivers\COH_Mon.inf
2008-03-06 20:32 23,904 ----a-w C:\Windows\system32\drivers\COH_Mon.sys
2008-03-06 20:32 10,537 ----a-w C:\Windows\system32\drivers\COH_Mon.cat
2008-03-01 13:17 --------- d-----w C:\Users\zoher\AppData\Roaming\Packard Bell
2008-02-29 06:51 19,000 ----a-w C:\Windows\System32\kd1394.dll
2008-02-29 06:39 40,960 ----a-w C:\Windows\System32\srclient.dll
2008-02-29 06:39 371,712 ----a-w C:\Windows\System32\srcore.dll
2008-02-29 06:38 313,856 ----a-w C:\Windows\System32\rstrui.exe
2008-02-29 06:38 16,384 ----a-w C:\Windows\System32\srdelayed.exe
2008-02-29 06:35 6,656 ----a-w C:\Windows\System32\kbd106n.dll
2008-02-29 06:34 7,168 ----a-w C:\Windows\System32\f3ahvoas.dll
2008-02-29 04:16 2,027,008 ----a-w C:\Windows\System32\win32k.sys
2008-02-21 04:43 826,368 ----a-w C:\Windows\System32\wininet.dll
2008-02-21 04:43 56,320 ----a-w C:\Windows\System32\iesetup.dll
2008-02-21 04:43 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll
2008-02-21 04:43 296,448 ----a-w C:\Windows\System32\gdi32.dll
2008-02-21 04:43 26,624 ----a-w C:\Windows\System32\ieUnatt.exe
2008-02-21 02:05 129,784 ------w C:\Windows\System32\PxAFS.DLL
2008-02-19 05:10 620,088 ----a-w C:\Windows\System32\ci.dll
2008-02-14 23:19 944,184 ----a-w C:\Windows\System32\winload.exe
2008-02-13 21:13 194,560 ----a-w C:\Windows\System32\WebClnt.dll
2008-02-13 21:09 3,504,696 ----a-w C:\Windows\System32\ntkrnlpa.exe
2008-02-13 21:09 3,470,392 ----a-w C:\Windows\System32\ntoskrnl.exe
2008-02-13 21:09 24,064 ----a-w C:\Windows\System32\netcfg.exe
2008-02-13 21:09 22,016 ----a-w C:\Windows\System32\netiougc.exe
2008-02-13 21:09 2,560 ----a-w C:\Windows\AppPatch\AcRes.dll
2008-02-13 21:09 2,144,256 ----a-w C:\Windows\AppPatch\AcGenral.dll
2008-02-13 21:09 167,424 ----a-w C:\Windows\System32\tcpipcfg.dll
2008-02-13 21:08 537,600 ----a-w C:\Windows\AppPatch\AcLayers.dll
2008-02-13 21:08 449,536 ----a-w C:\Windows\AppPatch\AcSpecfc.dll
2008-02-13 21:08 4,247,552 ----a-w C:\Windows\System32\GameUXLegacyGDFs.dll
2008-02-13 21:08 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.dll
2008-02-13 21:08 1,686,528 ----a-w C:\Windows\System32\gameux.dll
2008-02-07 20:15 704,000 ----a-w C:\Windows\System32\PhotoScreensaver.scr
2008-02-07 20:15 67,584 ----a-w C:\Windows\System32\wlanhlp.dll
2008-02-07 20:15 542,720 ----a-w C:\Windows\System32\sysmain.dll
2008-02-07 20:15 502,784 ----a-w C:\Windows\System32\wlansvc.dll
2008-02-07 20:15 47,104 ----a-w C:\Windows\System32\wlanapi.dll
2008-02-07 20:15 297,984 ----a-w C:\Windows\System32\wlansec.dll
2008-02-07 20:15 290,816 ----a-w C:\Windows\System32\wlanmsm.dll
2008-02-07 20:15 24,064 ----a-w C:\Windows\System32\wtsapi32.dll
2008-02-07 20:15 2,923,520 ----a-w C:\Windows\explorer.exe
2008-02-07 20:11 9,728 ----a-w C:\Windows\System32\LAPRXY.DLL
2008-02-07 20:11 223,232 ----a-w C:\Windows\System32\WMASF.DLL
2008-02-07 20:11 2,048 ----a-w C:\Windows\System32\asferror.dll
.

((((((((((((((((((((((((((((( snapshot@2008-04-27_11.04.04.64 )))))))))))))))))))))))))))))))))))))))))
.
- 2008-04-27 08:53:14 5,776 ----a-w C:\Windows\ upd.dll
+ 2008-04-28 16:25:41 5,776 ----a-w C:\Windows\ upd.dll
- 2008-04-27 08:58:16 67,584 --s-a-w C:\Windows\bootstat.dat
+ 2008-04-28 16:26:58 67,584 --s-a-w C:\Windows\bootstat.dat
- 2008-04-27 09:00:42 262,144 ----a-w C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\UsrClass.dat
+ 2008-04-28 13:17:30 262,144 ----a-w C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\UsrClass.dat
- 2008-04-27 09:00:58 262,144 --sha-w C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
+ 2008-04-28 16:26:16 262,144 --sha-w C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT
- 2008-04-27 09:01:23 262,144 ----a-w C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\UsrClass.dat
+ 2008-04-28 13:05:56 262,144 ----a-w C:\Windows\ServiceProfiles\NetworkService\AppData\Local\Microsoft\Windows\UsrClass.dat
- 2008-04-27 09:00:53 262,144 --sha-w C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
+ 2008-04-28 16:26:16 262,144 --sha-w C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT
- 2008-04-27 09:01:04 98,304 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2008-04-28 16:25:41 196,608 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2008-04-27 22:20:08 81,920 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012008042120080428\index.dat
+ 2008-04-28 15:44:21 98,304 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012008042820080429\index.dat
- 2008-04-27 09:01:04 1,114,112 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2008-04-28 16:25:41 1,114,112 --sha-w C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2008-04-27 09:01:04 49,152 --sha-w C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2008-04-28 16:25:41 65,536 --sha-w C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
- 2008-04-27 09:01:35 262,144 ----a-w C:\Windows\System32\config\systemprofile\ntuser.dat
+ 2008-04-27 23:23:20 262,144 ----a-w C:\Windows\System32\config\systemprofile\ntuser.dat
+ 2008-04-27 23:23:20 262,144 ---ha-w C:\Windows\System32\config\systemprofile\ntuser.dat.LOG1
+ 2007-09-07 10:05:19 62,016 ----a-w C:\Windows\System32\drivers\avipbb.sys
+ 2007-03-01 08:34:36 28,352 ----a-w C:\Windows\System32\drivers\ssmdrv.sys
- 2008-04-27 09:00:17 6,878 ----a-w C:\Windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1336411286-2013430242-3925719215-1002_UserData.bin
+ 2008-04-28 15:02:01 7,358 ----a-w C:\Windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-1336411286-2013430242-3925719215-1002_UserData.bin
- 2008-04-27 09:00:17 59,118 ----a-w C:\Windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
+ 2008-04-28 15:02:01 60,304 ----a-w C:\Windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin
- 2008-04-27 09:00:15 48,000 ----a-w C:\Windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2008-04-28 15:01:59 50,108 ----a-w C:\Windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [2008-02-07 22:09 1232896]
"WindowsWelcomeCenter"="oobefldr.dll" [2006-11-02 14:34 2159104 C:\Windows\System32\oobefldr.dll]
"SmpcSys"="C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe" [ ]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 12:34 5724184]
"ISUSPM"="C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" [2006-09-11 05:40 218032]
"ehTray.exe"="C:\Windows\ehome\ehTray.exe" [2006-11-02 14:35 125440]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2006-11-02 14:36 201728]
"{79BEDC7F-AE6B-BC9F-C85E-6A39A8D397BF}"="C:\Users\zoher\AppData\Roaming:spoolsv.exe" [2008-04-28 17:26 1095348]
"Uniblue RegistryBooster 2"="c:\program files\uniblue\registrybooster 2\StartRegistryBooster.exe" [2008-04-24 11:45 99608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2007-11-14 18:06 1006264]
"RtHDVCpl"="RtHDVCpl.exe" [2007-02-15 18:07 4390912 C:\Windows\RtHDVCpl.exe]
"NvSvc"="C:\Windows\system32\nvsvc.dll" [2007-07-06 21:15 86016]
"NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [2007-07-06 21:15 8466432]
"NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [2007-07-06 21:15 81920]
"RoxWatchTray"="C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe" [2007-01-11 12:40 232184]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-11-14 10:00 243200]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2007-01-09 23:59 115816]
"toolbar_eula_launcher"="C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe" [2007-02-20 18:20 28672]
"ACTIVBOARD"="C:\Program Files\Packard Bell\FIJI\aboard.exe" [2007-01-18 14:03 79416]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 23:16 39792]
"MSConfig"="C:\Windows\System32\msconfig.exe" [2006-11-02 11:45 222208]
"Symantec PIF AlertEng"="C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2008-01-29 18:38 583048]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" [2008-02-22 05:25 144784]
"NeroFilterCheck"="C:\Windows\system32\NeroCheck.exe" [2001-07-09 11:50 155648]
"avgnt"="C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2007-08-31 12:25 249896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"GrpConv"="grpconv -o" []

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 23:18 443968]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE [2007-04-30 12:10:00 394856]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableLUA"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.i420"= i420vfw.dll
"msacm.scg726"= scg726.acm
"msacm.alf2cd"= alf2cd.acm
"vidc.dvsd"= mcdvd_32.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\cmds]
C:\Users\zoher\AppData\Local\Temp\geefc.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MS Juan]
C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSServer]
C:\Users\zoher\AppData\Local\Temp\hgggg.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{780B0225-3B1D-4926-912A-FBCA504AF94B}"= UDP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{F0F74F2B-FF94-43FB-8040-6AD5226FE601}"= TCP:C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:Microsoft Office OneNote
"{24AC9391-A08C-4573-80FE-E01EC864EBF0}"= C:\Program Files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{883220C4-CB37-4B2B-9C40-4502F698E1B9}"= UDP:443:TCP port 443 ooVoo
"{F0ED7FC7-DC7B-4D09-A497-4CD9FF1805B2}"= TCP:443:UDP port 443 ooVoo
"{77B24314-005B-4B48-8AB0-1BE5CD7B2F2D}"= UDP:37674:TCP port 37674 ooVoo
"{81B9670D-DA8A-4189-B489-E20A577BEACE}"= TCP:37674:UDP port 37674 ooVoo
"{EB53EE07-781F-48D2-B8DB-ED869CAA7896}"= TCP:37675:UDP port 37675 ooVoo
"{2898ACF8-B604-4E45-AA44-3EB573208269}"= UDP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
"{FB28E93F-071A-4A4C-A616-9DC9B7D2562A}"= TCP:C:\Program Files\LimeWire\LimeWire.exe:LimeWire
"{082288EE-33E7-42DE-B3F1-7BA614E58769}"= UDP:86:BroadCam Web Server

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
"DoNotAllowExceptions"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\RestrictedServices\Static\System]
"DFSR-1"= RPort=5722|UDP:%SystemRoot%\system32\svchost.exe|Svc=DFSR:Allow inbound TCP traffic|

S1 IDSvix86;Symantec Intrusion Prevention Driver;C:\PROGRA~2\Symantec\DEFINI~1\SymcData\idsdefs\20080421.001\IDSvix86.sys [2008-02-13 18:18]
S2 cfm;cfm;C:\Windows\system32\cfmom.exe []
S3 siusbmod;siusbmod;C:\Windows\system32\DRIVERS\siusbmod.sys [2005-07-28 16:20]
S3 SYMNDISV;SYMNDISV;C:\Windows\system32\Drivers\SYMNDISV.SYS [2007-01-09 23:32]

*Newly Created Service* - COMHOST
*Newly Created Service* - ECACHE
.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-04-28 16:00:00 C:\Windows\Tasks\Extension de garantie.job"
- C:\Program Files\Packard Bell\SetupmyPC\PBCarNot.exe
"2008-04-28 09:11:10 C:\Windows\Tasks\User_Feed_Synchronization-{FCC7B0EE-FE24-473E-8BE3-F1A99CABF862}.job"
- C:\Windows\system32\msfeedssync.exe
.
**************************************************************************

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-04-28 18:30:53
Windows 6.0.6000 NTFS

Balayage processus cachés ...

Balayage caché autostart entries ...

HKCU\Software\Microsoft\Windows\CurrentVersion\Run
{79BEDC7F-AE6B-BC9F-C85E-6A39A8D397BF} = C:\Users\zoher\AppData\Roaming:spoolsv.exe??\?R?o?a?m?i?n?g???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

Balayage des fichiers cachés ...

Scan terminé avec succès
Les fichiers cachés: 0

**************************************************************************
.
Temps d'accomplissement: 2008-04-28 18:31:31
ComboFix-quarantined-files.txt 2008-04-28 16:31:18
ComboFix2.txt 2008-04-27 09:04:19

Le texte du message associé au numéro 0x2379 est introuvable dans le fichier de messages pour Application.
Le texte du message associé au numéro 0x2379 est introuvable dans le fichier de messages pour Application.

