Probleme de virus

Bonjour,
j'ai de multi problemes avec mon ordinateur depuis que mon petit frere le sacripant a osé y touché,
il y a des fenetres internet qui s'ouvrent toutes seules, un antivirus 2009 qui me harcellent, des programmes que j'aimerai désinstaller mais qui n'apparaissent pas dans le panneau de config, un logiciel play's mp3 que j'ai desinstallé mais qui est toujours dans mon menu demarrer, bref c'est la merde !
j'ai telechargé unilog j'ai fais choix 1 recherche voila ce que ça donne:

Search Navipromo version 3.6.1 commencé le 01/08/2008 à 2:33:31,66

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "portable"

Mise à jour le 19.07.2008 à 20h00 par IL-MAFIOSO

Microsoft Windows Vista 6.0.6000
Internet Explorer : 7.0.6000.16681
Système de fichiers : NTFS

Recherche executé en mode normal

*** Recherche Programmes installés ***

*** Recherche dossiers dans "C:\Windows" ***

*** Recherche dossiers dans "C:\Program Files" ***

*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1\programs" ***

*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1" ***

*** Recherche dossiers dans "C:\ProgramData" ***

*** Recherche dossiers dans "c:\users\portable\appdata\roaming\micros~1\windows\startm~1\programs" ***

*** Recherche dossiers dans "C:\Users\portable\AppData\Local\virtualstore\Program Files" ***

*** Recherche dossiers dans "C:\Users\portable\AppData\Roaming" ***

*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier Navipromo trouvé

*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\Windows\system32" *

* Recherche dans "C:\Users\portable\AppData\Local\Microsoft" *

* Recherche dans "C:\Users\portable\AppData\Local" *

*** Recherche fichiers ***

*** Recherche clés spécifiques dans le Registre ***

*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :

2)Recherche Heuristique :

* Dans "C:\Windows\system32" :

* Dans "C:\Users\portable\AppData\Local\Microsoft" :

* Dans "C:\Users\portable\AppData\Local" :

3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche fichiers connus :

*** Analyse terminée le 01/08/2008 à 2:45:33,54 ***

merci beaucoup
maxacaen
Configuration: Windows Vista
Firefox 2.0.0.16

17 réponses

Résumé de la discussion

Problème récurrent : un ordinateur sous Windows Vista présente des fenêtres Internet qui s'ouvrent seules, un antivirus fantôme, des programmes invisibles dans le panneau de configuration et des éléments persistants dans le menu démarrer. Des éléments de diagnostic, dont un rapport NaviPromo et un log HijackThis, laissent apparaître des composants potentiellement malveillants et des processus actifs, nécessitant vérification avant toute suppression. En cas de doute, la discussion met en avant la prudence: plusieurs résultats peuvent être légitimes, et la désinfection sans avis expert est déconseillée, afin d'éviter des suppressions incorrectes. Pour conclure, des éléments comme des fichiers dans le dossier Temp et des entrées de démarrage indiquent une infection potentielle et nécessitent l'analyse d'un spécialiste avant des actions.

Bobot (l’IA à votre service)
  1. et voila le rapport avec le 2eme programme:

    --------------------\\ Lop S&D 4.2.2-4 XP/Vista

    [ Windows VISTA (NT 6.0) Workstation Build 6000 ]
    [ USER : portable ] [ "C:\Lop SD" ] [ Selection : 1 ]
    [ 01/08/2008 | 2:57:11,44 ] [ PC : PC-DE-PORTABLE ]
    [ MAJ : 25-07-2008 | 17:45 ]
    [ UAC => 0 ]

    --------------------\\ Listing des dossiers dans Local

    [25/06/2008|20:57] C:\Users\portable\AppData\Local\Adobe
    [01/02/2008|16:09] C:\Users\portable\AppData\Local\Application Data
    [28/07/2008|14:43] C:\Users\portable\AppData\Local\ApplicationHistory
    [06/07/2008|13:57] C:\Users\portable\AppData\Local\d3d9caps.dat
    [07/07/2008|22:06] C:\Users\portable\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [11/03/2008|23:59] C:\Users\portable\AppData\Local\fusioncache.dat
    [25/06/2008|20:53] C:\Users\portable\AppData\Local\GDIPFONTCACHEV1.DAT
    [31/05/2008|04:12] C:\Users\portable\AppData\Local\Google
    [01/02/2008|16:09] C:\Users\portable\AppData\Local\Historique
    [01/08/2008|01:03] C:\Users\portable\AppData\Local\IconCache.db
    [29/07/2008|21:50] C:\Users\portable\AppData\Local\Installer2384
    [01/08/2008|02:45] C:\Users\portable\AppData\Local\Microsoft
    [14/06/2008|12:24] C:\Users\portable\AppData\Local\Microsoft Games
    [13/03/2008|04:22] C:\Users\portable\AppData\Local\Microsoft Help
    [13/03/2008|06:05] C:\Users\portable\AppData\Local\MicroVision Applications
    [19/03/2008|00:00] C:\Users\portable\AppData\Local\Mozilla
    [28/07/2008|14:07] C:\Users\portable\AppData\Local\RegFreeze
    [01/08/2008|02:55] C:\Users\portable\AppData\Local\Temp
    [01/02/2008|16:09] C:\Users\portable\AppData\Local\Temporary Internet Files
    [01/02/2008|16:11] C:\Users\portable\AppData\Local\Toshiba
    [02/02/2008|07:35] C:\Users\portable\AppData\Local\VirtualStore

    --------------------\\ Tâches planifiées dans C:\Windows\tasks

    [01/08/2008 02:32][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
    [31/07/2008 22:30][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{836029E6-8F6F-49C6-B6C0-9DBD7C8AF31E}.job
    [01/08/2008 01:04][--ah-----] C:\Windows\tasks\SA.DAT
    [01/08/2008 01:03][--a------] C:\Windows\tasks\SCHEDLGU.TXT

    --------------------\\ Listing des dossiers dans C:\ProgramData

    [25/09/2007|16:08] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
    [02/02/2008|07:56] C:\ProgramData\Acronis
    [25/06/2008|16:43] C:\ProgramData\Adobe
    [25/06/2008|20:50] C:\ProgramData\Adobe Systems
    [02/11/2006|18:32] C:\ProgramData\Application Data
    [01/02/2008|16:05] C:\ProgramData\Bureau
    [16/05/2008|02:15] C:\ProgramData\CyberLink
    [02/11/2006|18:32] C:\ProgramData\Desktop
    [02/11/2006|18:32] C:\ProgramData\Documents
    [01/02/2008|16:05] C:\ProgramData\Favoris
    [02/11/2006|18:32] C:\ProgramData\Favorites
    [16/05/2008|20:30] C:\ProgramData\FlashFXP
    [25/06/2008|22:19] C:\ProgramData\FLEXnet
    [31/03/2008|23:18] C:\ProgramData\Google
    [25/09/2007|16:14] C:\ProgramData\InstallShield
    [02/02/2008|06:53] C:\ProgramData\Intel
    [01/08/2008|01:05] C:\ProgramData\Kaspersky Lab
    [28/05/2008|17:04] C:\ProgramData\LauncherAccess.dt
    [01/02/2008|16:05] C:\ProgramData\Menu D‚marrer
    [01/08/2008|00:32] C:\ProgramData\Microsoft
    [01/08/2008|00:55] C:\ProgramData\Microsoft Help
    [01/02/2008|16:05] C:\ProgramData\ModŠles
    [20/03/2008|10:34] C:\ProgramData\ntuser.pol
    [18/03/2008|21:24] C:\ProgramData\Prevx
    [02/02/2008|06:53] C:\ProgramData\Roaming
    [13/03/2008|08:19] C:\ProgramData\Roxio
    [25/09/2007|16:13] C:\ProgramData\Sonic
    [01/08/2008|00:23] C:\ProgramData\Spybot - Search & Destroy
    [02/11/2006|18:32] C:\ProgramData\Start Menu
    [01/08/2008|00:34] C:\ProgramData\TEMP
    [02/11/2006|18:32] C:\ProgramData\Templates
    [14/06/2008|19:02] C:\ProgramData\Ulead Systems
    [25/06/2008|16:38] C:\ProgramData\WinZip
    [20/03/2008|23:13] C:\ProgramData\WLInstaller

    --------------------\\ Listing des dossiers dans C:\Program Files

    [02/02/2008|07:46] C:\Program Files\Acronis
    [25/09/2007|16:08] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
    [31/07/2008|12:30] C:\Program Files\Adobe
    [01/08/2008|01:52] C:\Program Files\AdvancedTool
    [31/07/2008|23:53] C:\Program Files\AV9
    [28/07/2008|22:01] C:\Program Files\BitDefender
    [01/08/2008|02:26] C:\Program Files\Common Files
    [25/09/2007|16:16] C:\Program Files\Cyberlink
    [28/07/2008|16:06] C:\Program Files\desktop.ini
    [06/03/2008|06:02] C:\Program Files\Dofus
    [30/07/2008|23:38] C:\Program Files\Everest Poker
    [27/07/2008|18:53] C:\Program Files\FBrowserAdvisor
    [01/08/2008|02:54] C:\Program Files\FBrowsingAdvisor
    [01/02/2008|16:05] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
    [16/05/2008|20:30] C:\Program Files\FlashFXP
    [06/06/2008|14:46] C:\Program Files\Google
    [01/08/2008|00:33] C:\Program Files\Hitman Pro
    [14/06/2008|18:58] C:\Program Files\InstallShield Installation Information
    [02/02/2008|06:51] C:\Program Files\Intel
    [28/07/2008|16:02] C:\Program Files\Internet Explorer
    [01/04/2008|01:04] C:\Program Files\Java
    [01/08/2008|00:45] C:\Program Files\Kaspersky Lab
    [12/03/2008|23:04] C:\Program Files\K-Lite Codec Pack
    [02/04/2008|20:48] C:\Program Files\Microsoft Games
    [25/09/2007|16:07] C:\Program Files\Microsoft Office
    [25/09/2007|16:08] C:\Program Files\Microsoft Small Business
    [11/03/2008|23:16] C:\Program Files\Microsoft SQL Server
    [20/03/2008|23:23] C:\Program Files\Microsoft SQL Server Compact Edition
    [25/09/2007|16:03] C:\Program Files\Microsoft Visual Studio
    [25/09/2007|16:03] C:\Program Files\Microsoft Works
    [11/03/2008|23:15] C:\Program Files\Microsoft.NET
    [13/06/2008|19:58] C:\Program Files\Movie Maker
    [27/07/2008|18:53] C:\Program Files\Mozilla Firefox
    [02/11/2006|18:07] C:\Program Files\MSBuild
    [02/11/2006|18:07] C:\Program Files\MSN
    [11/03/2008|23:57] C:\Program Files\MSXML 4.0
    [01/08/2008|02:45] C:\Program Files\Navilog1
    [11/03/2008|23:16] C:\Program Files\NEC Computers
    [11/03/2008|23:32] C:\Program Files\OO Software
    [01/06/2008|19:16] C:\Program Files\Picasa2
    [25/09/2007|15:47] C:\Program Files\Realtek
    [02/11/2006|18:07] C:\Program Files\Reference Assemblies
    [28/07/2008|14:06] C:\Program Files\RegFreeze
    [25/09/2007|16:13] C:\Program Files\Roxio
    [29/03/2008|03:40] C:\Program Files\Samsung
    [18/03/2008|21:49] C:\Program Files\Spybot - Search & Destroy
    [26/09/2007|00:51] C:\Program Files\Synaptics
    [25/09/2007|15:48] C:\Program Files\System Control Manager
    [25/09/2007|15:50] C:\Program Files\Toshiba
    [14/06/2008|18:58] C:\Program Files\Ulead Systems
    [02/11/2006|18:31] C:\Program Files\Uninstall Information
    [26/09/2007|00:57] C:\Program Files\Windows Calendar
    [26/09/2007|00:57] C:\Program Files\Windows Collaboration
    [26/09/2007|01:11] C:\Program Files\Windows Defender
    [26/09/2007|00:57] C:\Program Files\Windows Journal
    [28/07/2008|14:35] C:\Program Files\Windows Live
    [20/03/2008|23:21] C:\Program Files\Windows Live Favorites
    [20/03/2008|23:22] C:\Program Files\Windows Live Toolbar
    [26/09/2007|01:24] C:\Program Files\Windows Mail
    [14/06/2008|18:59] C:\Program Files\Windows Media Components
    [13/06/2008|20:02] C:\Program Files\Windows Media Player
    [01/02/2008|16:05] C:\Program Files\Windows NT
    [26/09/2007|00:57] C:\Program Files\Windows Photo Gallery
    [12/03/2008|02:39] C:\Program Files\Windows Sidebar
    [11/03/2008|23:31] C:\Program Files\WinRAR

    --------------------\\ Listing des dossiers dans C:\Program Files\Common Files

    [02/02/2008|07:46] C:\Program Files\Common Files\Acronis
    [31/07/2008|12:38] C:\Program Files\Common Files\Adobe
    [25/06/2008|16:44] C:\Program Files\Common Files\Adobe Systems Shared
    [28/07/2008|22:01] C:\Program Files\Common Files\BitDefender
    [25/09/2007|16:03] C:\Program Files\Common Files\DESIGNER
    [25/09/2007|16:15] C:\Program Files\Common Files\InstallShield
    [13/03/2008|04:21] C:\Program Files\Common Files\microsoft shared
    [25/09/2007|16:13] C:\Program Files\Common Files\Roxio Shared
    [02/11/2006|16:48] C:\Program Files\Common Files\Services
    [25/09/2007|15:45] C:\Program Files\Common Files\snp2std
    [25/09/2007|16:13] C:\Program Files\Common Files\Sonic Shared
    [02/11/2006|16:48] C:\Program Files\Common Files\SpeechEngines
    [25/09/2007|16:13] C:\Program Files\Common Files\SureThing Shared
    [25/09/2007|16:00] C:\Program Files\Common Files\System
    [14/06/2008|18:58] C:\Program Files\Common Files\Ulead Systems
    [25/06/2008|21:58] C:\Program Files\Common Files\Vbox
    [18/02/2008|21:03] C:\Program Files\Common Files\WindowsLiveInstaller

    --------------------\\ Process

    ( 74 Processus )

    ... OK !

