Probleme de virus

maxacaen -  
 maxacaen -
Bonjour,
j'ai de multi problemes avec mon ordinateur depuis que mon petit frere le sacripant a osé y touché,
il y a des fenetres internet qui s'ouvrent toutes seules, un antivirus 2009 qui me harcellent, des programmes que j'aimerai désinstaller mais qui n'apparaissent pas dans le panneau de config, un logiciel play's mp3 que j'ai desinstallé mais qui est toujours dans mon menu demarrer, bref c'est la merde !
j'ai telechargé unilog j'ai fais choix 1 recherche voila ce que ça donne:

Search Navipromo version 3.6.1 commencé le 01/08/2008 à 2:33:31,66

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "portable"

Mise à jour le 19.07.2008 à 20h00 par IL-MAFIOSO

Microsoft Windows Vista 6.0.6000
Internet Explorer : 7.0.6000.16681
Système de fichiers : NTFS

Recherche executé en mode normal

*** Recherche Programmes installés ***

*** Recherche dossiers dans "C:\Windows" ***

*** Recherche dossiers dans "C:\Program Files" ***

*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1\programs" ***

*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1" ***

*** Recherche dossiers dans "C:\ProgramData" ***

*** Recherche dossiers dans "c:\users\portable\appdata\roaming\micros~1\windows\startm~1\programs" ***

*** Recherche dossiers dans "C:\Users\portable\AppData\Local\virtualstore\Program Files" ***

*** Recherche dossiers dans "C:\Users\portable\AppData\Roaming" ***

*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier Navipromo trouvé

*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\Windows\system32" *

* Recherche dans "C:\Users\portable\AppData\Local\Microsoft" *

* Recherche dans "C:\Users\portable\AppData\Local" *

*** Recherche fichiers ***

*** Recherche clés spécifiques dans le Registre ***

*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :

2)Recherche Heuristique :

* Dans "C:\Windows\system32" :

* Dans "C:\Users\portable\AppData\Local\Microsoft" :

* Dans "C:\Users\portable\AppData\Local" :

3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche fichiers connus :

*** Analyse terminée le 01/08/2008 à 2:45:33,54 ***

merci beaucoup
maxacaen
Configuration: Windows Vista
Firefox 2.0.0.16

17 réponses

  1. maxacaen
     
    et voila le rapport avec le 2eme programme:

    --------------------\\ Lop S&D 4.2.2-4 XP/Vista

    [ Windows VISTA (NT 6.0) Workstation Build 6000 ]
    [ USER : portable ] [ "C:\Lop SD" ] [ Selection : 1 ]
    [ 01/08/2008 | 2:57:11,44 ] [ PC : PC-DE-PORTABLE ]
    [ MAJ : 25-07-2008 | 17:45 ]
    [ UAC => 0 ]

    --------------------\\ Listing des dossiers dans Local

    [25/06/2008|20:57] C:\Users\portable\AppData\Local\Adobe
    [01/02/2008|16:09] C:\Users\portable\AppData\Local\Application Data
    [28/07/2008|14:43] C:\Users\portable\AppData\Local\ApplicationHistory
    [06/07/2008|13:57] C:\Users\portable\AppData\Local\d3d9caps.dat
    [07/07/2008|22:06] C:\Users\portable\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [11/03/2008|23:59] C:\Users\portable\AppData\Local\fusioncache.dat
    [25/06/2008|20:53] C:\Users\portable\AppData\Local\GDIPFONTCACHEV1.DAT
    [31/05/2008|04:12] C:\Users\portable\AppData\Local\Google
    [01/02/2008|16:09] C:\Users\portable\AppData\Local\Historique
    [01/08/2008|01:03] C:\Users\portable\AppData\Local\IconCache.db
    [29/07/2008|21:50] C:\Users\portable\AppData\Local\Installer2384
    [01/08/2008|02:45] C:\Users\portable\AppData\Local\Microsoft
    [14/06/2008|12:24] C:\Users\portable\AppData\Local\Microsoft Games
    [13/03/2008|04:22] C:\Users\portable\AppData\Local\Microsoft Help
    [13/03/2008|06:05] C:\Users\portable\AppData\Local\MicroVision Applications
    [19/03/2008|00:00] C:\Users\portable\AppData\Local\Mozilla
    [28/07/2008|14:07] C:\Users\portable\AppData\Local\RegFreeze
    [01/08/2008|02:55] C:\Users\portable\AppData\Local\Temp
    [01/02/2008|16:09] C:\Users\portable\AppData\Local\Temporary Internet Files
    [01/02/2008|16:11] C:\Users\portable\AppData\Local\Toshiba
    [02/02/2008|07:35] C:\Users\portable\AppData\Local\VirtualStore

    --------------------\\ Tâches planifiées dans C:\Windows\tasks

    [01/08/2008 02:32][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
    [31/07/2008 22:30][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{836029E6-8F6F-49C6-B6C0-9DBD7C8AF31E}.job
    [01/08/2008 01:04][--ah-----] C:\Windows\tasks\SA.DAT
    [01/08/2008 01:03][--a------] C:\Windows\tasks\SCHEDLGU.TXT

    --------------------\\ Listing des dossiers dans C:\ProgramData

    [25/09/2007|16:08] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
    [02/02/2008|07:56] C:\ProgramData\Acronis
    [25/06/2008|16:43] C:\ProgramData\Adobe
    [25/06/2008|20:50] C:\ProgramData\Adobe Systems
    [02/11/2006|18:32] C:\ProgramData\Application Data
    [01/02/2008|16:05] C:\ProgramData\Bureau
    [16/05/2008|02:15] C:\ProgramData\CyberLink
    [02/11/2006|18:32] C:\ProgramData\Desktop
    [02/11/2006|18:32] C:\ProgramData\Documents
    [01/02/2008|16:05] C:\ProgramData\Favoris
    [02/11/2006|18:32] C:\ProgramData\Favorites
    [16/05/2008|20:30] C:\ProgramData\FlashFXP
    [25/06/2008|22:19] C:\ProgramData\FLEXnet
    [31/03/2008|23:18] C:\ProgramData\Google
    [25/09/2007|16:14] C:\ProgramData\InstallShield
    [02/02/2008|06:53] C:\ProgramData\Intel
    [01/08/2008|01:05] C:\ProgramData\Kaspersky Lab
    [28/05/2008|17:04] C:\ProgramData\LauncherAccess.dt
    [01/02/2008|16:05] C:\ProgramData\Menu D‚marrer
    [01/08/2008|00:32] C:\ProgramData\Microsoft
    [01/08/2008|00:55] C:\ProgramData\Microsoft Help
    [01/02/2008|16:05] C:\ProgramData\ModŠles
    [20/03/2008|10:34] C:\ProgramData\ntuser.pol
    [18/03/2008|21:24] C:\ProgramData\Prevx
    [02/02/2008|06:53] C:\ProgramData\Roaming
    [13/03/2008|08:19] C:\ProgramData\Roxio
    [25/09/2007|16:13] C:\ProgramData\Sonic
    [01/08/2008|00:23] C:\ProgramData\Spybot - Search & Destroy
    [02/11/2006|18:32] C:\ProgramData\Start Menu
    [01/08/2008|00:34] C:\ProgramData\TEMP
    [02/11/2006|18:32] C:\ProgramData\Templates
    [14/06/2008|19:02] C:\ProgramData\Ulead Systems
    [25/06/2008|16:38] C:\ProgramData\WinZip
    [20/03/2008|23:13] C:\ProgramData\WLInstaller

    --------------------\\ Listing des dossiers dans C:\Program Files

    [02/02/2008|07:46] C:\Program Files\Acronis
    [25/09/2007|16:08] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
    [31/07/2008|12:30] C:\Program Files\Adobe
    [01/08/2008|01:52] C:\Program Files\AdvancedTool
    [31/07/2008|23:53] C:\Program Files\AV9
    [28/07/2008|22:01] C:\Program Files\BitDefender
    [01/08/2008|02:26] C:\Program Files\Common Files
    [25/09/2007|16:16] C:\Program Files\Cyberlink
    [28/07/2008|16:06] C:\Program Files\desktop.ini
    [06/03/2008|06:02] C:\Program Files\Dofus
    [30/07/2008|23:38] C:\Program Files\Everest Poker
    [27/07/2008|18:53] C:\Program Files\FBrowserAdvisor
    [01/08/2008|02:54] C:\Program Files\FBrowsingAdvisor
    [01/02/2008|16:05] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
    [16/05/2008|20:30] C:\Program Files\FlashFXP
    [06/06/2008|14:46] C:\Program Files\Google
    [01/08/2008|00:33] C:\Program Files\Hitman Pro
    [14/06/2008|18:58] C:\Program Files\InstallShield Installation Information
    [02/02/2008|06:51] C:\Program Files\Intel
    [28/07/2008|16:02] C:\Program Files\Internet Explorer
    [01/04/2008|01:04] C:\Program Files\Java
    [01/08/2008|00:45] C:\Program Files\Kaspersky Lab
    [12/03/2008|23:04] C:\Program Files\K-Lite Codec Pack
    [02/04/2008|20:48] C:\Program Files\Microsoft Games
    [25/09/2007|16:07] C:\Program Files\Microsoft Office
    [25/09/2007|16:08] C:\Program Files\Microsoft Small Business
    [11/03/2008|23:16] C:\Program Files\Microsoft SQL Server
    [20/03/2008|23:23] C:\Program Files\Microsoft SQL Server Compact Edition
    [25/09/2007|16:03] C:\Program Files\Microsoft Visual Studio
    [25/09/2007|16:03] C:\Program Files\Microsoft Works
    [11/03/2008|23:15] C:\Program Files\Microsoft.NET
    [13/06/2008|19:58] C:\Program Files\Movie Maker
    [27/07/2008|18:53] C:\Program Files\Mozilla Firefox
    [02/11/2006|18:07] C:\Program Files\MSBuild
    [02/11/2006|18:07] C:\Program Files\MSN
    [11/03/2008|23:57] C:\Program Files\MSXML 4.0
    [01/08/2008|02:45] C:\Program Files\Navilog1
    [11/03/2008|23:16] C:\Program Files\NEC Computers
    [11/03/2008|23:32] C:\Program Files\OO Software
    [01/06/2008|19:16] C:\Program Files\Picasa2
    [25/09/2007|15:47] C:\Program Files\Realtek
    [02/11/2006|18:07] C:\Program Files\Reference Assemblies
    [28/07/2008|14:06] C:\Program Files\RegFreeze
    [25/09/2007|16:13] C:\Program Files\Roxio
    [29/03/2008|03:40] C:\Program Files\Samsung
    [18/03/2008|21:49] C:\Program Files\Spybot - Search & Destroy
    [26/09/2007|00:51] C:\Program Files\Synaptics
    [25/09/2007|15:48] C:\Program Files\System Control Manager
    [25/09/2007|15:50] C:\Program Files\Toshiba
    [14/06/2008|18:58] C:\Program Files\Ulead Systems
    [02/11/2006|18:31] C:\Program Files\Uninstall Information
    [26/09/2007|00:57] C:\Program Files\Windows Calendar
    [26/09/2007|00:57] C:\Program Files\Windows Collaboration
    [26/09/2007|01:11] C:\Program Files\Windows Defender
    [26/09/2007|00:57] C:\Program Files\Windows Journal
    [28/07/2008|14:35] C:\Program Files\Windows Live
    [20/03/2008|23:21] C:\Program Files\Windows Live Favorites
    [20/03/2008|23:22] C:\Program Files\Windows Live Toolbar
    [26/09/2007|01:24] C:\Program Files\Windows Mail
    [14/06/2008|18:59] C:\Program Files\Windows Media Components
    [13/06/2008|20:02] C:\Program Files\Windows Media Player
    [01/02/2008|16:05] C:\Program Files\Windows NT
    [26/09/2007|00:57] C:\Program Files\Windows Photo Gallery
    [12/03/2008|02:39] C:\Program Files\Windows Sidebar
    [11/03/2008|23:31] C:\Program Files\WinRAR

    --------------------\\ Listing des dossiers dans C:\Program Files\Common Files

    [02/02/2008|07:46] C:\Program Files\Common Files\Acronis
    [31/07/2008|12:38] C:\Program Files\Common Files\Adobe
    [25/06/2008|16:44] C:\Program Files\Common Files\Adobe Systems Shared
    [28/07/2008|22:01] C:\Program Files\Common Files\BitDefender
    [25/09/2007|16:03] C:\Program Files\Common Files\DESIGNER
    [25/09/2007|16:15] C:\Program Files\Common Files\InstallShield
    [13/03/2008|04:21] C:\Program Files\Common Files\microsoft shared
    [25/09/2007|16:13] C:\Program Files\Common Files\Roxio Shared
    [02/11/2006|16:48] C:\Program Files\Common Files\Services
    [25/09/2007|15:45] C:\Program Files\Common Files\snp2std
    [25/09/2007|16:13] C:\Program Files\Common Files\Sonic Shared
    [02/11/2006|16:48] C:\Program Files\Common Files\SpeechEngines
    [25/09/2007|16:13] C:\Program Files\Common Files\SureThing Shared
    [25/09/2007|16:00] C:\Program Files\Common Files\System
    [14/06/2008|18:58] C:\Program Files\Common Files\Ulead Systems
    [25/06/2008|21:58] C:\Program Files\Common Files\Vbox
    [18/02/2008|21:03] C:\Program Files\Common Files\WindowsLiveInstaller

    --------------------\\ Process

    ( 74 Processus )

    ... OK !

    --------------------\\ Recherche avec S_Lop

    Aucun fichier / dossier Lop trouvé !

    --------------------\\ Recherche de Fichiers / Dossiers Lop

    Aucun fichier / dossier Lop trouvé !

    --------------------\\ Verification du Registre

    ..... OK !

    --------------------\\ Verification du fichier Hosts

    Fichier Hosts PROPRE

    --------------------\\ Recherche de fichiers avec Catchme

    catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-08-01 02:57:35
    Windows 6.0.6000 NTFS
    scanning hidden processes ...
    scanning hidden files ...
    scan completed successfully
    hidden processes: 0
    hidden files: 52

    --------------------\\ Recherche d'autres infections

    Aucune autre infection trouvée !

    [F:4748][D:264]-> C:\Users\portable\AppData\Local\Temp
    [F:20][D:1]-> C:\Users\portable\AppData\Roaming\MICROS~1\Windows\Cookies
    [F:2211][D:17]-> C:\Users\portable\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
    [F:4][D:3]-> C:\$Recycle.Bin

    --------------------\\ Fin du rapport a 2:59:33,07
    [ UAC => 1 ]
    0
  2. anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
     
    Bonsoir,

    Navilog et LopS&D ne sont efficaces que contre des infections spécifiques (MagicControl/Navipromo et Lop), et ils n'ont rien trouvé... Pour voir quelle infection a ton ordinateur, fais ceci :

    Télécharge hijackthis sur ton bureau :
    http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis

    Installe le, lance le et clique sur "Do a system scan and save a logfile".
    Fais un copier-coller du rapport entier sur le forum

    0
  3. maxacaen
     
    voici le rapport complet avec hijackthis:
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 12:35:39, on 01/08/2008
    Platform: Windows Vista (WinNT 6.00.1904)
    MSIE: Internet Explorer v7.00 (7.00.6000.16681)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Windows\vsnp2std.exe
    C:\Windows\RtHDVCpl.exe
    C:\Program Files\System Control Manager\MGSysCtrl.exe
    C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
    C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe
    C:\Windows\System32\oodtray.exe
    C:\Windows\System32\igfxtray.exe
    C:\Windows\System32\hkcmd.exe
    C:\Windows\System32\igfxpers.exe
    C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    C:\Program Files\Picasa2\PicasaMediaDetector.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
    C:\Windows\system32\igfxsrvc.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
    C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Windows\system32\wuauclt.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [snp2std] C:\Windows\vsnp2std.exe
    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
    O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
    O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\Cyberlink\PowerDVD\Language\Language.exe"
    O4 - HKLM\..\Run: [OODefragTray] C:\Windows\system32\oodtray.exe
    O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKCU\..\Run: [28897855640102607478440271102935] C:\Program Files\AV9\av2009.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
    O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Startup: RegFreeze.lnk = C:\Program Files\RegFreeze\regfreeze.exe
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Bluetooth Manager.lnk = ?
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
    O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
    O17 - HKLM\System\CS1\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
    O17 - HKLM\System\CS2\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
    O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll
    O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - C:\Program Files\System Control Manager\edd.exe
    O23 - Service: O&O Defrag - O&O Software GmbH - C:\Windows\system32\oodag.exe
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared Files\RichVideo.exe
    O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
    O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
    O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
    O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
    0
  4. anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
     
    Bon, on va utiliser plusieurs logiciels pour désinfecter, commence par celui-ci :

    Télécharge SmitfraudFix :
    http://siri.urz.free.fr/Fix/SmitfraudFix.exe

    - Enregistre-le sur le bureau

    - Double-clique sur SmitfraudFix.exe et choisis l'option 1 puis Entrée

    - Un rapport sera généré, poste-le dans ta prochaine réponse stp.

    Tutoriel ici pour t'aider : http://www.malekal.com//tutorial_SmitFraudfix.php

    0
    1. maxacaen
       
      j'ai bien installé le programme j'ai bien lancé une recherche mais aucun bloc note ne s'ouvre !
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
     
    Ca doit être à cause de certaines restrictions sur Vista, fais ceci :

    Désactive le contrôle des comptes utilisateurs (tu le réactiveras après ta désinfection):

    - Va dans démarrer puis panneau de configuration
    - Double Clique sur l'icône "Comptes d'utilisateurs"
    - Clique ensuite sur désactiver et valide.

    Télécharge à nouveau SmitfraudFix : http://siri.urz.free.fr/Fix/SmitfraudFix.exe

    - Enregistre-le sur le bureau

    - Clique du droit sur SmitfraudFix.exe et choisis "exécuter en temps qu'administrateur", puis choisis l'option 1 puis Entrée

    - Un rapport sera généré, poste-le dans ta prochaine réponse stp.