268 --- E O F --- 2008-04-25 10:03:00
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
j ai tout il me manque Fix spoolsv.exe . j ai le rapport mais je galere pour le copier ,coller pourtant il me dit "CREATE BACKUP" SAUVEGARDER mais je sais pas ou il l envoie t a une idee ?





voici les deux
oad magicsport et kaspersky complet




28/04/2008 ---- 23:27:56,78

----------------------------------
§§§§§§ [MagicSports ] §§§§§§
----------------------------------
[X] Registre

-------------- [ ] rapide
-- Fichier --- [ ] disque systeme
------------- [X] complete


********************
[Registre]
********************

Aucune entrée détectée

*******************
[Fichier]
*******************



*********************
[Même date]
*********************

Aucun fichier créé à la même date détecté


Outil Aide Diagnostic By !aur3n7 Version 1.1
----------------------------------
§§§§§ Fin Rapport §§§§§
----------------------------------














28/04/2008 ---- 23:31:35,70

----------------------------------
§§§§§§ [MSPMirage.exe ] §§§§§§
----------------------------------
[X] Registre

-------------- [ ] rapide
-- Fichier --- [ ] disque systeme
------------- [X] complete


********************
[Registre]
********************

Aucune entrée détectée

*******************
[Fichier]
*******************



*********************
[Même date]
*********************

Aucun fichier créé à la même date détecté


Outil Aide Diagnostic By !aur3n7 Version 1.1
----------------------------------
§§§§§ Fin Rapport §§§§§
----------------------------------













KASPERSKY ON-LINE SCANNER REPORT
Monday, April 28, 2008 10:12:45 PM
Système d'exploitation : Home Edition, (Build 6000)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 28/04/2008
Enregistrements dans la base antivirus Kaspersky : 729076


Paramètres d'analyse
Analyser avec la base antivirus suivante étendue
Analyser les archives vrai
Analyser les bases de messagerie vrai

Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
G:\
H:\

Statistiques de l'analyse
Total d'objets analysés 316384
Nombre de virus trouvés 2
Nombre d'objets infectés 10 / 0
Nombre d'objets suspects 0
Durée de l'analyse 01:57:07

Nom de l'objet infecté Nom du virus Dernière action
C:\boot\BCD L'objet est verrouillé ignoré

C:\boot\BCD.LOG L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\Common Client\settings.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBConfig.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDebug.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDetect.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBNotify.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBRefr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg2.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetDev.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetLoc.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetUsr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBStHash.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBValid.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPPolicy.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStart.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStop.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtErEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtETmp\305F1CD2.TMP L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtMoEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtNvEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtScEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtTxFEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtViEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDALRT.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDCON.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDDBG.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDFW.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDIDS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDSYS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\Ntf57C0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\Ntf57C1.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\Common Client\settings.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBConfig.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDebug.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDetect.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBNotify.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBRefr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg2.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetDev.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetLoc.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetUsr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBStHash.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBValid.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPPolicy.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStart.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStop.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtErEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtETmp\305F1CD2.TMP L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtMoEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtNvEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtScEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtTxFEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtViEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDALRT.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDCON.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDDBG.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDFW.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDIDS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDSYS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Windows.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\Ntf57C0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\Ntf57C1.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\Common Client\settings.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBConfig.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDebug.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDetect.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBNotify.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBRefr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg2.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetDev.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetLoc.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetUsr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBStHash.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBValid.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPPolicy.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStart.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStop.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtErEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtETmp\305F1CD2.TMP L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtMoEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtNvEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtScEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtTxFEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtViEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDALRT.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDCON.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDDBG.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDFW.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDIDS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDSYS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.78.Crwl L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.78.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\CiPT0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\Used0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SecStore\CiST0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk1.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk2.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Windows.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\Ntf57C0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\Ntf57C1.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\Common Client\settings.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBConfig.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDebug.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDetect.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBNotify.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBRefr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg2.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetDev.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetLoc.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetUsr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBStHash.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBValid.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPPolicy.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStart.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStop.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtErEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtETmp\305F1CD2.TMP L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtMoEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtNvEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtScEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtTxFEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtViEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDALRT.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDCON.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDDBG.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDFW.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDIDS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDSYS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Crypto\RSA\MachineKeys\0d3e561d613579f49c6605df8e72ae4d_a1c6bebf-0f33-4073-be9a-86ffb2f46b3e L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.78.Crwl L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.78.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010001.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010002.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010003.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010004.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010005.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010006.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.ci L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wsb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010008.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010009.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000A.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000B.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000C.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000D.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010011.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010012.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\INDEX.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\CiPT0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\Used0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SecStore\CiST0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk1.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk2.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.Ntfy167.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Windows.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\Ntf57C0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\Ntf57C1.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\Common Client\settings.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBConfig.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDebug.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBDetect.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBNotify.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBRefr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetCfg2.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetDev.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetLoc.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBSetUsr.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBStHash.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\BBValid.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPPolicy.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStart.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SPBBC\SPStop.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtErEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtETmp\305F1CD2.TMP L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtMoEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtNvEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtScEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtTxFEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\SrtViEvt.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDALRT.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDCON.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDDBG.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDFW.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDIDS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SymNetDrv\SNDSYS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Crypto\RSA\MachineKeys\0d3e561d613579f49c6605df8e72ae4d_a1c6bebf-0f33-4073-be9a-86ffb2f46b3e L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.78.Crwl L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.78.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010001.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010002.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010003.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\000
0
afideg Messages postés 10517 Date d'inscription   Statut Contributeur sécurité Dernière intervention   602
 
Re,

Kaspersky n'est pas complet
Poste-le en plusieurs morceaux s'il le faut.
Il me faut ces deux-là: Nombre de virus trouvés 2



ComboFix ==> ok
C'est celui-là qu'il me fallait.
((((((((( Autres suppressions )))))))))))))))))
C:\WINDOWS\cdti.exe
C:\WINDOWS\System32\cfmom.exe




Pour Fix spoolsv.exe je ne sais pas non plus où est le rapport.
Recherche avec l'explorateur " Fix spoolsv.exe " (.log) ? (backup) ?
Il est important d'apprendre qu'il a cependant "CREATE BACKUP".
C'est le fichier qu'il me reste à traiter. ==> j'en ai besoin.
Regarde s'il est encore là C:\Users\zoher\AppData\Roaming:spoolsv.exe --> mais n'y touche pas.
==> Essaie aussi avec le mot RegistryBooster


Fais ceci aussi:

A)- Suppression de Symantec Norton Internet Security , à l’aide de JV16. (Ne pas le mettre à jour !)
Alors, voilà:
- Téléchargement de la dernière version gratuite ici :
https://www.zebulon.fr/telechargements/utilitaires/nettoyeurs/jv16.html ou là http://assiste.com.free.fr/ftp/jv16pt_setup_1.3.0.195.exe
"Ouvrir" > [Exécuter" > "oui" > "Next" > "Yes" > [Next] > [Next] > [Next] > cocher la case devant "Create a desktop icon" > [Next] > [Install] > "non" > cocher la case devant "Start jv16 Power Tools" > [Finish] ==> on obtient http://img135.imageshack.us/img135/6845/screenshot338ud5.png ==> clic sur le menu "Registry tool"; ensuite comme ceci http://img144.imageshack.us/img144/9471/screenshot339db1.png (au lieu de Boonty, tu colles le mot - Symantec Norton Internet Security -) et supprime [Remove] alors ce que trouve JV16.
Recommence la recherche (Search) pour " Norton 360 " , “ Norton ”, " Symantec Shared " et “ Symantec


B)- 1°- Télécharger _OTMoveIt (de Old_Timer) sur ton Bureau. http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe
2°- Double-cliquer sur OTMoveIt.exe pour le lancer.
Note: Si vous utilisez Vista, faire un clic-droit sur le fichier puis choisir [Exécuter en tant qu'administrateur]
Note : si présence de DLL, la case « Unregister Dll's and OCX's » doit être cochée
3°- Dans le cadre de OTMoveIt2 : "Paste List of Files/Folders to be moved"
http://nsa01.casimages.com/img/2008/04/04/0804041233502840681.jpg
faire un copier/coller de cette liste en gras, telle quelle:

C:\Program Files\Hijackthis Version Française
C:\Program Files\Symantec
C:\Program Files\Ares
C:\Program Files\Norton 360
C:\Program Files\Common Files\Symantec Shared
C:\Documents and Settings\all users\Application data\Symantec
C:\WINDOWS\cdti.exe
C:\WINDOWS\System32\cfmom.exe
C:\Users\zoher\AppData\Local\Temp\hgggg.dll
C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll
C:\Users\zoher\AppData\Local\Temp\geefc.dll



4°- Clique sur le bouton rouge MoveIt! pour lancer la suppression.
-Le résultat apparaîtra dans le cadre "Results".
Note : Copier tout ce qui se trouve dans la zone “Results” (sous la barre verte) dans le Presse-papiers en sélectionnant TOUTES LES LIGNES puis en appuyant simultanément sur les touches CTRL et C (ou, après les avoir sélectionnées, en faisant un clic-droit puis en choisissant Copier), et coller ces résultats en réponse sur le forum (clic-droit > coller).
* Clique sur "Exit" pour fermer Fermer OTMoveIt2
5°- Note: Si un fichier ou un dossier ne peut pas être déplacé immédiatement, un redémarrage sera peut-être nécessaire afin de terminer le processus de déplacement. Si le redémarrage de la machine vous est demandé, choisir Oui/Yes.
Nécessaire après toute action dans les registres, il te sera demandé de redémarrer le pc pour achever la suppression.

6°- Le rapport se trouve en C:\_OTMoveIt\MovedFiles; tu ouvres le dossier et tu trouveras le rapport à poster. (fichier de ce type ********_******.log (mm/jj/aaaa_hh/mm/ss = date et horaire de la suppression)



C)- Supprimez les fichiers temporaires:

Allez dans DEMARRER-EXECUTER et tapez %TEMP% et cliquez sur la combinaison de touches suivantes : [Ctrl + Shift + Entrée].
Supprimez tout le contenu et videz la corbeille par la suite.



Bonne nuit
Al.



0
afideg Messages postés 10517 Date d'inscription   Statut Contributeur sécurité Dernière intervention   602
 
Allo?
autobuizz ?

Où en es-tu ?
Des difficultés ?
Comment se comporte le PC ?

Pour le log de Kaspersky, ne poste que les lignes où tu lis "Ignoré" seul (et non pas "Verrouillé/Ignoré").
As-tu trouvé le backup de "RegistryBooster" (tu sais aussi lancer l'explorateur sur le mot "backup").

As-tu sorti Symantec Norton Internet Security , à l’aide de JV16 ?

As-tu appliqué _OTMoveIt (de Old_Timer) ==> as-tu vidé ces trois fichiers:
C:\Users\zoher\AppData\Local\Temp\hgggg.dll
C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll
C:\Users\zoher\AppData\Local\Temp\geefc.dll
?


Bonne journée
Al.
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
J AI COUPER TOUT CEUX QUI AVAIT UN PROBLEME SUR LE RAPPORT KASPERSKY
POUR LES AUTRES DEMARCHE JE CONTINUE








C:\Documents and Settings\zoher\Documents\Navilog1.exe/file10 Infecté : not-a-virus:RiskTool.Win32.Reboot.f ignoré




C:\Documents and Settings\zoher\Mes documents\Navilog1.exe/file10 Infecté : not-a-virus:RiskTool.Win32.Reboot.f ignoré




C:\Documents and Settings\zoher\Mes documents\Navilog1.exe Inno: infecté - 1 ignoré




C:\Program Files\Navilog1\reboot.exe Infecté : not-a-virus:RiskTool.Win32.Reboot.f ignoré





C:\Users\zoher\Mes documents\Navilog1.exe/file10 Infecté : not-a-virus:RiskTool.Win32.Reboot.f ignoré




C:\Users\zoher\Mes documents\Navilog1.exe Inno: infecté - 1 ignoré





C:\Windows\ IEXPLORE.EXE Infecté : Trojan-Clicker.Win32.Delf.qg ignoré
Ana
0
afideg Messages postés 10517 Date d'inscription   Statut Contributeur sécurité Dernière intervention   602
 
Re

Merci
Je m'en doutais
Ajoute ces lignes à _OT moveld

C:\Windows\ IEXPLORE.EXE
C:\Windows\ upd.dll


Merci
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
J AI TROUVER UN RAPPORT QUI A ETE FAIT LE 28/04 PEUT ETRE QUE C EST "BACKUP"









pushd "C:\327882R2FWJFW\"

=============================================

ALLUSERSPROFILE=C:\ProgramData
APPDATA=C:\Users\zoher\AppData\Roaming
cfldr=327882R2FWJFW
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=PC-DE-ZOHER
ComSpec=C:\Windows\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Users\zoher
kmd=CF16276.exe
LOCALAPPDATA=C:\Users\zoher\AppData\Local
LOGONSERVER=\\PC-DE-ZOHER
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\327882R2FWJFW;C:\Windows\system32;C:\Windows;C:\Windows\system32\wbem;C:\Windows\system32;C:\Windows;C:\Windows\system32\wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared
PATHEXT=.cfexe;.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 107 Stepping 2, AuthenticAMD
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=6b02
ProgramData=C:\ProgramData
ProgramFiles=C:\Program Files
PROMPT=$
PUBLIC=C:\Users\Public
RoxioCentral=C:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\
SESSIONNAME=Console
sfxname=C:\Users\zoher\Desktop\TRISTAN.EXE
system=C:\Windows\system32
SystemDrive=C:
SystemRoot=C:\Windows
TEMP=C:\Users\zoher\AppData\Local\Temp
TMP=C:\Users\zoher\AppData\Local\Temp
USERDOMAIN=PC-de-zoher
USERNAME=zoher
USERPROFILE=C:\Users\zoher
windir=C:\Windows

=============================================


if not defined sfxname goto END

Nircmd win close ititle "ComboFix"

If [] == [] Set "SfxCmd="

if /I "C:\327882R2FWJFW" NEQ "C:\327882R2FWJFW" goto Abort

if exist "C:\Users\zoher\AppData\Local\Temp\327882R2FWJFW327882R2FWJFW.log" del "C:\Users\zoher\AppData\Local\Temp\327882R2FWJFW327882R2FWJFW.log"
SteelWerX Extended Configuration Access Control Lists
Written by Bobbi Flekman 2006 (C)
Ownerchange for "C:\Windows\system32\cmd.exe" to Administrators group was successful

copy /y "C:\Windows\system32\cmd.exe" "C:\Windows\system32\CF16276.exe"
1 fichier(s) copi‚(s).

For /F "tokens=*" %g in ("C:\Users\zoher\Desktop\TRISTAN.EXE") do @(
set "FileName=%~ng"
set "FilePath=%~dpg"
)

Set FileName 2>nul | GREP -Gisqx "FileName=[-[:alnum:]@.]*" || (
nircmd infobox "You cannot rename ComboFix as TRISTAN~n~nPlease use another name, preferbaly made up of alphanumeric characters" ""
goto END
)

DIR /AD/B C:\* | FindStr.exe -IVX ComboFix 1>dirname00

FindStr.exe -LIXC:"TRISTAN" dirname00 1>nul && call :NameChk

If exist dirname0? del /Q dirname0?