    --------------------\\ Recherche avec S_Lop

    Aucun fichier / dossier Lop trouvé !

    --------------------\\ Recherche de Fichiers / Dossiers Lop

    Aucun fichier / dossier Lop trouvé !

    --------------------\\ Verification du Registre

    ..... OK !

    --------------------\\ Verification du fichier Hosts

    Fichier Hosts PROPRE

    --------------------\\ Recherche de fichiers avec Catchme

    catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-08-01 02:57:35
    Windows 6.0.6000 NTFS
    scanning hidden processes ...
    scanning hidden files ...
    scan completed successfully
    hidden processes: 0
    hidden files: 52

    --------------------\\ Recherche d'autres infections

    Aucune autre infection trouvée !

    [F:4748][D:264]-> C:\Users\portable\AppData\Local\Temp
    [F:20][D:1]-> C:\Users\portable\AppData\Roaming\MICROS~1\Windows\Cookies
    [F:2211][D:17]-> C:\Users\portable\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
    [F:4][D:3]-> C:\$Recycle.Bin

    --------------------\\ Fin du rapport a 2:59:33,07
    [ UAC => 1 ]
    0
    1. Contributeur sécurité
      Bonsoir,

      Navilog et LopS&D ne sont efficaces que contre des infections spécifiques (MagicControl/Navipromo et Lop), et ils n'ont rien trouvé... Pour voir quelle infection a ton ordinateur, fais ceci :

      Télécharge hijackthis sur ton bureau :
      http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis

      Installe le, lance le et clique sur "Do a system scan and save a logfile".
      Fais un copier-coller du rapport entier sur le forum

      0
      1. voici le rapport complet avec hijackthis:
        Logfile of Trend Micro HijackThis v2.0.2
        Scan saved at 12:35:39, on 01/08/2008
        Platform: Windows Vista (WinNT 6.00.1904)
        MSIE: Internet Explorer v7.00 (7.00.6000.16681)
        Boot mode: Normal

        Running processes:
        C:\Windows\system32\Dwm.exe
        C:\Windows\system32\taskeng.exe
        C:\Windows\Explorer.EXE
        C:\Program Files\Windows Defender\MSASCui.exe
        C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
        C:\Windows\vsnp2std.exe
        C:\Windows\RtHDVCpl.exe
        C:\Program Files\System Control Manager\MGSysCtrl.exe
        C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
        C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe
        C:\Windows\System32\oodtray.exe
        C:\Windows\System32\igfxtray.exe
        C:\Windows\System32\hkcmd.exe
        C:\Windows\System32\igfxpers.exe
        C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
        C:\Program Files\Windows Sidebar\sidebar.exe
        C:\Program Files\Windows Live\Messenger\msnmsgr.exe
        C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
        C:\Program Files\Picasa2\PicasaMediaDetector.exe
        C:\Program Files\Windows Media Player\wmpnscfg.exe
        C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
        C:\Windows\system32\igfxsrvc.exe
        C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
        C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
        C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
        C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
        C:\Windows\system32\wbem\unsecapp.exe
        C:\Windows\system32\wuauclt.exe
        C:\Program Files\Mozilla Firefox\firefox.exe
        C:\Windows\system32\SearchFilterHost.exe
        C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
        R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
        R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
        O1 - Hosts: ::1 localhost
        O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
        O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
        O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
        O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
        O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
        O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
        O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
        O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
        O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
        O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
        O4 - HKLM\..\Run: [snp2std] C:\Windows\vsnp2std.exe
        O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
        O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
        O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
        O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe"
        O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\Cyberlink\PowerDVD\Language\Language.exe"
        O4 - HKLM\..\Run: [OODefragTray] C:\Windows\system32\oodtray.exe
        O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
        O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
        O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
        O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
        O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
        O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
        O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
        O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
        O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
        O4 - HKCU\..\Run: [28897855640102607478440271102935] C:\Program Files\AV9\av2009.exe
        O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
        O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
        O4 - Startup: RegFreeze.lnk = C:\Program Files\RegFreeze\regfreeze.exe
        O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
        O4 - Global Startup: Bluetooth Manager.lnk = ?
        O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
        O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
        O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
        O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
        O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
        O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
        O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
        O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
        O13 - Gopher Prefix:
        O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
        O17 - HKLM\System\CCS\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
        O17 - HKLM\System\CS1\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
        O17 - HKLM\System\CS2\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
        O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll
        O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
        O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
        O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
        O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
        O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
        O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
        O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - C:\Program Files\System Control Manager\edd.exe
        O23 - Service: O&O Defrag - O&O Software GmbH - C:\Windows\system32\oodag.exe
        O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
        O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared Files\RichVideo.exe
        O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
        O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
        O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
        O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
        0
        1. Contributeur sécurité
          Bon, on va utiliser plusieurs logiciels pour désinfecter, commence par celui-ci :

          Télécharge SmitfraudFix :
          http://siri.urz.free.fr/Fix/SmitfraudFix.exe

          - Enregistre-le sur le bureau

          - Double-clique sur SmitfraudFix.exe et choisis l'option 1 puis Entrée

          - Un rapport sera généré, poste-le dans ta prochaine réponse stp.

          Tutoriel ici pour t'aider : http://www.malekal.com//tutorial_SmitFraudfix.php

          0
          1. j'ai bien installé le programme j'ai bien lancé une recherche mais aucun bloc note ne s'ouvre !
            0
        2. Contributeur sécurité
          Ca doit être à cause de certaines restrictions sur Vista, fais ceci :

          Désactive le contrôle des comptes utilisateurs (tu le réactiveras après ta désinfection):

          - Va dans démarrer puis panneau de configuration
          - Double Clique sur l'icône "Comptes d'utilisateurs"
          - Clique ensuite sur désactiver et valide.

          Télécharge à nouveau SmitfraudFix : http://siri.urz.free.fr/Fix/SmitfraudFix.exe

          - Enregistre-le sur le bureau

          - Clique du droit sur SmitfraudFix.exe et choisis "exécuter en temps qu'administrateur", puis choisis l'option 1 puis Entrée

          - Un rapport sera généré, poste-le dans ta prochaine réponse stp.

          Tutoriel ici pour t'aider : http://www.malekal.com//tutorial_SmitFraudfix.php

          0
          1. voila le rapport:
            SmitFraudFix v2.332

            Scan done at 23:57:45,74, 01/08/2008
            Run from C:\Users\portable\Desktop\SmitfraudFix
            OS: Microsoft Windows [version 6.0.6000] - Windows_NT
            The filesystem type is NTFS
            Fix run in normal mode

            »»»»»»»»»»»»»»»»»»»»»»»» Process

            C:\Windows\system32\csrss.exe
            C:\Windows\system32\wininit.exe
            C:\Windows\system32\csrss.exe
            C:\Windows\system32\services.exe
            C:\Windows\system32\lsass.exe
            C:\Windows\system32\lsm.exe
            C:\Windows\system32\winlogon.exe
            C:\Windows\system32\svchost.exe
            C:\Windows\system32\svchost.exe
            C:\Windows\System32\svchost.exe
            C:\Windows\System32\svchost.exe
            C:\Windows\System32\svchost.exe
            C:\Windows\system32\svchost.exe
            C:\Windows\system32\SLsvc.exe
            C:\Windows\system32\svchost.exe
            C:\Windows\System32\spoolsv.exe
            C:\Windows\system32\WLANExt.exe
            C:\Windows\system32\svchost.exe
            C:\Windows\system32\Dwm.exe
            C:\Windows\Explorer.EXE
            C:\Windows\system32\taskeng.exe
            C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
            C:\Windows\system32\svchost.exe
            C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
            C:\Program Files\System Control Manager\edd.exe
            C:\Windows\system32\oodag.exe
            C:\Windows\system32\svchost.exe
            C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
            C:\Program Files\Cyberlink\Shared Files\RichVideo.exe
            C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
            C:\Program Files\Windows Defender\MSASCui.exe
            C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
            C:\Windows\vsnp2std.exe
            C:\Windows\RtHDVCpl.exe
            C:\Program Files\System Control Manager\MGSysCtrl.exe
            C:\Windows\system32\svchost.exe
            C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
            C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
            C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe
            C:\Windows\System32\svchost.exe
            C:\Windows\System32\oodtray.exe
            C:\Windows\system32\SearchIndexer.exe
            C:\Windows\System32\igfxtray.exe
            C:\Windows\System32\hkcmd.exe
            C:\Windows\System32\igfxpers.exe
            C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
            C:\Program Files\Windows Sidebar\sidebar.exe
            C:\Program Files\Windows Live\Messenger\msnmsgr.exe
            C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
            C:\Program Files\Picasa2\PicasaMediaDetector.exe
            C:\Program Files\Windows Media Player\wmpnscfg.exe
            C:\Program Files\AV9\av2009.exe
            C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
            C:\Windows\system32\igfxsrvc.exe
            C:\Program Files\Windows Media Player\wmpnetwk.exe
            C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
            C:\Windows\system32\taskeng.exe
            C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
            C:\Windows\system32\wbem\unsecapp.exe
            C:\Windows\system32\wbem\wmiprvse.exe
            C:\Windows\system32\conime.exe
            C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
            C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
            C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
            C:\Windows\system32\SearchProtocolHost.exe
            C:\Windows\system32\SearchFilterHost.exe
            C:\Windows\system32\cmd.exe
            C:\Windows\system32\vssvc.exe
            C:\Windows\System32\svchost.exe
            C:\Windows\system32\DllHost.exe
            C:\Windows\system32\wbem\wmiprvse.exe

            »»»»»»»»»»»»»»»»»»»»»»»» hosts

            »»»»»»»»»»»»»»»»»»»»»»»» C:\

            »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows

            »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system

            »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\Web

            »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32

            »»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32\LogFiles

            »»»»»»»»»»»»»»»»»»»»»»»» C:\Users\portable

            »»»»»»»»»»»»»»»»»»»»»»»» C:\Users\portable\Application Data

            »»»»»»»»»»»»»»»»»»»»»»»» Start Menu

            »»»»»»»»»»»»»»»»»»»»»»»» C:\Users\portable\FAVORI~1

            »»»»»»»»»»»»»»»»»»»»»»»» Desktop

            »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files

            »»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys

            »»»»»»»»»»»»»»»»»»»»»»»» Desktop Components

            »»»»»»»»»»»»»»»»»»»»»»»» IEDFix
            !!!Attention, following keys are not inevitably infected!!!

            IEDFix
            Credits: Malware Analysis & Diagnostic
            Code: S!Ri

            »»»»»»»»»»»»»»»»»»»»»»»» VACFix
            !!!Attention, following keys are not inevitably infected!!!

            VACFix
            Credits: Malware Analysis & Diagnostic
            Code: S!Ri

            »»»»»»»»»»»»»»»»»»»»»»»» 404Fix
            !!!Attention, following keys are not inevitably infected!!!

            404Fix
            Credits: Malware Analysis & Diagnostic
            Code: S!Ri

            »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
            !!!Attention, following keys are not inevitably infected!!!

            SrchSTS.exe by S!Ri
            Search SharedTaskScheduler's .dll

            »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
            !!!Attention, following keys are not inevitably infected!!!

            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
            "AppInit_DLLs"="C:\\PROGRA~1\\KASPER~1\\KASPER~1\\mzvkbd.dll"
            "LoadAppInit_DLLs"=dword:00000001

            »»»»»»»»»»»»»»»»»»»»»»»» Winlogon
            !!!Attention, following keys are not inevitably infected!!!