    Tutoriel ici pour t'aider : http://www.malekal.com//tutorial_SmitFraudfix.php

    0
    1. maxacaen
       
      voila le rapport:
      SmitFraudFix v2.332

      Scan done at 23:57:45,74, 01/08/2008
      Run from C:\Users\portable\Desktop\SmitfraudFix
      OS: Microsoft Windows [version 6.0.6000] - Windows_NT
      The filesystem type is NTFS
      Fix run in normal mode

      »»»»»»»»»»»»»»»»»»»»»»»» Process

      C:\Windows\system32\csrss.exe
      C:\Windows\system32\wininit.exe
      C:\Windows\system32\csrss.exe
      C:\Windows\system32\services.exe
      C:\Windows\system32\lsass.exe
      C:\Windows\system32\lsm.exe
      C:\Windows\system32\winlogon.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\SLsvc.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\System32\spoolsv.exe
      C:\Windows\system32\WLANExt.exe
      C:\Windows\system32\svchost.exe
      C:\Windows\system32\Dwm.exe
      C:\Windows\Explorer.EXE
      C:\Windows\system32\taskeng.exe
      C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
      C:\Windows\system32\svchost.exe
      C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
      C:\Program Files\System Control Manager\edd.exe
      C:\Windows\system32\oodag.exe
      C:\Windows\system32\svchost.exe
      C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
      C:\Program Files\Cyberlink\Shared Files\RichVideo.exe
      C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
      C:\Program Files\Windows Defender\MSASCui.exe
      C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
      C:\Windows\vsnp2std.exe
      C:\Windows\RtHDVCpl.exe
      C:\Program Files\System Control Manager\MGSysCtrl.exe
      C:\Windows\system32\svchost.exe
      C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
      C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
      C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\System32\oodtray.exe
      C:\Windows\system32\SearchIndexer.exe
      C:\Windows\System32\igfxtray.exe
      C:\Windows\System32\hkcmd.exe
      C:\Windows\System32\igfxpers.exe
      C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
      C:\Program Files\Windows Sidebar\sidebar.exe
      C:\Program Files\Windows Live\Messenger\msnmsgr.exe
      C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
      C:\Program Files\Picasa2\PicasaMediaDetector.exe
      C:\Program Files\Windows Media Player\wmpnscfg.exe
      C:\Program Files\AV9\av2009.exe
      C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
      C:\Windows\system32\igfxsrvc.exe
      C:\Program Files\Windows Media Player\wmpnetwk.exe
      C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
      C:\Windows\system32\taskeng.exe
      C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
      C:\Windows\system32\wbem\unsecapp.exe
      C:\Windows\system32\wbem\wmiprvse.exe
      C:\Windows\system32\conime.exe
      C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
      C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
      C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
      C:\Windows\system32\SearchProtocolHost.exe
      C:\Windows\system32\SearchFilterHost.exe
      C:\Windows\system32\cmd.exe
      C:\Windows\system32\vssvc.exe
      C:\Windows\System32\svchost.exe
      C:\Windows\system32\DllHost.exe
      C:\Windows\system32\wbem\wmiprvse.exe

      »»»»»»»»»»»»»»»»»»»»»»»» hosts


      »»»»»»»»»»»»»»»»»»»»»»»» C:\


      »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows


      »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system


      »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\Web


      »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32


      »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32\LogFiles


      »»»»»»»»»»»»»»»»»»»»»»»» C:\Users\portable


      »»»»»»»»»»»»»»»»»»»»»»»» C:\Users\portable\Application Data


      »»»»»»»»»»»»»»»»»»»»»»»» Start Menu


      »»»»»»»»»»»»»»»»»»»»»»»» C:\Users\portable\FAVORI~1


      »»»»»»»»»»»»»»»»»»»»»»»» Desktop


      »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


      »»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys


      »»»»»»»»»»»»»»»»»»»»»»»» Desktop Components



      »»»»»»»»»»»»»»»»»»»»»»»» IEDFix
      !!!Attention, following keys are not inevitably infected!!!

      IEDFix
      Credits: Malware Analysis & Diagnostic
      Code: S!Ri



      »»»»»»»»»»»»»»»»»»»»»»»» VACFix
      !!!Attention, following keys are not inevitably infected!!!

      VACFix
      Credits: Malware Analysis & Diagnostic
      Code: S!Ri


      »»»»»»»»»»»»»»»»»»»»»»»» 404Fix
      !!!Attention, following keys are not inevitably infected!!!

      404Fix
      Credits: Malware Analysis & Diagnostic
      Code: S!Ri


      »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
      !!!Attention, following keys are not inevitably infected!!!

      SrchSTS.exe by S!Ri
      Search SharedTaskScheduler's .dll


      »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
      !!!Attention, following keys are not inevitably infected!!!

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
      "AppInit_DLLs"="C:\\PROGRA~1\\KASPER~1\\KASPER~1\\mzvkbd.dll"
      "LoadAppInit_DLLs"=dword:00000001


      »»»»»»»»»»»»»»»»»»»»»»»» Winlogon
      !!!Attention, following keys are not inevitably infected!!!

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
      "Userinit"="C:\\Windows\\system32\\userinit.exe,"


      »»»»»»»»»»»»»»»»»»»»»»»» Rustock



      »»»»»»»»»»»»»»»»»»»»»»»» DNS

      Description: Intel(R) PRO/Wireless 3945ABG Network Connection
      DNS Server Search Order: 192.168.1.1

      HKLM\SYSTEM\CCS\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer=212.27.53.252,212.27.54.252
      HKLM\SYSTEM\CCS\Services\Tcpip\..\{BECD22A4-4F9E-472F-9599-B8664245D5CB}: DhcpNameServer=192.168.1.1
      HKLM\SYSTEM\CS1\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer=212.27.53.252,212.27.54.252
      HKLM\SYSTEM\CS1\Services\Tcpip\..\{BECD22A4-4F9E-472F-9599-B8664245D5CB}: DhcpNameServer=192.168.1.1
      HKLM\SYSTEM\CS2\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer=212.27.53.252,212.27.54.252
      HKLM\SYSTEM\CS2\Services\Tcpip\..\{BECD22A4-4F9E-472F-9599-B8664245D5CB}: DhcpNameServer=192.168.1.1
      HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
      HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
      HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1


      »»»»»»»»»»»»»»»»»»»»»»»» Scanning for wininet.dll infection


      »»»»»»»»»»»»»»»»»»»»»»»» End
      0
  7. anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
     
    Ok, on passe à MalwareByte's

    Télécharge et installe Malwarebyte's Anti-Malware : http://www.malwarebytes.org/mbam/program/mbam-setup.exe
    - A la fin de l'installation, veille à ce que l'option « mettre a jour Malwarebyte's Anti-Malware » soit cochée
    - Lance Malwarebyte's Anti-Malware, laisse les Mises à jour se télécharger et referme le programme

    Redémarre en "Mode sans échec" : redémarre ton ordinateur et tapote sur la touche F8 jusqu'à l'affichage du menu des options avancées de Windows, et sélectionne "Mode sans échec".
    Choisis ta session habituelle

    Lance Malwarebyte's Anti-Malware
    - Puis va dans l'onglet "Recherche", coche "Exécuter un examen complet" puis "Rechercher"
    - Sélectionne tes disques durs" puis clique sur "Lancer l’examen"
    - A la fin du scan, clique sur Afficher les résultats puis sur Enregistrer le rapport
    - Suppression des éléments détectés --> clique sur Supprimer la sélection
    - S'il t'es demandé de redémarrer, clique sur Yes

    Poste le rapport de scan après la suppression ici

    0
    1. maxacaen
       
      Malwarebytes' Anti-Malware 1.24
      Version de la base de données: 1013
      Windows 6.0.6000

      04:22:43 02/08/2008
      mbam-log-8-2-2008 (04-22-43).txt

      Type de recherche: Examen complet (C:\|E:\|)
      Eléments examinés: 129988
      Temps écoulé: 1 hour(s), 36 minute(s), 22 second(s)

      Processus mémoire infecté(s): 0
      Module(s) mémoire infecté(s): 0
      Clé(s) du Registre infectée(s): 8
      Valeur(s) du Registre infectée(s): 0
      Elément(s) de données du Registre infecté(s): 0
      Dossier(s) infecté(s): 4
      Fichier(s) infecté(s): 13

      Processus mémoire infecté(s):
      (Aucun élément nuisible détecté)

      Module(s) mémoire infecté(s):
      (Aucun élément nuisible détecté)

      Clé(s) du Registre infectée(s):
      HKEY_CLASSES_ROOT\Interface\{54b287f9-fd90-4457-b65e-cb91560c021d} (Adware.Mirar) -> Quarantined and deleted successfully.
      HKEY_CLASSES_ROOT\Interface\{6e4c7afc-9915-4036-b7f9-8b3f1710788f} (Adware.Mirar) -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\MediaHoldings (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\Mirar (Adware.Mirar) -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\PlayMP3 (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\FBrowsingAdvisor (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\fbrowsingadvisor_is1 (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\RelatedPageInstall (Adware.Mirar) -> Quarantined and deleted successfully.

      Valeur(s) du Registre infectée(s):
      (Aucun élément nuisible détecté)

      Elément(s) de données du Registre infecté(s):
      (Aucun élément nuisible détecté)

      Dossier(s) infecté(s):
      C:\Program Files\FBrowsingAdvisor (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      C:\Program Files\FBrowserAdvisor (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMP3z (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
      C:\Users\portable\AppData\Roaming\Microsoft\Windows\Start Menu\Antivirus 2009 (Rogue.Antivirus) -> Quarantined and deleted successfully.

      Fichier(s) infecté(s):
      C:\Program Files\FBrowsingAdvisor\XPCOMEvents.dll (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      C:\Program Files\Mozilla Firefox\regxpcom.exe (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      C:\Users\portable\AppData\Local\Temp\tem3833.tmp.exe (Adware.Agent) -> Quarantined and deleted successfully.
      C:\Users\portable\AppData\Local\Temp\updAD20.tmp.exe (Adware.Agent) -> Quarantined and deleted successfully.
      C:\Program Files\FBrowsingAdvisor\IXPCOMEvents.xpt (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      C:\Program Files\FBrowsingAdvisor\Logo.png (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      C:\Program Files\FBrowsingAdvisor\main.db (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      C:\Program Files\FBrowsingAdvisor\unins000.dat (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      C:\Program Files\FBrowsingAdvisor\unins000.exe (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
      C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMP3z\Run PlayMP3z.lnk (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
      C:\Users\portable\AppData\Roaming\Microsoft\Windows\Start Menu\Antivirus 2009\Antivirus 2009.lnk (Rogue.Antivirus) -> Quarantined and deleted successfully.
      C:\Users\portable\AppData\Roaming\Microsoft\Windows\Start Menu\Antivirus 2009\Uninstall Antivirus 2009.lnk (Rogue.Antivirus) -> Quarantined and deleted successfully.
      C:\Users\portable\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Antivirus 2009.lnk (Rogue.Antivirus2008) -> Quarantined and deleted successfully.
      0
  8. anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
     
    Ok, maintenant j'aurai besoin d'un nouveau rapport hijackthis stp.

    Ensuite, fais exactement ce qui suit :

    Télécharge ComboFix (de sUBs) sur ton Bureau (et pas ailleurs !) :
    Fais un clic droit sur ce lien et choisis "enregistrer la cible sous ... " : dans la fenêtre qui s'ouvre tape C-Fix, choisis le bureau comme destination et valide : http://download.bleepingcomputer.com/sUBs/ComboFix.exe

    --------------------------------------------- [ ! ATTENTION ! ] ----------------------------------------------------------
    !! déconnecte toi, ferme toutes tes applications en cours et DESACTIVE TOUTES TES DEFENCES (anti-virus, antispyware, pare-feu) le temps de la manipulation :
    en effet , activés, ils pourraient gêner fortement la procédure de recherche et de nettoyage de l'outil ( voir planter le PC )...Tu les réactiveras donc après !!
    UAC pour Vista : Désactive le contrôle des comptes utilisateurs : Menu démarrer --> panneau de configuration --> Comptes utilisateurs

    ---> Surtout, si tu rencontres des difficultés à ce niveau là, dis le moi avant de poursuivre ...
    Tuto ici : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
    ---------------------------------------------------------------------------------------------------------------------------------

    Ensuite :

    Clic droit sur C-Fix.exe (= combofix.exe) --> exécuter en tant qu’administrateur

    Appuie sur la touche Y (Yes) pour démarrer le scan.

    Attention : n'utilise pas ta souris ni ton clavier pendant que le programme tourne. Cela pourrait figer l'ordi ---> si un message d'erreur windows apparait à un momment : clique sur la croix rouge en haut à droite de la fenêtre pour la fermer

    Le rapport sera crée dans: C:\Combofix.txt , poste le ici stp

    0
  9. maxacaen
     
    voici le nouveau rapport de hijack
    je fais le reste maintenant
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 00:05:23, on 05/08/2008
    Platform: Windows Vista (WinNT 6.00.1904)
    MSIE: Internet Explorer v7.00 (7.00.6000.16681)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Windows\vsnp2std.exe
    C:\Windows\RtHDVCpl.exe
    C:\Program Files\System Control Manager\MGSysCtrl.exe
    C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
    C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe
    C:\Windows\System32\oodtray.exe
    C:\Windows\System32\igfxtray.exe
    C:\Windows\System32\hkcmd.exe
    C:\Windows\System32\igfxpers.exe
    C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    C:\Program Files\Picasa2\PicasaMediaDetector.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
    C:\Windows\system32\igfxsrvc.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
    C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
    C:\Windows\system32\wuauclt.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O1 - Hosts: ::1 localhost
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [snp2std] C:\Windows\vsnp2std.exe
    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
    O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
    O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\Cyberlink\PowerDVD\Language\Language.exe"
    O4 - HKLM\..\Run: [OODefragTray] C:\Windows\system32\oodtray.exe
    O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKCU\..\Run: [28897855640102607478440271102935] C:\Program Files\AV9\av2009.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
    O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Bluetooth Manager.lnk = ?
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
    O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
    O17 - HKLM\System\CS1\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
    O17 - HKLM\System\CS2\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
    O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll
    O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - C:\Program Files\System Control Manager\edd.exe
    O23 - Service: O&O Defrag - O&O Software GmbH - C:\Windows\system32\oodag.exe
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared Files\RichVideo.exe
    O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
    O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
    O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
    O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
    0
    1. maxacaen
       
      j'ai bien suivi toutes tes instructions, a savoir couper tous les antivirus,couper le net,aller dans le panneau de config mais quand je fais clic droit executer en tant qu'administrateur une fenetre noir s'ouvre pendant 1 demi seconde et se referme aussitot !
      que dois je faire?
      0
      1. maxacaen > maxacaen
         
        petite remarque en plus j'ai l'impression que la qualité de l'image sur mon pc est moins bonne qu'avant ça me parait un peu moins net, il n'y a pas une histoire de mode sans échec ou quelque chose comme ça?
        0
  10. maxacaen
     
    j'ai désinstallé et réinstallé combofix, cela me met maintenant que combofix n'est compatible qu'avec xp et windows 2000 hors j'ai vista...
    0
  11. anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
     
    Ok, je vais me renseigner...
    0
  12. maxacaen
     
    merci beaucoup anthony c'est très sympa !
    au niveau du pc bilan général: il y a toujours antivirus 2009 dans le pc qui continue de prendre la tête mais sinon les fenetres internet qui s'ouvraient toutes seules ont disparu.
    j'ai un écran bleu qui apparait de temps en temps pour me dire en anglais que mon ordi est infecté par un spyware monster et que ça dois redémarré et ça me lance une page de rédemarrage windows mais en anglais et ça dur que 20 secondes et finalement le pc redeviens normal
    le temps que j'écrive ce message j'ai eu 2 écran bleu !
    0
  13. anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
     
    Bon, j'ai fait le test sur mon propre ordinateur (avec Vista donc), et j'ai eu le même message d'erreur que toi.
    Puis, en supprimant manuellement tous les dossiers créés par Combofix sur le disque dur, et en téléchargeant à nouveau combofix, ça a fonctionné...

    Vérifie ici :
    Menu démarrer --> Ordinateur --> disque C --> donne moi le nom de tous les dossiers qui apparaissent stp

    0
    1. maxacaen
       
      voila ce que j'ai dans le C:
      327882R2FWJFW
      drivers
      intel
      lop sd
      programmes
      temp
      utilisateurs
      windows
      0
  14. anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
     
    Vérifie que le dossier 327882R2FWJFW contient bien des fichiers Combofix et si oui, supprime le. Supprime également tout ce qui se trouve sur ton bureau en rapport avec Combofix.

    On va essayer autrement, je me suis renseigné et il ne faut plus utiliser Combofix sur Vista pour le moment...
    Commence par ceci :

    Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
    http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
    Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
    • Redémarre ton ordinateur
    • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
    • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
    • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
    • Choisis ton compte.

    • Puis, ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
    • Appuie sur Y pour commencer le processus de nettoyage.
    • Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
    • Appuie sur une touche pour redémarrer le PC.
    • Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
    • Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
    • Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
    • Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.

    0
    1. maxacaen
       
      alors quand je me mettais en mode sans échec le programme ne voulait pas se lancer en revanche quand je passais par le mode msconfig oui voila le rapport que ça m'a donné(j'ai cliqué a :create system report)(en revanche il n'a pas été question de redémarrage...), j'ai toujours le antivirus2009 qui se lance ainsi que les écrans bleu en anglais en mode attention virus monster.spyware ...