If exist "\TRISTAN" DIR /AD "\TRISTAN" 1>nul && (
rd /s/q "\TRISTAN"
If exist "\TRISTAN" (
PV -kf findstr.exe *.cfexe
rd /s/q "\TRISTAN"
)
If exist "\TRISTAN" (
handle "C:\TRISTAN" | SED -r "/pid:/!d; s/.*: (.*): .*/\1/" 1>temp00
for /F "tokens=1,2" %g in (temp00) do @echo.y | Handle -p %g -c %h
del /q temp00
rd /s/q "\TRISTAN"
)
)

If exist "\TRISTAN" rd /s/q "\TRISTAN"

If exist "\TRISTAN" goto :eof

VER | Findstr.exe -ic:"[Version 6.0" && (Call :Vista ) ||
Microsoft Windows [version 6.0.6000]

type nul 1>Vista.mac

swxcacls "C:\Windows\system32\cmd.exe" /g SID#S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464:f /ga:x /gs:x /gp:x /gu:x /q

swxcacls "C:\Windows\system32\cmd.exe" /o SID#S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464 /q

swreg query "hkcu\control panel\international" /v localename | SED "/.*\t/!d;s///" 1>MUI00

swreg query "hku\.default\control panel\international" /v localename | SED "/.*\t/!d;s///" 1>>MUI00

SED -r "$!N; /^(.*)\n\1$/!P; D" MUI00 1>MUI01

For /F "tokens=*" %g in (MUI01) do @if exist "C:\Windows\system32\%~g\cmd.exe.mui" (
swxcacls "C:\Windows\system32\%~g\cmd.exe.mui" /oa /q
swxcacls "C:\Windows\system32\%~g\cmd.exe.mui" /p /ga:f /gs:f /gp:x /gu:x /q
Copy /y "C:\Windows\system32\%~g\cmd.exe.mui" "C:\Windows\system32\en-us\CF16276.exe.mui"
swxcacls "C:\Windows\system32\%~g\cmd.exe.mui" /g SID#S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464:f /ga:x /gs:x /gp:x /gu:x /q
swxcacls "C:\Windows\system32\%~g\cmd.exe.mui" /o SID#S-1-5-80-956008885-3418522649-1831038044-1853292631-2271478464 /q
)
SteelWerX Extended Configuration Access Control Lists
Written by Bobbi Flekman 2006 (C)
Ownerchange for "C:\Windows\system32\fr-FR\cmd.exe.mui" to Administrators group was successful
1 fichier(s) copi‚(s).

GREP -sq . MUI01 && (
del /q MUI0? 2>nul
goto :eof
)

CD ..

Set "comspec=C:\Windows\system32\CF16276.exe"

(
echo.md "\TRISTAN"
echo.Move /y "\327882R2FWJFW\*" "\TRISTAN"
echo.RD /S/Q "\327882R2FWJFW"
echo.Start "." /d"C:\TRISTAN" "C:\Windows\system32\CF16276.exe" /k c.bat
echo.pv -kf cmd.exe
) 1>Start_.cmd

NirCmd exec hide "C:\Windows\system32\CF16276.exe" /f:off /d /c call Start_.cmd

NirCmd execmd del "\327882R2FWJFW\prep.cmd"

EXIT
0
afideg Messages postés 10517 Date d'inscription   Statut Contributeur sécurité Dernière intervention   602
 
Non,

Ce n'est pas ça
Je ne vois pas ce que c'est d'ailleurs.
Un script pour renommer CF ?

Merci

NOTE ==> il faut ajouter 2 lignes dans _OT Move!d
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
j envoie le rapport otmovelt par contre pour vider les fichiers temporaire il y en a qui qui sont utiliser et donc impossible de suprimer , je poursuit....





File/Folder C:\Program Files\Hijackthis Version Française not found.
File/Folder C:\Program Files\Symantec not found.
File/Folder C:\Program Files\Ares not found.
Folder move failed. C:\Program Files\Norton 360\VersionDat scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\SupportSoft scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\OPC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\manual scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\Log scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\IDSDefs scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\Backup Data scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\VAScanner scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymTheme scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support\Reporter scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymHTML\1.0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymHTML scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Support Controls scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SRTSP scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SPManifests scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SPBBC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Security Center scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c\01 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\OPC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\NPC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\NHelp scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\MSL scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\MceAddIn scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\IDS scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Firewall scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\EENGINE scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WP\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WP scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Common\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Browser scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\COH scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Cleanup scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\CF\Manifests scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\CF scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\AppCore scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\AntiVirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SymNetDrv scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SyKnAppS\Updates scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SyKnAppS\LiveUpdate scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SyKnAppS\Freezer\CAV scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SyKnAppS\Freezer scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SyKnAppS scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SRTSP\SrtETmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SRTSP\Quarantine scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SRTSP scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\SPBBC scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{FFE49700-701F-4C7F-8BF7-1CE81C27430A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{FCF6B885-4248-4736-AC4B-71E813F9DD44} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{FC6EE047-961E-4399-9901-077A0EC7BDD9} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{FA56239B-481C-4689-AE3D-D948F68F7141} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{F613FBD8-49FB-45E2-BEB6-74978B4C839A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{F5915CF5-826F-478B-9E54-89BE9EF5286E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{F3460633-DDD2-4D8B-8C55-FD0498FA1829} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{F27661AE-5753-4735-B292-FDDC521124BE} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{F1697629-BCBA-470E-B300-0E3B5FBE2F12} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{EEF1E73D-8A20-4313-862A-6D22A38583AE} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{ED1EE364-AA42-4F48-BC34-044545C07D6E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{EB3B1273-3BD0-4D7F-92C4-CD085BC838BF} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{E81EB7E3-29F1-4E77-8245-20A790C54031} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{E8195737-FAE4-44CA-B9CD-6318BEB35D4D} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{E6D75664-DBCF-41C7-BEB8-B5DCEC742AA0} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{E3BE336F-44BD-4CAB-B09F-C838021E7F97} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{E35E237E-97A2-48ED-979A-2BE99F72D10A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{E1E45018-FABB-4466-8CCF-D21AA529892A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{E1C2A855-6C1F-409F-A457-EB59EA6C5879} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{E0A77AFD-610A-4C8E-8848-E5B2C52BC278} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{DF47131F-2858-4ECB-932C-6F9419C525E5} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{DD67555F-126C-4194-89C1-100EBCB19CB4} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{DD21E4A2-B27A-4210-A1AD-9B01553AB0DB} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{DC9081B5-EBF9-45D6-9D8C-3098DEE1036C} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{D25D6827-EAB8-491F-9017-FA09021557F2} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{D03404C9-EEF4-4156-BE5C-74585D46F8E4} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{CE8E0343-A488-446D-AFF8-FDE4D9B040E4} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{CCFC6A15-81EB-4808-B766-BC4AA14D9C6B} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{C8C00CA9-822B-4D23-A614-C040281FE542} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{C7E7265B-CC6D-40D5-A8F9-2C0A9CB5F710} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{C75ADFDD-4F70-409B-896A-F8914E9133D9} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{C63719B9-6803-46F5-B969-C2F92C4F7C6D} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{C570FFAE-12D5-44B4-8C6A-AA34E75B74F2} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{C49B51C5-950F-4BAC-AFEA-D732D022E40A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{BF8F8AD0-2E73-4B72-A9FD-F03B8CBFE006} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{BCDE8AFB-016A-4E41-BCFD-0CF48992C08D} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{BB8317ED-F122-4B39-8D16-6489E52FDA18} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{B834FDBE-28C9-4896-B829-CB07490DA1F7} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{B787DBC0-78CA-4B43-A6B2-41417EEDA178} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{B77B5D73-0EEF-4BED-B4F7-900EE4911D24} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{B32B8354-4578-4C20-8962-05F6D138A716} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{B11A7B63-77A3-48A3-BF46-DC7D43DA56BC} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{AF26EF0C-D294-4B75-91C1-187FB0815C4C} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{ADD5FDE4-BF46-444D-9C3B-8E80FFD8DFB1} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{AD5DD16F-70A6-4CA6-ACD5-5711B853D139} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{A937226C-165C-4F28-92D4-FED3F8EBCB68} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{A5A97F7D-95CD-4203-B26D-E64D5B34A6EE} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{A560CCCF-0895-42C4-A2EB-5110CE29661E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{A505DA80-422B-4B7D-A720-9DD6544122A0} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{A4D66B52-B30B-4A86-9542-0E5810E6F218} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{A0E26086-2E6E-489F-B4CB-43232763F9A8} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{9E7C5C92-68FB-449B-BBBF-4A75884D5FB2} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{9DF35A2B-6278-4334-AB65-701393179881} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{9DE78750-1903-4838-93EE-4A53FFC2963E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{9C2D052D-3617-4376-B5D1-BC5F3D788703} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{9B1D66C4-F7CF-4912-9FA1-6E8359FECE87} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{995362ED-0315-4E98-8735-A6E93D68FF3F} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{97E29370-74BA-48C8-B946-7546C95DE744} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{9612844A-284F-49C3-B034-2A36F93A87F3} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{94FEBEBF-F49A-49EE-A8F8-055CB7B16B61} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{9288AD92-0F8F-4B9F-A44D-8B20765D88A9} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{8EC454BA-AD5F-4A7E-B5F4-65526E70BC39} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{8D6779FF-5494-4B97-996D-50EE6F92900B} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{8D56A634-A625-4D88-AC3A-F20BAC24F005} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{8D01B77D-2E07-4323-9B23-6C0000404CCD} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{8C5C07E4-325F-477F-9088-8EAB76AB7A8F} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{8A56623B-DF6A-47A8-92CE-18737934CF5B} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{8701B221-5FCE-4212-8166-CAC7F14E05DE} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{86E9A818-C184-4BF0-941C-DED5F48CBDA4} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{8556ACC8-CD6D-4211-8C1C-C614B77D149E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{7FAEEEB9-8ADD-42A3-8368-1780247A15E9} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{7D1C9483-01BC-47D5-B5D3-C6AFF72F24A8} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{7D0D7E04-1BDD-491D-8B04-72285738AB06} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{7CA69B82-68B0-48A0-B517-FA7E12137BCA} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{7C325E9D-51AC-4037-8CFF-023EF63465EE} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{7BD33C01-0360-4EDC-94A8-764135B08693} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{7A7D515E-CE3D-4CF2-83A8-0B9DE8DD6FBC} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{788CE8AE-97A9-4779-A8DA-5BEA2D73F179} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{77D11C58-F110-4195-8076-F2763736661E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{76D5392C-14EF-4A42-8B4B-AA48B01D38C0} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{742FAEB7-7531-4BD3-903A-53E3A659D738} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{73B7401B-40AF-4EAE-93F1-476ECBD1528D} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{7224BDAA-CBA3-4940-BEC1-4894A6983B25} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{700EE8D2-C3E4-40A0-B9D6-2315455B473E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{6F906F8C-2429-4999-A2F6-17271956342E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{6E6ADB3F-3CD5-42AB-9CEE-B047FE45E89E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{6D7F5497-0BA9-456A-9F34-FE7716599727} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{6C76986B-FBAA-4F37-AFB9-867FC8C2D41B} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{6C743212-F2CD-45D8-816E-3C84BF12264A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{6B13E93A-7D3B-47BF-B2A5-77CB0E69F2F2} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{6A40EA93-4AFC-404E-8367-89CDDF3A2D14} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{6931DE44-3978-4792-8FE8-6F0DC2E3AB84} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{692FAF81-F65F-4954-8605-EC10A2EE202B} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{68B58D30-ACF6-4E7F-B0FD-F3A0A7422D6F} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{66E79447-9ADE-4A70-BF76-9EFDD69E9E21} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{659CD56E-2510-4552-8637-5C85CA34506A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{65011B3F-0863-40AC-B725-D4E7E3747D07} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{6415F4A5-3575-48B7-AFED-6463103E9187} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{62A169AB-B7BD-4664-8E27-1C35CA5B6E86} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{61BB4B75-072B-4F15-B38A-839D656AEDA6} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{602EEAF5-3200-4D91-8B13-EBE3DC883A00} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{5F573F16-0AAC-4138-A46B-9F46019DA9B7} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{5EDE6D34-FA07-4FCC-8EA3-809F5416B768} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{5ED8B32F-613B-4B1E-8940-88703B899D02} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{5ECA8683-A085-437B-A195-0E68D08E3D5D} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{5CBEBB63-2140-4582-9645-51BB9F0CC828} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{59F98888-16FE-47E3-878F-DCE73660D06F} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{58CE798A-6658-43FA-841B-CB14422DA3F9} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{58B61332-54B7-4394-82EC-C9934A713C62} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{55542A8C-A266-48F6-B325-529E9F0DF89A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{4FAE023A-6AA6-4143-B3D6-B1692FF7C971} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{4DBD1AF8-53E9-476C-BE6C-32229C7370E1} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{4C29CBC9-12E2-45B4-A211-FFC81B495D94} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{4A56F015-1327-482B-B432-50505413826D} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{49CEF961-1BE1-4571-AD6D-C9BE72AD59FF} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{489056A9-1E3A-45C3-9F44-2BB374912651} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{487BFB2A-740A-41E8-9979-CA0CFF91A8B2} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{41CE85FD-6977-464F-B15E-EC7D7414A798} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{41604A76-BEEA-4F29-8913-0D21B84F7048} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{3F83BE0F-E4F4-48A0-B668-45A19FF40D9A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{3F72922F-D364-437D-AFE0-D1B74E749EED} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{3EBF7DD0-BAA4-41B2-B923-8CB1B1BD807A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{3CD24F0F-01EF-4B54-A62A-62E2D3AE8426} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{394C3A92-7945-4DA5-9F96-1B90E34EC847} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{381E7707-C87D-4CB6-9597-E3CCA17D09A0} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{36B64735-2E2C-425F-AE61-02042C0D62B3} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{2E6FBDAA-ADCD-4F48-917B-D5F78FE8DD99} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{2D2625D9-B11C-403E-B37A-EA478FA35F0E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{2A62B3B9-6B2C-4443-B198-9ED8D3CA2E48} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{2A2E73FF-83C6-4A63-B34C-83FED007223E} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{22985D31-C1EA-44BC-AE5B-1FC1CA02D7E9} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{225D8D6A-3FB7-415B-B8ED-ABE78CEFBD2A} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{20893E22-EC45-4D74-B283-F3E00E342DB4} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{201FA05B-53E8-4F00-BEB6-025F06FD37C2} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{1F0D898D-F293-48D6-AB54-C2AA01D7F73B} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{17A2162E-F967-4DCC-8810-4640A600D613} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{16FBE543-92D9-4DA8-955B-36CAC08B8706} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{11C6FCB3-6408-43C1-8CB7-1AE62E1FF7A4} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{1119CF4E-90DA-4228-9ABA-77E0388D060D} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{110DAC0A-EDFE-4B8F-B3B8-66BECC16CD9F} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{1059A81B-B570-4B8C-9F20-06E341B8975F} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{0EF3C417-8811-4F8B-B95C-8EC2219F36DA} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{0EAA2388-B014-49FB-A572-6564458889A9} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{0E874ABF-FC8D-41B8-BC2F-A227BDF16003} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{0CA57BAC-C18C-4BED-9279-697CA51899F0} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{0B6A9AE6-9C41-4ED3-95EB-923E964C9497} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{0AB56C44-8220-4C0B-B24E-8CAA58165C50} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{05D82F4A-CBD7-4E2E-9C0F-EF3CA252030C} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{045D1E36-375A-4B60-BBDC-941AE018D7C4} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{04268465-3F6B-4B1C-9B0A-75D6CC58D1BF} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup\{00E04411-30E5-4190-9F76-A2C81098E6A7} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared\QBackup scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Shared scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\SVAR scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PollManager scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PEPCollectors scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\MsgQueue scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08} scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\PIF scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\IDS scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\DSA\V_G scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\DSA scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmpff7.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmpe37.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp7da5.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp7aef.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp797a.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp76c0.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp74a4.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp71e2.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp6e34.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp68a4.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp6568.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp6525.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp63ed.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp6315.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp60bf.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp5adf.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp5a20.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp59ae.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp5090.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp4f0f.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp4a0b.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp416b.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp3eca.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp3d44.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp34df.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp348f.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp33bc.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp2d61.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp20a0.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp1f95.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp1db2.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\tmp12c.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\TextHub scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\incoming scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\BinHub scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\20080421.003 scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs\20080420.007 scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\VirusDefs scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmpe4e.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmpcf2.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmpbe5.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp7d71.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp7b3a.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp7ab4.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp7969.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp776a.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp6e89.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp6a5a.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp68c8.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp653a.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp6237.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp5d3f.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp5c70.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp56e2.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp55de.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp5512.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp50df.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp4b1c.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp4a7a.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp457c.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp418f.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp4074.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp3b7.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp34f8.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp33b3.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp2e98.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp2dc0.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp2b83.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp27f9.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp217.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp1e9.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp1d50.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp1570.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\tmp112b.tmp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\incoming scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\BinHub scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\20080421.006 scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\20080421.004 scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\20080409.006 scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs\20080301.002 scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData\nco1.0defs scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions\SymcData scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Definitions scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Common Client\Temp scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Common Client scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec\Cleanup scheduled to be moved on reboot.
Folder move failed. C:\Documents and Settings\all users\Application data\Symantec scheduled to be moved on reboot.
File/Folder C:\WINDOWS\cdti.exe not found.
File/Folder C:\WINDOWS\System32\cfmom.exe not found.
File/Folder C:\Users\zoher\AppData\Local\Temp\hgggg.dll not found.
File/Folder C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll not found.
File/Folder C:\Users\zoher\AppData\Local\Temp\geefc.dll not found.
File/Folder C:\Windows\ IEXPLORE.EXE not found.