            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
            "Userinit"="C:\\Windows\\system32\\userinit.exe,"

            »»»»»»»»»»»»»»»»»»»»»»»» Rustock

            »»»»»»»»»»»»»»»»»»»»»»»» DNS

            Description: Intel(R) PRO/Wireless 3945ABG Network Connection
            DNS Server Search Order: 192.168.1.1

            HKLM\SYSTEM\CCS\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer=212.27.53.252,212.27.54.252
            HKLM\SYSTEM\CCS\Services\Tcpip\..\{BECD22A4-4F9E-472F-9599-B8664245D5CB}: DhcpNameServer=192.168.1.1
            HKLM\SYSTEM\CS1\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer=212.27.53.252,212.27.54.252
            HKLM\SYSTEM\CS1\Services\Tcpip\..\{BECD22A4-4F9E-472F-9599-B8664245D5CB}: DhcpNameServer=192.168.1.1
            HKLM\SYSTEM\CS2\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer=212.27.53.252,212.27.54.252
            HKLM\SYSTEM\CS2\Services\Tcpip\..\{BECD22A4-4F9E-472F-9599-B8664245D5CB}: DhcpNameServer=192.168.1.1
            HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
            HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
            HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1

            »»»»»»»»»»»»»»»»»»»»»»»» Scanning for wininet.dll infection

            »»»»»»»»»»»»»»»»»»»»»»»» End
            0
        3. Contributeur sécurité
          Ok, on passe à MalwareByte's

          Télécharge et installe Malwarebyte's Anti-Malware : http://www.malwarebytes.org/mbam/program/mbam-setup.exe
          - A la fin de l'installation, veille à ce que l'option « mettre a jour Malwarebyte's Anti-Malware » soit cochée
          - Lance Malwarebyte's Anti-Malware, laisse les Mises à jour se télécharger et referme le programme

          Redémarre en "Mode sans échec" : redémarre ton ordinateur et tapote sur la touche F8 jusqu'à l'affichage du menu des options avancées de Windows, et sélectionne "Mode sans échec".
          Choisis ta session habituelle

          Lance Malwarebyte's Anti-Malware
          - Puis va dans l'onglet "Recherche", coche "Exécuter un examen complet" puis "Rechercher"
          - Sélectionne tes disques durs" puis clique sur "Lancer l’examen"
          - A la fin du scan, clique sur Afficher les résultats puis sur Enregistrer le rapport
          - Suppression des éléments détectés --> clique sur Supprimer la sélection
          - S'il t'es demandé de redémarrer, clique sur Yes

          Poste le rapport de scan après la suppression ici

          0
          1. Malwarebytes' Anti-Malware 1.24
            Version de la base de données: 1013
            Windows 6.0.6000

            04:22:43 02/08/2008
            mbam-log-8-2-2008 (04-22-43).txt

            Type de recherche: Examen complet (C:\|E:\|)
            Eléments examinés: 129988
            Temps écoulé: 1 hour(s), 36 minute(s), 22 second(s)

            Processus mémoire infecté(s): 0
            Module(s) mémoire infecté(s): 0
            Clé(s) du Registre infectée(s): 8
            Valeur(s) du Registre infectée(s): 0
            Elément(s) de données du Registre infecté(s): 0
            Dossier(s) infecté(s): 4
            Fichier(s) infecté(s): 13

            Processus mémoire infecté(s):
            (Aucun élément nuisible détecté)

            Module(s) mémoire infecté(s):
            (Aucun élément nuisible détecté)

            Clé(s) du Registre infectée(s):
            HKEY_CLASSES_ROOT\Interface\{54b287f9-fd90-4457-b65e-cb91560c021d} (Adware.Mirar) -> Quarantined and deleted successfully.
            HKEY_CLASSES_ROOT\Interface\{6e4c7afc-9915-4036-b7f9-8b3f1710788f} (Adware.Mirar) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\MediaHoldings (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\Mirar (Adware.Mirar) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\PlayMP3 (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
            HKEY_CURRENT_USER\SOFTWARE\FBrowsingAdvisor (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\fbrowsingadvisor_is1 (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            HKEY_LOCAL_MACHINE\SOFTWARE\RelatedPageInstall (Adware.Mirar) -> Quarantined and deleted successfully.

            Valeur(s) du Registre infectée(s):
            (Aucun élément nuisible détecté)

            Elément(s) de données du Registre infecté(s):
            (Aucun élément nuisible détecté)

            Dossier(s) infecté(s):
            C:\Program Files\FBrowsingAdvisor (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            C:\Program Files\FBrowserAdvisor (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMP3z (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
            C:\Users\portable\AppData\Roaming\Microsoft\Windows\Start Menu\Antivirus 2009 (Rogue.Antivirus) -> Quarantined and deleted successfully.

            Fichier(s) infecté(s):
            C:\Program Files\FBrowsingAdvisor\XPCOMEvents.dll (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            C:\Program Files\Mozilla Firefox\regxpcom.exe (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            C:\Users\portable\AppData\Local\Temp\tem3833.tmp.exe (Adware.Agent) -> Quarantined and deleted successfully.
            C:\Users\portable\AppData\Local\Temp\updAD20.tmp.exe (Adware.Agent) -> Quarantined and deleted successfully.
            C:\Program Files\FBrowsingAdvisor\IXPCOMEvents.xpt (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            C:\Program Files\FBrowsingAdvisor\Logo.png (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            C:\Program Files\FBrowsingAdvisor\main.db (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            C:\Program Files\FBrowsingAdvisor\unins000.dat (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            C:\Program Files\FBrowsingAdvisor\unins000.exe (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
            C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMP3z\Run PlayMP3z.lnk (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
            C:\Users\portable\AppData\Roaming\Microsoft\Windows\Start Menu\Antivirus 2009\Antivirus 2009.lnk (Rogue.Antivirus) -> Quarantined and deleted successfully.
            C:\Users\portable\AppData\Roaming\Microsoft\Windows\Start Menu\Antivirus 2009\Uninstall Antivirus 2009.lnk (Rogue.Antivirus) -> Quarantined and deleted successfully.
            C:\Users\portable\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Antivirus 2009.lnk (Rogue.Antivirus2008) -> Quarantined and deleted successfully.
            0
        4. Contributeur sécurité
          Ok, maintenant j'aurai besoin d'un nouveau rapport hijackthis stp.

          Ensuite, fais exactement ce qui suit :

          Télécharge ComboFix (de sUBs) sur ton Bureau (et pas ailleurs !) :
          Fais un clic droit sur ce lien et choisis "enregistrer la cible sous ... " : dans la fenêtre qui s'ouvre tape C-Fix, choisis le bureau comme destination et valide : http://download.bleepingcomputer.com/sUBs/ComboFix.exe

          --------------------------------------------- [ ! ATTENTION ! ] ----------------------------------------------------------
          !! déconnecte toi, ferme toutes tes applications en cours et DESACTIVE TOUTES TES DEFENCES (anti-virus, antispyware, pare-feu) le temps de la manipulation :
          en effet , activés, ils pourraient gêner fortement la procédure de recherche et de nettoyage de l'outil ( voir planter le PC )...Tu les réactiveras donc après !!
          UAC pour Vista : Désactive le contrôle des comptes utilisateurs : Menu démarrer --> panneau de configuration --> Comptes utilisateurs

          ---> Surtout, si tu rencontres des difficultés à ce niveau là, dis le moi avant de poursuivre ...
          Tuto ici : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
          ---------------------------------------------------------------------------------------------------------------------------------

          Ensuite :

          Clic droit sur C-Fix.exe (= combofix.exe) --> exécuter en tant qu’administrateur

          Appuie sur la touche Y (Yes) pour démarrer le scan.

          Attention : n'utilise pas ta souris ni ton clavier pendant que le programme tourne. Cela pourrait figer l'ordi ---> si un message d'erreur windows apparait à un momment : clique sur la croix rouge en haut à droite de la fenêtre pour la fermer

          Le rapport sera crée dans: C:\Combofix.txt , poste le ici stp

          0
          1. voici le nouveau rapport de hijack
            je fais le reste maintenant
            Logfile of Trend Micro HijackThis v2.0.2
            Scan saved at 00:05:23, on 05/08/2008
            Platform: Windows Vista (WinNT 6.00.1904)
            MSIE: Internet Explorer v7.00 (7.00.6000.16681)
            Boot mode: Normal

            Running processes:
            C:\Windows\system32\taskeng.exe
            C:\Windows\system32\Dwm.exe
            C:\Windows\Explorer.EXE
            C:\Program Files\Windows Defender\MSASCui.exe
            C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
            C:\Windows\vsnp2std.exe
            C:\Windows\RtHDVCpl.exe
            C:\Program Files\System Control Manager\MGSysCtrl.exe
            C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
            C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe
            C:\Windows\System32\oodtray.exe
            C:\Windows\System32\igfxtray.exe
            C:\Windows\System32\hkcmd.exe
            C:\Windows\System32\igfxpers.exe
            C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
            C:\Program Files\Windows Sidebar\sidebar.exe
            C:\Program Files\Windows Live\Messenger\msnmsgr.exe
            C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
            C:\Program Files\Picasa2\PicasaMediaDetector.exe
            C:\Program Files\Windows Media Player\wmpnscfg.exe
            C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
            C:\Windows\system32\igfxsrvc.exe
            C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
            C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
            C:\Windows\system32\wbem\unsecapp.exe
            C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
            C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
            C:\Windows\system32\wuauclt.exe
            C:\Windows\System32\rundll32.exe
            C:\Program Files\Mozilla Firefox\firefox.exe
            C:\Windows\system32\SearchFilterHost.exe
            C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
            R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
            R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
            R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
            O1 - Hosts: ::1 localhost
            O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
            O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
            O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
            O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
            O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
            O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
            O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
            O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
            O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
            O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
            O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
            O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
            O4 - HKLM\..\Run: [snp2std] C:\Windows\vsnp2std.exe
            O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
            O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
            O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
            O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe"
            O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\Cyberlink\PowerDVD\Language\Language.exe"
            O4 - HKLM\..\Run: [OODefragTray] C:\Windows\system32\oodtray.exe
            O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
            O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
            O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
            O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
            O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
            O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
            O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
            O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
            O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
            O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
            O4 - HKCU\..\Run: [28897855640102607478440271102935] C:\Program Files\AV9\av2009.exe
            O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
            O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
            O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
            O4 - Global Startup: Bluetooth Manager.lnk = ?
            O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
            O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
            O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
            O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
            O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
            O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
            O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
            O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
            O13 - Gopher Prefix:
            O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
            O17 - HKLM\System\CCS\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
            O17 - HKLM\System\CS1\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
            O17 - HKLM\System\CS2\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
            O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll
            O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
            O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
            O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
            O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
            O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
            O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
            O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - C:\Program Files\System Control Manager\edd.exe
            O23 - Service: O&O Defrag - O&O Software GmbH - C:\Windows\system32\oodag.exe
            O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
            O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared Files\RichVideo.exe
            O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
            O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
            O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
            O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
            0
            1. j'ai bien suivi toutes tes instructions, a savoir couper tous les antivirus,couper le net,aller dans le panneau de config mais quand je fais clic droit executer en tant qu'administrateur une fenetre noir s'ouvre pendant 1 demi seconde et se referme aussitot !
              que dois je faire?
              0
            2. @maxacaenpetite remarque en plus j'ai l'impression que la qualité de l'image sur mon pc est moins bonne qu'avant ça me parait un peu moins net, il n'y a pas une histoire de mode sans échec ou quelque chose comme ça?
              0
          2. j'ai désinstallé et réinstallé combofix, cela me met maintenant que combofix n'est compatible qu'avec xp et windows 2000 hors j'ai vista...
            0
            1. Contributeur sécurité
              Ok, je vais me renseigner...
              0
              1. merci beaucoup anthony c'est très sympa !
                au niveau du pc bilan général: il y a toujours antivirus 2009 dans le pc qui continue de prendre la tête mais sinon les fenetres internet qui s'ouvraient toutes seules ont disparu.
                j'ai un écran bleu qui apparait de temps en temps pour me dire en anglais que mon ordi est infecté par un spyware monster et que ça dois redémarré et ça me lance une page de rédemarrage windows mais en anglais et ça dur que 20 secondes et finalement le pc redeviens normal
                le temps que j'écrive ce message j'ai eu 2 écran bleu !
                0
                1. Contributeur sécurité
                  Bon, j'ai fait le test sur mon propre ordinateur (avec Vista donc), et j'ai eu le même message d'erreur que toi.
                  Puis, en supprimant manuellement tous les dossiers créés par Combofix sur le disque dur, et en téléchargeant à nouveau combofix, ça a fonctionné...

                  Vérifie ici :
                  Menu démarrer --> Ordinateur --> disque C --> donne moi le nom de tous les dossiers qui apparaissent stp

                  0
                  1. voila ce que j'ai dans le C:
                    327882R2FWJFW
                    drivers
                    intel
                    lop sd
                    programmes
                    temp
                    utilisateurs
                    windows
                    0
                2. Contributeur sécurité
                  Vérifie que le dossier 327882R2FWJFW contient bien des fichiers Combofix et si oui, supprime le. Supprime également tout ce qui se trouve sur ton bureau en rapport avec Combofix.

                  On va essayer autrement, je me suis renseigné et il ne faut plus utiliser Combofix sur Vista pour le moment...
                  Commence par ceci :

                  Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
                  http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
                  Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
                  • Redémarre ton ordinateur
                  • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
                  • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
                  • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
                  • Choisis ton compte.