      [b]System Report[/b]
      *************

      Run on 07/08/2008 at 02:43

      Microsoft Windows [version 6.0.6000]

      Current user is an administrator

      [b]Running Processes[/b]:

      \SystemRoot\System32\smss.exe [464]
      C:\Windows\system32\csrss.exe [548]
      C:\Windows\system32\wininit.exe [592]
      C:\Windows\system32\csrss.exe [604]
      C:\Windows\system32\services.exe [640]
      C:\Windows\system32\lsass.exe [652]
      C:\Windows\system32\lsm.exe [660]
      C:\Windows\system32\winlogon.exe [732]
      C:\Windows\system32\svchost.exe [868]
      C:\Windows\system32\svchost.exe [900]
      C:\Windows\system32\svchost.exe [936]
      C:\Windows\system32\SLsvc.exe [1000]
      C:\Windows\Explorer.EXE [1224]


      [b]Drivers - Running[/b]:

      ACPI
      AFD
      atapi
      avgio
      avipbb
      Beep
      cdfs
      cdrom
      CLFS
      CmBatt
      Compbatt
      crcdisk
      DfsC
      disk
      DXGKrnl
      e1express
      Ecache
      FileInfo
      FltMgr
      HDAudBus
      i8042prt
      igfx
      IntcAzAudAddService
      intelppm
      irda
      IRENUM
      iScsiPrt
      kbdclass
      kl1
      KSecDD
      lltdio
      luafv
      monitor
      mouclass
      MountMgr
      msahci
      Msfs
      msisadrv
      mssmbios
      Mup
      NDIS
      NdisTapi
      NdisWan
      NDProxy
      NetBIOS
      netbt
      NETw4v32
      Npfs
      NSCIRDA
      nsiproxy
      Ntfs
      Null
      ohci1394
      Parport
      partmgr
      Parvdm
      pci
      pciide
      pcmcia
      PEAUTH
      PptpMiniport
      PSched
      PxHelp20
      RasAcd
      Rasl2tp
      RasPppoe
      rdbss
      RDPCDD
      RDPENCDD
      rimmptsk
      rimsptsk
      rismxdp
      rspndr
      sdbus
      secdrv
      Serenum
      Serial
      Smb
      snapman
      SNP2STD
      spldr
      ssmdrv
      StarOpen
      swenum
      SynTP
      Tcpip
      tcpipreg
      tdx
      TermDD
      tosporte
      Tosrfcom
      Tosrfusb
      tunmp
      tunnel
      umbus
      usbehci
      usbhub
      usbuhci
      VgaSave
      volmgr
      volmgrx
      volsnap
      Wanarpv6
      Wdf01000


      [b]Drivers - Stopped[/b]:

      adp94xx
      adpahci
      adpu160m
      adpu320
      agp440
      aic78xx
      aliide
      amdagp
      amdide
      AmdK7
      AmdK8
      arc
      arcsas
      AsyncMac
      avgntflt
      blbdrive
      bowser
      BrFiltLo
      BrFiltUp
      Brserid
      BrSerWdm
      BrUsbMdm
      BrUsbSer
      BTHMODEM
      catchme
      circlass
      cmdide
      Crusoe
      drmkaud
      E1G60
      elxstor
      fastfat
      fdc
      Filetrace
      flpydisk
      gagp30kx
      HdAudAddService
      HidBth
      HidIr
      HidUsb
      HpCISSs
      HTTP
      i2omp
      iaStorV
      iirsp
      intelide
      IpFilterDriver
      IpInIp
      IPMIDRV
      IPNAT
      isapnp
      iteatapi
      iteraid
      kbdhid
      LSI_FC
      LSI_SAS
      LSI_SCSI
      megasas
      MGHwCtrl
      Modem
      mouhid
      mpio
      mpsdrv
      Mraid35x
      MRxDAV
      mrxsmb
      mrxsmb10
      mrxsmb20
      msdsm
      MSKSSRV
      MSPCLOCK
      MSPQM
      MsRPC
      MSTEE
      NativeWifiP
      Ndisuio
      NETw3v32
      nfrd960
      ntrigdigi
      nvraid
      nvstor
      nv_agp
      NwlnkFlt
      NwlnkFwd
      Processor
      Profos
      ql2300
      ql40xx
      QWAVEdrv
      rdpdr
      RDPWD
      sbp2port
      sermouse
      sffdisk
      sffp_mmc
      sffp_sd
      sfloppy
      sisagp
      SiSRaid2
      SiSRaid4
      srv
      srv2
      srvnet
      ssm_bus
      ssm_mdfl
      ssm_mdm
      Symc8xx
      Sym_hi
      Sym_u3
      Tcpip6
      TDPIPE
      TDTCP
      tosrfbd
      tosrfbnp
      Tosrfhid
      tosrfnds
      Trufos
      tssecsrv
      uagp35
      udfs
      uliagpkx
      uliahci
      UlSata
      ulsata2
      usbaudio
      usbccgp
      usbcir
      usbohci
      usbprint
      usbscan
      USBSTOR
      vga
      viaagp
      ViaC7
      viaide
      vsmraid
      WacomPen
      Wanarp
      Wd
      WmiAcpi
      WpdUsb
      ws2ifsl
      WUDFRd


      [b]Services - Running[/b]:

      DcomLaunch
      gpsvc
      ProfSvc
      RpcSs
      slsvc


      [b]Services - Stopped[/b]:

      AcronisOSSReinstallSvc
      Adobe
      AeLookupSvc
      ALG
      AntiVirScheduler
      AntiVirService
      Appinfo
      AudioEndpointBuilder
      Audiosrv
      BcmSqlStartupSvc
      BFE
      BITS
      Browser
      CertPropSvc
      clr_optimization_v2.0.50727_32
      COMSysApp
      CryptSvc
      DFSR
      Dhcp
      Dnscache
      dot3svc
      DPS
      EapHost
      ehRecvr
      ehSched
      ehstart
      EMDMgmt
      Eventlog
      EventSystem
      EvtEng
      fdPHost
      FDResPub
      FontCache3.0.0.0
      gusvc
      hidserv
      hkmsvc
      IDriverT
      idsvc
      IKEEXT
      IPBusEnum
      iphlpsvc
      Irmon
      KeyIso
      KtmRm
      LanmanServer
      LanmanWorkstation
      lltdsvc
      lmhosts
      Mcx2Svc
      MMCSS
      MpsSvc
      MSDTC
      MSiSCSI
      msiserver
      napagent
      Netlogon
      Netman
      netprofm
      NetTcpPortSharing
      NishService
      NlaSvc
      nsi
      O&O
      odserv
      ose
      p2pimsvc
      p2psvc
      PcaSvc
      pla
      PlugPlay
      PNRPAutoReg
      PNRPsvc
      PolicyAgent
      ProtectedStorage
      QWAVE
      RasAuto
      RasMan
      RegSrvc
      RemoteAccess
      RemoteRegistry
      RichVideo
      RoxMediaDB9
      RoxWatch9
      RpcLocator
      SamSs
      SCardSvr
      Schedule
      SCPolicySvc
      SDRSVC
      seclogon
      SENS
      SessionEnv
      SharedAccess
      ShellHWDetection
      SLUINotify
      SNMPTRAP
      Spooler
      SSDPSRV
      stisvc
      stllssvr
      swprv
      SysMain
      TabletInputService
      TapiSrv
      TBS
      TermService
      Themes
      THREADORDER
      TOSHIBA
      TrkWks
      TrustedInstaller
      UI0Detect
      upnphost
      usnjsvc
      UxSms
      vds
      VSS
      W32Time
      wcncsvc
      WcsPlugInService
      WdiServiceHost
      WdiSystemHost
      WebClient
      Wecsvc
      wercplsupport
      WerSvc
      WinDefend
      WinHttpAutoProxySvc
      Winmgmt
      WinRM
      Wlansvc
      WLSetupSvc
      wmiApSrv
      WMPNetworkSvc
      WPCSvc
      WPDBusEnum
      wscsvc
      WSearch
      wuauserv
      wudfsvc


      [b]Files Created/Modified - 60 Days[/b]:


      C:\

      5 Aug 2008 3:35:24 712 A.... "C:\Bug.txt"
      1 Aug 2008 2:45:34 2 361 A.... "C:\fixnavi.txt"
      5 Aug 2008 0:14:50 0 A.SHR "C:\IO.SYS"
      1 Aug 2008 2:59:34 10 154 A.... "C:\lopR.txt"
      5 Aug 2008 0:14:50 0 A.SHR "C:\MSDOS.SYS"
      27 Jun 2008 2:27:44 715 A..H. "C:\os618886.bin"
      7 Aug 2008 2:41:00 2 452 160 512 A.SH. "C:\pagefile.sys"
      1 Aug 2008 23:59:32 6 275 A.... "C:\rapport.txt"
      29 Jul 2008 3:10:58 244 A..H. "C:\sqmnoopt12.sqm"
      29 Jul 2008 13:55:24 244 A..H. "C:\sqmnoopt13.sqm"
      28 Jul 2008 16:01:58 244 A..H. "C:\sqmnoopt10.sqm"
      28 Jul 2008 22:04:06 244 A..H. "C:\sqmnoopt11.sqm"
      18 Jun 2008 17:21:58 244 A..H. "C:\sqmnoopt08.sqm"
      20 Jun 2008 19:19:36 244 A..H. "C:\sqmnoopt09.sqm"
      28 Jul 2008 16:01:58 268 A..H. "C:\sqmdata10.sqm"
      18 Jun 2008 17:21:58 268 A..H. "C:\sqmdata08.sqm"
      28 Jul 2008 22:04:06 268 A..H. "C:\sqmdata11.sqm"
      20 Jun 2008 19:19:36 268 A..H. "C:\sqmdata09.sqm"
      29 Jul 2008 3:10:58 268 A..H. "C:\sqmdata12.sqm"
      29 Jul 2008 13:55:24 268 A..H. "C:\sqmdata13.sqm"