OTMoveIt2 by OldTimer - Version 1.0.4.1 log created on 04292008_114041

Files moved on Reboot...
Folder move failed. C:\Program Files\Norton 360\VersionDat scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\SupportSoft scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\OPC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\manual scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\Log scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\IDSDefs scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\Backup Data scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\VersionDat scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\SupportSoft scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\OPC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\manual scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\Log scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\IDSDefs scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360\Backup Data scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Norton 360 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\VAScanner scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymTheme scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support\Reporter scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support\Reporter scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support\Reporter scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support\Reporter scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymHTML\1.0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymHTML\1.0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymHTML scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Support Controls scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SRTSP scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SPManifests scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SPBBC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Security Center scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c\01 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c\01 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c\01 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c\01 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c\01 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\OPC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\NPC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\NHelp scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\MSL scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\MceAddIn scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\IDS scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Firewall scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\EENGINE scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WP\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WP\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WP scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Common\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Common\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Browser scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WP\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WP scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WA\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\WA scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Common\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Common scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared\Browser scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\coShared scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\COH scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Cleanup scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\CF\Manifests scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\CF\Manifests scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\CF scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\AppCore scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\AntiVirus scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\VAScanner scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymTheme scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support\Reporter scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10\Support scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup\{2D617065-1C52-4240-B5BC-C0AE12157777}_1_2_0_10 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymSetup scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymHTML\1.0 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SymHTML scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Support Controls scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SRTSP scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SPManifests scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\SPBBC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\Security Center scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c\01 scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages\0c scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\Languages scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\PIF scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\OPC\{31011D49-D90C-4da0-878B-78D28AD507AF} scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\OPC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\NPC scheduled to be moved on reboot.
Folder move failed. C:\Program Files\Common Files\Symantec Shared\NHelp scheduled t
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
les deux ligne suplementaire pour OTMOVELT




File/Folder not found.
File/Folder C:\Windows\ IEXPLORE.EXE not found.
File/Folder C:\Windows\ upd.dll not found.

OTMoveIt2 by OldTimer - Version 1.0.4.1 log created on 04292008_115346
0
afideg Messages postés 10517 Date d'inscription   Statut Contributeur sécurité Dernière intervention   602
 
Re,

Ton PC est vachement pollué

A)- Il faut rétablir ces deux lignes:
File/Folder C:\Windows\ IEXPLORE.EXE not found.
File/Folder C:\Windows\ upd.dll not found.
Il y a présence d'un espace anormal.

Essaie comme ceci, SVP:
* Télécharge RenV.exe enregistre-le sur ton Bureau: http://download.bleepingcomputer.com/sUBs/Beta/RenV.exe

Clic-droit sur RenV.exe, puis "Exécuter en tant qu'administrateur" pour le lancer, et patiente.
(Un rapport, log.txt, sera crée, et s'ouvrira à la fin du scan, poste-le).

* ==> Créé un fichier "Bloc-Notes avec le texte ci-dessous:

C:\Windows\ IEXPLORE.EXE
C:\Windows\ upd.dll


• Vas en haut de la page et clique sur le menu"Fichier" , une liste apparait=>
• Choisis "Enregistrer sous" et choisis "Bureau"
• Dans le champ "Nom du fichier" en bas de page donne le nom suivant: Log.txt
• Clique sur le bouton "Enregistrer" à droite du champs "nom du fichier"
• Quitte le Bloc-Notes.

* Fait un glisser/déposer de ce fichier Log.txt sur le fichier RenV.exe comme sur la capture ci-dessous http://img.photobucket.com/albums/v666/sUBs/RenV.gif .

•Une fois le scan achevé, un rapport va s'afficher: poste son contenu.



B)- Pour ces fichiers:

C:\Users\zoher\AppData\Local\Temp\hgggg.dll
C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll
C:\Users\zoher\AppData\Local\Temp\geefc.dll

Relance la même procédure CFSript qu'au post #11 ==> c'est-à-dire:

1°- PREALABLES :
A)-Désactiver le TeaTimer
==> Si tu n'as pas Spybot S&D, passe outre de cette partie !
==> Si tu as Spybot S&D.
•- Tout d'abord > Désactive le Tea-Timer de Spybot en passant par les options de Spybot: une fois dans le logiciel, il faut aller dans le menu "Mode" => coche "Mode avancé" => "Outils"(en bas de page)=> "Résident" => et tu décoches cette case: "Résident Teatimer" . Tu ne dois plus voir l'icône du Tea- Timer dans la barre de tâches!
•- Ne fais pas l'impasse sur cette étape, car ça peut faire échouer la procédure de désinfection !
B)- Etant donné que ANTIVIR détecte un risque sécuritaire dans l'outil suivant : nircmd.cfexe qui appartient en fait à ComboFix, il faut que tu désactives le bouclier d'Antivir le temps du scan :
==> Fais un clic-droit sur l'icône d'Antivir dans la barre des tâches et décoche "Antivir Guard enable"

2°- Désactive ta restauration système
(Clic sur « Démarrer »
Clic droit sur « Poste de travail », puis sur « Propriétés »,
Vas sur l’onglet « Restauration système »
Tu y coches la case « Désactiver la restauration »
Termine par [Appliquer] [OK])

3°- Sélectionner (mettre en surbrillance) tout le texte en caractères gras suivant :

KillAll::

File::
C:\Users\zoher\AppData\Local\Temp\hgggg.dll
C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll
C:\Users\zoher\AppData\Local\Temp\geefc.dll



4°- Copie le texte sélectionné (CTRL+C) ==> en appuyant simultanément sur les touches CTRL et C.
Ouvre le bloc-notes (programme>Accessoires >bloc-notes).
Colle (bien dans le coin supérieur gauche) ce texte dans ce bloc-notes (CTRL+V) ==> en appuyant simultanément sur les touches CTRL et V .
Sauvegarde (enregistre-le sur le bureau) sous le nom CFScript1.txt
• Regarde ici (ce n’est qu’un exemple !) < http://img509.imageshack.us/img509/5984/screenshot332wc3.png >

5°- Redémarrer le PC en mode sans échec</gras> < http://www.coupdepoucepc.com/modules/news/article.php?storyid=253 >
NOTE : Quand tu as le curseur qui clignote, tu peux avoir un temps d'ouverture du mode sans échec qui va jusqu'à 15 minutes. Il faut donc être patient.

6°- Ensuite, dépose ce fichier texte sur l'application de ComboFix (icône rouge “ComboFix.exe” (Tristan.exe) sur le bureau) en faisant un “glisser/déposer” de ce fichier “ gras>CFScript1.txt</gras> ” sur le fichier “ComboFix.exe”(Tristan.exe) comme sur la capture: < http://img.photobucket.com/albums/v666/sUBs/CFScript.gif >
L'icône ComboFix.exe (Tristan.exe) change alors de "brillance" dans sa couleur.
Un module s'affiche ==> clic sur "Exécuter"

Patiente le temps du scan.
Le bureau va disparaître à plusieurs reprises: c'est normal!

(CAUTION: Do not mouse-click ComboFix's window while it is running. = Ne touche à rien tant que le scan n'est pas terminé. That may cause it to stall.)

7°- ComboFix will automatically REBOOT your machine when the KillAll:: switch is used.
(ComboFix va redémarrer automatiquement votre machine lorsque le killall:: est employé).

8°- Sinon, redémarrer le PC impérativement.

9°- Poste le contenu du rapport ComboFix sur le forum.
Si le fichier n'apparaît pas, il se trouve ici > C:\ComboFix.txt (tu le reconnais avec ses dates et heures).

10°- Ensuite réactive ta restauration système
(Clic droit sur « Poste de travail », puis sur « Propriétés »,
Vas sur l’onglet « Restauration système »
Tu décoches la case « Désactiver la restauration »
Termine par [Appliquer] [OK])


Bonne chance
Al.
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
rapport logtxt








[code]
Ran on 29/04/2008 - 12:41:59,68

Entries: 0 (0)
Directories: 0 Files: 0
Bytes: 0 Blocks: 0
[/code]
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
pour le rapport combo tristan j ai trouver que celui ci et au moment ou combo elabore le rapport dans la fenetre je vois ecrit les fichiers sont introuvable ,et le temp d executer le rapport est beaucoup plus court

.Sinon pour desinstaller norton j ai fait exactement ce que tu ma dit mais apparemment il est toujours present j ai essayer de le supprimer par "programme" on me dit qu il faut un "autorisation"

Jai aussi trouver un rapport (fichiers dat) datant d aujourd hui que je ne connait pas veux tu que je le poste ?




ComboFix 08-04-26.3 - zoher 2008-04-29 13:28:09.5 - NTFSx86 MINIMAL
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6000.0.1252.1.1036.18.2722 [GMT 2:00]
Endroit: C:\Users\zoher\Desktop\TRISTAN.EXE
Command switches used :: C:\Users\zoher\Desktop\CFScript1.txt

FILE ::
C:\Users\zoher\AppData\Local\Temp\geefc.dll
C:\Users\zoher\AppData\Local\Temp\hgggg.dll
C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll
.
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
J AI DEUX AUTRE RAPPORT INTERESSANT SANS VOULOIR TOUT MELANGER ET JE TE LES POSTES SI C EST RIEN DU TOUT OUBLIE LES SANS COMMENTAIRE MERCI