                  • Puis, ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
                  • Appuie sur Y pour commencer le processus de nettoyage.
                  • Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
                  • Appuie sur une touche pour redémarrer le PC.
                  • Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
                  • Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
                  • Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
                  • Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.

                  0
                  1. alors quand je me mettais en mode sans échec le programme ne voulait pas se lancer en revanche quand je passais par le mode msconfig oui voila le rapport que ça m'a donné(j'ai cliqué a :create system report)(en revanche il n'a pas été question de redémarrage...), j'ai toujours le antivirus2009 qui se lance ainsi que les écrans bleu en anglais en mode attention virus monster.spyware ...

                    [b]System Report[/b]
                    *************

                    Run on 07/08/2008 at 02:43

                    Microsoft Windows [version 6.0.6000]

                    Current user is an administrator

                    [b]Running Processes[/b]:

                    \SystemRoot\System32\smss.exe [464]
                    C:\Windows\system32\csrss.exe [548]
                    C:\Windows\system32\wininit.exe [592]
                    C:\Windows\system32\csrss.exe [604]
                    C:\Windows\system32\services.exe [640]
                    C:\Windows\system32\lsass.exe [652]
                    C:\Windows\system32\lsm.exe [660]
                    C:\Windows\system32\winlogon.exe [732]
                    C:\Windows\system32\svchost.exe [868]
                    C:\Windows\system32\svchost.exe [900]
                    C:\Windows\system32\svchost.exe [936]
                    C:\Windows\system32\SLsvc.exe [1000]
                    C:\Windows\Explorer.EXE [1224]

                    [b]Drivers - Running[/b]:

                    ACPI
                    AFD
                    atapi
                    avgio
                    avipbb
                    Beep
                    cdfs
                    cdrom
                    CLFS
                    CmBatt
                    Compbatt
                    crcdisk
                    DfsC
                    disk
                    DXGKrnl
                    e1express
                    Ecache
                    FileInfo
                    FltMgr
                    HDAudBus
                    i8042prt
                    igfx
                    IntcAzAudAddService
                    intelppm
                    irda
                    IRENUM
                    iScsiPrt
                    kbdclass
                    kl1
                    KSecDD
                    lltdio
                    luafv
                    monitor
                    mouclass
                    MountMgr
                    msahci
                    Msfs
                    msisadrv
                    mssmbios
                    Mup
                    NDIS
                    NdisTapi
                    NdisWan
                    NDProxy
                    NetBIOS
                    netbt
                    NETw4v32
                    Npfs
                    NSCIRDA
                    nsiproxy
                    Ntfs
                    Null
                    ohci1394
                    Parport
                    partmgr
                    Parvdm
                    pci
                    pciide
                    pcmcia
                    PEAUTH
                    PptpMiniport
                    PSched
                    PxHelp20
                    RasAcd
                    Rasl2tp
                    RasPppoe
                    rdbss
                    RDPCDD
                    RDPENCDD
                    rimmptsk
                    rimsptsk
                    rismxdp
                    rspndr
                    sdbus
                    secdrv
                    Serenum
                    Serial
                    Smb
                    snapman
                    SNP2STD
                    spldr
                    ssmdrv
                    StarOpen
                    swenum
                    SynTP
                    Tcpip
                    tcpipreg
                    tdx
                    TermDD
                    tosporte
                    Tosrfcom
                    Tosrfusb
                    tunmp
                    tunnel
                    umbus
                    usbehci
                    usbhub
                    usbuhci
                    VgaSave
                    volmgr
                    volmgrx
                    volsnap
                    Wanarpv6
                    Wdf01000

                    [b]Drivers - Stopped[/b]:

                    adp94xx
                    adpahci
                    adpu160m
                    adpu320
                    agp440
                    aic78xx
                    aliide
                    amdagp
                    amdide
                    AmdK7
                    AmdK8
                    arc
                    arcsas
                    AsyncMac
                    avgntflt
                    blbdrive
                    bowser
                    BrFiltLo
                    BrFiltUp
                    Brserid
                    BrSerWdm
                    BrUsbMdm
                    BrUsbSer
                    BTHMODEM
                    catchme
                    circlass
                    cmdide
                    Crusoe
                    drmkaud
                    E1G60
                    elxstor
                    fastfat
                    fdc
                    Filetrace
                    flpydisk
                    gagp30kx
                    HdAudAddService
                    HidBth
                    HidIr
                    HidUsb
                    HpCISSs
                    HTTP
                    i2omp
                    iaStorV
                    iirsp
                    intelide
                    IpFilterDriver
                    IpInIp
                    IPMIDRV
                    IPNAT
                    isapnp
                    iteatapi
                    iteraid
                    kbdhid
                    LSI_FC
                    LSI_SAS
                    LSI_SCSI
                    megasas
                    MGHwCtrl
                    Modem
                    mouhid
                    mpio
                    mpsdrv
                    Mraid35x
                    MRxDAV
                    mrxsmb
                    mrxsmb10
                    mrxsmb20
                    msdsm
                    MSKSSRV
                    MSPCLOCK
                    MSPQM
                    MsRPC
                    MSTEE
                    NativeWifiP
                    Ndisuio
                    NETw3v32
                    nfrd960
                    ntrigdigi
                    nvraid
                    nvstor
                    nv_agp
                    NwlnkFlt
                    NwlnkFwd
                    Processor
                    Profos
                    ql2300
                    ql40xx
                    QWAVEdrv
                    rdpdr
                    RDPWD
                    sbp2port
                    sermouse
                    sffdisk
                    sffp_mmc
                    sffp_sd
                    sfloppy
                    sisagp
                    SiSRaid2
                    SiSRaid4
                    srv
                    srv2
                    srvnet
                    ssm_bus
                    ssm_mdfl
                    ssm_mdm
                    Symc8xx
                    Sym_hi
                    Sym_u3
                    Tcpip6
                    TDPIPE
                    TDTCP
                    tosrfbd
                    tosrfbnp
                    Tosrfhid
                    tosrfnds
                    Trufos
                    tssecsrv
                    uagp35
                    udfs
                    uliagpkx
                    uliahci
                    UlSata
                    ulsata2
                    usbaudio
                    usbccgp
                    usbcir
                    usbohci
                    usbprint
                    usbscan
                    USBSTOR
                    vga
                    viaagp
                    ViaC7
                    viaide
                    vsmraid
                    WacomPen
                    Wanarp
                    Wd
                    WmiAcpi
                    WpdUsb
                    ws2ifsl
                    WUDFRd

                    [b]Services - Running[/b]:

                    DcomLaunch
                    gpsvc
                    ProfSvc
                    RpcSs
                    slsvc

                    [b]Services - Stopped[/b]:

                    AcronisOSSReinstallSvc
                    Adobe
                    AeLookupSvc
                    ALG
                    AntiVirScheduler
                    AntiVirService
                    Appinfo
                    AudioEndpointBuilder
                    Audiosrv
                    BcmSqlStartupSvc
                    BFE
                    BITS
                    Browser
                    CertPropSvc
                    clr_optimization_v2.0.50727_32
                    COMSysApp
                    CryptSvc
                    DFSR
                    Dhcp
                    Dnscache
                    dot3svc
                    DPS
                    EapHost
                    ehRecvr
                    ehSched
                    ehstart
                    EMDMgmt
                    Eventlog
                    EventSystem
                    EvtEng
                    fdPHost
                    FDResPub
                    FontCache3.0.0.0
                    gusvc
                    hidserv
                    hkmsvc
                    IDriverT
                    idsvc
                    IKEEXT
                    IPBusEnum
                    iphlpsvc
                    Irmon
                    KeyIso
                    KtmRm
                    LanmanServer
                    LanmanWorkstation
                    lltdsvc
                    lmhosts
                    Mcx2Svc
                    MMCSS
                    MpsSvc
                    MSDTC
                    MSiSCSI
                    msiserver
                    napagent
                    Netlogon
                    Netman
                    netprofm
                    NetTcpPortSharing
                    NishService
                    NlaSvc
                    nsi
                    O&O
                    odserv
                    ose
                    p2pimsvc
                    p2psvc
                    PcaSvc
                    pla
                    PlugPlay
                    PNRPAutoReg
                    PNRPsvc
                    PolicyAgent
                    ProtectedStorage
                    QWAVE
                    RasAuto
                    RasMan
                    RegSrvc
                    RemoteAccess
                    RemoteRegistry
                    RichVideo
                    RoxMediaDB9
                    RoxWatch9
                    RpcLocator
                    SamSs
                    SCardSvr
                    Schedule
                    SCPolicySvc
                    SDRSVC
                    seclogon
                    SENS
                    SessionEnv
                    SharedAccess
                    ShellHWDetection
                    SLUINotify
                    SNMPTRAP
                    Spooler
                    SSDPSRV
                    stisvc
                    stllssvr
                    swprv
                    SysMain
                    TabletInputService
                    TapiSrv
                    TBS
                    TermService
                    Themes
                    THREADORDER
                    TOSHIBA
                    TrkWks
                    TrustedInstaller
                    UI0Detect
                    upnphost
                    usnjsvc
                    UxSms
                    vds
                    VSS
                    W32Time
                    wcncsvc
                    WcsPlugInService
                    WdiServiceHost
                    WdiSystemHost
                    WebClient
                    Wecsvc
                    wercplsupport
                    WerSvc
                    WinDefend
                    WinHttpAutoProxySvc
                    Winmgmt
                    WinRM
                    Wlansvc
                    WLSetupSvc
                    wmiApSrv
                    WMPNetworkSvc
                    WPCSvc
                    WPDBusEnum
                    wscsvc
                    WSearch
                    wuauserv
                    wudfsvc

                    [b]Files Created/Modified - 60 Days[/b]:

                    C:\

                    5 Aug 2008 3:35:24 712 A.... "C:\Bug.txt"
                    1 Aug 2008 2:45:34 2 361 A.... "C:\fixnavi.txt"
                    5 Aug 2008 0:14:50 0 A.SHR "C:\IO.SYS"
                    1 Aug 2008 2:59:34 10 154 A.... "C:\lopR.txt"
                    5 Aug 2008 0:14:50 0 A.SHR "C:\MSDOS.SYS"
                    27 Jun 2008 2:27:44 715 A..H. "C:\os618886.bin"
                    7 Aug 2008 2:41:00 2 452 160 512 A.SH. "C:\pagefile.sys"
                    1 Aug 2008 23:59:32 6 275 A.... "C:\rapport.txt"
                    29 Jul 2008 3:10:58 244 A..H. "C:\sqmnoopt12.sqm"
                    29 Jul 2008 13:55:24 244 A..H. "C:\sqmnoopt13.sqm"
                    28 Jul 2008 16:01:58 244 A..H. "C:\sqmnoopt10.sqm"
                    28 Jul 2008 22:04:06 244 A..H. "C:\sqmnoopt11.sqm"
                    18 Jun 2008 17:21:58 244 A..H. "C:\sqmnoopt08.sqm"
                    20 Jun 2008 19:19:36 244 A..H. "C:\sqmnoopt09.sqm"
                    28 Jul 2008 16:01:58 268 A..H. "C:\sqmdata10.sqm"
                    18 Jun 2008 17:21:58 268 A..H. "C:\sqmdata08.sqm"
                    28 Jul 2008 22:04:06 268 A..H. "C:\sqmdata11.sqm"
                    20 Jun 2008 19:19:36 268 A..H. "C:\sqmdata09.sqm"
                    29 Jul 2008 3:10:58 268 A..H. "C:\sqmdata12.sqm"
                    29 Jul 2008 13:55:24 268 A..H. "C:\sqmdata13.sqm"