      C:\Windows\

      1 Aug 2008 0:01:38 121 A.... "C:\Windows\bdagent.INI"
      7 Aug 2008 2:41:06 67 584 A.S.. "C:\Windows\bootstat.dat"
      28 Jul 2008 14:35:28 59 861 A.... "C:\Windows\DirectX.log"
      7 Aug 2008 2:36:52 879 500 A.... "C:\Windows\ntbtlog.txt"
      26 Jun 2008 4:28:06 0 A.... "C:\Windows\oodcnt.INI"
      1 Aug 2008 0:56:40 4 094 158 A.... "C:\Windows\PFRO.log"
      2 Aug 2008 19:39:14 700 A.... "C:\Windows\setupact.log"
      2 Aug 2008 0:06:06 0 A.... "C:\Windows\setuperr.log"
      14 Jun 2008 18:59:12 216 A.... "C:\Windows\Ulead32.ini"
      28 Jul 2008 14:29:56 571 A.... "C:\Windows\win.ini"
      7 Aug 2008 2:34:04 1 819 009 A.... "C:\Windows\WindowsUpdate.log"
      28 Jul 2008 16:06:08 749 A..HR "C:\Windows\WindowsShell.Manifest"
      28 Jul 2008 14:21:44 52 736 A.... "C:\Windows\AppPatch\iebrshim.dll"
      28 Jul 2008 14:20:02 2 262 A.... "C:\Windows\Debug\mrt.log"
      28 Jul 2008 14:20:02 1 154 A.... "C:\Windows\Debug\mrteng.log"
      7 Aug 2008 2:41:04 0 A.... "C:\Windows\Debug\PASSWD.LOG"
      23 Jul 2008 17:27:50 28 616 A.... "C:\Windows\Fonts\Bosox.ttf"
      23 Jul 2008 17:29:46 69 460 A.... "C:\Windows\Fonts\Bosox Full.ttf"
      23 Jul 2008 17:27:52 51 600 A.... "C:\Windows\Fonts\Bosox Outline.ttf"
      23 Jul 2008 17:39:24 51 188 A.... "C:\Windows\Fonts\Bosox Outline Heavy.ttf"
      23 Jul 2008 17:38:38 69 484 A.... "C:\Windows\Fonts\Bosox SemiBold.ttf"
      17 Jun 2008 14:41:52 73 172 A.... "C:\Windows\Fonts\FontdinerdotcomSparkly.ttf"
      17 Jun 2008 20:56:22 35 468 A.... "C:\Windows\Fonts\FONTH__.TTF"
      18 Jun 2008 18:18:02 193 508 A.... "C:\Windows\Fonts\GASMASK.TTF"
      28 Jul 2008 16:02:46 34 598 A.... "C:\Windows\inf\bth.inf"
      28 Jul 2008 16:02:46 39 712 A.... "C:\Windows\inf\bth.PNF"
      28 Jul 2008 16:02:46 665 600 A.... "C:\Windows\inf\drvindex.dat"
      5 Aug 2008 1:26:56 1 701 216 A.... "C:\Windows\inf\INFCACHE.1"
      5 Aug 2008 1:26:56 51 200 A.... "C:\Windows\inf\infpub.dat"
      5 Aug 2008 1:26:56 86 016 A.... "C:\Windows\inf\infstor.dat"
      5 Aug 2008 1:26:56 86 016 A.... "C:\Windows\inf\infstrng.dat"
      28 Jul 2008 14:33:22 9 170 A.... "C:\Windows\inf\netpgm.inf"
      28 Jul 2008 22:02:56 1 550 A.... "C:\Windows\inf\oem61.inf"
      28 Jul 2008 22:03:20 5 648 A.... "C:\Windows\inf\oem61.PNF"
      28 Jul 2008 22:03:16 2 872 A.... "C:\Windows\inf\oem62.inf"
      28 Jul 2008 22:03:18 8 868 A.... "C:\Windows\inf\oem62.PNF"
      25 Jun 2008 16:43:00 1 651 ..... "C:\Windows\inf\pxhelp20.inf"
      2 Aug 2008 19:39:10 16 600 A.... "C:\Windows\inf\setupapi.ev1"
      2 Aug 2008 19:39:10 29 048 A.... "C:\Windows\inf\setupapi.ev2"
      2 Aug 2008 19:39:10 143 360 A.... "C:\Windows\inf\setupapi.ev3"
      7 Aug 2008 2:40:06 18 092 807 A.... "C:\Windows\inf\setupapi.app.log"
      5 Aug 2008 1:26:56 13 804 629 A.... "C:\Windows\inf\setupapi.dev.log"
      13 Jun 2008 21:36:12 91 988 A.... "C:\Windows\inf\wdma_usb.PNF"
      25 Jun 2008 16:46:18 1 173 ..... "C:\Windows\pss\Adobe Gamma.lnk.Startup"
      28 Jul 2008 16:06:04 682 072 A.... "C:\Windows\rescache\ResCache.mni"
      7 Aug 2008 2:41:10 3 072 A..H. "C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0"
      7 Aug 2008 2:41:10 3 072 A..H. "C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0"
      28 Jul 2008 14:21:44 124 928 A.... "C:\Windows\System32\advpack.dll"
      1 Aug 2008 0:01:38 81 984 A.... "C:\Windows\System32\bdod.bin"
      28 Jul 2008 14:36:56 620 088 A.... "C:\Windows\System32\ci.dll"
      28 Jul 2008 14:30:52 162 816 A.... "C:\Windows\System32\dnsapi.dll"
      28 Jul 2008 14:30:52 83 968 A.... "C:\Windows\System32\dnsrslvr.dll"
      28 Jul 2008 14:21:42 347 136 A.... "C:\Windows\System32\dxtmsft.dll"
      28 Jul 2008 14:21:42 214 528 A.... "C:\Windows\System32\dxtrans.dll"
      28 Jul 2008 14:36:56 7 168 A.... "C:\Windows\System32\f3ahvoas.dll"
      5 Aug 2008 0:17:24 851 272 A.... "C:\Windows\System32\FNTCACHE.DAT"
      28 Jul 2008 14:34:34 296 448 A.... "C:\Windows\System32\gdi32.dll"
      28 Jul 2008 14:21:34 63 488 A.... "C:\Windows\System32\icardie.dll"
      28 Jul 2008 14:21:30 70 656 A.... "C:\Windows\System32\ie4uinit.exe"
      28 Jul 2008 14:21:44 383 488 A.... "C:\Windows\System32\ieapfltr.dll"
      4 Aug 2008 1:51:18 82 944 A.... "C:\Windows\System32\IEDFix.exe"
      3 Aug 2008 1:53:14 82 432 A.... "C:\Windows\System32\IEDFix.C.exe"
      28 Jul 2008 14:21:40 6 066 176 A.... "C:\Windows\System32\ieframe.dll"
      28 Jul 2008 14:21:30 44 544 A.... "C:\Windows\System32\iernonce.dll"
      28 Jul 2008 14:21:30 56 320 A.... "C:\Windows\System32\iesetup.dll"
      28 Jul 2008 14:21:40 180 736 A.... "C:\Windows\System32\ieui.dll"
      28 Jul 2008 14:21:32 26 624 A.... "C:\Windows\System32\ieUnatt.exe"
      28 Jul 2008 14:21:34 1 831 424 A.... "C:\Windows\System32\inetcpl.cpl"
      28 Jul 2008 14:21:42 27 648 A.... "C:\Windows\System32\jsproxy.dll"
      28 Jul 2008 14:36:56 6 656 A.... "C:\Windows\System32\kbd106n.dll"
      28 Jul 2008 14:36:56 19 000 A.... "C:\Windows\System32\kd1394.dll"
      28 Jul 2008 14:42:18 447 A.... "C:\Windows\System32\mapisvc.inf"
      25 Jun 2008 9:15:48 17 972 344 A.... "C:\Windows\System32\mrt.exe"
      28 Jul 2008 14:21:36 3 591 680 A.... "C:\Windows\System32\mshtml.dll"
      28 Jul 2008 14:21:36 1 383 424 A.... "C:\Windows\System32\mshtml.tlb"
      28 Jul 2008 14:21:38 478 208 A.... "C:\Windows\System32\mshtmled.dll"
      28 Jul 2008 14:21:34 671 232 A.... "C:\Windows\System32\mstime.dll"
      7 Aug 2008 2:41:00 209 428 A.... "C:\Windows\System32\oodbs.lor"
      7 Aug 2008 0:06:00 108 458 A.... "C:\Windows\System32\perfc009.dat"
      7 Aug 2008 0:06:00 122 898 A.... "C:\Windows\System32\perfc00C.dat"
      7 Aug 2008 0:06:00 621 374 A.... "C:\Windows\System32\perfh009.dat"
      7 Aug 2008 0:06:00 702 978 A.... "C:\Windows\System32\perfh00C.dat"
      7 Aug 2008 0:06:00 1 546 568 A.... "C:\Windows\System32\PerfStringBackup.INI"
      28 Jul 2008 14:21:30 44 544 A.... "C:\Windows\System32\pngfilt.dll"
      28 Jul 2008 14:24:06 99 840 A.... "C:\Windows\System32\poqexec.exe"
      25 Jun 2008 16:43:00 53 248 ..... "C:\Windows\System32\pxhpinst.exe"
      28 Jul 2008 14:25:00 1 327 104 A.... "C:\Windows\System32\quartz.dll"
      28 Jul 2008 14:36:56 313 856 A.... "C:\Windows\System32\rstrui.exe"
      28 Jul 2008 14:43:40 11 315 712 A.... "C:\Windows\System32\shell32.dll"
      28 Jul 2008 14:36:56 40 960 A.... "C:\Windows\System32\srclient.dll"
      28 Jul 2008 14:36:56 371 712 A.... "C:\Windows\System32\srcore.dll"
      1 Aug 2008 23:57:48 3 556 A.... "C:\Windows\System32\tmp.reg"
      1 Aug 2008 23:57:48 0 A.... "C:\Windows\System32\tmp.txt"
      28 Jul 2008 14:21:32 1 159 680 A.... "C:\Windows\System32\urlmon.dll"
      28 Jul 2008 14:35:42 2 027 008 A.... "C:\Windows\System32\win32k.sys"
      28 Jul 2008 14:21:42 826 368 A.... "C:\Windows\System32\wininet.dll"
      28 Jul 2008 14:36:56 944 184 A.... "C:\Windows\System32\winload.exe"
      28 Jul 2008 14:33:22 14 848 A.... "C:\Windows\System32\wshrm.dll"
      7 Aug 2008 2:40:06 6 A..H. "C:\Windows\Tasks\SA.DAT"
      7 Aug 2008 2:40:06 32 576 A.... "C:\Windows\Tasks\SCHEDLGU.TXT"
      6 Aug 2008 13:29:40 424 A..H. "C:\Windows\Tasks\User_Feed_Synchronization-{836029E6-8F6F-49C6-B6C0-9DBD7C8AF31E}.job"
      7 Aug 2008 2:32:08 260 A.... "C:\Windows\Tasks\V‚rifier les mises … jour de Windows Live Toolbar.job"
      2 Aug 2008 22:11:44 38 588 A.... "C:\Windows\Temp\coinlog.log"
      26 Jun 2008 22:58:56 0 A.... "C:\Windows\Temp\DMID7F2.tmp"
      2 Aug 2008 12:56:52 608 A.... "C:\Windows\Temp\fwtsqmfile13.sqm"
      2 Aug 2008 12:56:54 120 A.... "C:\Windows\Temp\fwtsqmfile14.sqm"
      1 Aug 2008 23:21:24 120 A.... "C:\Windows\Temp\fwtsqmfile11.sqm"
      1 Aug 2008 23:21:34 120 A.... "C:\Windows\Temp\fwtsqmfile12.sqm"
      13 Jul 2008 21:59:22 120 A.... "C:\Windows\Temp\fwtsqmfile04.sqm"
      13 Jul 2008 21:59:00 120 A.... "C:\Windows\Temp\fwtsqmfile17.sqm"
      13 Jul 2008 21:59:00 120 A.... "C:\Windows\Temp\fwtsqmfile18.sqm"
      2 Aug 2008 12:58:02 120 A.... "C:\Windows\Temp\fwtsqmfile15.sqm"
      2 Aug 2008 13:37:08 120 A.... "C:\Windows\Temp\fwtsqmfile16.sqm"
      30 Jul 2008 13:53:58 608 A.... "C:\Windows\Temp\fwtsqmfile07.sqm"
      30 Jul 2008 22:03:26 608 A.... "C:\Windows\Temp\fwtsqmfile08.sqm"
      13 Jul 2008 22:11:24 120 A.... "C:\Windows\Temp\fwtsqmfile05.sqm"
      13 Jul 2008 22:11:24 120 A.... "C:\Windows\Temp\fwtsqmfile06.sqm"
      13 Jul 2008 21:59:02 120 A.... "C:\Windows\Temp\fwtsqmfile19.sqm"
      30 Jul 2008 22:03:26 120 A.... "C:\Windows\Temp\fwtsqmfile09.sqm"
      1 Aug 2008 23:21:24 608 A.... "C:\Windows\Temp\fwtsqmfile10.sqm"
      13 Jul 2008 21:59:04 120 A.... "C:\Windows\Temp\fwtsqmfile00.sqm"
      13 Jul 2008 21:59:12 120 A.... "C:\Windows\Temp\fwtsqmfile01.sqm"
      13 Jul 2008 21:59:12 120 A.... "C:\Windows\Temp\fwtsqmfile02.sqm"
      13 Jul 2008 21:59:16 120 A.... "C:\Windows\Temp\fwtsqmfile03.sqm"
      29 Jul 2008 18:37:02 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336821"
      29 Jul 2008 18:27:46 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336264"
      29 Jul 2008 18:10:28 25 887 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335226"
      31 Jul 2008 13:07:32 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489850"
      30 Jul 2008 0:56:46 116 A.... "C:\Windows\Temp\httproxy_clt099D35201217359604"
      30 Jul 2008 0:50:18 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359216"
      31 Jul 2008 15:20:02 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217497800"
      29 Jul 2008 13:21:38 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317897"
      30 Jul 2008 0:51:38 220 A.... "C:\Windows\Temp\httproxy_clt099D35201217359296"
      30 Jul 2008 19:42:52 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427171"
      31 Jul 2008 2:26:26 110 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451385"
      30 Jul 2008 0:47:44 137 A.... "C:\Windows\Temp\httproxy_clt079946681217359062"
      29 Jul 2008 18:30:38 3 705 A.... "C:\Windows\Temp\httproxy_clt078256E01217336437"
      29 Jul 2008 13:22:14 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317933"
      29 Jul 2008 18:17:06 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335624"
      29 Jul 2008 18:07:18 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335037"
      29 Jul 2008 18:10:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335236"
      29 Jul 2008 18:07:38 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335057"
      29 Jul 2008 18:10:58 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335256"
      29 Jul 2008 18:09:28 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335166"
      30 Jul 2008 13:15:58 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403957"
      30 Jul 2008 19:35:08 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426706"
      29 Jul 2008 18:30:32 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336431"
      29 Jul 2008 13:17:12 639 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317631"
      30 Jul 2008 19:34:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426686"
      30 Jul 2008 19:22:06 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425925"
      31 Jul 2008 3:00:46 110 A.... "C:\Windows\Temp\httproxy_clt0971B0181217453445"
      29 Jul 2008 13:19:30 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317768"
      31 Jul 2008 23:38:12 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527690"
      30 Jul 2008 19:32:04 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426523"
      30 Jul 2008 19:29:06 64 A.... "C:\Windows\Temp\httproxy_clt078908081217426344"
      29 Jul 2008 13:13:42 110 A.... "C:\Windows\Temp\httproxy_clt06D393C01217317420"
      30 Jul 2008 19:28:40 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426319"
      30 Jul 2008 19:28:50 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426329"
      29 Jul 2008 18:26:56 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336215"
      29 Jul 2008 18:27:26 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336245"
      29 Jul 2008 18:24:28 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336066"
      29 Jul 2008 18:37:44 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336862"
      29 Jul 2008 18:33:06 110 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336584"
      31 Jul 2008 15:24:28 0 A.... "C:\Windows\Temp\httproxy_srv0A5E6F781217498067"
      31 Jul 2008 13:08:32 180 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489910"
      31 Jul 2008 13:08:52 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489930"
      30 Jul 2008 19:58:12 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428090"
      30 Jul 2008 19:43:42 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427221"
      30 Jul 2008 19:58:32 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428110"
      30 Jul 2008 19:22:36 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425954"
      30 Jul 2008 19:46:56 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427414"
      29 Jul 2008 18:34:08 25 509 A.... "C:\Windows\Temp\httproxy_clt078256E01217336647"
      29 Jul 2008 18:34:58 25 872 A.... "C:\Windows\Temp\httproxy_clt078256E01217336697"
      29 Jul 2008 18:11:38 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335297"
      30 Jul 2008 12:35:28 110 A.... "C:\Windows\Temp\httproxy_clt077D2F301217401526"
      29 Jul 2008 1:52:50 110 A.... "C:\Windows\Temp\httproxy_clt043A91001217276569"
      29 Jul 2008 13:22:26 31 857 A.... "C:\Windows\Temp\httproxy_clt045295881217317944"
      29 Jul 2008 18:07:52 3 802 A.... "C:\Windows\Temp\httproxy_clt079078901217335070"
      30 Jul 2008 19:38:20 487 A.... "C:\Windows\Temp\httproxy_clt097A17C01217426898"
      29 Jul 2008 18:08:00 179 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335078"
      29 Jul 2008 18:11:18 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335277"
      30 Jul 2008 19:35:28 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426727"
      30 Jul 2008 19:33:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426627"
      30 Jul 2008 19:34:08 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426647"
      30 Jul 2008 19:34:28 518 A.... "C:\Windows\Temp\httproxy_clt096826E81217426667"
      30 Jul 2008 19:22:38 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425956"
      30 Jul 2008 19:21:18 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425876"
      29 Jul 2008 13:11:18 110 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317277"
      29 Jul 2008 13:11:28 188 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317287"
      30 Jul 2008 13:11:46 642 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403705"
      30 Jul 2008 13:15:32 726 A.... "C:\Windows\Temp\httproxy_clt07998A881217403930"
      30 Jul 2008 19:32:46 549 A.... "C:\Windows\Temp\httproxy_clt078908081217426564"
      30 Jul 2008 19:29:36 189 A.... "C:\Windows\Temp\httproxy_clt078908081217426375"
      31 Jul 2008 13:10:28 110 A.... "C:\Windows\Temp\httproxy_clt07728A001217490027"
      29 Jul 2008 23:05:08 90 A.... "C:\Windows\Temp\httproxy_clt0798BE281217352907"
      29 Jul 2008 1:56:24 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276782"
      30 Jul 2008 0:44:52 178 A.... "C:\Windows\Temp\httproxy_clt078FDF481217358891"
      29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336744"
      30 Jul 2008 19:13:14 23 307 A.... "C:\Windows\Temp\httproxy_clt078890D01217425392"
      29 Jul 2008 18:08:00 3 803 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335079"
      31 Jul 2008 23:49:40 110 A.... "C:\Windows\Temp\httproxy_clt095756001217528378"
      29 Jul 2008 18:07:40 3 800 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335059"
      31 Jul 2008 13:09:32 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489971"
      30 Jul 2008 0:54:28 45 A.... "C:\Windows\Temp\httproxy_clt099D35201217359467"
      30 Jul 2008 0:53:18 104 A.... "C:\Windows\Temp\httproxy_clt099D35201217359397"
      30 Jul 2008 13:17:54 66 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404072"
      30 Jul 2008 19:58:52 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428131"
      29 Jul 2008 13:19:06 722 A.... "C:\Windows\Temp\httproxy_clt044928681217317744"
      30 Jul 2008 19:25:02 22 925 A.... "C:\Windows\Temp\httproxy_clt097127D81217426101"
      29 Jul 2008 13:17:46 726 A.... "C:\Windows\Temp\httproxy_clt06D666681217317664"
      29 Jul 2008 18:09:02 3 712 A.... "C:\Windows\Temp\httproxy_clt079078901217335141"
      30 Jul 2008 13:14:54 32 711 A.... "C:\Windows\Temp\httproxy_clt079902481217403892"
      29 Jul 2008 18:10:30 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335228"
      29 Jul 2008 18:13:48 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335427"
      29 Jul 2008 18:46:22 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337380"
      30 Jul 2008 0:55:58 117 A.... "C:\Windows\Temp\httproxy_clt07999B901217359556"
      29 Jul 2008 13:17:14 640 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317633"
      29 Jul 2008 18:35:54 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336752"
      30 Jul 2008 13:15:10 726 A.... "C:\Windows\Temp\httproxy_clt07A225481217403909"
      30 Jul 2008 19:40:42 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427041"
      31 Jul 2008 23:39:14 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527752"
      30 Jul 2008 19:40:02 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427001"
      29 Jul 2008 13:22:40 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317959"
      29 Jul 2008 19:00:22 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338220"
      29 Jul 2008 19:00:42 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338240"
      29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338260"
      31 Jul 2008 2:17:30 55 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450848"
      31 Jul 2008 2:17:50 110 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450868"
      30 Jul 2008 19:36:26 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426784"
      29 Jul 2008 18:25:10 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336108"
      29 Jul 2008 18:33:36 178 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336615"
      29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336745"
      29 Jul 2008 18:24:50 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336088"
      29 Jul 2008 18:14:20 22 873 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335458"
      30 Jul 2008 19:59:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428172"
      30 Jul 2008 19:59:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428192"
      30 Jul 2008 19:18:28 726 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425707"
      30 Jul 2008 19:20:28 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425827"
      30 Jul 2008 19:44:24 45 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427263"
      30 Jul 2008 19:59:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428152"
      30 Jul 2008 19:49:52 363 A.... "C:\Windows\Temp\httproxy_clt07921E001217427590"
      30 Jul 2008 19:48:58 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427536"
      29 Jul 2008 18:46:42 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337400"
      29 Jul 2008 18:15:22 23 337 A.... "C:\Windows\Temp\httproxy_clt079078901217335520"
      29 Jul 2008 18:10:22 25 860 A.... "C:\Windows\Temp\httproxy_clt079078901217335221"
      29 Jul 2008 18:16:02 23 255 A.... "C:\Windows\Temp\httproxy_clt079078901217335560"
      29 Jul 2008 18:08:30 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335109"
      29 Jul 2008 18:49:52 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337590"
      29 Jul 2008 18:34:14 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336653"
      29 Jul 2008 18:31:16 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336474"
      29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338261"
      30 Jul 2008 13:11:48 643 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403707"
      30 Jul 2008 13:11:08 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403667"
      30 Jul 2008 12:37:02 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401620"
      29 Jul 2008 13:19:46 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317785"
      29 Jul 2008 13:20:02 723 A.... "C:\Windows\Temp\httproxy_clt06FA66B81217317800"
      29 Jul 2008 13:20:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317822"
      29 Jul 2008 18:27:52 724 A.... "C:\Windows\Temp\httproxy_clt0798CF301217336271"
      29 Jul 2008 18:33:58 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336636"
      29 Jul 2008 18:38:16 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336895"
      30 Jul 2008 19:36:22 725 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426780"
      31 Jul 2008 13:08:44 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489923"
      31 Jul 2008 13:08:54 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489933"
      30 Jul 2008 20:01:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428272"
      30 Jul 2008 20:09:42 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428780"
      30 Jul 2008 20:01:34 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428292"
      30 Jul 2008 20:00:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428252"
      30 Jul 2008 20:09:22 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428760"
      29 Jul 2008 13:24:34 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318072"
      30 Jul 2008 19:50:12 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427610"