LE 1ER




--s-a-w 67,584 2008-04-29 11:26:52 C:\Windows\bootstat.dat
----a-w 283 2008-04-22 20:47:22 C:\Windows\comm.bin
----a-w 87,673 2008-04-06 22:06:58 C:\Windows\DirectX.log
----a-w 4,516 2008-01-31 21:42:12 C:\Windows\DPINST.LOG
----a-w 3,372 2008-01-30 21:03:16 C:\Windows\DtcInstall.log
----a-w 267,344 2008-02-07 20:04:41 C:\Windows\msxml4-KB936181-enu.LOG
----a-w 264,668 2008-02-08 22:59:00 C:\Windows\msxml4-KB941833-enu.LOG
----a-w 49 2008-04-29 11:10:43 C:\Windows\NeroDigital.ini
----a-w 62,292 2008-04-29 11:16:31 C:\Windows\PFRO.log
----a-w 23,493 2008-03-13 11:21:47 C:\Windows\setupact.log
----a-w 215 2008-04-28 17:29:44 C:\Windows\system.ini
----a-w 3,540 2008-01-30 21:03:23 C:\Windows\TSSysprep.log
----a-w 153 2008-04-22 22:40:50 C:\Windows\win.ini
----a-w 467,968 2008-04-22 20:46:10 C:\Windows\ IEXPLORE.EXE
----a-w 2,905 2008-04-28 16:25:41 C:\Windows\ pt.html
----a-w 5,776 2008-04-28 16:25:41 C:\Windows\ upd.dll
----a-w 537,600 2008-02-13 21:08:59 C:\Windows\AppPatch\AcLayers.dll
----a-w 2,560 2008-02-13 21:09:01 C:\Windows\AppPatch\AcRes.dll
----a-w 449,536 2008-02-13 21:08:59 C:\Windows\AppPatch\AcSpecfc.dll
----a-w 173,056 2008-02-13 21:08:59 C:\Windows\AppPatch\AcXtrnal.dll
----a-w 82,194 2008-02-13 21:08:59 C:\Windows\AppPatch\drvmain.sdb
----a-w 52,736 2008-02-21 04:43:35 C:\Windows\AppPatch\iebrshim.dll
----a-w 22,618 2008-02-13 21:08:59 C:\Windows\AppPatch\pcamain.sdb
----a-w 8,192 2008-02-07 20:07:11 C:\Windows\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\IEExecRemote.dll
----a-w 278 2008-02-07 20:07:11 C:\Windows\assembly\GAC\IEExecRemote\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 32,768 2008-02-07 20:07:14 C:\Windows\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\IEHost.dll
----a-w 266 2008-02-07 20:07:14 C:\Windows\assembly\GAC\IEHost\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 720,896 2008-02-07 20:07:30 C:\Windows\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
----a-w 288 2008-02-07 20:07:30 C:\Windows\assembly\GAC\Microsoft.JScript\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 251,272 2008-04-23 08:25:23 C:\Windows\assembly\GAC\Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.PowerPoint.dll
----a-w 224 2008-04-23 08:26:18 C:\Windows\assembly\GAC\Microsoft.Office.Interop.PowerPoint\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
----a-w 783,744 2008-04-23 08:25:08 C:\Windows\assembly\GAC\Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\Microsoft.Office.Interop.Word.dll
----a-w 218 2008-04-23 08:26:19 C:\Windows\assembly\GAC\Microsoft.Office.Interop.Word\12.0.0.0__71e9bce111e9429c\__AssemblyInfo__.ini
----a-w 299,008 2008-02-07 20:07:15 C:\Windows\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
----a-w 296 2008-02-07 20:07:15 C:\Windows\assembly\GAC\Microsoft.VisualBasic\7.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 32,768 2008-02-07 20:07:27 C:\Windows\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\RegCode.dll
----a-w 268 2008-02-07 20:07:27 C:\Windows\assembly\GAC\Regcode\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 1,232,896 2008-02-08 22:58:36 C:\Windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\System.dll
----a-w 266 2008-02-08 22:58:36 C:\Windows\assembly\GAC\System\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini
----a-w 1,294,336 2008-02-07 20:07:28 C:\Windows\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\System.Data.dll
----a-w 276 2008-02-07 20:07:28 C:\Windows\assembly\GAC\System.Data\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini
----a-w 303,104 2008-02-07 20:07:23 C:\Windows\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\System.Data.OracleClient.dll
----a-w 302 2008-02-07 20:07:23 C:\Windows\assembly\GAC\System.Data.OracleClient\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini
----a-w 280 2008-02-07 20:07:12 C:\Windows\assembly\GAC\System.Design\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 90,112 2008-02-07 20:07:30 C:\Windows\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
----a-w 302 2008-02-07 20:07:30 C:\Windows\assembly\GAC\System.DirectoryServices\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 466,944 2008-02-07 20:07:21 C:\Windows\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\System.Drawing.dll
----a-w 282 2008-02-07 20:07:21 C:\Windows\assembly\GAC\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 241,664 2008-02-07 20:07:16 C:\Windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
----a-w 66,560 2008-02-07 20:07:16 C:\Windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\System.EnterpriseServices.Thunk.dll
----a-w 304 2008-02-07 20:07:16 C:\Windows\assembly\GAC\System.EnterpriseServices\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 372,736 2008-02-07 20:07:27 C:\Windows\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\System.Management.dll
----a-w 288 2008-02-07 20:07:27 C:\Windows\assembly\GAC\System.Management\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 241,664 2008-02-07 20:07:31 C:\Windows\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\System.Messaging.dll
----a-w 286 2008-02-07 20:07:31 C:\Windows\assembly\GAC\System.Messaging\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 323,584 2008-02-07 20:07:24 C:\Windows\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\System.Runtime.Remoting.dll
----a-w 300 2008-02-07 20:07:24 C:\Windows\assembly\GAC\System.Runtime.Remoting\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini
----a-w 131,072 2008-02-07 20:07:17 C:\Windows\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
----a-w 342 2008-02-07 20:07:17 C:\Windows\assembly\GAC\System.Runtime.Serialization.Formatters.Soap\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 77,824 2008-02-07 20:07:19 C:\Windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\System.Security.dll
----a-w 284 2008-02-07 20:07:19 C:\Windows\assembly\GAC\System.Security\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 126,976 2008-02-07 20:07:29 C:\Windows\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
----a-w 296 2008-02-07 20:07:29 C:\Windows\assembly\GAC\System.ServiceProcess\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 1,265,664 2008-02-08 22:58:36 C:\Windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\System.Web.dll
----a-w 274 2008-02-08 22:58:36 C:\Windows\assembly\GAC\System.Web\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 819,200 2008-02-07 20:07:10 C:\Windows\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
----a-w 288 2008-02-07 20:07:10 C:\Windows\assembly\GAC\System.Web.Mobile\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 57,344 2008-02-07 20:07:16 C:\Windows\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
----a-w 312 2008-02-07 20:07:16 C:\Windows\assembly\GAC\System.Web.RegularExpressions\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 573,440 2008-02-07 20:07:14 C:\Windows\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\System.Web.Services.dll
----a-w 292 2008-02-07 20:07:14 C:\Windows\assembly\GAC\System.Web.Services\1.0.5000.0__b03f5f7f11d50a3a\__AssemblyInfo__.ini
----a-w 294 2008-02-07 20:07:19 C:\Windows\assembly\GAC\System.Windows.Forms\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini
----a-w 1,339,392 2008-02-07 20:07:25 C:\Windows\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\System.XML.dll
----a-w 274 2008-02-07 20:07:25 C:\Windows\assembly\GAC\System.Xml\1.0.5000.0__b77a5c561934e089\__AssemblyInfo__.ini
----a-w 236,392 2008-04-06 09:28:38 C:\Windows\assembly\GAC_MSIL\System.Data.SqlServerCe\9.0.242.0__89845dcd8080cc91\System.Data.SqlServerCe.dll
----a-w 61,440 2008-02-08 22:58:44 C:\Windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_2d7ba8dc\CustomMarshalers.dll
----a-w 90 2008-02-08 22:58:44 C:\Windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_2d7ba8dc\__AssemblyInfo__.ini
----a-w 118,784 2008-02-09 08:01:45 C:\Windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_bae77f36\CustomMarshalers.dll
----a-w 91 2008-02-09 08:01:45 C:\Windows\assembly\NativeImages1_v1.1.4322\CustomMarshalers\1.0.5000.0__b03f5f7f11d50a3a_bae77f36\__AssemblyInfo__.ini
----a-w 92 2008-02-09 08:02:11 C:\Windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_6e691421\__AssemblyInfo__.ini
----a-w 91 2008-02-08 22:59:04 C:\Windows\assembly\NativeImages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_fe9d80e5\__AssemblyInfo__.ini
----a-w 91 2008-02-09 08:01:44 C:\Windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_3626590e\__AssemblyInfo__.ini
----a-w 90 2008-02-08 22:58:43 C:\Windows\assembly\NativeImages1_v1.1.4322\System\1.0.5000.0__b77a5c561934e089_dcbc31f3\__AssemblyInfo__.ini
----a-w 91 2008-02-09 08:02:05 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_32ef1355\__AssemblyInfo__.ini
----a-w 1,470,464 2008-02-08 22:58:59 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_48d3362a\System.Design.dll
----a-w 90 2008-02-08 22:58:59 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Design\1.0.5000.0__b03f5f7f11d50a3a_48d3362a\__AssemblyInfo__.ini
----a-w 91 2008-02-09 08:02:07 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_24eee3c0\__AssemblyInfo__.ini
----a-w 835,584 2008-02-08 22:59:02 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_72f3e25d\System.Drawing.dll
----a-w 90 2008-02-08 22:59:02 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Drawing\1.0.5000.0__b03f5f7f11d50a3a_72f3e25d\__AssemblyInfo__.ini
----a-w 90,112 2008-02-08 22:58:46 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_1b850bdb\System.Drawing.Design.dll
----a-w 90 2008-02-08 22:58:46 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_1b850bdb\__AssemblyInfo__.ini
----a-w 192,512 2008-02-09 08:01:46 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_ed1b2b63\System.Drawing.Design.dll
----a-w 91 2008-02-09 08:01:46 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Drawing.Design\1.0.5000.0__b03f5f7f11d50a3a_ed1b2b63\__AssemblyInfo__.ini
----a-w 90 2008-02-08 22:58:50 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_37450f7c\__AssemblyInfo__.ini
----a-w 91 2008-02-09 08:01:52 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Windows.Forms\1.0.5000.0__b77a5c561934e089_44190ef1\__AssemblyInfo__.ini
----a-w 90 2008-02-08 22:58:56 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_199c0f57\__AssemblyInfo__.ini
----a-w 91 2008-02-09 08:01:59 C:\Windows\assembly\NativeImages1_v1.1.4322\System.Xml\1.0.5000.0__b77a5c561934e089_8911afec\__AssemblyInfo__.ini
----a-w 5,972 2008-04-09 10:24:18 C:\Windows\Debug\mrt.log
----a-w 2,324 2008-04-09 10:24:18 C:\Windows\Debug\mrteng.log
----a-w 0 2008-04-29 11:26:47 C:\Windows\Debug\PASSWD.LOG
----a-w 133 2008-01-30 21:12:03 C:\Windows\Debug\sammui.log
----a-w 0 2008-04-29 11:03:45 C:\Windows\Debug\UserMode\ChkAcc.bak
----a-w 0 2008-04-29 11:17:01 C:\Windows\Debug\UserMode\ChkAcc.log
----a-w 9,836 2008-04-22 22:40:45 C:\Windows\Debug\WIA\wiatrace.log
----a-w 124,208 2008-03-25 16:13:04 C:\Windows\Downloaded Program Files\as2stubie.dll
----a-w 395 2008-03-07 06:56:30 C:\Windows\Downloaded Program Files\as2stubie.inf
----a-w 247 2008-03-24 17:18:48 C:\Windows\Downloaded Program Files\CONFLICT.1\swflash.inf
----a-w 32,768 2008-04-29 11:28:05 C:\Windows\erdnt\Hiv-backup\BCD
----a-w 393,216 2008-04-29 11:28:04 C:\Windows\erdnt\Hiv-backup\DEFAULT
----a-w 878 2008-04-29 11:28:05 C:\Windows\erdnt\Hiv-backup\ERDNT.CON
----a-w 1,107 2008-04-29 11:28:05 C:\Windows\erdnt\Hiv-backup\ERDNT.INF
----a-w 61,440 2008-04-29 11:28:04 C:\Windows\erdnt\Hiv-backup\SAM
----a-w 24,576 2008-04-29 11:28:04 C:\Windows\erdnt\Hiv-backup\SECURITY
----a-w 212,992 2008-04-29 11:28:05 C:\Windows\erdnt\Hiv-backup\Users\00000001\NTUSER.DAT
----a-w 212,992 2008-04-29 11:28:05 C:\Windows\erdnt\Hiv-backup\Users\00000002\NTUSER.DAT
----a-w 9,840 2008-03-15 23:01:38 C:\Windows\inf\61883.PNF
----a-w 7,562 2008-02-07 20:21:10 C:\Windows\inf\acpi.inf
----a-w 14,684 2008-02-07 20:21:13 C:\Windows\inf\acpi.PNF
----a-w 7,124 2008-02-07 20:21:06 C:\Windows\inf\battery.inf
----a-w 12,724 2008-02-07 20:21:06 C:\Windows\inf\battery.PNF
----a-w 665,600 2008-04-09 21:52:58 C:\Windows\inf\drvindex.dat
----a-w 51,200 2008-04-22 22:40:47 C:\Windows\inf\infpub.dat
----a-w 86,016 2008-04-22 22:40:47 C:\Windows\inf\infstor.dat
----a-w 86,016 2008-04-22 22:40:46 C:\Windows\inf\infstrng.dat
----a-w 65,966 2008-02-14 05:11:27 C:\Windows\inf\keyboard.inf
----a-w 96,504 2008-02-14 05:11:33 C:\Windows\inf\keyboard.PNF
----a-w 56,052 2008-02-08 20:12:40 C:\Windows\inf\kscaptur.PNF
----a-w 789,490 2008-03-12 22:14:18 C:\Windows\inf\monitor.inf
----a-w 1,163,660 2008-03-12 22:14:20 C:\Windows\inf\monitor.PNF
----a-w 47,458 2008-02-14 05:11:07 C:\Windows\inf\mshdc.inf
----a-w 82,344 2008-02-14 05:11:09 C:\Windows\inf\mshdc.PNF
----a-w 56,342 2008-02-14 05:11:30 C:\Windows\inf\msmouse.inf
----a-w 99,376 2008-02-14 05:11:43 C:\Windows\inf\msmouse.PNF
----a-w 35,940 2008-01-31 21:42:11 C:\Windows\inf\oem11.inf
----a-w 25,216 2008-01-31 21:42:11 C:\Windows\inf\oem11.PNF
----a-w 10,341 2008-02-13 18:03:40 C:\Windows\inf\oem15.inf
----a-w 23,820 2008-02-13 18:03:43 C:\Windows\inf\oem15.PNF
----a-w 3,256 2008-02-07 20:20:59 C:\Windows\inf\sbp2.inf
----a-w 7,100 2008-02-07 20:21:01 C:\Windows\inf\sbp2.PNF
----a-w 12,904 2008-04-09 21:53:06 C:\Windows\inf\setupapi.ev1
----a-w 13,784 2008-04-09 21:53:08 C:\Windows\inf\setupapi.ev2
----a-w 143,360 2008-04-09 21:53:08 C:\Windows\inf\setupapi.ev3
----a-w 98,088 2008-02-14 05:16:48 C:\Windows\inf\usbport.PNF
----a-w 2,062 2008-02-1





LE SECOND








11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\res2BE1.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8B1F.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8B2F.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8B8E.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8B8F.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8BCE.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8BCF.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8BF0.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8CEA.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8CEB.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8D69.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI8D6A.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCID6BE.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCID6CF.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCID6E0.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCID6E1.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCID74F.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCID750.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCID770.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI29DD.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI29EE.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI4C5B.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI4C6B.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI51AA.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI53CD.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI53ED.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI53EE.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI540E.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI541F.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI542F.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI533E.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI533F.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI534F.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI5350.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI53BE.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI53BF.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI53E0.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI6834.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI6845.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIC216.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIC284.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE9F1.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIEA01.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI2CE9.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCI2CEA.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE224.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE225.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE245.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE246.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE276.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE277.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE287.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE48B.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE48C.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\Users\ADMINI~1\AppData\Local\Temp\CCIE48D.tmp, |delete operation|, 0xc0000034
11/14/2007 9:14:48 - PFRO Error: \??\C:\PROGRA~1\COMMON~1\SYMANT~1, |delete operation|, 0xc0000101
11/14/2007 9:14:49 - PFRO Error: \??\C:\Windows\system32\spool\DRIVERS\W32X86\3\New\msonpui.dll, \??\C:\Windows\system32\spool\DRIVERS\W32X86\3\msonpui.dll, 0xc000003a
11/14/2007 9:14:49 - 3 Successful PFRO operations

1/31/2008 22:20:37 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF1B85.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:37 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF828C.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:37 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000B40, |delete operation|, 0xc0000034
1/31/2008 22:20:37 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF1B85.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:37 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF828C.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:37 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFB0C3.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:37 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000B40, |delete operation|, 0xc0000034
1/31/2008 22:20:37 - PFRO Error: \??\C:\Windows\Temp\JETCE46.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:37 - PFRO Error: \??\C:\Windows\Temp\JETCED2.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:38 - PFRO Error: \??\C:\Windows\TEMP\CCI5C14.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:38 - PFRO Error: \??\C:\Windows\TEMP\CCI5C44.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:38 - PFRO Error: \??\C:\Windows\TEMP\CCI5C73.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:38 - PFRO Error: \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\_BBF364.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:38 - PFRO Error: \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\_BBF394.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:38 - PFRO Error: \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\_BBF3F2.tmp, |delete operation|, 0xc0000034
1/31/2008 22:20:38 - 41 Successful PFRO operations