                    C:\Windows\

                    1 Aug 2008 0:01:38 121 A.... "C:\Windows\bdagent.INI"
                    7 Aug 2008 2:41:06 67 584 A.S.. "C:\Windows\bootstat.dat"
                    28 Jul 2008 14:35:28 59 861 A.... "C:\Windows\DirectX.log"
                    7 Aug 2008 2:36:52 879 500 A.... "C:\Windows\ntbtlog.txt"
                    26 Jun 2008 4:28:06 0 A.... "C:\Windows\oodcnt.INI"
                    1 Aug 2008 0:56:40 4 094 158 A.... "C:\Windows\PFRO.log"
                    2 Aug 2008 19:39:14 700 A.... "C:\Windows\setupact.log"
                    2 Aug 2008 0:06:06 0 A.... "C:\Windows\setuperr.log"
                    14 Jun 2008 18:59:12 216 A.... "C:\Windows\Ulead32.ini"
                    28 Jul 2008 14:29:56 571 A.... "C:\Windows\win.ini"
                    7 Aug 2008 2:34:04 1 819 009 A.... "C:\Windows\WindowsUpdate.log"
                    28 Jul 2008 16:06:08 749 A..HR "C:\Windows\WindowsShell.Manifest"
                    28 Jul 2008 14:21:44 52 736 A.... "C:\Windows\AppPatch\iebrshim.dll"
                    28 Jul 2008 14:20:02 2 262 A.... "C:\Windows\Debug\mrt.log"
                    28 Jul 2008 14:20:02 1 154 A.... "C:\Windows\Debug\mrteng.log"
                    7 Aug 2008 2:41:04 0 A.... "C:\Windows\Debug\PASSWD.LOG"
                    23 Jul 2008 17:27:50 28 616 A.... "C:\Windows\Fonts\Bosox.ttf"
                    23 Jul 2008 17:29:46 69 460 A.... "C:\Windows\Fonts\Bosox Full.ttf"
                    23 Jul 2008 17:27:52 51 600 A.... "C:\Windows\Fonts\Bosox Outline.ttf"
                    23 Jul 2008 17:39:24 51 188 A.... "C:\Windows\Fonts\Bosox Outline Heavy.ttf"
                    23 Jul 2008 17:38:38 69 484 A.... "C:\Windows\Fonts\Bosox SemiBold.ttf"
                    17 Jun 2008 14:41:52 73 172 A.... "C:\Windows\Fonts\FontdinerdotcomSparkly.ttf"
                    17 Jun 2008 20:56:22 35 468 A.... "C:\Windows\Fonts\FONTH__.TTF"
                    18 Jun 2008 18:18:02 193 508 A.... "C:\Windows\Fonts\GASMASK.TTF"
                    28 Jul 2008 16:02:46 34 598 A.... "C:\Windows\inf\bth.inf"
                    28 Jul 2008 16:02:46 39 712 A.... "C:\Windows\inf\bth.PNF"
                    28 Jul 2008 16:02:46 665 600 A.... "C:\Windows\inf\drvindex.dat"
                    5 Aug 2008 1:26:56 1 701 216 A.... "C:\Windows\inf\INFCACHE.1"
                    5 Aug 2008 1:26:56 51 200 A.... "C:\Windows\inf\infpub.dat"
                    5 Aug 2008 1:26:56 86 016 A.... "C:\Windows\inf\infstor.dat"
                    5 Aug 2008 1:26:56 86 016 A.... "C:\Windows\inf\infstrng.dat"
                    28 Jul 2008 14:33:22 9 170 A.... "C:\Windows\inf\netpgm.inf"
                    28 Jul 2008 22:02:56 1 550 A.... "C:\Windows\inf\oem61.inf"
                    28 Jul 2008 22:03:20 5 648 A.... "C:\Windows\inf\oem61.PNF"
                    28 Jul 2008 22:03:16 2 872 A.... "C:\Windows\inf\oem62.inf"
                    28 Jul 2008 22:03:18 8 868 A.... "C:\Windows\inf\oem62.PNF"
                    25 Jun 2008 16:43:00 1 651 ..... "C:\Windows\inf\pxhelp20.inf"
                    2 Aug 2008 19:39:10 16 600 A.... "C:\Windows\inf\setupapi.ev1"
                    2 Aug 2008 19:39:10 29 048 A.... "C:\Windows\inf\setupapi.ev2"
                    2 Aug 2008 19:39:10 143 360 A.... "C:\Windows\inf\setupapi.ev3"
                    7 Aug 2008 2:40:06 18 092 807 A.... "C:\Windows\inf\setupapi.app.log"
                    5 Aug 2008 1:26:56 13 804 629 A.... "C:\Windows\inf\setupapi.dev.log"
                    13 Jun 2008 21:36:12 91 988 A.... "C:\Windows\inf\wdma_usb.PNF"
                    25 Jun 2008 16:46:18 1 173 ..... "C:\Windows\pss\Adobe Gamma.lnk.Startup"
                    28 Jul 2008 16:06:04 682 072 A.... "C:\Windows\rescache\ResCache.mni"
                    7 Aug 2008 2:41:10 3 072 A..H. "C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0"
                    7 Aug 2008 2:41:10 3 072 A..H. "C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0"
                    28 Jul 2008 14:21:44 124 928 A.... "C:\Windows\System32\advpack.dll"
                    1 Aug 2008 0:01:38 81 984 A.... "C:\Windows\System32\bdod.bin"
                    28 Jul 2008 14:36:56 620 088 A.... "C:\Windows\System32\ci.dll"
                    28 Jul 2008 14:30:52 162 816 A.... "C:\Windows\System32\dnsapi.dll"
                    28 Jul 2008 14:30:52 83 968 A.... "C:\Windows\System32\dnsrslvr.dll"
                    28 Jul 2008 14:21:42 347 136 A.... "C:\Windows\System32\dxtmsft.dll"
                    28 Jul 2008 14:21:42 214 528 A.... "C:\Windows\System32\dxtrans.dll"
                    28 Jul 2008 14:36:56 7 168 A.... "C:\Windows\System32\f3ahvoas.dll"
                    5 Aug 2008 0:17:24 851 272 A.... "C:\Windows\System32\FNTCACHE.DAT"
                    28 Jul 2008 14:34:34 296 448 A.... "C:\Windows\System32\gdi32.dll"
                    28 Jul 2008 14:21:34 63 488 A.... "C:\Windows\System32\icardie.dll"
                    28 Jul 2008 14:21:30 70 656 A.... "C:\Windows\System32\ie4uinit.exe"
                    28 Jul 2008 14:21:44 383 488 A.... "C:\Windows\System32\ieapfltr.dll"
                    4 Aug 2008 1:51:18 82 944 A.... "C:\Windows\System32\IEDFix.exe"
                    3 Aug 2008 1:53:14 82 432 A.... "C:\Windows\System32\IEDFix.C.exe"
                    28 Jul 2008 14:21:40 6 066 176 A.... "C:\Windows\System32\ieframe.dll"
                    28 Jul 2008 14:21:30 44 544 A.... "C:\Windows\System32\iernonce.dll"
                    28 Jul 2008 14:21:30 56 320 A.... "C:\Windows\System32\iesetup.dll"
                    28 Jul 2008 14:21:40 180 736 A.... "C:\Windows\System32\ieui.dll"
                    28 Jul 2008 14:21:32 26 624 A.... "C:\Windows\System32\ieUnatt.exe"
                    28 Jul 2008 14:21:34 1 831 424 A.... "C:\Windows\System32\inetcpl.cpl"
                    28 Jul 2008 14:21:42 27 648 A.... "C:\Windows\System32\jsproxy.dll"
                    28 Jul 2008 14:36:56 6 656 A.... "C:\Windows\System32\kbd106n.dll"
                    28 Jul 2008 14:36:56 19 000 A.... "C:\Windows\System32\kd1394.dll"
                    28 Jul 2008 14:42:18 447 A.... "C:\Windows\System32\mapisvc.inf"
                    25 Jun 2008 9:15:48 17 972 344 A.... "C:\Windows\System32\mrt.exe"
                    28 Jul 2008 14:21:36 3 591 680 A.... "C:\Windows\System32\mshtml.dll"
                    28 Jul 2008 14:21:36 1 383 424 A.... "C:\Windows\System32\mshtml.tlb"
                    28 Jul 2008 14:21:38 478 208 A.... "C:\Windows\System32\mshtmled.dll"
                    28 Jul 2008 14:21:34 671 232 A.... "C:\Windows\System32\mstime.dll"
                    7 Aug 2008 2:41:00 209 428 A.... "C:\Windows\System32\oodbs.lor"
                    7 Aug 2008 0:06:00 108 458 A.... "C:\Windows\System32\perfc009.dat"
                    7 Aug 2008 0:06:00 122 898 A.... "C:\Windows\System32\perfc00C.dat"
                    7 Aug 2008 0:06:00 621 374 A.... "C:\Windows\System32\perfh009.dat"
                    7 Aug 2008 0:06:00 702 978 A.... "C:\Windows\System32\perfh00C.dat"
                    7 Aug 2008 0:06:00 1 546 568 A.... "C:\Windows\System32\PerfStringBackup.INI"
                    28 Jul 2008 14:21:30 44 544 A.... "C:\Windows\System32\pngfilt.dll"
                    28 Jul 2008 14:24:06 99 840 A.... "C:\Windows\System32\poqexec.exe"
                    25 Jun 2008 16:43:00 53 248 ..... "C:\Windows\System32\pxhpinst.exe"
                    28 Jul 2008 14:25:00 1 327 104 A.... "C:\Windows\System32\quartz.dll"
                    28 Jul 2008 14:36:56 313 856 A.... "C:\Windows\System32\rstrui.exe"
                    28 Jul 2008 14:43:40 11 315 712 A.... "C:\Windows\System32\shell32.dll"
                    28 Jul 2008 14:36:56 40 960 A.... "C:\Windows\System32\srclient.dll"
                    28 Jul 2008 14:36:56 371 712 A.... "C:\Windows\System32\srcore.dll"
                    1 Aug 2008 23:57:48 3 556 A.... "C:\Windows\System32\tmp.reg"
                    1 Aug 2008 23:57:48 0 A.... "C:\Windows\System32\tmp.txt"
                    28 Jul 2008 14:21:32 1 159 680 A.... "C:\Windows\System32\urlmon.dll"
                    28 Jul 2008 14:35:42 2 027 008 A.... "C:\Windows\System32\win32k.sys"
                    28 Jul 2008 14:21:42 826 368 A.... "C:\Windows\System32\wininet.dll"
                    28 Jul 2008 14:36:56 944 184 A.... "C:\Windows\System32\winload.exe"
                    28 Jul 2008 14:33:22 14 848 A.... "C:\Windows\System32\wshrm.dll"
                    7 Aug 2008 2:40:06 6 A..H. "C:\Windows\Tasks\SA.DAT"
                    7 Aug 2008 2:40:06 32 576 A.... "C:\Windows\Tasks\SCHEDLGU.TXT"
                    6 Aug 2008 13:29:40 424 A..H. "C:\Windows\Tasks\User_Feed_Synchronization-{836029E6-8F6F-49C6-B6C0-9DBD7C8AF31E}.job"
                    7 Aug 2008 2:32:08 260 A.... "C:\Windows\Tasks\V‚rifier les mises … jour de Windows Live Toolbar.job"
                    2 Aug 2008 22:11:44 38 588 A.... "C:\Windows\Temp\coinlog.log"
                    26 Jun 2008 22:58:56 0 A.... "C:\Windows\Temp\DMID7F2.tmp"
                    2 Aug 2008 12:56:52 608 A.... "C:\Windows\Temp\fwtsqmfile13.sqm"
                    2 Aug 2008 12:56:54 120 A.... "C:\Windows\Temp\fwtsqmfile14.sqm"
                    1 Aug 2008 23:21:24 120 A.... "C:\Windows\Temp\fwtsqmfile11.sqm"
                    1 Aug 2008 23:21:34 120 A.... "C:\Windows\Temp\fwtsqmfile12.sqm"
                    13 Jul 2008 21:59:22 120 A.... "C:\Windows\Temp\fwtsqmfile04.sqm"
                    13 Jul 2008 21:59:00 120 A.... "C:\Windows\Temp\fwtsqmfile17.sqm"
                    13 Jul 2008 21:59:00 120 A.... "C:\Windows\Temp\fwtsqmfile18.sqm"
                    2 Aug 2008 12:58:02 120 A.... "C:\Windows\Temp\fwtsqmfile15.sqm"
                    2 Aug 2008 13:37:08 120 A.... "C:\Windows\Temp\fwtsqmfile16.sqm"
                    30 Jul 2008 13:53:58 608 A.... "C:\Windows\Temp\fwtsqmfile07.sqm"
                    30 Jul 2008 22:03:26 608 A.... "C:\Windows\Temp\fwtsqmfile08.sqm"
                    13 Jul 2008 22:11:24 120 A.... "C:\Windows\Temp\fwtsqmfile05.sqm"
                    13 Jul 2008 22:11:24 120 A.... "C:\Windows\Temp\fwtsqmfile06.sqm"
                    13 Jul 2008 21:59:02 120 A.... "C:\Windows\Temp\fwtsqmfile19.sqm"
                    30 Jul 2008 22:03:26 120 A.... "C:\Windows\Temp\fwtsqmfile09.sqm"
                    1 Aug 2008 23:21:24 608 A.... "C:\Windows\Temp\fwtsqmfile10.sqm"
                    13 Jul 2008 21:59:04 120 A.... "C:\Windows\Temp\fwtsqmfile00.sqm"
                    13 Jul 2008 21:59:12 120 A.... "C:\Windows\Temp\fwtsqmfile01.sqm"
                    13 Jul 2008 21:59:12 120 A.... "C:\Windows\Temp\fwtsqmfile02.sqm"
                    13 Jul 2008 21:59:16 120 A.... "C:\Windows\Temp\fwtsqmfile03.sqm"
                    29 Jul 2008 18:37:02 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336821"
                    29 Jul 2008 18:27:46 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336264"
                    29 Jul 2008 18:10:28 25 887 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335226"
                    31 Jul 2008 13:07:32 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489850"
                    30 Jul 2008 0:56:46 116 A.... "C:\Windows\Temp\httproxy_clt099D35201217359604"
                    30 Jul 2008 0:50:18 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359216"
                    31 Jul 2008 15:20:02 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217497800"
                    29 Jul 2008 13:21:38 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317897"
                    30 Jul 2008 0:51:38 220 A.... "C:\Windows\Temp\httproxy_clt099D35201217359296"
                    30 Jul 2008 19:42:52 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427171"
                    31 Jul 2008 2:26:26 110 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451385"
                    30 Jul 2008 0:47:44 137 A.... "C:\Windows\Temp\httproxy_clt079946681217359062"
                    29 Jul 2008 18:30:38 3 705 A.... "C:\Windows\Temp\httproxy_clt078256E01217336437"
                    29 Jul 2008 13:22:14 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317933"
                    29 Jul 2008 18:17:06 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335624"
                    29 Jul 2008 18:07:18 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335037"
                    29 Jul 2008 18:10:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335236"
                    29 Jul 2008 18:07:38 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335057"
                    29 Jul 2008 18:10:58 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335256"
                    29 Jul 2008 18:09:28 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335166"
                    30 Jul 2008 13:15:58 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403957"
                    30 Jul 2008 19:35:08 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426706"
                    29 Jul 2008 18:30:32 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336431"
                    29 Jul 2008 13:17:12 639 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317631"
                    30 Jul 2008 19:34:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426686"
                    30 Jul 2008 19:22:06 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425925"
                    31 Jul 2008 3:00:46 110 A.... "C:\Windows\Temp\httproxy_clt0971B0181217453445"
                    29 Jul 2008 13:19:30 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317768"
                    31 Jul 2008 23:38:12 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527690"
                    30 Jul 2008 19:32:04 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426523"
                    30 Jul 2008 19:29:06 64 A.... "C:\Windows\Temp\httproxy_clt078908081217426344"
                    29 Jul 2008 13:13:42 110 A.... "C:\Windows\Temp\httproxy_clt06D393C01217317420"
                    30 Jul 2008 19:28:40 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426319"
                    30 Jul 2008 19:28:50 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426329"
                    29 Jul 2008 18:26:56 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336215"
                    29 Jul 2008 18:27:26 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336245"
                    29 Jul 2008 18:24:28 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336066"
                    29 Jul 2008 18:37:44 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336862"
                    29 Jul 2008 18:33:06 110 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336584"
                    31 Jul 2008 15:24:28 0 A.... "C:\Windows\Temp\httproxy_srv0A5E6F781217498067"
                    31 Jul 2008 13:08:32 180 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489910"
                    31 Jul 2008 13:08:52 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489930"
                    30 Jul 2008 19:58:12 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428090"
                    30 Jul 2008 19:43:42 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427221"
                    30 Jul 2008 19:58:32 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428110"
                    30 Jul 2008 19:22:36 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425954"
                    30 Jul 2008 19:46:56 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427414"
                    29 Jul 2008 18:34:08 25 509 A.... "C:\Windows\Temp\httproxy_clt078256E01217336647"
                    29 Jul 2008 18:34:58 25 872 A.... "C:\Windows\Temp\httproxy_clt078256E01217336697"
                    29 Jul 2008 18:11:38 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335297"
                    30 Jul 2008 12:35:28 110 A.... "C:\Windows\Temp\httproxy_clt077D2F301217401526"
                    29 Jul 2008 1:52:50 110 A.... "C:\Windows\Temp\httproxy_clt043A91001217276569"
                    29 Jul 2008 13:22:26 31 857 A.... "C:\Windows\Temp\httproxy_clt045295881217317944"
                    29 Jul 2008 18:07:52 3 802 A.... "C:\Windows\Temp\httproxy_clt079078901217335070"
                    30 Jul 2008 19:38:20 487 A.... "C:\Windows\Temp\httproxy_clt097A17C01217426898"
                    29 Jul 2008 18:08:00 179 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335078"
                    29 Jul 2008 18:11:18 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335277"
                    30 Jul 2008 19:35:28 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426727"
                    30 Jul 2008 19:33:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426627"
                    30 Jul 2008 19:34:08 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426647"
                    30 Jul 2008 19:34:28 518 A.... "C:\Windows\Temp\httproxy_clt096826E81217426667"