      29 Jul 2008 13:20:20 32 003 A.... "C:\Windows\Temp\httproxy_clt045295881217317818"
      29 Jul 2008 18:16:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335598"
      30 Jul 2008 13:15:34 7 041 A.... "C:\Windows\Temp\httproxy_clt079902481217403933"
      29 Jul 2008 18:50:02 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337600"
      29 Jul 2008 18:47:02 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337421"
      29 Jul 2008 13:21:20 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317878"
      29 Jul 2008 18:47:22 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337441"
      29 Jul 2008 18:49:32 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337571"
      29 Jul 2008 18:17:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335638"
      29 Jul 2008 18:17:40 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335658"
      29 Jul 2008 18:19:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335777"
      29 Jul 2008 18:14:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335479"
      29 Jul 2008 13:21:48 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317907"
      30 Jul 2008 1:01:42 919 A.... "C:\Windows\Temp\httproxy_clt0781C6581217359900"
      29 Jul 2008 18:29:48 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336386"
      29 Jul 2008 18:29:58 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336396"
      30 Jul 2008 13:14:08 726 A.... "C:\Windows\Temp\httproxy_clt077CDA081217403847"
      31 Jul 2008 23:49:54 110 A.... "C:\Windows\Temp\httproxy_clt077284A81217528392"
      30 Jul 2008 13:15:24 723 A.... "C:\Windows\Temp\httproxy_clt07998A881217403923"
      29 Jul 2008 23:35:54 175 A.... "C:\Windows\Temp\httproxy_clt099D68381217354753"
      30 Jul 2008 19:36:46 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426805"
      30 Jul 2008 19:29:00 148 A.... "C:\Windows\Temp\httproxy_clt078908081217426338"
      29 Jul 2008 13:21:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317883"
      31 Jul 2008 23:48:48 110 A.... "C:\Windows\Temp\httproxy_clt0772A6B81217528326"
      30 Jul 2008 19:18:22 3 798 A.... "C:\Windows\Temp\httproxy_clt097127D81217425700"
      29 Jul 2008 19:06:08 163 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338566"
      29 Jul 2008 18:34:18 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336657"
      29 Jul 2008 18:34:38 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336677"
      30 Jul 2008 19:39:22 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426960"
      29 Jul 2008 18:15:40 23 337 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335539"
      29 Jul 2008 23:44:52 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355290"
      30 Jul 2008 20:10:02 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428800"
      30 Jul 2008 20:00:14 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428213"
      29 Jul 2008 23:43:32 120 A.... "C:\Windows\Temp\httproxy_clt078408781217355210"
      30 Jul 2008 20:01:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428313"
      30 Jul 2008 20:00:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428233"
      29 Jul 2008 23:43:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355230"
      29 Jul 2008 13:18:58 726 A.... "C:\Windows\Temp\httproxy_clt044928681217317737"
      30 Jul 2008 19:44:36 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427275"
      29 Jul 2008 18:20:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335798"
      29 Jul 2008 18:18:20 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335699"
      29 Jul 2008 18:11:44 25 887 A.... "C:\Windows\Temp\httproxy_clt079078901217335303"
      29 Jul 2008 18:40:16 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337014"
      29 Jul 2008 18:48:44 58 A.... "C:\Windows\Temp\httproxy_clt079078901217337522"
      29 Jul 2008 18:50:32 169 A.... "C:\Windows\Temp\httproxy_clt079078901217337631"
      29 Jul 2008 18:20:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335818"
      30 Jul 2008 19:24:46 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426084"
      30 Jul 2008 19:24:02 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426040"
      29 Jul 2008 18:18:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335679"
      29 Jul 2008 1:56:22 110 A.... "C:\Windows\Temp\httproxy_clt043AB3101217276780"
      30 Jul 2008 19:26:22 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426180"
      30 Jul 2008 19:40:26 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427024"
      30 Jul 2008 19:43:54 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427233"
      29 Jul 2008 23:35:26 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354724"
      29 Jul 2008 13:19:18 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317757"
      29 Jul 2008 23:36:54 162 A.... "C:\Windows\Temp\httproxy_clt099D68381217354813"
      30 Jul 2008 19:37:18 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426836"
      30 Jul 2008 19:37:38 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426856"
      29 Jul 2008 18:24:26 30 165 A.... "C:\Windows\Temp\httproxy_clt079056801217336064"
      30 Jul 2008 19:18:12 3 807 A.... "C:\Windows\Temp\httproxy_clt097127D81217425691"
      29 Jul 2008 19:06:08 1 106 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338567"
      31 Jul 2008 0:49:42 110 A.... "C:\Windows\Temp\httproxy_clt097149E81217445581"
      30 Jul 2008 20:58:26 163 A.... "C:\Windows\Temp\httproxy_clt078890D01217431704"
      29 Jul 2008 18:35:20 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336718"
      30 Jul 2008 19:12:58 23 303 A.... "C:\Windows\Temp\httproxy_clt078890D01217425376"
      29 Jul 2008 18:35:00 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336698"
      30 Jul 2008 19:43:04 3 795 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427183"
      31 Jul 2008 13:09:26 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489965"
      31 Jul 2008 13:09:36 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489975"
      30 Jul 2008 0:58:30 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359709"
      29 Jul 2008 23:44:32 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355271"
      29 Jul 2008 23:47:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355470"
      30 Jul 2008 20:02:56 363 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428374"
      29 Jul 2008 23:42:54 45 A.... "C:\Windows\Temp\httproxy_clt078408781217355172"
      30 Jul 2008 20:03:16 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428394"
      29 Jul 2008 18:53:36 264 A.... "C:\Windows\Temp\httproxy_clt079924581217337815"
      29 Jul 2008 23:45:02 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355301"
      29 Jul 2008 23:45:12 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355311"
      30 Jul 2008 19:44:08 363 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427246"
      29 Jul 2008 18:53:56 295 A.... "C:\Windows\Temp\httproxy_clt079924581217337835"
      30 Jul 2008 20:02:16 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428334"
      29 Jul 2008 23:45:32 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355331"
      29 Jul 2008 23:49:02 189 A.... "C:\Windows\Temp\httproxy_clt078408781217355540"
      29 Jul 2008 23:48:32 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355510"
      29 Jul 2008 23:48:12 173 A.... "C:\Windows\Temp\httproxy_clt078529881217355490"
      29 Jul 2008 13:24:16 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318054"
      29 Jul 2008 13:22:00 31 863 A.... "C:\Windows\Temp\httproxy_clt045295881217317919"
      30 Jul 2008 13:15:46 31 939 A.... "C:\Windows\Temp\httproxy_clt079902481217403945"
      29 Jul 2008 18:50:04 173 A.... "C:\Windows\Temp\httproxy_clt079078901217337602"
      30 Jul 2008 19:25:26 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426125"
      29 Jul 2008 18:40:36 364 A.... "C:\Windows\Temp\httproxy_clt079078901217337035"
      29 Jul 2008 18:49:04 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337543"
      29 Jul 2008 18:09:26 3 815 A.... "C:\Windows\Temp\httproxy_clt079078901217335165"
      29 Jul 2008 18:40:56 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337055"
      29 Jul 2008 18:50:54 272 A.... "C:\Windows\Temp\httproxy_clt079078901217337652"
      29 Jul 2008 18:49:34 182 A.... "C:\Windows\Temp\httproxy_clt079078901217337573"
      30 Jul 2008 19:23:22 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426001"
      29 Jul 2008 18:20:40 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335839"
      29 Jul 2008 18:21:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335859"
      29 Jul 2008 18:30:08 723 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336407"
      29 Jul 2008 18:35:08 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336706"
      29 Jul 2008 13:15:48 110 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317547"
      29 Jul 2008 18:32:38 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336557"
      30 Jul 2008 19:42:56 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427175"
      31 Jul 2008 23:39:18 107 A.... "C:\Windows\Temp\httproxy_clt095767081217527756"
      31 Jul 2008 23:43:28 110 A.... "C:\Windows\Temp\httproxy_clt096001C81217528007"
      30 Jul 2008 19:42:06 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427125"
      29 Jul 2008 18:36:42 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336801"
      31 Jul 2008 23:47:02 32 837 A.... "C:\Windows\Temp\httproxy_clt095722E81217528220"
      30 Jul 2008 20:10:54 177 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217428853"
      29 Jul 2008 23:41:56 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355114"
      30 Jul 2008 19:39:38 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426977"
      29 Jul 2008 18:34:44 25 538 A.... "C:\Windows\Temp\httproxy_clt079056801217336682"
      30 Jul 2008 12:45:42 110 A.... "C:\Windows\Temp\httproxy_clt07A203381217402141"
      30 Jul 2008 19:22:52 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217425971"
      30 Jul 2008 20:58:26 1 123 A.... "C:\Windows\Temp\httproxy_clt078890D01217431705"
      29 Jul 2008 18:35:40 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336739"
      30 Jul 2008 19:39:04 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426942"
      30 Jul 2008 19:37:24 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426842"
      30 Jul 2008 12:51:12 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402471"
      31 Jul 2008 13:08:48 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489926"
      31 Jul 2008 13:08:58 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489936"
      29 Jul 2008 23:46:14 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355372"
      29 Jul 2008 23:44:44 197 A.... "C:\Windows\Temp\httproxy_clt078408781217355282"
      30 Jul 2008 20:04:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428494"
      29 Jul 2008 23:45:04 166 A.... "C:\Windows\Temp\httproxy_clt078408781217355302"
      30 Jul 2008 20:03:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428414"
      30 Jul 2008 20:05:16 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428514"
      29 Jul 2008 23:45:24 213 A.... "C:\Windows\Temp\httproxy_clt078408781217355322"
      29 Jul 2008 23:48:42 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355521"
      30 Jul 2008 20:03:56 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428434"
      29 Jul 2008 23:47:12 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355431"
      30 Jul 2008 20:04:16 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428454"
      30 Jul 2008 20:02:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428355"
      29 Jul 2008 23:45:54 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355352"
      29 Jul 2008 23:48:42 169 A.... "C:\Windows\Temp\httproxy_clt078529881217355521"
      29 Jul 2008 23:45:54 183 A.... "C:\Windows\Temp\httproxy_clt078529881217355352"
      30 Jul 2008 19:46:46 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427404"
      29 Jul 2008 23:49:32 182 A.... "C:\Windows\Temp\httproxy_clt078529881217355571"
      29 Jul 2008 23:46:34 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355392"
      30 Jul 2008 19:50:44 263 A.... "C:\Windows\Temp\httproxy_clt07921E001217427643"
      29 Jul 2008 18:23:14 129 A.... "C:\Windows\Temp\httproxy_clt09949A601217335992"
      29 Jul 2008 18:41:58 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337116"
      30 Jul 2008 19:28:36 3 174 A.... "C:\Windows\Temp\httproxy_clt097127D81217426315"
      29 Jul 2008 18:42:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337136"
      29 Jul 2008 18:09:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335181"
      29 Jul 2008 18:42:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337156"
      29 Jul 2008 18:42:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337176"
      29 Jul 2008 18:41:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337076"
      29 Jul 2008 18:43:18 426 A.... "C:\Windows\Temp\httproxy_clt079078901217337196"
      29 Jul 2008 18:41:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337096"
      29 Jul 2008 18:11:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335300"
      31 Jul 2008 2:21:48 110 A.... "C:\Windows\Temp\httproxy_clt07807E501217451107"
      30 Jul 2008 19:40:58 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427056"
      30 Jul 2008 19:41:28 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427086"
      30 Jul 2008 19:29:32 64 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426371"
      31 Jul 2008 14:06:26 16 384 A.... "C:\Windows\Temp\httproxy_srv0A5DB4201217493384"
      29 Jul 2008 18:05:40 1 958 A.... "C:\Windows\Temp\httproxy_clt077D0D201217334939"
      29 Jul 2008 18:37:24 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336842"
      29 Jul 2008 23:36:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354796"
      30 Jul 2008 12:37:06 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401624"
      29 Jul 2008 18:23:44 726 A.... "C:\Windows\Temp\httproxy_clt077CC9001217336022"
      29 Jul 2008 23:41:18 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355076"
      30 Jul 2008 19:36:00 45 A.... "C:\Windows\Temp\httproxy_clt078908081217426759"
      30 Jul 2008 19:28:12 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426291"
      29 Jul 2008 13:21:18 724 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317876"
      29 Jul 2008 18:25:08 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336106"
      30 Jul 2008 19:18:44 3 794 A.... "C:\Windows\Temp\httproxy_clt097127D81217425723"
      29 Jul 2008 1:55:30 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276728"
      30 Jul 2008 19:23:04 3 129 A.... "C:\Windows\Temp\httproxy_clt097127D81217425982"
      30 Jul 2008 12:45:04 142 A.... "C:\Windows\Temp\httproxy_clt07A203381217402102"
      30 Jul 2008 19:39:14 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426953"
      30 Jul 2008 12:50:14 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402412"
      29 Jul 2008 18:13:52 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335431"
      31 Jul 2008 13:07:50 204 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489868"
      31 Jul 2008 13:08:58 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489937"
      30 Jul 2008 20:04:36 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428475"
      30 Jul 2008 20:06:16 356 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428575"
      29 Jul 2008 23:46:34 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355393"
      29 Jul 2008 23:43:34 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355213"
      29 Jul 2008 23:43:44 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355223"
      29 Jul 2008 23:43:54 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355233"
      30 Jul 2008 20:05:36 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428535"
      30 Jul 2008 20:05:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428555"
      29 Jul 2008 1:47:16 312 A.... "C:\Windows\Temp\httproxy_clt043146001217276235"
      30 Jul 2008 13:13:32 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403810"
      29 Jul 2008 23:47:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355432"
      29 Jul 2008 23:46:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355373"
      30 Jul 2008 19:47:06 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427425"
      29 Jul 2008 13:23:58 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318036"
      30 Jul 2008 19:47:26 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427445"
      29 Jul 2008 18:10:34 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335232"
      29 Jul 2008 18:13:46 22 875 A.... "C:\Windows\Temp\httproxy_clt079078901217335425"
      30 Jul 2008 19:17:58 726 A.... "C:\Windows\Temp\httproxy_clt07803A301217425676"
      29 Jul 2008 18:50:26 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337624"
      29 Jul 2008 18:50:36 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337634"
      30 Jul 2008 19:25:58 23 379 A.... "C:\Windows\Temp\httproxy_clt097127D81217426157"
      29 Jul 2008 18:49:46 188 A.... "C:\Windows\Temp\httproxy_clt079078901217337585"
      29 Jul 2008 13:18:02 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317680"
      30 Jul 2008 19:29:14 213 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426352"
      30 Jul 2008 19:25:04 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426103"
      29 Jul 2008 18:56:58 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338017"
      29 Jul 2008 18:58:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338117"
      29 Jul 2008 18:38:04 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336883"
      29 Jul 2008 18:57:18 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338037"
      29 Jul 2008 18:57:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338057"
      31 Jul 2008 23:45:34 3 684 A.... "C:\Windows\Temp\httproxy_clt095722E81217528133"
      29 Jul 2008 23:37:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354856"
      30 Jul 2008 19:52:26 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427744"
      30 Jul 2008 19:52:46 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427764"
      30 Jul 2008 19:19:22 129 A.... "C:\Windows\Temp\httproxy_clt0779EA781217425760"
      29 Jul 2008 18:24:48 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336087"
      29 Jul 2008 18:37:44 25 838 A.... "C:\Windows\Temp\httproxy_clt079056801217336863"
      29 Jul 2008 18:06:34 3 699 A.... "C:\Windows\Temp\httproxy_clt079078901217334993"
      29 Jul 2008 23:51:40 312 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217355698"
      31 Jul 2008 23:45:12 110 A.... "C:\Windows\Temp\httproxy_clt095778101217528110"
      29 Jul 2008 18:24:10 14 218 A.... "C:\Windows\Temp\httproxych_tmp077E63281217336049"
      31 Jul 2008 13:08:20 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489899"
      29 Jul 2008 18:13:24 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335402"
      29 Jul 2008 18:13:34 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335412"
      29 Jul 2008 23:44:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355294"
      30 Jul 2008 13:17:00 110 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404019"
      30 Jul 2008 20:06:38 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428596"
      30 Jul 2008 19:56:50 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428008"
      29 Jul 2008 23:46:54 222 A.... "C:\Windows\Temp\httproxy_clt078408781217355413"
      30 Jul 2008 19:57:10 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428028"
      29 Jul 2008 23:48:44 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355523"
      29 Jul 2008 23:47:14 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355433"
      29 Jul 2008 18:54:10 673 A.... "C:\Windows\Temp\httproxy_clt079924581217337848"
      29 Jul 2008 23:44:16 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355254"
      29 Jul 2008 23:45:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355354"
      29 Jul 2008 13:24:48 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318087"
      29 Jul 2008 23:46:54 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355413"
      29 Jul 2008 23:47:44 259 A.... "C:\Windows\Temp\httproxy_clt078529881217355463"
      30 Jul 2008 19:22:18 3 133 A.... "C:\Windows\Temp\httproxy_clt078018201217425936"
      29 Jul 2008 18:16:52 723 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335611"
      29 Jul 2008 18:17:12 725 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335631"
      29 Jul 2008 1:58:24 110 A.... "C:\Windows\Temp\httproxy_clt043909481217276902"
      30 Jul 2008 13:15:52 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403950"
      29 Jul 2008 18:43:38 357 A.... "C:\Windows\Temp\httproxy_clt079078901217337217"
      29 Jul 2008 18:09:34 723 A.... "C:\Windows\Temp\httproxy_clt079089981217335173"
      29 Jul 2008 18:07:30 3 793 A.... "C:\Windows\Temp\httproxy_clt079078901217335048"
      29 Jul 2008 18:43:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337237"
      29 Jul 2008 18:49:08 174 A.... "C:\Windows\Temp\httproxy_clt079078901217337546"
      29 Jul 2008 18:49:28 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337566"
      30 Jul 2008 19:26:20 23 381 A.... "C:\Windows\Temp\httproxy_clt097127D81217426178"
      29 Jul 2008 18:10:00 25 512 A.... "C:\Windows\Temp\httproxy_clt079078901217335198"
      30 Jul 2008 19:28:08 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217426287"
      30 Jul 2008 19:23:46 726 A.... &
      0
  15. anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
     