2/8/2008 17:17:6 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFE53D.tmp, |delete operation|, 0xc0000034
2/8/2008 17:17:6 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000FE4, |delete operation|, 0xc0000034
2/8/2008 17:17:6 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFE53D.tmp, |delete operation|, 0xc0000034
2/8/2008 17:17:6 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000FE4, |delete operation|, 0xc0000034
2/8/2008 17:17:6 - PFRO Error: \??\C:\Windows\Temp\ccD6AF.tmp, |delete operation|, 0xc0000034
2/8/2008 17:17:6 - PFRO Error: \??\C:\Windows\Temp\ccD78A.tmp, |delete operation|, 0xc0000034
2/8/2008 17:17:6 - PFRO Error: \??\C:\Windows\Temp\ccD7CA.tmp, |delete operation|, 0xc0000034
2/8/2008 17:17:6 - 1 Successful PFRO operations

2/8/2008 21:26:25 - PFRO Error: \??\C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroPDF.dll, |delete operation|, 0xc0000034
2/8/2008 21:26:25 - PFRO Error: \??\C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll, |delete operation|, 0xc0000034
2/8/2008 21:26:26 - 9 Successful PFRO operations

2/9/2008 9:0:35 - PFRO Error: \??\C:\Windows\INF\oem12.pnf, |delete operation|, 0xc0000034
2/9/2008 9:0:35 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\IGDI.dll, |delete operation|, 0xc000003a
2/9/2008 9:0:35 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iuser.dll, |delete operation|, 0xc000003a
2/9/2008 9:0:35 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll, |delete operation|, 0xc000003a
2/9/2008 9:0:35 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iscript.dll, |delete operation|, 0xc000003a
2/9/2008 9:0:35 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\Setup.dll, |delete operation|, 0xc000003a
2/9/2008 9:0:35 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iKernel.dll, |delete operation|, 0xc000003a
2/9/2008 9:0:35 - 1 Successful PFRO operations

2/9/2008 18:37:20 - PFRO Error: \??\C:\Windows\INF\oem12.pnf, |delete operation|, 0xc0000034
2/9/2008 18:37:22 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\IGDI.dll, |delete operation|, 0xc000003a
2/9/2008 18:37:22 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iuser.dll, |delete operation|, 0xc000003a
2/9/2008 18:37:22 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll, |delete operation|, 0xc000003a
2/9/2008 18:37:22 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iscript.dll, |delete operation|, 0xc000003a
2/9/2008 18:37:22 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\Setup.dll, |delete operation|, 0xc000003a
2/9/2008 18:37:22 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iKernel.dll, |delete operation|, 0xc000003a
2/9/2008 18:37:23 - 1 Successful PFRO operations

2/13/2008 5:58:25 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\prefs.js, !\??\C:\Users\zoher\AppData\Roaming\Mozilla\Firefox\Profiles\s9ql99go.default\prefs.js, 0xc0000034
2/13/2008 5:58:25 - 1 Successful PFRO operations

2/14/2008 6:5:32 - PFRO Error: \??\C:\Windows\TEMP\symlcsv1.exe, |delete operation|, 0xc0000034
2/14/2008 6:5:32 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_000002E4, |delete operation|, 0xc0000034
2/14/2008 6:5:32 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFAD83.tmp, |delete operation|, 0xc0000034
2/14/2008 6:5:32 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_000002E4, |delete operation|, 0xc0000034
2/14/2008 6:5:32 - PFRO Error: \??\C:\Windows\Temp\cc2EFC.tmp, |delete operation|, 0xc0000034
2/14/2008 6:5:32 - PFRO Error: \??\C:\Windows\Temp\cc2F89.tmp, |delete operation|, 0xc0000034
2/14/2008 6:5:32 - PFRO Error: \??\C:\Windows\Temp\cc2FD8.tmp, |delete operation|, 0xc0000034
2/14/2008 6:5:32 - PFRO Error: \??\C:\Windows\Temp\JETA67B.tmp, |delete operation|, 0xc0000034
2/14/2008 6:5:32 - PFRO Error: \??\C:\Windows\Temp\JETA68B.tmp, |delete operation|, 0xc0000034
2/14/2008 6:5:32 - 2 Successful PFRO operations

2/16/2008 10:3:40 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\prefs.js, !\??\C:\Users\zoher\AppData\Roaming\Mozilla\Firefox\Profiles\s9ql99go.default\prefs.js, 0xc0000034
2/16/2008 10:3:40 - 2 Successful PFRO operations

2/20/2008 17:59:55 - PFRO Error: \??\C:\Windows\TEMP\symlcsv1.exe, |delete operation|, 0xc0000034
2/20/2008 17:59:55 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_000001F4, |delete operation|, 0xc0000034
2/20/2008 17:59:55 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFEB59.tmp, |delete operation|, 0xc0000034
2/20/2008 17:59:55 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_000001F4, |delete operation|, 0xc0000034
2/20/2008 17:59:55 - PFRO Error: \??\C:\Windows\Temp\JET1A15.tmp, |delete operation|, 0xc0000034
2/20/2008 17:59:55 - PFRO Error: \??\C:\Windows\Temp\JET1A16.tmp, |delete operation|, 0xc0000034
2/20/2008 17:59:55 - 2 Successful PFRO operations

2/24/2008 0:11:59 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000588, |delete operation|, 0xc0000034
2/24/2008 0:11:59 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\geefc.dll, |delete operation|, 0xc0000034
2/24/2008 0:11:59 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFF0A0.tmp, |delete operation|, 0xc0000034
2/24/2008 0:11:59 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000588, |delete operation|, 0xc0000034
2/24/2008 0:11:59 - PFRO Error: \??\C:\Windows\Temp\ccB691.tmp, |delete operation|, 0xc0000034
2/24/2008 0:11:59 - PFRO Error: \??\C:\Windows\Temp\ccBA5A.tmp, |delete operation|, 0xc0000034
2/24/2008 0:11:59 - PFRO Error: \??\C:\Windows\Temp\ccBAB8.tmp, |delete operation|, 0xc0000034
2/24/2008 0:11:59 - PFRO Error: \??\C:\Windows\Temp\TMP0000002DBA96491429233C21, |delete operation|, 0xc0000034
2/24/2008 0:11:59 - 3 Successful PFRO operations

3/1/2008 14:18:57 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\c6161.msi, |delete operation|, 0xc0000034
3/1/2008 14:18:57 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF226C.tmp, |delete operation|, 0xc0000034
3/1/2008 14:18:57 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_000002A4, |delete operation|, 0xc0000034
3/1/2008 14:18:57 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\c6161.msi, |delete operation|, 0xc0000034
3/1/2008 14:18:57 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\kl-install-2008-03-01-14-10-42.log, |delete operation|, 0xc0000034
3/1/2008 14:18:57 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\kl-setup-2008-03-01-14-10-42.log, |delete operation|, 0xc0000034
3/1/2008 14:18:57 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF226C.tmp, |delete operation|, 0xc0000034
3/1/2008 14:18:57 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_000002A4, |delete operation|, 0xc0000034
3/1/2008 14:18:58 - PFRO Error: \??\C:\Windows\Temp\JET8065.tmp, |delete operation|, 0xc0000034
3/1/2008 14:18:58 - PFRO Error: \??\C:\Windows\Temp\JET8094.tmp, |delete operation|, 0xc0000034
3/1/2008 14:18:58 - 3 Successful PFRO operations

3/9/2008 11:35:24 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFC12C.tmp, |delete operation|, 0xc0000034
3/9/2008 11:35:24 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000844, |delete operation|, 0xc0000034
3/9/2008 11:35:24 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFC12C.tmp, |delete operation|, 0xc0000034
3/9/2008 11:35:24 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000844, |delete operation|, 0xc0000034
3/9/2008 11:35:24 - PFRO Error: \??\C:\Windows\Temp\JET6122.tmp, |delete operation|, 0xc0000034
3/9/2008 11:35:24 - PFRO Error: \??\C:\Windows\Temp\JET6132.tmp, |delete operation|, 0xc0000034
3/9/2008 11:35:24 - 1 Successful PFRO operations

3/10/2008 20:38:50 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\prefs.js, !\??\C:\Users\zoher\AppData\Roaming\Mozilla\Firefox\Profiles\s9ql99go.default\prefs.js, 0xc0000034
3/10/2008 20:38:50 - 1 Successful PFRO operations

3/14/2008 10:34:56 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\prefs.js, !\??\C:\Users\zoher\AppData\Roaming\Mozilla\Firefox\Profiles\s9ql99go.default\prefs.js, 0xc0000034
3/14/2008 10:34:57 - 5 Successful PFRO operations

3/14/2008 14:18:22 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_0000081C, |delete operation|, 0xc0000034
3/14/2008 14:18:22 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF991C.tmp, |delete operation|, 0xc0000034
3/14/2008 14:18:22 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_0000081C, |delete operation|, 0xc0000034
3/14/2008 14:18:22 - 2 Successful PFRO operations

3/20/2008 9:13:8 - PFRO Error: \??\C:\Windows\TEMP\symlcsv1.exe, |delete operation|, 0xc0000034
3/20/2008 9:13:8 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF3B3E.tmp, |delete operation|, 0xc0000034
3/20/2008 9:13:8 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000878, |delete operation|, 0xc0000034
3/20/2008 9:13:8 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\IGDI.dll, |delete operation|, 0xc000003a
3/20/2008 9:13:8 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll, |delete operation|, 0xc000003a
3/20/2008 9:13:8 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll, |delete operation|, 0xc000003a
3/20/2008 9:13:8 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll, |delete operation|, 0xc000003a
3/20/2008 9:13:8 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\Setup.dll, |delete operation|, 0xc000003a
3/20/2008 9:13:8 - PFRO Error: \??\C:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll, |delete operation|, 0xc000003a
3/20/2008 9:13:8 - 8 Successful PFRO operations

3/22/2008 11:2:57 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp\Au_.exe, |delete operation|, 0xc0000034
3/22/2008 11:2:57 - 4 Successful PFRO operations

3/25/2008 19:42:1 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFC835.tmp, |delete operation|, 0xc0000034
3/25/2008 19:42:1 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000734, |delete operation|, 0xc0000034
3/25/2008 19:42:1 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFC835.tmp, |delete operation|, 0xc0000034
3/25/2008 19:42:1 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000734, |delete operation|, 0xc0000034
3/25/2008 19:42:1 - PFRO Error: \??\C:\Windows\Temp\JET7EB0.tmp, |delete operation|, 0xc0000034
3/25/2008 19:42:1 - PFRO Error: \??\C:\Windows\Temp\JET7EDF.tmp, |delete operation|, 0xc0000034
3/25/2008 19:42:1 - 1 Successful PFRO operations

3/26/2008 13:23:52 - PFRO Error: \??\C:\Windows\TEMP\symlcsv1.exe, |delete operation|, 0xc0000034
3/26/2008 13:23:52 - 3 Successful PFRO operations

3/30/2008 14:9:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF59AD.tmp, |delete operation|, 0xc0000034
3/30/2008 14:9:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000560, |delete operation|, 0xc0000034
3/30/2008 14:9:58 - PFRO Error: \??\C:\Windows\Temp\TMP0000002953522EB3D6FF7903, |delete operation|, 0xc0000034
3/30/2008 14:9:58 - 4 Successful PFRO operations

3/31/2008 12:14:4 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\nsx7EF1.tmp\Resource.dll, |delete operation|, 0xc0000034
3/31/2008 12:14:4 - 18 Successful PFRO operations

4/5/2008 23:45:41 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFC423.tmp, |delete operation|, 0xc0000034
4/5/2008 23:45:41 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000548, |delete operation|, 0xc0000034
4/5/2008 23:45:41 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFC423.tmp, |delete operation|, 0xc0000034
4/5/2008 23:45:41 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000548, |delete operation|, 0xc0000034
4/5/2008 23:45:41 - 1 Successful PFRO operations

4/10/2008 15:14:4 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF5E2B.tmp, |delete operation|, 0xc0000034
4/10/2008 15:14:4 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000A64, |delete operation|, 0xc0000034
4/10/2008 15:14:4 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF5E2B.tmp, |delete operation|, 0xc0000034
4/10/2008 15:14:4 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000A64, |delete operation|, 0xc0000034
4/10/2008 15:14:4 - PFRO Error: \??\C:\Windows\Temp\JET16AB.tmp, |delete operation|, 0xc0000034
4/10/2008 15:14:4 - PFRO Error: \??\C:\Windows\Temp\JET16BA.tmp, |delete operation|, 0xc0000034
4/10/2008 15:14:4 - 1 Successful PFRO operations

4/14/2008 13:49:9 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFDADD.tmp, |delete operation|, 0xc0000034
4/14/2008 13:49:9 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000518, |delete operation|, 0xc0000034
4/14/2008 13:49:9 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFB757.tmp, |delete operation|, 0xc0000034
4/14/2008 13:49:9 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFC458.tmp, |delete operation|, 0xc0000034
4/14/2008 13:49:9 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFDADD.tmp, |delete operation|, 0xc0000034
4/14/2008 13:49:9 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000518, |delete operation|, 0xc0000034
4/14/2008 13:49:9 - 4 Successful PFRO operations

4/20/2008 10:51:36 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF7FEE.tmp, |delete operation|, 0xc0000034
4/20/2008 10:51:36 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000254, |delete operation|, 0xc0000034
4/20/2008 10:51:36 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF7FEE.tmp, |delete operation|, 0xc0000034
4/20/2008 10:51:36 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000254, |delete operation|, 0xc0000034
4/20/2008 10:51:36 - PFRO Error: \??\C:\Windows\Temp\JET4BDE.tmp, |delete operation|, 0xc0000034
4/20/2008 10:51:36 - PFRO Error: \??\C:\Windows\Temp\JET4C0C.tmp, |delete operation|, 0xc0000034
4/20/2008 10:51:36 - 1 Successful PFRO operations

4/22/2008 1:31:24 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp\Au_.exe, |delete operation|, 0xc000003a
4/22/2008 1:31:24 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp, |delete operation|, 0xc0000034
4/22/2008 1:31:24 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp\Au_.exe, |delete operation|, 0xc000003a
4/22/2008 1:31:24 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp, |delete operation|, 0xc0000034
4/22/2008 1:31:24 - 3 Successful PFRO operations