                    30 Jul 2008 19:22:38 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425956"
                    30 Jul 2008 19:21:18 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425876"
                    29 Jul 2008 13:11:18 110 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317277"
                    29 Jul 2008 13:11:28 188 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317287"
                    30 Jul 2008 13:11:46 642 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403705"
                    30 Jul 2008 13:15:32 726 A.... "C:\Windows\Temp\httproxy_clt07998A881217403930"
                    30 Jul 2008 19:32:46 549 A.... "C:\Windows\Temp\httproxy_clt078908081217426564"
                    30 Jul 2008 19:29:36 189 A.... "C:\Windows\Temp\httproxy_clt078908081217426375"
                    31 Jul 2008 13:10:28 110 A.... "C:\Windows\Temp\httproxy_clt07728A001217490027"
                    29 Jul 2008 23:05:08 90 A.... "C:\Windows\Temp\httproxy_clt0798BE281217352907"
                    29 Jul 2008 1:56:24 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276782"
                    30 Jul 2008 0:44:52 178 A.... "C:\Windows\Temp\httproxy_clt078FDF481217358891"
                    29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336744"
                    30 Jul 2008 19:13:14 23 307 A.... "C:\Windows\Temp\httproxy_clt078890D01217425392"
                    29 Jul 2008 18:08:00 3 803 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335079"
                    31 Jul 2008 23:49:40 110 A.... "C:\Windows\Temp\httproxy_clt095756001217528378"
                    29 Jul 2008 18:07:40 3 800 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335059"
                    31 Jul 2008 13:09:32 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489971"
                    30 Jul 2008 0:54:28 45 A.... "C:\Windows\Temp\httproxy_clt099D35201217359467"
                    30 Jul 2008 0:53:18 104 A.... "C:\Windows\Temp\httproxy_clt099D35201217359397"
                    30 Jul 2008 13:17:54 66 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404072"
                    30 Jul 2008 19:58:52 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428131"
                    29 Jul 2008 13:19:06 722 A.... "C:\Windows\Temp\httproxy_clt044928681217317744"
                    30 Jul 2008 19:25:02 22 925 A.... "C:\Windows\Temp\httproxy_clt097127D81217426101"
                    29 Jul 2008 13:17:46 726 A.... "C:\Windows\Temp\httproxy_clt06D666681217317664"
                    29 Jul 2008 18:09:02 3 712 A.... "C:\Windows\Temp\httproxy_clt079078901217335141"
                    30 Jul 2008 13:14:54 32 711 A.... "C:\Windows\Temp\httproxy_clt079902481217403892"
                    29 Jul 2008 18:10:30 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335228"
                    29 Jul 2008 18:13:48 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335427"
                    29 Jul 2008 18:46:22 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337380"
                    30 Jul 2008 0:55:58 117 A.... "C:\Windows\Temp\httproxy_clt07999B901217359556"
                    29 Jul 2008 13:17:14 640 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317633"
                    29 Jul 2008 18:35:54 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336752"
                    30 Jul 2008 13:15:10 726 A.... "C:\Windows\Temp\httproxy_clt07A225481217403909"
                    30 Jul 2008 19:40:42 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427041"
                    31 Jul 2008 23:39:14 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527752"
                    30 Jul 2008 19:40:02 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427001"
                    29 Jul 2008 13:22:40 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317959"
                    29 Jul 2008 19:00:22 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338220"
                    29 Jul 2008 19:00:42 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338240"
                    29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338260"
                    31 Jul 2008 2:17:30 55 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450848"
                    31 Jul 2008 2:17:50 110 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450868"
                    30 Jul 2008 19:36:26 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426784"
                    29 Jul 2008 18:25:10 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336108"
                    29 Jul 2008 18:33:36 178 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336615"
                    29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336745"
                    29 Jul 2008 18:24:50 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336088"
                    29 Jul 2008 18:14:20 22 873 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335458"
                    30 Jul 2008 19:59:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428172"
                    30 Jul 2008 19:59:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428192"
                    30 Jul 2008 19:18:28 726 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425707"
                    30 Jul 2008 19:20:28 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425827"
                    30 Jul 2008 19:44:24 45 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427263"
                    30 Jul 2008 19:59:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428152"
                    30 Jul 2008 19:49:52 363 A.... "C:\Windows\Temp\httproxy_clt07921E001217427590"
                    30 Jul 2008 19:48:58 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427536"
                    29 Jul 2008 18:46:42 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337400"
                    29 Jul 2008 18:15:22 23 337 A.... "C:\Windows\Temp\httproxy_clt079078901217335520"
                    29 Jul 2008 18:10:22 25 860 A.... "C:\Windows\Temp\httproxy_clt079078901217335221"
                    29 Jul 2008 18:16:02 23 255 A.... "C:\Windows\Temp\httproxy_clt079078901217335560"
                    29 Jul 2008 18:08:30 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335109"
                    29 Jul 2008 18:49:52 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337590"
                    29 Jul 2008 18:34:14 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336653"
                    29 Jul 2008 18:31:16 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336474"
                    29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338261"
                    30 Jul 2008 13:11:48 643 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403707"
                    30 Jul 2008 13:11:08 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403667"
                    30 Jul 2008 12:37:02 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401620"
                    29 Jul 2008 13:19:46 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317785"
                    29 Jul 2008 13:20:02 723 A.... "C:\Windows\Temp\httproxy_clt06FA66B81217317800"
                    29 Jul 2008 13:20:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317822"
                    29 Jul 2008 18:27:52 724 A.... "C:\Windows\Temp\httproxy_clt0798CF301217336271"
                    29 Jul 2008 18:33:58 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336636"
                    29 Jul 2008 18:38:16 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336895"
                    30 Jul 2008 19:36:22 725 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426780"
                    31 Jul 2008 13:08:44 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489923"
                    31 Jul 2008 13:08:54 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489933"
                    30 Jul 2008 20:01:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428272"
                    30 Jul 2008 20:09:42 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428780"
                    30 Jul 2008 20:01:34 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428292"
                    30 Jul 2008 20:00:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428252"
                    30 Jul 2008 20:09:22 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428760"
                    29 Jul 2008 13:24:34 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318072"
                    30 Jul 2008 19:50:12 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427610"
                    29 Jul 2008 13:20:20 32 003 A.... "C:\Windows\Temp\httproxy_clt045295881217317818"
                    29 Jul 2008 18:16:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335598"
                    30 Jul 2008 13:15:34 7 041 A.... "C:\Windows\Temp\httproxy_clt079902481217403933"
                    29 Jul 2008 18:50:02 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337600"
                    29 Jul 2008 18:47:02 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337421"
                    29 Jul 2008 13:21:20 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317878"
                    29 Jul 2008 18:47:22 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337441"
                    29 Jul 2008 18:49:32 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337571"
                    29 Jul 2008 18:17:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335638"
                    29 Jul 2008 18:17:40 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335658"
                    29 Jul 2008 18:19:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335777"
                    29 Jul 2008 18:14:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335479"
                    29 Jul 2008 13:21:48 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317907"
                    30 Jul 2008 1:01:42 919 A.... "C:\Windows\Temp\httproxy_clt0781C6581217359900"
                    29 Jul 2008 18:29:48 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336386"
                    29 Jul 2008 18:29:58 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336396"
                    30 Jul 2008 13:14:08 726 A.... "C:\Windows\Temp\httproxy_clt077CDA081217403847"
                    31 Jul 2008 23:49:54 110 A.... "C:\Windows\Temp\httproxy_clt077284A81217528392"
                    30 Jul 2008 13:15:24 723 A.... "C:\Windows\Temp\httproxy_clt07998A881217403923"
                    29 Jul 2008 23:35:54 175 A.... "C:\Windows\Temp\httproxy_clt099D68381217354753"
                    30 Jul 2008 19:36:46 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426805"
                    30 Jul 2008 19:29:00 148 A.... "C:\Windows\Temp\httproxy_clt078908081217426338"
                    29 Jul 2008 13:21:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317883"
                    31 Jul 2008 23:48:48 110 A.... "C:\Windows\Temp\httproxy_clt0772A6B81217528326"
                    30 Jul 2008 19:18:22 3 798 A.... "C:\Windows\Temp\httproxy_clt097127D81217425700"
                    29 Jul 2008 19:06:08 163 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338566"
                    29 Jul 2008 18:34:18 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336657"
                    29 Jul 2008 18:34:38 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336677"
                    30 Jul 2008 19:39:22 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426960"
                    29 Jul 2008 18:15:40 23 337 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335539"
                    29 Jul 2008 23:44:52 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355290"
                    30 Jul 2008 20:10:02 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428800"
                    30 Jul 2008 20:00:14 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428213"
                    29 Jul 2008 23:43:32 120 A.... "C:\Windows\Temp\httproxy_clt078408781217355210"
                    30 Jul 2008 20:01:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428313"
                    30 Jul 2008 20:00:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428233"
                    29 Jul 2008 23:43:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355230"
                    29 Jul 2008 13:18:58 726 A.... "C:\Windows\Temp\httproxy_clt044928681217317737"
                    30 Jul 2008 19:44:36 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427275"
                    29 Jul 2008 18:20:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335798"
                    29 Jul 2008 18:18:20 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335699"
                    29 Jul 2008 18:11:44 25 887 A.... "C:\Windows\Temp\httproxy_clt079078901217335303"
                    29 Jul 2008 18:40:16 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337014"
                    29 Jul 2008 18:48:44 58 A.... "C:\Windows\Temp\httproxy_clt079078901217337522"
                    29 Jul 2008 18:50:32 169 A.... "C:\Windows\Temp\httproxy_clt079078901217337631"
                    29 Jul 2008 18:20:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335818"
                    30 Jul 2008 19:24:46 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426084"
                    30 Jul 2008 19:24:02 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426040"
                    29 Jul 2008 18:18:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335679"
                    29 Jul 2008 1:56:22 110 A.... "C:\Windows\Temp\httproxy_clt043AB3101217276780"
                    30 Jul 2008 19:26:22 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426180"
                    30 Jul 2008 19:40:26 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427024"
                    30 Jul 2008 19:43:54 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427233"
                    29 Jul 2008 23:35:26 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354724"
                    29 Jul 2008 13:19:18 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317757"
                    29 Jul 2008 23:36:54 162 A.... "C:\Windows\Temp\httproxy_clt099D68381217354813"
                    30 Jul 2008 19:37:18 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426836"
                    30 Jul 2008 19:37:38 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426856"
                    29 Jul 2008 18:24:26 30 165 A.... "C:\Windows\Temp\httproxy_clt079056801217336064"
                    30 Jul 2008 19:18:12 3 807 A.... "C:\Windows\Temp\httproxy_clt097127D81217425691"
                    29 Jul 2008 19:06:08 1 106 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338567"
                    31 Jul 2008 0:49:42 110 A.... "C:\Windows\Temp\httproxy_clt097149E81217445581"
                    30 Jul 2008 20:58:26 163 A.... "C:\Windows\Temp\httproxy_clt078890D01217431704"
                    29 Jul 2008 18:35:20 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336718"
                    30 Jul 2008 19:12:58 23 303 A.... "C:\Windows\Temp\httproxy_clt078890D01217425376"
                    29 Jul 2008 18:35:00 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336698"
                    30 Jul 2008 19:43:04 3 795 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427183"
                    31 Jul 2008 13:09:26 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489965"
                    31 Jul 2008 13:09:36 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489975"
                    30 Jul 2008 0:58:30 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359709"
                    29 Jul 2008 23:44:32 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355271"
                    29 Jul 2008 23:47:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355470"
                    30 Jul 2008 20:02:56 363 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428374"
                    29 Jul 2008 23:42:54 45 A.... "C:\Windows\Temp\httproxy_clt078408781217355172"
                    30 Jul 2008 20:03:16 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428394"
                    29 Jul 2008 18:53:36 264 A.... "C:\Windows\Temp\httproxy_clt079924581217337815"
                    29 Jul 2008 23:45:02 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355301"
                    29 Jul 2008 23:45:12 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355311"
                    30 Jul 2008 19:44:08 363 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427246"
                    29 Jul 2008 18:53:56 295 A.... "C:\Windows\Temp\httproxy_clt079924581217337835"
                    30 Jul 2008 20:02:16 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428334"
                    29 Jul 2008 23:45:32 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355331"
                    29 Jul 2008 23:49:02 189 A.... "C:\Windows\Temp\httproxy_clt078408781217355540"