    Euh... C'est un rapport de SDFix ça ? Je n'ai jamais vu ça... En plus il est coupé, il manque la fin, peux-tu poster le reste pour voir stp ?

    "quand je passais par le mode msconfig"
    ==> à éviter, tu risque de te retrouver bloqué comme ça...
    Pour le mode sans échec, parfois c'est la touche F5 qu'il faut presser et non F8

    0
    1. maxacaen
       
      29 Jul 2008 18:37:02 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336821"
      29 Jul 2008 18:27:46 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336264"
      29 Jul 2008 18:10:28 25 887 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335226"
      31 Jul 2008 13:07:32 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489850"
      30 Jul 2008 0:56:46 116 A.... "C:\Windows\Temp\httproxy_clt099D35201217359604"
      30 Jul 2008 0:50:18 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359216"
      31 Jul 2008 15:20:02 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217497800"
      29 Jul 2008 13:21:38 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317897"
      30 Jul 2008 0:51:38 220 A.... "C:\Windows\Temp\httproxy_clt099D35201217359296"
      30 Jul 2008 19:42:52 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427171"
      31 Jul 2008 2:26:26 110 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451385"
      30 Jul 2008 0:47:44 137 A.... "C:\Windows\Temp\httproxy_clt079946681217359062"
      29 Jul 2008 18:30:38 3 705 A.... "C:\Windows\Temp\httproxy_clt078256E01217336437"
      29 Jul 2008 13:22:14 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317933"
      29 Jul 2008 18:17:06 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335624"
      29 Jul 2008 18:07:18 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335037"
      29 Jul 2008 18:10:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335236"
      29 Jul 2008 18:07:38 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335057"
      29 Jul 2008 18:10:58 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335256"
      29 Jul 2008 18:09:28 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335166"
      30 Jul 2008 13:15:58 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403957"
      30 Jul 2008 19:35:08 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426706"
      29 Jul 2008 18:30:32 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336431"
      29 Jul 2008 13:17:12 639 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317631"
      30 Jul 2008 19:34:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426686"
      30 Jul 2008 19:22:06 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425925"
      31 Jul 2008 3:00:46 110 A.... "C:\Windows\Temp\httproxy_clt0971B0181217453445"
      29 Jul 2008 13:19:30 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317768"
      31 Jul 2008 23:38:12 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527690"
      30 Jul 2008 19:32:04 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426523"
      30 Jul 2008 19:29:06 64 A.... "C:\Windows\Temp\httproxy_clt078908081217426344"
      29 Jul 2008 13:13:42 110 A.... "C:\Windows\Temp\httproxy_clt06D393C01217317420"
      30 Jul 2008 19:28:40 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426319"
      30 Jul 2008 19:28:50 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426329"
      29 Jul 2008 18:26:56 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336215"
      29 Jul 2008 18:27:26 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336245"
      29 Jul 2008 18:24:28 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336066"
      29 Jul 2008 18:37:44 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336862"
      29 Jul 2008 18:33:06 110 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336584"
      31 Jul 2008 15:24:28 0 A.... "C:\Windows\Temp\httproxy_srv0A5E6F781217498067"
      31 Jul 2008 13:08:32 180 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489910"
      31 Jul 2008 13:08:52 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489930"
      30 Jul 2008 19:58:12 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428090"
      30 Jul 2008 19:43:42 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427221"
      30 Jul 2008 19:58:32 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428110"
      30 Jul 2008 19:22:36 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425954"
      30 Jul 2008 19:46:56 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427414"
      29 Jul 2008 18:34:08 25 509 A.... "C:\Windows\Temp\httproxy_clt078256E01217336647"
      29 Jul 2008 18:34:58 25 872 A.... "C:\Windows\Temp\httproxy_clt078256E01217336697"
      29 Jul 2008 18:11:38 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335297"
      30 Jul 2008 12:35:28 110 A.... "C:\Windows\Temp\httproxy_clt077D2F301217401526"
      29 Jul 2008 1:52:50 110 A.... "C:\Windows\Temp\httproxy_clt043A91001217276569"
      29 Jul 2008 13:22:26 31 857 A.... "C:\Windows\Temp\httproxy_clt045295881217317944"
      29 Jul 2008 18:07:52 3 802 A.... "C:\Windows\Temp\httproxy_clt079078901217335070"
      30 Jul 2008 19:38:20 487 A.... "C:\Windows\Temp\httproxy_clt097A17C01217426898"
      29 Jul 2008 18:08:00 179 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335078"
      29 Jul 2008 18:11:18 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335277"
      30 Jul 2008 19:35:28 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426727"
      30 Jul 2008 19:33:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426627"
      30 Jul 2008 19:34:08 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426647"
      30 Jul 2008 19:34:28 518 A.... "C:\Windows\Temp\httproxy_clt096826E81217426667"
      30 Jul 2008 19:22:38 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425956"
      30 Jul 2008 19:21:18 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425876"
      29 Jul 2008 13:11:18 110 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317277"
      29 Jul 2008 13:11:28 188 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317287"
      30 Jul 2008 13:11:46 642 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403705"
      30 Jul 2008 13:15:32 726 A.... "C:\Windows\Temp\httproxy_clt07998A881217403930"
      30 Jul 2008 19:32:46 549 A.... "C:\Windows\Temp\httproxy_clt078908081217426564"
      30 Jul 2008 19:29:36 189 A.... "C:\Windows\Temp\httproxy_clt078908081217426375"
      31 Jul 2008 13:10:28 110 A.... "C:\Windows\Temp\httproxy_clt07728A001217490027"
      29 Jul 2008 23:05:08 90 A.... "C:\Windows\Temp\httproxy_clt0798BE281217352907"
      29 Jul 2008 1:56:24 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276782"
      30 Jul 2008 0:44:52 178 A.... "C:\Windows\Temp\httproxy_clt078FDF481217358891"
      29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336744"
      30 Jul 2008 19:13:14 23 307 A.... "C:\Windows\Temp\httproxy_clt078890D01217425392"
      29 Jul 2008 18:08:00 3 803 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335079"
      31 Jul 2008 23:49:40 110 A.... "C:\Windows\Temp\httproxy_clt095756001217528378"
      29 Jul 2008 18:07:40 3 800 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335059"
      31 Jul 2008 13:09:32 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489971"
      30 Jul 2008 0:54:28 45 A.... "C:\Windows\Temp\httproxy_clt099D35201217359467"
      30 Jul 2008 0:53:18 104 A.... "C:\Windows\Temp\httproxy_clt099D35201217359397"
      30 Jul 2008 13:17:54 66 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404072"
      30 Jul 2008 19:58:52 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428131"
      29 Jul 2008 13:19:06 722 A.... "C:\Windows\Temp\httproxy_clt044928681217317744"
      30 Jul 2008 19:25:02 22 925 A.... "C:\Windows\Temp\httproxy_clt097127D81217426101"
      29 Jul 2008 13:17:46 726 A.... "C:\Windows\Temp\httproxy_clt06D666681217317664"
      29 Jul 2008 18:09:02 3 712 A.... "C:\Windows\Temp\httproxy_clt079078901217335141"
      30 Jul 2008 13:14:54 32 711 A.... "C:\Windows\Temp\httproxy_clt079902481217403892"
      29 Jul 2008 18:10:30 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335228"
      29 Jul 2008 18:13:48 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335427"
      29 Jul 2008 18:46:22 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337380"
      30 Jul 2008 0:55:58 117 A.... "C:\Windows\Temp\httproxy_clt07999B901217359556"
      29 Jul 2008 13:17:14 640 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317633"
      29 Jul 2008 18:35:54 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336752"
      30 Jul 2008 13:15:10 726 A.... "C:\Windows\Temp\httproxy_clt07A225481217403909"
      30 Jul 2008 19:40:42 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427041"
      31 Jul 2008 23:39:14 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527752"
      30 Jul 2008 19:40:02 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427001"
      29 Jul 2008 13:22:40 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317959"
      29 Jul 2008 19:00:22 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338220"
      29 Jul 2008 19:00:42 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338240"
      29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338260"
      31 Jul 2008 2:17:30 55 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450848"
      31 Jul 2008 2:17:50 110 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450868"
      30 Jul 2008 19:36:26 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426784"
      29 Jul 2008 18:25:10 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336108"
      29 Jul 2008 18:33:36 178 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336615"
      29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336745"
      29 Jul 2008 18:24:50 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336088"
      29 Jul 2008 18:14:20 22 873 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335458"
      30 Jul 2008 19:59:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428172"
      30 Jul 2008 19:59:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428192"
      30 Jul 2008 19:18:28 726 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425707"
      30 Jul 2008 19:20:28 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425827"
      30 Jul 2008 19:44:24 45 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427263"
      30 Jul 2008 19:59:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428152"
      30 Jul 2008 19:49:52 363 A.... "C:\Windows\Temp\httproxy_clt07921E001217427590"
      30 Jul 2008 19:48:58 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427536"
      29 Jul 2008 18:46:42 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337400"
      29 Jul 2008 18:15:22 23 337 A.... "C:\Windows\Temp\httproxy_clt079078901217335520"
      29 Jul 2008 18:10:22 25 860 A.... "C:\Windows\Temp\httproxy_clt079078901217335221"
      29 Jul 2008 18:16:02 23 255 A.... "C:\Windows\Temp\httproxy_clt079078901217335560"
      29 Jul 2008 18:08:30 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335109"
      29 Jul 2008 18:49:52 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337590"
      29 Jul 2008 18:34:14 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336653"
      29 Jul 2008 18:31:16 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336474"
      29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338261"
      30 Jul 2008 13:11:48 643 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403707"
      30 Jul 2008 13:11:08 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403667"
      30 Jul 2008 12:37:02 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401620"
      29 Jul 2008 13:19:46 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317785"
      29 Jul 2008 13:20:02 723 A.... "C:\Windows\Temp\httproxy_clt06FA66B81217317800"
      29 Jul 2008 13:20:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317822"
      29 Jul 2008 18:27:52 724 A.... "C:\Windows\Temp\httproxy_clt0798CF301217336271"
      29 Jul 2008 18:33:58 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336636"
      29 Jul 2008 18:38:16 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336895"
      30 Jul 2008 19:36:22 725 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426780"
      31 Jul 2008 13:08:44 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489923"
      31 Jul 2008 13:08:54 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489933"
      30 Jul 2008 20:01:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428272"
      30 Jul 2008 20:09:42 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428780"
      30 Jul 2008 20:01:34 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428292"
      30 Jul 2008 20:00:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428252"
      30 Jul 2008 20:09:22 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428760"
      29 Jul 2008 13:24:34 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318072"
      30 Jul 2008 19:50:12 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427610"
      29 Jul 2008 13:20:20 32 003 A.... "C:\Windows\Temp\httproxy_clt045295881217317818"
      29 Jul 2008 18:16:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335598"
      30 Jul 2008 13:15:34 7 041 A.... "C:\Windows\Temp\httproxy_clt079902481217403933"
      29 Jul 2008 18:50:02 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337600"
      29 Jul 2008 18:47:02 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337421"
      29 Jul 2008 13:21:20 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317878"
      29 Jul 2008 18:47:22 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337441"
      29 Jul 2008 18:49:32 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337571"
      29 Jul 2008 18:17:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335638"
      29 Jul 2008 18:17:40 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335658"
      29 Jul 2008 18:19:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335777"
      29 Jul 2008 18:14:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335479"
      29 Jul 2008 13:21:48 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317907"
      30 Jul 2008 1:01:42 919 A.... "C:\Windows\Temp\httproxy_clt0781C6581217359900"
      29 Jul 2008 18:29:48 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336386"
      29 Jul 2008 18:29:58 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336396"
      30 Jul 2008 13:14:08 726 A.... "C:\Windows\Temp\httproxy_clt077CDA081217403847"
      31 Jul 2008 23:49:54 110 A.... "C:\Windows\Temp\httproxy_clt077284A81217528392"
      30 Jul 2008 13:15:24 723 A.... "C:\Windows\Temp\httproxy_clt07998A881217403923"
      29 Jul 2008 23:35:54 175 A.... "C:\Windows\Temp\httproxy_clt099D68381217354753"
      30 Jul 2008 19:36:46 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426805"
      30 Jul 2008 19:29:00 148 A.... "C:\Windows\Temp\httproxy_clt078908081217426338"
      29 Jul 2008 13:21:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317883"
      31 Jul 2008 23:48:48 110 A.... "C:\Windows\Temp\httproxy_clt0772A6B81217528326"
      30 Jul 2008 19:18:22 3 798 A.... "C:\Windows\Temp\httproxy_clt097127D81217425700"
      29 Jul 2008 19:06:08 163 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338566"
      29 Jul 2008 18:34:18 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336657"
      29 Jul 2008 18:34:38 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336677"
      30 Jul 2008 19:39:22 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426960"
      29 Jul 2008 18:15:40 23 337 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335539"
      29 Jul 2008 23:44:52 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355290"
      30 Jul 2008 20:10:02 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428800"
      30 Jul 2008 20:00:14 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428213"
      29 Jul 2008 23:43:32 120 A.... "C:\Windows\Temp\httproxy_clt078408781217355210"
      30 Jul 2008 20:01:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428313"
      30 Jul 2008 20:00:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428233"
      29 Jul 2008 23:43:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355230"
      29 Jul 2008 13:18:58 726 A.... "C:\Windows\Temp\httproxy_clt044928681217317737"
      30 Jul 2008 19:44:36 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427275"
      29 Jul 2008 18:20:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335798"
      29 Jul 2008 18:18:20 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335699"
      29 Jul 2008 18:11:44 25 887 A.... "C:\Windows\Temp\httproxy_clt079078901217335303"
      29 Jul 2008 18:40:16 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337014"
      29 Jul 2008 18:48:44 58 A.... "C:\Windows\Temp\httproxy_clt079078901217337522"
      29 Jul 2008 18:50:32 169 A.... "C:\Windows\Temp\httproxy_clt079078901217337631"
      29 Jul 2008 18:20:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335818"
      30 Jul 2008 19:24:46 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426084"
      30 Jul 2008 19:24:02 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426040"
      29 Jul 2008 18:18:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335679"
      29 Jul 2008 1:56:22 110 A.... "C:\Windows\Temp\httproxy_clt043AB3101217276780"
      30 Jul 2008 19:26:22 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426180"
      30 Jul 2008 19:40:26 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427024"
      30 Jul 2008 19:43:54 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427233"
      29 Jul 2008 23:35:26 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354724"
      29 Jul 2008 13:19:18 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317757"
      29 Jul 2008 23:36:54 162 A.... "C:\Windows\Temp\httproxy_clt099D68381217354813"
      30 Jul 2008 19:37:18 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426836"
      30 Jul 2008 19:37:38 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426856"
      29 Jul 2008 18:24:26 30 165 A.... "C:\Windows\Temp\httproxy_clt079056801217336064"
      30 Jul 2008 19:18:12 3 807 A.... "C:\Windows\Temp\httproxy_clt097127D81217425691"
      29 Jul 2008 19:06:08 1 106 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338567"
      31 Jul 2008 0:49:42 110 A.... "C:\Windows\Temp\httproxy_clt097149E81217445581"
      30 Jul 2008 20:58:26 163 A.... "C:\Windows\Temp\httproxy_clt078890D01217431704"
      29 Jul 2008 18:35:20 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336718"
      30 Jul 2008 19:12:58 23 303 A.... "C:\Windows\Temp\httproxy_clt078890D01217425376"
      29 Jul 2008 18:35:00 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336698"
      30 Jul 2008 19:43:04 3 795 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427183"
      31 Jul 2008 13:09:26 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489965"
      31 Jul 2008 13:09:36 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489975"
      30 Jul 2008 0:58:30 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359709"
      29 Jul 2008 23:44:32 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355271"
      29 Jul 2008 23:47:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355470"
      30 Jul 2008 20:02:56 363 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428374"
      29 Jul 2008 23:42:54 45 A.... "C:\Windows\Temp\httproxy_clt078408781217355172"
      30 Jul 2008 20:03:16 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428394"
      29 Jul 2008 18:53:36 264 A.... "C:\Windows\Temp\httproxy_clt079924581217337815"
      29 Jul 2008 23:45:02 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355301"
      29 Jul 2008 23:45:12 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355311"
      30 Jul 2008 19:44:08 363 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427246"
      29 Jul 2008 18:53:56 295 A.... "C:\Windows\Temp\httproxy_clt079924581217337835"
      30 Jul 2008 20:02:16 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428334"
      29 Jul 2008 23:45:32 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355331"
      29 Jul 2008 23:49:02 189 A.... "C:\Windows\Temp\httproxy_clt078408781217355540"
      29 Jul 2008 23:48:32 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355510"
      29 Jul 2008 23:48:12 173 A.... "C:\Windows\Temp\httproxy_clt078529881217355490"
      29 Jul 2008 13:24:16 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318054"
      29 Jul 2008 13:22:00 31 863 A.... "C:\Windows\Temp\httproxy_clt045295881217317919"
      30 Jul 2008 13:15:46 31 939 A.... "C:\Windows\Temp\httproxy_clt079902481217403945"
      29 Jul 2008 18:50:04 173 A.... "C:\Windows\Temp\httproxy_clt079078901217337602"
      30 Jul 2008 19:25:26 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426125"
      29 Jul 2008 18:40:36 364 A.... "C:\Windows\Temp\httproxy_clt079078901217337035"
      29 Jul 2008 18:49:04 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337543"
      29 Jul 2008 18:09:26 3 815 A.... "C:\Windows\Temp\httproxy_clt079078901217335165"
      29 Jul 2008 18:40:56 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337055"
      29 Jul 2008 18:50:54 272 A.... "C:\Windows\Temp\httproxy_clt079078901217337652"
      29 Jul 2008 18:49:34 182 A.... "C:\Windows\Temp\httproxy_clt079078901217337573"
      30 Jul 2008 19:23:22 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426001"
      29 Jul 2008 18:20:40 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335839"
      29 Jul 2008 18:21:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335859"
      29 Jul 2008 18:30:08 723 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336407"
      29 Jul 2008 18:35:08 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336706"
      29 Jul 2008 13:15:48 110 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317547"
      29 Jul 2008 18:32:38 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336557"
      30 Jul 2008 19:42:56 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427175"
      31 Jul 2008 23:39:18 107 A.... "C:\Windows\Temp\httproxy_clt095767081217527756"
      31 Jul 2008 23:43:28 110 A.... "C:\Windows\Temp\httproxy_clt096001C81217528007"
      30 Jul 2008 19:42:06 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427125"
      29 Jul 2008 18:36:42 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336801"
      31 Jul 2008 23:47:02 32 837 A.... "C:\Windows\Temp\httproxy_clt095722E81217528220"
      30 Jul 2008 20:10:54 177 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217428853"
      29 Jul 2008 23:41:56 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355114"
      30 Jul 2008 19:39:38 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426977"
      29 Jul 2008 18:34:44 25 538 A.... "C:\Windows\Temp\httproxy_clt079056801217336682"
      30 Jul 2008 12:45:42 110 A.... "C:\Windows\Temp\httproxy_clt07A203381217402141"
      30 Jul 2008 19:22:52 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217425971"
      30 Jul 2008 20:58:26 1 123 A.... "C:\Windows\Temp\httproxy_clt078890D01217431705"
      29 Jul 2008 18:35:40 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336739"
      30 Jul 2008 19:39:04 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426942"
      30 Jul 2008 19:37:24 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426842"
      30 Jul 2008 12:51:12 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402471"
      31 Jul 2008 13:08:48 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489926"
      31 Jul 2008 13:08:58 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489936"
      29 Jul 2008 23:46:14 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355372"
      29 Jul 2008 23:44:44 197 A.... "C:\Windows\Temp\httproxy_clt078408781217355282"
      30 Jul 2008 20:04:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428494"
      29 Jul 2008 23:45:04 166 A.... "C:\Windows\Temp\httproxy_clt078408781217355302"
      30 Jul 2008 20:03:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428414"
      30 Jul 2008 20:05:16 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428514"
      29 Jul 2008 23:45:24 213 A.... "C:\Windows\Temp\httproxy_clt078408781217355322"
      29 Jul 2008 23:48:42 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355521"
      30 Jul 2008 20:03:56 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428434"
      29 Jul 2008 23:47:12 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355431"
      30 Jul 2008 20:04:16 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428454"
      30 Jul 2008 20:02:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428355"
      29 Jul 2008 23:45:54 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355352"
      29 Jul 2008 23:48:42 169 A.... "C:\Windows\Temp\httproxy_clt078529881217355521"
      29 Jul 2008 23:45:54 183 A.... "C:\Windows\Temp\httproxy_clt078529881217355352"
      30 Jul 2008 19:46:46 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427404"
      29 Jul 2008 23:49:32 182 A.... "C:\Windows\Temp\httproxy_clt078529881217355571"
      29 Jul 2008 23:46:34 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355392"
      30 Jul 2008 19:50:44 263 A.... "C:\Windows\Temp\httproxy_clt07921E001217427643"
      29 Jul 2008 18:23:14 129 A.... "C:\Windows\Temp\httproxy_clt09949A601217335992"
      29 Jul 2008 18:41:58 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337116"
      30 Jul 2008 19:28:36 3 174 A.... "C:\Windows\Temp\httproxy_clt097127D81217426315"
      29 Jul 2008 18:42:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337136"