4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp\Au_.exe, |delete operation|, 0xc000003a
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp\Au_.exe, |delete operation|, 0xc000003a
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp, |delete operation|, 0xc0000034
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp\Au_.exe, |delete operation|, 0xc000003a
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~nsu.tmp\Au_.exe, |delete operation|, 0xc000003a
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF206D.tmp, |delete operation|, 0xc0000034
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFFF9.tmp, |delete operation|, 0xc0000034
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_000006EC, |delete operation|, 0xc0000034
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF206D.tmp, |delete operation|, 0xc0000034
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DFFF9.tmp, |delete operation|, 0xc0000034
4/23/2008 0:31:58 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_000006EC, |delete operation|, 0xc0000034
4/23/2008 0:31:58 - PFRO Error: \??\C:\Windows\Temp\JET8B6E.tmp, |delete operation|, 0xc0000034
4/23/2008 0:31:58 - PFRO Error: \??\C:\Windows\Temp\JET8B6F.tmp, |delete operation|, 0xc0000034
4/23/2008 0:31:58 - 1 Successful PFRO operations

4/23/2008 10:31:55 - PFRO Error: \??\C:\Windows\system32\spool\DRIVERS\W32X86\3\New\msonpui.dll, \??\C:\Windows\system32\spool\DRIVERS\W32X86\3\msonpui.dll, 0xc000003a
4/23/2008 10:31:55 - 0 Successful PFRO operations

4/23/2008 12:30:29 - PFRO Error: \??\C:\PROGRA~1\Crawler\Toolbar\ctbr.dll, |delete operation|, 0xc000003a
4/23/2008 12:30:29 - 5 Successful PFRO operations

4/24/2008 19:4:4 - PFRO Error: \??\C:\ProgramData\Symantec\LiveUpdate\Downloads, |delete operation|, 0xc0000101
4/24/2008 19:4:4 - PFRO Error: \??\C:\Program Files\Symantec\LiveUpdate, |delete operation|, 0xc0000034
4/24/2008 19:4:4 - PFRO Error: \??\C:\Program Files\Symantec, |delete operation|, 0xc0000101
4/24/2008 19:4:4 - PFRO Error: \??\C:\Program Files\Symantec\LiveUpdate, |delete operation|, 0xc0000034
4/24/2008 19:4:4 - PFRO Error: \??\C:\Program Files\Symantec, |delete operation|, 0xc0000101
4/24/2008 19:4:4 - 4 Successful PFRO operations

4/27/2008 10:58:6 - PFRO Error: \??\C:\test0123, !\??\C:\Qoobox\Quarantine\C\test0123.vir, 0xc0000034
4/27/2008 10:58:6 - 1 Successful PFRO operations

4/28/2008 0:14:54 - PFRO Error: \??\C:\test0123, !\??\C:\Qoobox\Quarantine\C\test0123.vir, 0xc0000034
4/28/2008 0:14:54 - 0 Successful PFRO operations

4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\DATA, |delete operation|, 0xc0000034
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\DATA\backup, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\DATA\chest, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\DATA\integ, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\DATA\journal, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\DATA\log, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\DATA\moved, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\DATA\report, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\DATA\Skin, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\FRENCH, |delete operation|, 0xc0000034
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\FRENCH\HELP, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\FRENCH\HtmlData, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\images, |delete operation|, 0xc0000034
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\Setup, |delete operation|, 0xc0000101
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\Setup\AVAST~1.SET, |delete operation|, 0xc0000034
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\Setup\INF, |delete operation|, 0xc0000034
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\Setup\INF\AMD64, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - PFRO Error: \??\C:\PROGRA~1\ALWILS~1\Avast4\Setup\INF\IA64, |delete operation|, 0xc000003a
4/28/2008 1:24:3 - 4 Successful PFRO operations

4/28/2008 2:30:16 - PFRO Error: \??\C:\Program Files\Spyware Terminator\sptcontmenu.dll, |delete operation|, 0xc0000034
4/28/2008 2:30:16 - PFRO Error: \??\C:\Program Files\Spyware Terminator\SpywareTerminator.exe, |delete operation|, 0xc0000034
4/28/2008 2:30:16 - PFRO Error: \??\C:\Program Files\Spyware Terminator\unins000.dat, |delete operation|, 0xc0000034
4/28/2008 2:30:16 - PFRO Error: \??\C:\Program Files\Spyware Terminator\unins000.exe, |delete operation|, 0xc0000034
4/28/2008 2:30:16 - 3 Successful PFRO operations

4/28/2008 18:26:44 - PFRO Error: \??\C:\Windows\TEMP\symlcsv1.exe, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF810D.tmp, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000268, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~DF810D.tmp, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - PFRO Error: \??\C:\Users\zoher\AppData\Local\Temp\~ROMFN_00000268, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - PFRO Error: \??\C:\Windows\Temp\cc4672.tmp, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - PFRO Error: \??\C:\Windows\Temp\cc4951.tmp, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - PFRO Error: \??\C:\Windows\Temp\cc4A4B.tmp, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - PFRO Error: \??\C:\Windows\Temp\JET1F.tmp, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - PFRO Error: \??\C:\Windows\Temp\JETFFB2.tmp, |delete operation|, 0xc0000034
4/28/2008 18:26:44 - 1 Successful PFRO operations

4/28/2008 18:32:52 - PFRO Error: \??\C:\test0123, !\??\C:\Qoobox\Quarantine\C\test0123.vir, 0xc0000034
4/28/2008 18:32:52 - 0 Successful PFRO operations

4/28/2008 19:31:37 - PFRO Error: \??\C:\test0123, !\??\C:\Qoobox\Quarantine\C\test0123.vir, 0xc0000034
4/28/2008 19:31:37 - 0 Successful PFRO operations

4/29/2008 12:55:27 - PFRO Error: \??\C:\test0123, !\??\C:\Qoobox\Quarantine\C\test0123.vir, 0xc0000034
4/29/2008 12:55:27 - 0 Successful PFRO operations

4/29/2008 13:3:38 - PFRO Error: \??\C:\test0123, !\??\C:\Qoobox\Quarantine\C\test0123.vir, 0xc0000034
4/29/2008 13:3:38 - 0 Successful PFRO operations

4/29/2008 13:16:31 - PFRO Error: \??\C:\test0123, !\??\C:\Qoobox\Quarantine\C\test0123.vir, 0xc0000034
4/29/2008 13:16:31 - 0 Successful PFRO operations

4/29/2008 13:28:42 - PFRO Error: \??\C:\test0123, !\??\C:\Qoobox\Quarantine\C\test0123.vir, 0xc0000034
4/29/2008 13:28:42 - 0 Successful PFRO operations
0
afideg Messages postés 10517 Date d'inscription   Statut Contributeur sécurité Dernière intervention   602
 
Re,

Je ne vois pas d'où proviennent les deux derniers rapports # 40
Le premier semble être extrait d'un ComboFix (mais lequel ==> il n'y a pas l'en-tête ?)
Le second contient pour l'esentiel des fichiers .temp ( mais de quel rapport ==> il n'y a pas l'en-tête ?)
Il provient de quel outil ?


On recommence comme ceci:

A)- Donc, pour se débarrasser des outils utilisés à l'occasion, et devenus particulièrement caducs et obsolètes (parce que ce sont parfois des outils dangereux lorsqu'ils ne sont pas mis à jour), il y a lieu d'appliquer ceci:
Télécharge ToolsCleaner (de A.Rothstein) à l’aide de ce lien :
< http://pagesperso-orange.fr/AceRothstein/ToolsCleaner2.exe >, et enregistre-le sur le “Bureau”.
Et exécute-le.
Clique sur Recherche et laisse le scan se terminer.
Clique sur Suppression pour finaliser.
Clique sur Quitter, pour que le rapport puisse se créer.
Poste-moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).


B)- Sélectionne l’intégralité du cadre ci-dessous :

C:\Users\zoher\AppData\Local\Temp\hgggg.dll
C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll
C:\Users\zoher\AppData\Local\Temp\geefc.dll


Copie/colle-le dans le Bloc-Notes (Démarrer\Tous les programmes\Accessoires\Bloc-notes.)
Clic sur "Fichier" > "Enregistrer-sous.." > choisir sur ton bureau sous le nom de " Correction.bat "
Regarde là < http://img166.imageshack.us/img166/5504/screenshot350ns2.png >

Redémarrage en mode sans échec et ensuite il faut double-cliquer (clic-droit avec Vista, puis [Exécuter en tant qu'administrateur]) sur ce fichier " Correction.bat " pour l'exécuter ! ... et vider la corbeille.(rien d’autre).

Redémarrer le PC normalement.


Télécharger : ATF-Cleaner < http://www.atribune.org/ccount/click.php?id=1 >
Tuto < http://mickael.barroux.free.fr/securite/atf_cleaner.php > ,
et le lancer tous les jours quand tu quittes le PC.


C)- Fais une analyse par HijackThis, comme ceci:

1)- Télécharge la version finale de Hijackthis (Trend Secure) ==> HijackThis™ 2.0 .2 < [ http://www.trendsecure.com/portal/en-US/threat_analytics/hijackthis.php?page=download ] > avec un installeur.
- Sur la page, choisis « Download HijackThis Installer » http://img265.imageshack.us/img265/4575/screenshot127sd3.png
et enregistre-le sur le bureau.
Tu dois voir une nouvelle icône « HJTInstall.exe » sur le bureau.


2)- Installation :
- Clic-droit sur l’ icône « HJTInstall.exe » présente sur ton bureau et choisis : "Exécuter en tant qu'administrateur" dans le menu contextuel.
- Ensuite, clic sur « Exécuter », puis sur « Install ».
- Accepte la licence en cliquant sur le bouton "I Accept"
- Le programme s’installe de lui-même dans un dossier dédié.
- Par défaut, il s'installera en C:\Program Files\Trend Micro\HijackThis
- Et un raccourci pour lancer l’analyse apparaît sur le bureau.

Note: Comme cette version est appelée à rester sur le PC, faire un clic-droit sur HJTInstall.exe > Propriétés > Onglet “Compatibilité” > coche la case "Exécuter en tant qu'administrateur" en bas .
- Cette solution pérennise le choix qui peut être obtenu de manière provisoire par « clic-droit sur l'icône de raccourci/Exécuter en tant qu'administrateur» dans le menu contextuel.

3)- Lance HJT
Choisis [Open the Misc Tools section]
Choisis alors [Open ADS Spy..]
Clic sur [SCAN]
Save a log ==> poste le rapport, SVP.



D)- Poste un nouveau rapport KasperskyOnline


Merci
Al.
0
afideg Messages postés 10517 Date d'inscription   Statut Contributeur sécurité Dernière intervention   602
 
(suite)

Du post #22 § C)-, avais-tu exécuté ceci ?
« Supprimez les fichiers temporaires: ==>
Allez dans DEMARRER-EXECUTER et tapez %TEMP% et cliquez sur la combinaison de touches suivantes : [Ctrl + Shift + Entrée]. Supprimez tout le contenu et videz la corbeille par la suite.
»

Si tu l'as exécuté alors, je ne comprends pas ce second rapport que tu me laisses au post # 40 et qui contient quasi des fichiers .temp que ma commande devait afficher pour que tu puisses les vider.
De quel outil provient ce rapport ? Et de quelle date ?
À noter que ce log ne contient pas les trois fichiers (type Vundo) que _OTMoveIt n'a pas trouvés:
C:\Users\zoher\AppData\Local\Temp\hgggg.dll
C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll
C:\Users\zoher\AppData\Local\Temp\geefc.dll



Veux-tu bien m'aider en appliquant ce qui est demandé au post # 41 supra ? Merci.

Il restera ces trois fichiers à traiter:
C:\Windows\- upd.dll
C:\Windows\- IEXPLORE.EXE
C:\Windows\- pt.html
Qui contiennent un intervalle parasite.



Bonne soirée
Al.
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
-tools cleaner a fonctionner il yavait un gros rapport dans la fenetre et quand j ai fait supprimer puis quitter jai trouver ceci sur C:Tcleaner
-->- Recherche:


---------------------------------
-->- Suppression:



-pour CORRECTION .BAT EN MODE SANS ECHEC LA FENETRE S OUVRE ET SE REFERME AUSSITOT .
IL N Y AURAI PAS UNE MANOUEVRE A FAIRE DU STYLE DESACTIVER LA RESTAURATION SYSTEME ?


-le second rapport a ete creer le 14:12:2007 il viens de C:WINDOWS IL S APELLE PFRO.LOG ILS SE MET A JOUR ET J AI ETE INTERPELLER SA DATE RECENTE OUBLIONT LE .



-ATF CLEANER EST TELECHARGER MAIS FONCTIONNE UNIQUEMENT SUR XP




--BONNE NOUVELLE NORTON EST COMPLETEMENT DESINSTALLER AVEC TA PERMISSION EST CE QUE JE PEUX INSTALLER KASPERSKY C EST MIEUX QUE "ANTIViR"





-et ces fichiers C:\Users\zoher\AppData\Local\Temp\hgggg.dll
C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll
C:\Users\zoher\AppData\Local\Temp\geefc.dll

sont toujours signaler au demarrage par des petite fenetre





-UNE QUESTION JE VOUDRAI SUPRIMER OU DESINSTALLER DES LOGICIEL TELECHARGER EN LIGNE QUI M ENVAILLISSENTPLUS QUAUTRE CHOSE PUI JE LE FAIRE



-COMME "RAPPEL" JE VOUDRAI TE REDIRE QUE LA PREMIERE FOIS QUE J AI EU CE PROBLEME QUE NOUS ESSAYONS DE RESOUDRE C ETAIT DANS "SHARED FOLDER" DE "ARES" LA ZONE OU SONT STOCKER LES FICHIERS TYELECHARGER










-VOICI LE RAPPORT HIJACKTHIS ET JE M OCCUPE DU RAPPORT KASPERSKY A+








Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:16:33, on 30/04/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16643)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Packard Bell\FIJI\ABoard.exe
C:\Program Files\Packard Bell\FIJI\AOSD.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Uniblue\RegistryBooster 2\RegistryBooster.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktopCrawl.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.eurobarre.com/index_fr.php?p=907353285077
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe
O4 - HKLM\..\Run: [ACTIVBOARD] C:\Program Files\Packard Bell\FIJI\aboard.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Windows\system32\NeroCheck.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [mscdti] C:\Windows\cdti.exe /nosrv
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [SmpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [{79BEDC7F-AE6B-BC9F-C85E-6A39A8D397BF}] C:\Users\zoher\AppData\Roaming:spoolsv.exe
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2] c:\program files\uniblue\registrybooster 2\StartRegistryBooster.exe
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [MSServer] rundll32.exe C:\Users\zoher\AppData\Local\Temp\hgggg.dll,#1
O4 - HKCU\..\Run: [MS Juan] rundll32 "C:\Users\zoher\AppData\Local\Temp\xksboeqt.dll",run
O4 - HKCU\..\Run: [cmds] rundll32.exe C:\Users\zoher\AppData\Local\Temp\geefc.dll,c
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user')
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\npjpi160_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\npjpi160_05.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: cfm - Unknown owner - C:\Windows\system32\cfmom.exe (file missing)
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
UNE AUTRE CHOSE J AI VIDER LES FICHIER TEMPORAIRE MAISS IL Y EN A QU ON NE PEUT PAS SUPRIMER ON ME DEMANDE UN "AUTORISATION " CE sont de fichiers tmp
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
KASPERSKY ON-LINE SCANNER REPORT
Wednesday, April 30, 2008 4:30:05 AM
Système d'exploitation : Home Edition, (Build 6000)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 29/04/2008
Enregistrements dans la base antivirus Kaspersky : 731993