                    29 Jul 2008 23:48:32 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355510"
                    29 Jul 2008 23:48:12 173 A.... "C:\Windows\Temp\httproxy_clt078529881217355490"
                    29 Jul 2008 13:24:16 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318054"
                    29 Jul 2008 13:22:00 31 863 A.... "C:\Windows\Temp\httproxy_clt045295881217317919"
                    30 Jul 2008 13:15:46 31 939 A.... "C:\Windows\Temp\httproxy_clt079902481217403945"
                    29 Jul 2008 18:50:04 173 A.... "C:\Windows\Temp\httproxy_clt079078901217337602"
                    30 Jul 2008 19:25:26 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426125"
                    29 Jul 2008 18:40:36 364 A.... "C:\Windows\Temp\httproxy_clt079078901217337035"
                    29 Jul 2008 18:49:04 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337543"
                    29 Jul 2008 18:09:26 3 815 A.... "C:\Windows\Temp\httproxy_clt079078901217335165"
                    29 Jul 2008 18:40:56 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337055"
                    29 Jul 2008 18:50:54 272 A.... "C:\Windows\Temp\httproxy_clt079078901217337652"
                    29 Jul 2008 18:49:34 182 A.... "C:\Windows\Temp\httproxy_clt079078901217337573"
                    30 Jul 2008 19:23:22 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426001"
                    29 Jul 2008 18:20:40 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335839"
                    29 Jul 2008 18:21:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335859"
                    29 Jul 2008 18:30:08 723 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336407"
                    29 Jul 2008 18:35:08 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336706"
                    29 Jul 2008 13:15:48 110 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317547"
                    29 Jul 2008 18:32:38 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336557"
                    30 Jul 2008 19:42:56 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427175"
                    31 Jul 2008 23:39:18 107 A.... "C:\Windows\Temp\httproxy_clt095767081217527756"
                    31 Jul 2008 23:43:28 110 A.... "C:\Windows\Temp\httproxy_clt096001C81217528007"
                    30 Jul 2008 19:42:06 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427125"
                    29 Jul 2008 18:36:42 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336801"
                    31 Jul 2008 23:47:02 32 837 A.... "C:\Windows\Temp\httproxy_clt095722E81217528220"
                    30 Jul 2008 20:10:54 177 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217428853"
                    29 Jul 2008 23:41:56 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355114"
                    30 Jul 2008 19:39:38 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426977"
                    29 Jul 2008 18:34:44 25 538 A.... "C:\Windows\Temp\httproxy_clt079056801217336682"
                    30 Jul 2008 12:45:42 110 A.... "C:\Windows\Temp\httproxy_clt07A203381217402141"
                    30 Jul 2008 19:22:52 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217425971"
                    30 Jul 2008 20:58:26 1 123 A.... "C:\Windows\Temp\httproxy_clt078890D01217431705"
                    29 Jul 2008 18:35:40 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336739"
                    30 Jul 2008 19:39:04 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426942"
                    30 Jul 2008 19:37:24 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426842"
                    30 Jul 2008 12:51:12 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402471"
                    31 Jul 2008 13:08:48 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489926"
                    31 Jul 2008 13:08:58 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489936"
                    29 Jul 2008 23:46:14 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355372"
                    29 Jul 2008 23:44:44 197 A.... "C:\Windows\Temp\httproxy_clt078408781217355282"
                    30 Jul 2008 20:04:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428494"
                    29 Jul 2008 23:45:04 166 A.... "C:\Windows\Temp\httproxy_clt078408781217355302"
                    30 Jul 2008 20:03:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428414"
                    30 Jul 2008 20:05:16 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428514"
                    29 Jul 2008 23:45:24 213 A.... "C:\Windows\Temp\httproxy_clt078408781217355322"
                    29 Jul 2008 23:48:42 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355521"
                    30 Jul 2008 20:03:56 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428434"
                    29 Jul 2008 23:47:12 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355431"
                    30 Jul 2008 20:04:16 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428454"
                    30 Jul 2008 20:02:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428355"
                    29 Jul 2008 23:45:54 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355352"
                    29 Jul 2008 23:48:42 169 A.... "C:\Windows\Temp\httproxy_clt078529881217355521"
                    29 Jul 2008 23:45:54 183 A.... "C:\Windows\Temp\httproxy_clt078529881217355352"
                    30 Jul 2008 19:46:46 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427404"
                    29 Jul 2008 23:49:32 182 A.... "C:\Windows\Temp\httproxy_clt078529881217355571"
                    29 Jul 2008 23:46:34 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355392"
                    30 Jul 2008 19:50:44 263 A.... "C:\Windows\Temp\httproxy_clt07921E001217427643"
                    29 Jul 2008 18:23:14 129 A.... "C:\Windows\Temp\httproxy_clt09949A601217335992"
                    29 Jul 2008 18:41:58 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337116"
                    30 Jul 2008 19:28:36 3 174 A.... "C:\Windows\Temp\httproxy_clt097127D81217426315"
                    29 Jul 2008 18:42:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337136"
                    29 Jul 2008 18:09:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335181"
                    29 Jul 2008 18:42:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337156"
                    29 Jul 2008 18:42:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337176"
                    29 Jul 2008 18:41:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337076"
                    29 Jul 2008 18:43:18 426 A.... "C:\Windows\Temp\httproxy_clt079078901217337196"
                    29 Jul 2008 18:41:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337096"
                    29 Jul 2008 18:11:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335300"
                    31 Jul 2008 2:21:48 110 A.... "C:\Windows\Temp\httproxy_clt07807E501217451107"
                    30 Jul 2008 19:40:58 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427056"
                    30 Jul 2008 19:41:28 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427086"
                    30 Jul 2008 19:29:32 64 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426371"
                    31 Jul 2008 14:06:26 16 384 A.... "C:\Windows\Temp\httproxy_srv0A5DB4201217493384"
                    29 Jul 2008 18:05:40 1 958 A.... "C:\Windows\Temp\httproxy_clt077D0D201217334939"
                    29 Jul 2008 18:37:24 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336842"
                    29 Jul 2008 23:36:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354796"
                    30 Jul 2008 12:37:06 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401624"
                    29 Jul 2008 18:23:44 726 A.... "C:\Windows\Temp\httproxy_clt077CC9001217336022"
                    29 Jul 2008 23:41:18 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355076"
                    30 Jul 2008 19:36:00 45 A.... "C:\Windows\Temp\httproxy_clt078908081217426759"
                    30 Jul 2008 19:28:12 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426291"
                    29 Jul 2008 13:21:18 724 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317876"
                    29 Jul 2008 18:25:08 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336106"
                    30 Jul 2008 19:18:44 3 794 A.... "C:\Windows\Temp\httproxy_clt097127D81217425723"
                    29 Jul 2008 1:55:30 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276728"
                    30 Jul 2008 19:23:04 3 129 A.... "C:\Windows\Temp\httproxy_clt097127D81217425982"
                    30 Jul 2008 12:45:04 142 A.... "C:\Windows\Temp\httproxy_clt07A203381217402102"
                    30 Jul 2008 19:39:14 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426953"
                    30 Jul 2008 12:50:14 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402412"
                    29 Jul 2008 18:13:52 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335431"
                    31 Jul 2008 13:07:50 204 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489868"
                    31 Jul 2008 13:08:58 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489937"
                    30 Jul 2008 20:04:36 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428475"
                    30 Jul 2008 20:06:16 356 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428575"
                    29 Jul 2008 23:46:34 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355393"
                    29 Jul 2008 23:43:34 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355213"
                    29 Jul 2008 23:43:44 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355223"
                    29 Jul 2008 23:43:54 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355233"
                    30 Jul 2008 20:05:36 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428535"
                    30 Jul 2008 20:05:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428555"
                    29 Jul 2008 1:47:16 312 A.... "C:\Windows\Temp\httproxy_clt043146001217276235"
                    30 Jul 2008 13:13:32 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403810"
                    29 Jul 2008 23:47:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355432"
                    29 Jul 2008 23:46:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355373"
                    30 Jul 2008 19:47:06 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427425"
                    29 Jul 2008 13:23:58 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318036"
                    30 Jul 2008 19:47:26 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427445"
                    29 Jul 2008 18:10:34 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335232"
                    29 Jul 2008 18:13:46 22 875 A.... "C:\Windows\Temp\httproxy_clt079078901217335425"
                    30 Jul 2008 19:17:58 726 A.... "C:\Windows\Temp\httproxy_clt07803A301217425676"
                    29 Jul 2008 18:50:26 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337624"
                    29 Jul 2008 18:50:36 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337634"
                    30 Jul 2008 19:25:58 23 379 A.... "C:\Windows\Temp\httproxy_clt097127D81217426157"
                    29 Jul 2008 18:49:46 188 A.... "C:\Windows\Temp\httproxy_clt079078901217337585"
                    29 Jul 2008 13:18:02 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317680"
                    30 Jul 2008 19:29:14 213 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426352"
                    30 Jul 2008 19:25:04 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426103"
                    29 Jul 2008 18:56:58 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338017"
                    29 Jul 2008 18:58:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338117"
                    29 Jul 2008 18:38:04 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336883"
                    29 Jul 2008 18:57:18 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338037"
                    29 Jul 2008 18:57:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338057"
                    31 Jul 2008 23:45:34 3 684 A.... "C:\Windows\Temp\httproxy_clt095722E81217528133"
                    29 Jul 2008 23:37:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354856"
                    30 Jul 2008 19:52:26 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427744"
                    30 Jul 2008 19:52:46 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427764"
                    30 Jul 2008 19:19:22 129 A.... "C:\Windows\Temp\httproxy_clt0779EA781217425760"
                    29 Jul 2008 18:24:48 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336087"
                    29 Jul 2008 18:37:44 25 838 A.... "C:\Windows\Temp\httproxy_clt079056801217336863"
                    29 Jul 2008 18:06:34 3 699 A.... "C:\Windows\Temp\httproxy_clt079078901217334993"
                    29 Jul 2008 23:51:40 312 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217355698"
                    31 Jul 2008 23:45:12 110 A.... "C:\Windows\Temp\httproxy_clt095778101217528110"
                    29 Jul 2008 18:24:10 14 218 A.... "C:\Windows\Temp\httproxych_tmp077E63281217336049"
                    31 Jul 2008 13:08:20 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489899"
                    29 Jul 2008 18:13:24 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335402"
                    29 Jul 2008 18:13:34 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335412"
                    29 Jul 2008 23:44:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355294"
                    30 Jul 2008 13:17:00 110 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404019"
                    30 Jul 2008 20:06:38 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428596"
                    30 Jul 2008 19:56:50 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428008"
                    29 Jul 2008 23:46:54 222 A.... "C:\Windows\Temp\httproxy_clt078408781217355413"
                    30 Jul 2008 19:57:10 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428028"
                    29 Jul 2008 23:48:44 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355523"
                    29 Jul 2008 23:47:14 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355433"
                    29 Jul 2008 18:54:10 673 A.... "C:\Windows\Temp\httproxy_clt079924581217337848"
                    29 Jul 2008 23:44:16 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355254"
                    29 Jul 2008 23:45:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355354"
                    29 Jul 2008 13:24:48 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318087"
                    29 Jul 2008 23:46:54 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355413"
                    29 Jul 2008 23:47:44 259 A.... "C:\Windows\Temp\httproxy_clt078529881217355463"
                    30 Jul 2008 19:22:18 3 133 A.... "C:\Windows\Temp\httproxy_clt078018201217425936"
                    29 Jul 2008 18:16:52 723 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335611"
                    29 Jul 2008 18:17:12 725 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335631"
                    29 Jul 2008 1:58:24 110 A.... "C:\Windows\Temp\httproxy_clt043909481217276902"
                    30 Jul 2008 13:15:52 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403950"
                    29 Jul 2008 18:43:38 357 A.... "C:\Windows\Temp\httproxy_clt079078901217337217"
                    29 Jul 2008 18:09:34 723 A.... "C:\Windows\Temp\httproxy_clt079089981217335173"
                    29 Jul 2008 18:07:30 3 793 A.... "C:\Windows\Temp\httproxy_clt079078901217335048"
                    29 Jul 2008 18:43:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337237"
                    29 Jul 2008 18:49:08 174 A.... "C:\Windows\Temp\httproxy_clt079078901217337546"
                    29 Jul 2008 18:49:28 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337566"
                    30 Jul 2008 19:26:20 23 381 A.... "C:\Windows\Temp\httproxy_clt097127D81217426178"
                    29 Jul 2008 18:10:00 25 512 A.... "C:\Windows\Temp\httproxy_clt079078901217335198"
                    30 Jul 2008 19:28:08 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217426287"
                    30 Jul 2008 19:23:46 726 A.... &
                    0
                3. Contributeur sécurité
                  Euh... C'est un rapport de SDFix ça ? Je n'ai jamais vu ça... En plus il est coupé, il manque la fin, peux-tu poster le reste pour voir stp ?