      29 Jul 2008 18:09:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335181"
      29 Jul 2008 18:42:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337156"
      29 Jul 2008 18:42:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337176"
      29 Jul 2008 18:41:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337076"
      29 Jul 2008 18:43:18 426 A.... "C:\Windows\Temp\httproxy_clt079078901217337196"
      29 Jul 2008 18:41:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337096"
      29 Jul 2008 18:11:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335300"
      31 Jul 2008 2:21:48 110 A.... "C:\Windows\Temp\httproxy_clt07807E501217451107"
      30 Jul 2008 19:40:58 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427056"
      30 Jul 2008 19:41:28 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427086"
      30 Jul 2008 19:29:32 64 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426371"
      31 Jul 2008 14:06:26 16 384 A.... "C:\Windows\Temp\httproxy_srv0A5DB4201217493384"
      29 Jul 2008 18:05:40 1 958 A.... "C:\Windows\Temp\httproxy_clt077D0D201217334939"
      29 Jul 2008 18:37:24 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336842"
      29 Jul 2008 23:36:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354796"
      30 Jul 2008 12:37:06 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401624"
      29 Jul 2008 18:23:44 726 A.... "C:\Windows\Temp\httproxy_clt077CC9001217336022"
      29 Jul 2008 23:41:18 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355076"
      30 Jul 2008 19:36:00 45 A.... "C:\Windows\Temp\httproxy_clt078908081217426759"
      30 Jul 2008 19:28:12 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426291"
      29 Jul 2008 13:21:18 724 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317876"
      29 Jul 2008 18:25:08 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336106"
      30 Jul 2008 19:18:44 3 794 A.... "C:\Windows\Temp\httproxy_clt097127D81217425723"
      29 Jul 2008 1:55:30 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276728"
      30 Jul 2008 19:23:04 3 129 A.... "C:\Windows\Temp\httproxy_clt097127D81217425982"
      30 Jul 2008 12:45:04 142 A.... "C:\Windows\Temp\httproxy_clt07A203381217402102"
      30 Jul 2008 19:39:14 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426953"
      30 Jul 2008 12:50:14 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402412"
      29 Jul 2008 18:13:52 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335431"
      31 Jul 2008 13:07:50 204 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489868"
      31 Jul 2008 13:08:58 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489937"
      30 Jul 2008 20:04:36 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428475"
      30 Jul 2008 20:06:16 356 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428575"
      29 Jul 2008 23:46:34 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355393"
      29 Jul 2008 23:43:34 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355213"
      29 Jul 2008 23:43:44 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355223"
      29 Jul 2008 23:43:54 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355233"
      30 Jul 2008 20:05:36 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428535"
      30 Jul 2008 20:05:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428555"
      29 Jul 2008 1:47:16 312 A.... "C:\Windows\Temp\httproxy_clt043146001217276235"
      30 Jul 2008 13:13:32 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403810"
      29 Jul 2008 23:47:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355432"
      29 Jul 2008 23:46:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355373"
      30 Jul 2008 19:47:06 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427425"
      29 Jul 2008 13:23:58 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318036"
      30 Jul 2008 19:47:26 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427445"
      29 Jul 2008 18:10:34 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335232"
      29 Jul 2008 18:13:46 22 875 A.... "C:\Windows\Temp\httproxy_clt079078901217335425"
      30 Jul 2008 19:17:58 726 A.... "C:\Windows\Temp\httproxy_clt07803A301217425676"
      29 Jul 2008 18:50:26 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337624"
      29 Jul 2008 18:50:36 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337634"
      30 Jul 2008 19:25:58 23 379 A.... "C:\Windows\Temp\httproxy_clt097127D81217426157"
      29 Jul 2008 18:49:46 188 A.... "C:\Windows\Temp\httproxy_clt079078901217337585"
      29 Jul 2008 13:18:02 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317680"
      30 Jul 2008 19:29:14 213 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426352"
      30 Jul 2008 19:25:04 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426103"
      29 Jul 2008 18:56:58 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338017"
      29 Jul 2008 18:58:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338117"
      29 Jul 2008 18:38:04 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336883"
      29 Jul 2008 18:57:18 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338037"
      29 Jul 2008 18:57:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338057"
      31 Jul 2008 23:45:34 3 684 A.... "C:\Windows\Temp\httproxy_clt095722E81217528133"
      29 Jul 2008 23:37:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354856"
      30 Jul 2008 19:52:26 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427744"
      30 Jul 2008 19:52:46 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427764"
      30 Jul 2008 19:19:22 129 A.... "C:\Windows\Temp\httproxy_clt0779EA781217425760"
      29 Jul 2008 18:24:48 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336087"
      29 Jul 2008 18:37:44 25 838 A.... "C:\Windows\Temp\httproxy_clt079056801217336863"
      29 Jul 2008 18:06:34 3 699 A.... "C:\Windows\Temp\httproxy_clt079078901217334993"
      29 Jul 2008 23:51:40 312 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217355698"
      31 Jul 2008 23:45:12 110 A.... "C:\Windows\Temp\httproxy_clt095778101217528110"
      29 Jul 2008 18:24:10 14 218 A.... "C:\Windows\Temp\httproxych_tmp077E63281217336049"
      31 Jul 2008 13:08:20 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489899"
      29 Jul 2008 18:13:24 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335402"
      29 Jul 2008 18:13:34 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335412"
      29 Jul 2008 23:44:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355294"
      30 Jul 2008 13:17:00 110 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404019"
      30 Jul 2008 20:06:38 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428596"
      30 Jul 2008 19:56:50 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428008"
      29 Jul 2008 23:46:54 222 A.... "C:\Windows\Temp\httproxy_clt078408781217355413"
      30 Jul 2008 19:57:10 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428028"
      29 Jul 2008 23:48:44 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355523"
      29 Jul 2008 23:47:14 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355433"
      29 Jul 2008 18:54:10 673 A.... "C:\Windows\Temp\httproxy_clt079924581217337848"
      29 Jul 2008 23:44:16 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355254"
      29 Jul 2008 23:45:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355354"
      29 Jul 2008 13:24:48 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318087"
      29 Jul 2008 23:46:54 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355413"
      29 Jul 2008 23:47:44 259 A.... "C:\Windows\Temp\httproxy_clt078529881217355463"
      30 Jul 2008 19:22:18 3 133 A.... "C:\Windows\Temp\httproxy_clt078018201217425936"
      29 Jul 2008 18:16:52 723 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335611"
      29 Jul 2008 18:17:12 725 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335631"
      29 Jul 2008 1:58:24 110 A.... "C:\Windows\Temp\httproxy_clt043909481217276902"
      30 Jul 2008 13:15:52 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403950"
      29 Jul 2008 18:43:38 357 A.... "C:\Windows\Temp\httproxy_clt079078901217337217"
      29 Jul 2008 18:09:34 723 A.... "C:\Windows\Temp\httproxy_clt079089981217335173"
      29 Jul 2008 18:07:30 3 793 A.... "C:\Windows\Temp\httproxy_clt079078901217335048"
      29 Jul 2008 18:43:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337237"
      29 Jul 2008 18:49:08 174 A.... "C:\Windows\Temp\httproxy_clt079078901217337546"
      29 Jul 2008 18:49:28 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337566"
      30 Jul 2008 19:26:20 23 381 A.... "C:\Windows\Temp\httproxy_clt097127D81217426178"
      29 Jul 2008 18:10:00 25 512 A.... "C:\Windows\Temp\httproxy_clt079078901217335198"
      30 Jul 2008 19:28:08 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217426287"
      30 Jul 2008 19:23:46 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426024"
      29 Jul 2008 18:10:04 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335203"
      30 Jul 2008 13:15:20 32 715 A.... "C:\Windows\Temp\httproxy_clt079902481217403918"
      30 Jul 2008 13:15:02 726 A.... "C:\Windows\Temp\httproxy_clt07A225481217403900"
      30 Jul 2008 19:29:04 110 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426343"
      30 Jul 2008 19:31:44 387 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426502"
      29 Jul 2008 18:59:00 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338138"
      29 Jul 2008 18:59:20 364 A.... "C:\Windows\Temp\httproxy_clt099434301217338158"
      29 Jul 2008 18:58:00 364 A.... "C:\Windows\Temp\httproxy_clt099434301217338078"
      29 Jul 2008 18:58:20 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338098"
      29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt077D40381217336744"
      31 Jul 2008 23:45:26 3 696 A.... "C:\Windows\Temp\httproxy_clt095722E81217528124"
      30 Jul 2008 19:53:06 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427785"
      30 Jul 2008 0:44:26 110 A.... "C:\Windows\Temp\httproxy_clt07A214401217358864"
      30 Jul 2008 12:36:58 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401616"
      29 Jul 2008 18:04:02 198 A.... "C:\Windows\Temp\httproxy_clt07A225481217334840"
      29 Jul 2008 23:42:48 61 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355167"
      29 Jul 2008 13:22:34 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217317952"
      29 Jul 2008 18:35:26 25 894 A.... "C:\Windows\Temp\httproxy_clt079056801217336725"
      29 Jul 2008 18:30:58 3 800 A.... "C:\Windows\Temp\httproxy_clt079056801217336456"
      31 Jul 2008 23:51:48 726 A.... "C:\Windows\Temp\httproxy_clt077BB8B01217528506"
      29 Jul 2008 18:39:16 264 A.... "C:\Windows\Temp\httproxy_clt079078901217336954"
      29 Jul 2008 18:39:56 295 A.... "C:\Windows\Temp\httproxy_clt079078901217336994"
      29 Jul 2008 18:27:28 726 A.... "C:\Windows\Temp\httproxy_clt0798CF301217336247"
      30 Jul 2008 19:39:46 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426985"
      30 Jul 2008 19:40:18 3 707 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427017"
      29 Jul 2008 13:21:52 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317911"
      30 Jul 2008 19:42:48 3 793 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427167"
      30 Jul 2008 12:49:46 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402384"
      30 Jul 2008 0:51:22 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359280"
      31 Jul 2008 13:09:30 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489969"
      29 Jul 2008 18:55:36 264 A.... "C:\Windows\Temp\httproxy_clt099434301217337935"
      29 Jul 2008 18:55:56 295 A.... "C:\Windows\Temp\httproxy_clt099434301217337955"
      30 Jul 2008 19:13:16 129 A.... "C:\Windows\Temp\httproxy_clt0791B7D01217425394"
      31 Jul 2008 13:09:00 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489939"
      29 Jul 2008 23:44:36 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355275"
      29 Jul 2008 23:46:16 182 A.... "C:\Windows\Temp\httproxy_clt078408781217355375"
      29 Jul 2008 23:49:46 194 A.... "C:\Windows\Temp\httproxy_clt078408781217355584"
      29 Jul 2008 23:50:04 62 A.... "C:\Windows\Temp\httproxy_clt078408781217355603"
      30 Jul 2008 20:06:58 425 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428616"
      29 Jul 2008 23:43:36 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355215"
      29 Jul 2008 23:43:46 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355225"
      29 Jul 2008 23:43:56 189 A.... "C:\Windows\Temp\httproxy_clt078408781217355235"
      30 Jul 2008 19:57:30 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428049"
      30 Jul 2008 19:57:50 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428069"
      30 Jul 2008 13:13:54 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403832"
      29 Jul 2008 23:47:36 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355454"
      29 Jul 2008 23:49:16 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355554"
      29 Jul 2008 23:49:26 189 A.... "C:\Windows\Temp\httproxy_clt078529881217355564"
      29 Jul 2008 23:47:56 294 A.... "C:\Windows\Temp\httproxy_clt078529881217355474"
      30 Jul 2008 19:51:34 263 A.... "C:\Windows\Temp\httproxy_clt077A7B001217427692"
      29 Jul 2008 18:12:24 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335343"
      30 Jul 2008 13:16:00 7 041 A.... "C:\Windows\Temp\httproxy_clt079902481217403959"
      29 Jul 2008 18:44:20 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337258"
      29 Jul 2008 18:11:20 25 839 A.... "C:\Windows\Temp\httproxy_clt079078901217335278"
      29 Jul 2008 18:14:38 22 951 A.... "C:\Windows\Temp\httproxy_clt079078901217335477"
      29 Jul 2008 18:44:40 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337278"
      29 Jul 2008 18:49:58 214 A.... "C:\Windows\Temp\httproxy_clt079078901217337597"
      29 Jul 2008 18:45:00 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337298"
      29 Jul 2008 18:38:10 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336889"
      30 Jul 2008 19:28:46 58 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426324"
      30 Jul 2008 19:41:20 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427079"
      30 Jul 2008 19:29:46 110 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426384"
      29 Jul 2008 18:38:16 333 A.... "C:\Windows\Temp\httproxy_clt077D40381217336895"
      29 Jul 2008 18:05:56 726 A.... "C:\Windows\Temp\httproxy_clt099434301217334955"
      29 Jul 2008 18:59:40 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338179"
      29 Jul 2008 18:25:00 726 A.... "C:\Windows\Temp\httproxy_clt099434301217336099"
      30 Jul 2008 12:39:58 110 A.... "C:\Windows\Temp\httproxy_clt079078901217401796"
      29 Jul 2008 19:00:00 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338199"
      31 Jul 2008 2:18:12 99 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450890"
      30 Jul 2008 12:36:48 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401607"
      29 Jul 2008 18:06:40 723 A.... "C:\Windows\Temp\httproxy_clt099D68381217334998"
      30 Jul 2008 19:53:26 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427805"
      29 Jul 2008 23:41:30 112 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355089"
      30 Jul 2008 19:28:24 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426303"
      30 Jul 2008 19:28:34 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426313"
      29 Jul 2008 23:42:10 99 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355128"
      30 Jul 2008 12:50:16 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402415"
      30 Jul 2008 19:42:30 3 701 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427148"
      30 Jul 2008 0:52:12 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359330"
      30 Jul 2008 0:49:42 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359181"
      29 Jul 2008 18:14:06 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335444"
      29 Jul 2008 18:56:18 295 A.... "C:\Windows\Temp\httproxy_clt099434301217337976"
      29 Jul 2008 18:56:38 364 A.... "C:\Windows\Temp\httproxy_clt099434301217337996"
      29 Jul 2008 23:49:36 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355575"
      29 Jul 2008 23:48:16 325 A.... "C:\Windows\Temp\httproxy_clt078408781217355495"
      30 Jul 2008 19:40:12 418 A.... "C:\Windows\Temp\httproxy_clt078908081217427010"
      29 Jul 2008 23:48:36 394 A.... "C:\Windows\Temp\httproxy_clt078408781217355515"
      29 Jul 2008 23:43:48 145 A.... "C:\Windows\Temp\httproxy_clt078408781217355226"
      29 Jul 2008 23:50:26 99 A.... "C:\Windows\Temp\httproxy_clt078408781217355624"
      30 Jul 2008 20:07:18 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428637"
      30 Jul 2008 20:07:38 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428657"
      29 Jul 2008 23:47:36 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355455"
      29 Jul 2008 23:49:16 294 A.... "C:\Windows\Temp\httproxy_clt078408781217355555"
      30 Jul 2008 13:13:44 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403823"
      29 Jul 2008 23:45:58 179 A.... "C:\Windows\Temp\httproxy_clt078529881217355356"
      29 Jul 2008 23:46:38 175 A.... "C:\Windows\Temp\httproxy_clt078529881217355396"
      29 Jul 2008 23:49:56 426 A.... "C:\Windows\Temp\httproxy_clt078529881217355595"
      30 Jul 2008 19:48:50 325 A.... "C:\Windows\Temp\httproxy_clt07921E001217427528"
      30 Jul 2008 19:49:10 325 A.... "C:\Windows\Temp\httproxy_clt07921E001217427548"
      29 Jul 2008 18:12:12 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335330"
      30 Jul 2008 19:28:30 3 161 A.... "C:\Windows\Temp\httproxy_clt097127D81217426309"
      30 Jul 2008 19:35:22 487 A.... "C:\Windows\Temp\httproxy_clt096826E81217426721"
      29 Jul 2008 18:45:20 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337319"
      29 Jul 2008 18:45:40 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337339"
      29 Jul 2008 18:46:00 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337359"
      29 Jul 2008 18:49:20 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337558"
      30 Jul 2008 19:28:20 3 124 A.... "C:\Windows\Temp\httproxy_clt097127D81217426299"
      29 Jul 2008 23:39:50 110 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217354989"
      30 Jul 2008 19:32:26 418 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426544"
      30 Jul 2008 19:24:48 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426086"
      30 Jul 2008 19:39:26 1 957 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217426964"
      30 Jul 2008 19:43:50 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427229"
      31 Jul 2008 23:45:08 3 598 A.... "C:\Windows\Temp\httproxy_clt095722E81217528106"
      30 Jul 2008 19:55:08 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427906"
      30 Jul 2008 19:53:48 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427826"
      30 Jul 2008 19:55:28 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427926"
      30 Jul 2008 19:54:08 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427846"
      30 Jul 2008 19:54:28 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427866"
      29 Jul 2008 13:20:10 726 A.... "C:\Windows\Temp\httproxy_clt06FA66B81217317808"
      30 Jul 2008 19:26:26 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426185"
      30 Jul 2008 19:18:38 3 798 A.... "C:\Windows\Temp\httproxy_clt097127D81217425717"
      30 Jul 2008 19:39:02 487 A.... "C:\Windows\Temp\httproxy_clt07895D301217426940"
      29 Jul 2008 13:24:48 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217318087"
      29 Jul 2008 18:16:22 23 257 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335580"
      31 Jul 2008 23:49:54 110 A.... "C:\Windows\Temp\httproxy_clt095756001217528392"
      30 Jul 2008 12:54:56 110 A.... "C:\Windows\Temp\httproxy_clt079045781217402695"
      29 Jul 2008 18:15:02 23 997 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335500"
      30 Jul 2008 19:39:28 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426967"
      31 Jul 2008 23:42:40 110 A.... "C:\Windows\Temp\httproxy_clt096001C81217527959"
      31 Jul 2008 2:25:32 110 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451331"
      30 Jul 2008 13:13:20 32 733 A.... "C:\Windows\Temp\httproxy_clt077CB7F81217403798"
      30 Jul 2008 20:08:00 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428678"
      29 Jul 2008 23:49:48 166 A.... "C:\Windows\Temp\httproxy_clt078408781217355586"
      30 Jul 2008 20:08:20 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428698"
      30 Jul 2008 13:13:40 32 715 A.... "C:\Windows\Temp\httproxy_clt077CB7F81217403818"
      29 Jul 2008 23:48:28 222 A.... "C:\Windows\Temp\httproxy_clt078408781217355506"
      29 Jul 2008 18:35:44 25 941 A.... "C:\Windows\Temp\httproxy_clt078256E01217336742"
      29 Jul 2008 23:43:38 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355217"
      29 Jul 2008 23:45:28 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355327"
      29 Jul 2008 18:31:04 3 794 A.... "C:\Windows\Temp\httproxy_clt078256E01217336463"
      29 Jul 2008 23:48:58 325 A.... "C:\Windows\Temp\httproxy_clt078408781217355536"
      29 Jul 2008 23:45:48 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355347"
      29 Jul 2008 23:42:50 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355168"
      29 Jul 2008 23:49:28 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355566"
      30 Jul 2008 19:49:30 325 A.... "C:\Windows\Temp\httproxy_clt07921E001217427569"
      29 Jul 2008 23:47:28 257 A.... "C:\Windows\Temp\httproxy_clt078529881217355446"
      30 Jul 2008 13:12:56 723 A.... "C:\Windows\Temp\httproxy_clt099401181217403774"
      29 Jul 2008 23:46:18 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355377"
      29 Jul 2008 23:49:48 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355586"
      30 Jul 2008 13:16:04 723 A.... "C:\Windows\Temp\httproxy_clt099423281217403963"
      30 Jul 2008 13:16:24 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403983"
      29 Jul 2008 18:16:46 726 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335604"
      29 Jul 2008 18:13:22 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335401"
      29 Jul 2008 18:14:22 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335461"
      30 Jul 2008 19:24:28 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426067"
      30 Jul 2008 19:35:44 487 A.... "C:\Windows\Temp\httproxy_clt096826E81217426742"
      29 Jul 2008 18:11:28 723 A.... "C:\Windows\Temp\httproxy_clt079089981217335286"
      29 Jul 2008 18:49:20 167 A.... "C:\Windows\Temp\httproxy_clt079078901217337559"
      29 Jul 2008 18:49:30 188 A.... "C:\Windows\Temp\httproxy_clt079078901217337569"
      29 Jul 2008 18:49:40 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337579"
      30 Jul 2008 19:21:02 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425861"
      30 Jul 2008 19:14:42 129 A.... "C:\Windows\Temp\httproxy_clt077687481217425481"
      29 Jul 2008 13:20:34 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317833"
      30 Jul 2008 19:25:28 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426127"
      29 Jul 2008 13:11:14 110 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317272"
      31 Jul 2008 23:45:58 3 668 A.... "C:\Windows\Temp\httproxy_clt095722E81217528157"
      30 Jul 2008 19:54:48 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427887"
      30 Jul 2008 19:56:28 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427987"
      30 Jul 2008 19:55:48 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427947"
      30 Jul 2008 19:56:08 363 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427967"
      30 Jul 2008 19:19:46 129 A.... "C:\Windows\Temp\httproxy_clt0779EA781217425784"
      30 Jul 2008 19:26:48 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426206"
      30 Jul 2008 19:18:00 3 705 A.... "C:\Windows\Temp\httproxy_clt097127D81217425678"
      29 Jul 2008 18:07:06 3 799 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335024"
      29 Jul 2008 13:18:54 32 659 A.... "C:\Windows\Temp\httproxy_clt06FB00001217317733"
      29 Jul 2008 13:21:46 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317904"
      31 Jul 2008 2:26:44 17 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451402"
      30 Jul 2008 19:12:58 129 A.... "C:\Windows\Temp\httproxy_clt0791B7D01217425377"
      30 Jul 2008 19:20:52 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425851"
      29 Jul 2008 23:47:58 186 A.... "C:\Windows\Temp\httproxy_clt078408781217355477"
      29 Jul 2008 23:49:38 182 A.... "C:\Windows\Temp\httproxy_clt078408781217355577"
      29 Jul 2008 23:45:00 173 A.... "C:\Windows\Temp\httproxy_clt078408781217355298"
      29 Jul 2008 23:46:40 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355398"
      29 Jul 2008 23:45:10 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355308"
      30 Jul 2008 20:08:40 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428719"
      30 Jul 2008 13:52:44 110 A.... "C:\Windows\Temp\httproxy_clt078FF0501217406162"
      30 Jul 2008 20:09:00 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428739"
      29 Jul 2008 23:45:40 240 A.... "C:\Windows\Temp\httproxy_clt078408781217355338"
      29 Jul 2008 23:47:08 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355427"
      29 Jul 2008 23:48:58 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355537"
      29 Jul 2008
      0
      1. maxacaen > maxacaen
         