Paramètres d'analyse
Analyser avec la base antivirus suivante étendue
Analyser les archives vrai
Analyser les bases de messagerie vrai

Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
G:\
H:\

Statistiques de l'analyse
Total d'objets analysés 275583
Nombre de virus trouvés 0
Nombre d'objets infectés 0 / 0
Nombre d'objets suspects 0
Durée de l'analyse 01:59:36

Nom de l'objet infecté Nom du virus Dernière action
C:\boot\BCD L'objet est verrouillé ignoré

C:\boot\BCD.LOG L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\report.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRCustomProps#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRObjects#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.idx L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\report.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRCustomProps#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRObjects#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5CF.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5D0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0022_File_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0024_Web_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.idx L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\report.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRCustomProps#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRObjects#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Windows.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5CF.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5D0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0022_File_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0024_Web_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.idx L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\report.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRCustomProps#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRObjects#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.Crwl L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\CiPT0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\Used0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SecStore\CiST0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk1.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk2.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Windows.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5CF.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5D0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0022_File_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0024_Web_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.idx L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\report.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRCustomProps#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRObjects#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Crypto\RSA\MachineKeys\0d3e561d613579f49c6605df8e72ae4d_a1c6bebf-0f33-4073-be9a-86ffb2f46b3e L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.Crwl L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010001.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010002.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010003.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010004.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010005.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010006.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.ci L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wsb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010008.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010009.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000A.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000B.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000F.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010010.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010012.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010014.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010017.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010018.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010019.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\INDEX.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\CiPT0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\Used0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SecStore\CiST0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk1.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk2.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.Ntfy167.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Windows.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5CF.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5D0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0022_File_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0024_Web_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.idx L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\report.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRCustomProps#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRObjects#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Crypto\RSA\MachineKeys\0d3e561d613579f49c6605df8e72ae4d_a1c6bebf-0f33-4073-be9a-86ffb2f46b3e L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.Crwl L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010001.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010002.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010003.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010004.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010005.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010006.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.ci L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wsb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010008.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010009.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000A.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000B.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000F.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010010.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010012.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010014.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010017.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010018.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010019.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\INDEX.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\CiPT0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\Used0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SecStore\CiST0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk1.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk2.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.Ntfy167.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Windows.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5CF.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5D0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0022_File_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0024_Web_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.idx L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\report.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRCustomProps#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRObjects#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Crypto\RSA\MachineKeys\0d3e561d613579f49c6605df8e72ae4d_a1c6bebf-0f33-4073-be9a-86ffb2f46b3e L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.Crwl L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010001.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010002.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010003.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010004.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010005.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010006.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.ci L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wsb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010008.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010009.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000A.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000B.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000F.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010010.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010012.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010014.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010017.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010018.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010019.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\INDEX.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\CiPT0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\Used0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SecStore\CiST0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk1.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk2.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.Ntfy167.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\tmp.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Windows.edb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5CF.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Temp\usgthrsvc\NtfA5D0.tmp L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Application Data\Symantec\SRTSP\Quarantine\AP3855D52F.dll L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0022_File_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\0024_Web_Monitoring_eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.idx L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\detected.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\eventlog.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\AVP7\Report\report.rpt L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRCustomProps#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Kaspersky Lab\~PRObjects#145.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Crypto\RSA\MachineKeys\0d3e561d613579f49c6605df8e72ae4d_a1c6bebf-0f33-4073-be9a-86ffb2f46b3e L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.Crwl L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex\SystemIndex.80.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSS.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\MSStmp.log L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010001.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010002.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010003.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010004.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010005.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010006.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.ci L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010007.wsb L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010008.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010009.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000A.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000B.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\0001000F.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010010.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010012.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010014.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010017.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010018.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\00010019.wid L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles\INDEX.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\CiPT0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap\Used0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SecStore\CiST0000.000 L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SystemIndex.chk1.gthr L'objet est verrouillé ignoré

C:\Documents and Settings\All Users\Application Data\Application Data\Application Data\Application Data\Microsoft\Search\Data\A
0
autobuizz Messages postés 170 Date d'inscription   Statut Membre Dernière intervention   3
 
C EST LA ¨PARTIE BASSE DU RAPPORT VU QU IL N Y A PAS LA FIN DANS LA PREMIER











zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\hpt2i.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1m.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1mh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Historique\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\History\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\History\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG2 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TM.blf L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DF343E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DF344A.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DF4D9E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFDBA9.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~ROMFN_00000584 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbc2e.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbdam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbdao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbeam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbeao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbm L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbu2d.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbvm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbvmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\fii.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\fiih.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\hp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\hpt2i.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1m.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1mh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Historique\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\History\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\History\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG2 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TM.blf L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DF343E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DF344A.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DF4D9E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~DFDBA9.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temp\~ROMFN_00000584 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbc2e.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbdam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbdao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbeam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbeao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbm L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbu2d.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbvm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbvmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\fii.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\fiih.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\hp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\hpt2i.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1m.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1mh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Historique\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\History\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\History\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG2 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TM.blf L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\~DF343E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\~DF344A.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\~DF4D9E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\~DFDBA9.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Temp\~ROMFN_00000584 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbc2e.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbdam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbdao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbeam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbeao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbm L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbu2d.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbvm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbvmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\fii.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\fiih.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\hp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\hpt2i.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1m.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1mh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Historique\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\History\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\History\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG2 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TM.blf L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Temp\~DF343E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Temp\~DF344A.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Temp\~DF4D9E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Temp\~DFDBA9.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Temp\~ROMFN_00000584 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Application Data\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbc2e.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbdam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbdao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbeam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbeao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbm L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbu2d.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbvm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\dbvmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\fii.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\fiih.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\hp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\hpt2i.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1m.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpm1mh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Google\Google Desktop\c563e28aab1b\rpmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Historique\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Windows\History\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Windows\History\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Windows\UsrClass.dat.LOG2 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TM.blf L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Temp\~DF343E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Temp\~DF344A.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Temp\~DF4D9E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Temp\~DFDBA9.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Temp\~ROMFN_00000584 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Application Data\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\dbc2e.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\dbdam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\dbdao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\dbeam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\dbeao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\dbm L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\dbu2d.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\dbvm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\dbvmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\fii.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\fiih.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\hp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\hpt2i.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\rpm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\rpm1m.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\rpm1mh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Google\Google Desktop\c563e28aab1b\rpmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Historique\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Internet Explorer\MSIMGSIZ.DAT L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Windows\History\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Windows\History\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG2 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TM.blf L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Temp\~DF343E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Temp\~DF344A.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Temp\~DF4D9E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Temp\~DFDBA9.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Temp\~ROMFN_00000584 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Application Data\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\dbc2e.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\dbdam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\dbdao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\dbeam L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\dbeao L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\dbm L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\dbu2d.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\dbvm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\dbvmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\fii.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\fiih.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\hp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\hpt2i.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\rpm.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\rpm1m.cf1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\rpm1mh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Google\Google Desktop\c563e28aab1b\rpmh.ht1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Historique\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Feeds Cache\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Internet Explorer\MSIMGSIZ.DAT L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Windows\History\History.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Windows\History\History.IE5\MSHist012008043020080501\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Windows\UsrClass.dat.LOG1 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Windows\UsrClass.dat.LOG2 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TM.blf L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Microsoft\Windows\UsrClass.dat{faf86f8b-cf76-11dc-9c65-001c25327905}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Temp\~DF343E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Temp\~DF344A.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Temp\~DF4D9E.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Temp\~DFDBA9.tmp L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Temp\~ROMFN_00000584 L'objet est verrouillé ignoré

C:\Users\zoher\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré

C:\Users\zoher\ntuser.dat L'objet est verrouillé ignoré

C:\Users\zoher\ntuser.dat.LOG1 L'objet est verrouillé ignoré

C:\Users\zoher\ntuser.dat.LOG2 L'objet est verrouillé ignoré

C:\Users\zoher\ntuser.dat{ac0210df-1125-11dd-8d17-001c25327905}.TM.blf L'objet est verrouillé ignoré

C:\Users\zoher\ntuser.dat{ac0210df-1125-11dd-8d17-001c25327905}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Users\zoher\ntuser.dat{ac0210df-1125-11dd-8d17-001c25327905}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Windows\Debug\PASSWD.LOG L'objet est verrouillé ignoré

C:\Windows\Debug\sam.log L'objet est verrouillé ignoré

C:\Windows\Debug\WIA\wiatrace.log L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\WindowsUpdate.log L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\LocalService\ntuser.dat.LOG1 L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\LocalService\ntuser.dat.LOG2 L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{3a539869-6a70-11db-887c-d362bd253390}.TM.blf L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{3a539869-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT{3a539869-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\NetworkService\ntuser.dat.LOG1 L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\NetworkService\ntuser.dat.LOG2 L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{3a539865-6a70-11db-887c-d362bd253390}.TM.blf L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{3a539865-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT{3a539865-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Windows\SoftwareDistribution\EventCache\{BEB057ED-573E-46FC-9090-8E8183B92247}.bin L'objet est verrouillé ignoré

C:\Windows\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré

C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 L'objet est verrouillé ignoré

C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 L'objet est verrouillé ignoré

C:\Windows\System32\catroot2\edb.log L'objet est verrouillé ignoré

C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb L'objet est verrouillé ignoré

C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb L'objet est verrouillé ignoré

C:\Windows\System32\config\COMPONENTS L'objet est verrouillé ignoré

C:\Windows\System32\config\COMPONENTS.LOG1 L'objet est verrouillé ignoré

C:\Windows\System32\config\COMPONENTS.LOG2 L'objet est verrouillé ignoré

C:\Windows\System32\config\DEFAULT L'objet est verrouillé ignoré

C:\Windows\System32\config\DEFAULT.LOG1 L'objet est verrouillé ignoré

C:\Windows\System32\config\DEFAULT.LOG2 L'objet est verrouillé ignoré

C:\Windows\System32\config\RegBack\COMPONENTS L'objet est verrouillé ignoré

C:\Windows\System32\config\RegBack\DEFAULT L'objet est verrouillé ignoré

C:\Windows\System32\config\RegBack\SAM L'objet est verrouillé ignoré

C:\Windows\System32\config\RegBack\SECURITY L'objet est verrouillé ignoré

C:\Windows\System32\config\RegBack\SOFTWARE L'objet est verrouillé ignoré

C:\Windows\System32\config\RegBack\SYSTEM L'objet est verrouillé ignoré

C:\Windows\System32\config\SAM L'objet est verrouillé ignoré

C:\Windows\System32\config\SAM.LOG1 L'objet est verrouillé ignoré

C:\Windows\System32\config\SAM.LOG2 L'objet est verrouillé ignoré

C:\Windows\System32\config\SECURITY L'objet est verrouillé ignoré

C:\Windows\System32\config\SECURITY.LOG1 L'objet est verrouillé ignoré

C:\Windows\System32\config\SECURITY.LOG2 L'objet est verrouillé ignoré

C:\Windows\System32\config\SOFTWARE L'objet est verrouillé ignoré

C:\Windows\System32\config\SOFTWARE.LOG1 L'objet est verrouillé ignoré

C:\Windows\System32\config\SOFTWARE.LOG2 L'objet est verrouillé ignoré

C:\Windows\System32\config\SYSTEM L'objet est verrouillé ignoré

C:\Windows\System32\config\SYSTEM.LOG1 L'objet est verrouillé ignoré

C:\Windows\System32\config\SYSTEM.LOG2 L'objet est verrouillé ignoré

C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TM.blf L'objet est verrouillé ignoré

C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000001.regtrans-ms L'objet est verrouillé ignoré

C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000002.regtrans-ms L'objet est verrouillé ignoré

C:\Windows\System32\drivers\fidbox.dat L'objet est verrouillé ignoré

C:\Windows\System32\drivers\fidbox.idx L'objet est verrouillé ignoré

C:\Windows\System32\LogFiles\Scm\SCM.EVM L'objet est verrouillé ignoré

C:\Windows\System32\LogFiles\WUDF\WUDFTrace.etl L'objet est verrouillé ignoré

C:\Windows\System32\Msdtc\KtmRmTm.blf L'objet est verrouillé ignoré

C:\Windows\System32\Msdtc\KtmRmTmContainer00000000000000000001 L'objet est verrouillé ignoré

C:\Windows\System32\Msdtc\KtmRmTmContainer00000000000000000002 L'objet est verrouillé ignoré

C:\Windows\System32\spool\SpoolerETW.etl L'objet est verrouillé ignoré

C:\Windows\System32\wbem\Logs\WMITracing.log L'objet est verrouillé ignoré

C:\Windows\System32\wbem\repository\INDEX.BTR L'objet est verrouillé ignoré

C:\Windows\System32\wbem\repository\MAPPING1.MAP L'objet est verrouillé ignoré

C:\Windows\System32\wbem\repository\MAPPING2.MAP L'objet est verrouillé ignoré

C:\Windows\System32\wbem\repository\OBJECTS.DATA L'objet est verrouillé ignoré

C:\Windows\System32\WDI\LogFiles\WdiContextLog.etl.002 L'objet est verrouillé ignoré

C:\Windows\System32\wfp\wfpdiag.etl L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Application.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\DFS Replication.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\HardwareEvents.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Internet Explorer.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Key Management Service.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Media Center.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-Bits-Client%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-CodeIntegrity%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnosis-DPS%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnostics-Performance%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-GroupPolicy%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-International%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-Kernel-WHEA.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-LanguagePackSetup%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-NetworkAccessProtection%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-ReadyBoost%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-ReliabilityAnalysisComponent%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Exhaustion-Detector%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-TaskScheduler%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Microsoft-Windows-WindowsUpdateClient%4Operational.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\ODiag.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\OSession.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\Security.evtx L'objet est verrouillé ignoré

C:\Windows\System32\winevt\Logs\System.evtx L'objet est verrouillé ignoré

C:\Windows\Tasks\SCHEDLGU.TXT L'objet est verrouillé ignoré

C:\Windows\TEMP\JET41FE.tmp L'objet est verrouillé ignoré

C:\Windows\WindowsUpdate.log L'objet est verrouillé ignoré

Analyse terminée.
0