        [b]Program Folders[/b]:

        C:\Program Files\

        Acronis
        Activation Assistant for the 2007 Microsoft Office suites
        Adobe
        AdvancedTool
        AV9
        Avira
        BitDefender
        Common Files
        Cyberlink
        Dofus
        Everest Poker
        Fichiers communs
        FlashFXP
        Google
        Hitman Pro
        InstallShield Installation Information
        Intel
        Internet Explorer
        Java
        Kaspersky Lab
        K-Lite Codec Pack
        Malwarebytes' Anti-Malware
        Microsoft Games
        Microsoft Office
        Microsoft Small Business
        Microsoft SQL Server
        Microsoft SQL Server Compact Edition
        Microsoft Visual Studio
        Microsoft Works
        Microsoft.NET
        Movie Maker
        Mozilla Firefox
        MSBuild
        MSN
        MSXML 4.0
        Navilog1
        NEC Computers
        OO Software
        Picasa2
        Realtek
        Reference Assemblies
        Roxio
        Samsung
        Spybot - Search & Destroy
        Synaptics
        System Control Manager
        Toshiba
        Trend Micro
        Ulead Systems
        Uninstall Information
        Windows Calendar
        Windows Collaboration
        Windows Defender
        Windows Journal
        Windows Live
        Windows Live Favorites
        Windows Live Toolbar
        Windows Mail
        Windows Media Components
        Windows Media Player
        Windows NT
        Windows Photo Gallery
        Windows Sidebar
        WinRAR

        C:\Program Files\Common Files\

        Acronis
        Adobe
        Adobe Systems Shared
        BitDefender
        DESIGNER
        InstallShield
        microsoft shared
        Roxio Shared
        Services
        snp2std
        Sonic Shared
        SpeechEngines
        SureThing Shared
        System
        Ulead Systems
        Vbox
        WindowsLiveInstaller


        [b]Add/Remove Programs[/b]:

        Activation Assistant for the 2007 Microsoft Office suites
        Adobe Photoshop 7.0
        Adobe Premiere Pro 2.0
        Adobe Shockwave Player
        Adobe Reader 8
        Adobe ExtendScript Toolkit 2
        AdvancedTool
        Avira AntiVir Personal – Free Antivirus
        Audio Realtek v6.0.1.5413
        Bluetooth V5
        Gestionnaire de contacts professionnels pour Outlook 2007 SP1
        USB Camera
        Creator 9
        DJMixStation 2 feat. Virtual DJ
        Online Documentation
        Everest Poker (Remove Only)
        Intel(R) Graphics Media Accelerator Driver
        HijackThis 2.0.2
        K-Lite Codec Pack 3.8.0 Full
        Microsoft .NET Framework 1.1 Hotfix (KB929729)
        Malwarebytes' Anti-Malware
        Microsoft .NET Framework 1.1
        Mozilla Firefox (2.0.0.16)
        PowerDVD 7
        Picasa 2
        2007 Microsoft Office system
        Logiciel Intel(R) PROSet/Wireless
        Intel(R) PRO Network Connections Drivers
        SAMSUNG Mobile Modem Driver Set
        Samsung Mobile phone USB driver Software
        SAMSUNG Mobile USB Modem Software
        SAMSUNG Mobile USB Modem 1.0 Software
        Synaptics Pointing Device Driver
        Mouse Synaptics v9.1.11
        Video Intel v7.14.10.1244
        Windows Live Toolbar
        Codeur Windows Media Série 9
        Archiveur WinRAR
        Windows Live Toolbar
        Extension de Windows Live Toolbar (Windows Live Toolbar)
        Menus intelligents (Windows Live Toolbar)
        Acronis Disk Director Suite
        Google Toolbar for Internet Explorer
        Adobe ExtendScript Toolkit 2
        Roxio Activation Module
        Windows Live Writer
        Microsoft Office 2007 Primary Interop Assemblies
        O&O Defrag Professional Edition
        Activation Assistant for the 2007 Microsoft Office suites
        PowerDVD
        Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)
        Gestionnaire de contacts professionnels pour Outlook 2007 SP1
        Windows Media Player Firefox Plugin
        USB2.0 PC Camera (SN9C201&202)
        Ulead VideoStudio 7 SE DVD
        Windows Live Favorites pour Windows Live Toolbar
        Adobe Stock Photos 1.0
        Surligneur (Windows Live Toolbar)
        mPfMgr
        mHelp
        Adobe Common File Installer
        Adobe Help Center 2.0
        Microsoft Office Professional Edition 2003
        Microsoft Office Access MUI (French) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Excel MUI (French) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office PowerPoint MUI (French) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Publisher MUI (French) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Outlook MUI (French) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Word MUI (French) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Proof (Arabic) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Proof (German) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Proof (English) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Proof (French) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Proof (Dutch) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Proof (Spanish) 2007
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Microsoft Office Proofing (French) 2007
        Microsoft Office Shared MUI (French) 2007
        Microsoft Office Language Pack 2007 Service Pack 1 (SP1)
        Microsoft Office 2003 Web Components
        Microsoft Office Professional Hybrid 2007
        Security Update for Office 2007 (KB947801)
        Update for Outlook 2007 Junk Email Filter (kb953463)
        Update for Microsoft Office Outlook 2007 (KB952142)
        Security Update for Excel 2007 (KB946974)
        Security Update for Microsoft Office system 2007 (KB951808)
        Update for Office 2007 (KB946691)
        Security Update for Microsoft Office Word 2007 (KB950113)
        2007 Microsoft Office Suite Service Pack 1 (SP1)
        Security Update for Microsoft Office Publisher 2007 (KB950114)
        FlashFXP v3
        mDriver
        Galerie de photos Windows Live
        Microsoft Office Small Business Connectivity Components
        Adobe Reader 8.1.2 - Français
        Adobe Bridge 1.0
        Assistant de connexion Windows Live
        Adobe Setup
        Roxio Creator 9 LE
        Windows Live Messenger
        MSXML 4.0 SP2 (KB936181)
        Samsung PC Studio 3
        Windows Live Mail
        Samsung PC Studio 3
        Microsoft .NET Framework 1.1
        Bluetooth Stack for Windows by Toshiba
        Google Toolbar for Internet Explorer
        Codeur Windows Media Série 9
        System Control Manager
        Microsoft SQL Server 2005 Compact Edition [ENU]
        mMHouse
        Realtek High Definition Audio Driver
        mCore
        Adobe Premiere Pro 2.0
        Windows Live installer
        Lop S&D


        [b]Run Values[/b]:

        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
        @=""
        "MSConfig"="\"C:\\Windows\\system32\\msconfig.exe\" /auto"

        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
        @=""

        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
        "Installed"="1"
        @=""

        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
        "Installed"="1"
        "NoChange"="1"
        @=""

        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
        "Installed"="1"
        @=""


        [b]Bot Check[/b]:

        SERVICE_NAME: wscsvc
        DISPLAY_NAME : Centre de sécurité
        START_TYPE : 4 DISABLED

        SERVICE_NAME: sharedaccess
        DISPLAY_NAME : Partage de connexion Internet (ICS)
        START_TYPE : 4 DISABLED

        SERVICE_NAME: wuauserv
        DISPLAY_NAME : Windows Update
        START_TYPE : 4 DISABLED

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole]
        "EnableDCOM"="Y"

        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
        "restrictanonymous"=dword:00000000

        [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update]
        "AUOptions"=dword:00000002

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
        "UacDisableNotify"=dword:00000001
        "AntiVirusOverride"=dword:00000000
        "AntiSpywareOverride"=dword:00000000
        "FirewallOverride"=dword:00000000

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
        "WaitToKillServiceTimeout"="20000"

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
        "Shell"="explorer.exe"
        "Userinit"="C:\\Windows\\system32\\userinit.exe,"

        [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shell extensions]


        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters]
        "TransportBindName"="\\Device\\"


        [b]ShellExecuteHooks[/b]:


        [b]Environment[/b]:


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager\environment
        ComSpec REG_EXPAND_SZ %SystemRoot%\system32\cmd.exe
        OS REG_SZ Windows_NT
        Path REG_EXPAND_SZ %SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\;C:\Program Files\Samsung\Samsung PC Studio 3\;C:\Program Files\Common Files\Ulead Systems\MPEG;C:\Program Files\Common Files\Adobe\AGL
        PATHEXT REG_SZ .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
        TEMP REG_EXPAND_SZ %SystemRoot%\TEMP
        TMP REG_EXPAND_SZ %SystemRoot%\TEMP
        USERNAME REG_SZ SYSTEM
        windir REG_EXPAND_SZ %SystemRoot%
        RoxioCentral REG_SZ C:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\

        [b]SecurityProviders[/b]:

        HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders
        SecurityProviders REG_SZ credssp.dll


        [b]Authentication Packages[/b]:

        HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa
        Authentication Packages REG_MULTI_SZ msv1_0\0\0


        [b]Subsystem Startup[/b]:

        [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems]
        "Windows"="%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16"


        [b]Midi Drivers[/b]:

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
        "midi"="wdmaud.drv"
        "midi1"="wdmaud.drv"


        [b]Non-Default IFEO Debugger[/b]:


        [b]Non-Default Installed Components[/b]:


        [b]Non-Default Safeboot Minimal[/b]:


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\appinfo
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\keyiso
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\ntds
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\profsvc
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\sacsvr
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\swprv
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\tabletinputservice
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\tbs
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\trustedinstaller
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgr.sys
        <NO NAME> REG_SZ Driver


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgrx.sys
        <NO NAME> REG_SZ Driver


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\windefend
        <NO NAME> REG_SZ Service


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{6bdd1fc1-810f-11d0-bec7-08002be2092f}
        <NO NAME> REG_SZ IEEE 1394 Bus host controllers


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{d48179be-ec20-11d1-b6b8-00c04fa372a7}
        <NO NAME> REG_SZ SBP2 IEEE 1394 Devices


        HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{d94ee5d8-d189-4994-83d2-f68d7d41b0e6}
        <NO NAME> REG_SZ SecurityDevices


        [b]File Associations[/b]:


        [HKEY_CLASSES_ROOT\batfile\shell\open\command]
        @="\"%1\" %*"

        [HKEY_CLASSES_ROOT\cmdfile\shell\open\command]
        @="\"%1\" %*"

        [HKEY_CLASSES_ROOT\comfile\shell\open\command]
        @="\"%1\" %*"

        [HKEY_CLASSES_ROOT\exefile\shell\open\command]
        @="\"%1\" %*"
        "IsolatedCommand"="\"%1\" %*"

        [HKEY_CLASSES_ROOT\htafile\shell\open\command]
        @="C:\\Windows\\system32\\mshta.exe \"%1\" %*"

        [HKEY_CLASSES_ROOT\http\shell\open\command]
        @="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

        [HKEY_CLASSES_ROOT\htmlfile\shell\open\command]
        @="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

        [HKEY_CLASSES_ROOT\regedit\shell\open\command]
        @="regedit.exe \"%1\""

        [HKEY_CLASSES_ROOT\regfile\shell\open\command]
        @="regedit.exe \"%1\" %*"

        [HKEY_CLASSES_ROOT\scrfile\shell\open\command]
        @="\"%1\" %*"

        [HKEY_CLASSES_ROOT\txtfile\shell\open\command]
        @="%SystemRoot%\system32\NOTEPAD.EXE %1"


        [b]Finished![/b]
        0
  16. maxacaen
     
    oui mais je sais lancer un mode sans echec avec f8 c'est juste que quand j'essaye il ne veut pas lancer le programme par contre quand je le lance avec le mode ms config ça fonctionne !
    0
  17. maxacaen
     
    bon alors bonne nouvelle antivir m'a trouvé antivirus 2009 et me l'a supprimé, l'écran bleu n'apparait plus non plus ça a l'air d'aller mais j'aimerai bien en avoir confirmation !
    0