                  "quand je passais par le mode msconfig"
                  ==> à éviter, tu risque de te retrouver bloqué comme ça...
                  Pour le mode sans échec, parfois c'est la touche F5 qu'il faut presser et non F8

                  0
                  1. 29 Jul 2008 18:37:02 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336821"
                    29 Jul 2008 18:27:46 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336264"
                    29 Jul 2008 18:10:28 25 887 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335226"
                    31 Jul 2008 13:07:32 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489850"
                    30 Jul 2008 0:56:46 116 A.... "C:\Windows\Temp\httproxy_clt099D35201217359604"
                    30 Jul 2008 0:50:18 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359216"
                    31 Jul 2008 15:20:02 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217497800"
                    29 Jul 2008 13:21:38 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317897"
                    30 Jul 2008 0:51:38 220 A.... "C:\Windows\Temp\httproxy_clt099D35201217359296"
                    30 Jul 2008 19:42:52 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427171"
                    31 Jul 2008 2:26:26 110 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451385"
                    30 Jul 2008 0:47:44 137 A.... "C:\Windows\Temp\httproxy_clt079946681217359062"
                    29 Jul 2008 18:30:38 3 705 A.... "C:\Windows\Temp\httproxy_clt078256E01217336437"
                    29 Jul 2008 13:22:14 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317933"
                    29 Jul 2008 18:17:06 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335624"
                    29 Jul 2008 18:07:18 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335037"
                    29 Jul 2008 18:10:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335236"
                    29 Jul 2008 18:07:38 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335057"
                    29 Jul 2008 18:10:58 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335256"
                    29 Jul 2008 18:09:28 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335166"
                    30 Jul 2008 13:15:58 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403957"
                    30 Jul 2008 19:35:08 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426706"
                    29 Jul 2008 18:30:32 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336431"
                    29 Jul 2008 13:17:12 639 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317631"
                    30 Jul 2008 19:34:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426686"
                    30 Jul 2008 19:22:06 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425925"
                    31 Jul 2008 3:00:46 110 A.... "C:\Windows\Temp\httproxy_clt0971B0181217453445"
                    29 Jul 2008 13:19:30 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317768"
                    31 Jul 2008 23:38:12 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527690"
                    30 Jul 2008 19:32:04 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426523"
                    30 Jul 2008 19:29:06 64 A.... "C:\Windows\Temp\httproxy_clt078908081217426344"
                    29 Jul 2008 13:13:42 110 A.... "C:\Windows\Temp\httproxy_clt06D393C01217317420"
                    30 Jul 2008 19:28:40 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426319"
                    30 Jul 2008 19:28:50 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426329"
                    29 Jul 2008 18:26:56 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336215"
                    29 Jul 2008 18:27:26 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336245"
                    29 Jul 2008 18:24:28 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336066"
                    29 Jul 2008 18:37:44 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336862"
                    29 Jul 2008 18:33:06 110 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336584"
                    31 Jul 2008 15:24:28 0 A.... "C:\Windows\Temp\httproxy_srv0A5E6F781217498067"
                    31 Jul 2008 13:08:32 180 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489910"
                    31 Jul 2008 13:08:52 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489930"
                    30 Jul 2008 19:58:12 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428090"
                    30 Jul 2008 19:43:42 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427221"
                    30 Jul 2008 19:58:32 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428110"
                    30 Jul 2008 19:22:36 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425954"
                    30 Jul 2008 19:46:56 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427414"
                    29 Jul 2008 18:34:08 25 509 A.... "C:\Windows\Temp\httproxy_clt078256E01217336647"
                    29 Jul 2008 18:34:58 25 872 A.... "C:\Windows\Temp\httproxy_clt078256E01217336697"
                    29 Jul 2008 18:11:38 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335297"
                    30 Jul 2008 12:35:28 110 A.... "C:\Windows\Temp\httproxy_clt077D2F301217401526"
                    29 Jul 2008 1:52:50 110 A.... "C:\Windows\Temp\httproxy_clt043A91001217276569"
                    29 Jul 2008 13:22:26 31 857 A.... "C:\Windows\Temp\httproxy_clt045295881217317944"
                    29 Jul 2008 18:07:52 3 802 A.... "C:\Windows\Temp\httproxy_clt079078901217335070"
                    30 Jul 2008 19:38:20 487 A.... "C:\Windows\Temp\httproxy_clt097A17C01217426898"
                    29 Jul 2008 18:08:00 179 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335078"
                    29 Jul 2008 18:11:18 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335277"
                    30 Jul 2008 19:35:28 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426727"
                    30 Jul 2008 19:33:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426627"
                    30 Jul 2008 19:34:08 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426647"
                    30 Jul 2008 19:34:28 518 A.... "C:\Windows\Temp\httproxy_clt096826E81217426667"
                    30 Jul 2008 19:22:38 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425956"
                    30 Jul 2008 19:21:18 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425876"
                    29 Jul 2008 13:11:18 110 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317277"
                    29 Jul 2008 13:11:28 188 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317287"
                    30 Jul 2008 13:11:46 642 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403705"
                    30 Jul 2008 13:15:32 726 A.... "C:\Windows\Temp\httproxy_clt07998A881217403930"
                    30 Jul 2008 19:32:46 549 A.... "C:\Windows\Temp\httproxy_clt078908081217426564"
                    30 Jul 2008 19:29:36 189 A.... "C:\Windows\Temp\httproxy_clt078908081217426375"
                    31 Jul 2008 13:10:28 110 A.... "C:\Windows\Temp\httproxy_clt07728A001217490027"
                    29 Jul 2008 23:05:08 90 A.... "C:\Windows\Temp\httproxy_clt0798BE281217352907"
                    29 Jul 2008 1:56:24 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276782"
                    30 Jul 2008 0:44:52 178 A.... "C:\Windows\Temp\httproxy_clt078FDF481217358891"
                    29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336744"
                    30 Jul 2008 19:13:14 23 307 A.... "C:\Windows\Temp\httproxy_clt078890D01217425392"
                    29 Jul 2008 18:08:00 3 803 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335079"
                    31 Jul 2008 23:49:40 110 A.... "C:\Windows\Temp\httproxy_clt095756001217528378"
                    29 Jul 2008 18:07:40 3 800 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335059"
                    31 Jul 2008 13:09:32 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489971"
                    30 Jul 2008 0:54:28 45 A.... "C:\Windows\Temp\httproxy_clt099D35201217359467"
                    30 Jul 2008 0:53:18 104 A.... "C:\Windows\Temp\httproxy_clt099D35201217359397"
                    30 Jul 2008 13:17:54 66 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404072"
                    30 Jul 2008 19:58:52 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428131"
                    29 Jul 2008 13:19:06 722 A.... "C:\Windows\Temp\httproxy_clt044928681217317744"
                    30 Jul 2008 19:25:02 22 925 A.... "C:\Windows\Temp\httproxy_clt097127D81217426101"
                    29 Jul 2008 13:17:46 726 A.... "C:\Windows\Temp\httproxy_clt06D666681217317664"
                    29 Jul 2008 18:09:02 3 712 A.... "C:\Windows\Temp\httproxy_clt079078901217335141"
                    30 Jul 2008 13:14:54 32 711 A.... "C:\Windows\Temp\httproxy_clt079902481217403892"
                    29 Jul 2008 18:10:30 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335228"
                    29 Jul 2008 18:13:48 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335427"
                    29 Jul 2008 18:46:22 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337380"
                    30 Jul 2008 0:55:58 117 A.... "C:\Windows\Temp\httproxy_clt07999B901217359556"
                    29 Jul 2008 13:17:14 640 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317633"
                    29 Jul 2008 18:35:54 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336752"
                    30 Jul 2008 13:15:10 726 A.... "C:\Windows\Temp\httproxy_clt07A225481217403909"
                    30 Jul 2008 19:40:42 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427041"
                    31 Jul 2008 23:39:14 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527752"
                    30 Jul 2008 19:40:02 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427001"
                    29 Jul 2008 13:22:40 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317959"
                    29 Jul 2008 19:00:22 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338220"
                    29 Jul 2008 19:00:42 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338240"
                    29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338260"
                    31 Jul 2008 2:17:30 55 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450848"
                    31 Jul 2008 2:17:50 110 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450868"
                    30 Jul 2008 19:36:26 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426784"
                    29 Jul 2008 18:25:10 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336108"
                    29 Jul 2008 18:33:36 178 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336615"
                    29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336745"
                    29 Jul 2008 18:24:50 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336088"
                    29 Jul 2008 18:14:20 22 873 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335458"
                    30 Jul 2008 19:59:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428172"
                    30 Jul 2008 19:59:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428192"
                    30 Jul 2008 19:18:28 726 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425707"
                    30 Jul 2008 19:20:28 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425827"
                    30 Jul 2008 19:44:24 45 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427263"
                    30 Jul 2008 19:59:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428152"
                    30 Jul 2008 19:49:52 363 A.... "C:\Windows\Temp\httproxy_clt07921E001217427590"
                    30 Jul 2008 19:48:58 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427536"
                    29 Jul 2008 18:46:42 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337400"
                    29 Jul 2008 18:15:22 23 337 A.... "C:\Windows\Temp\httproxy_clt079078901217335520"
                    29 Jul 2008 18:10:22 25 860 A.... "C:\Windows\Temp\httproxy_clt079078901217335221"
                    29 Jul 2008 18:16:02 23 255 A.... "C:\Windows\Temp\httproxy_clt079078901217335560"
                    29 Jul 2008 18:08:30 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335109"
                    29 Jul 2008 18:49:52 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337590"
                    29 Jul 2008 18:34:14 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336653"
                    29 Jul 2008 18:31:16 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336474"
                    29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338261"
                    30 Jul 2008 13:11:48 643 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403707"
                    30 Jul 2008 13:11:08 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403667"
                    30 Jul 2008 12:37:02 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401620"
                    29 Jul 2008 13:19:46 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317785"
                    29 Jul 2008 13:20:02 723 A.... "C:\Windows\Temp\httproxy_clt06FA66B81217317800"
                    29 Jul 2008 13:20:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317822"
                    29 Jul 2008 18:27:52 724 A.... "C:\Windows\Temp\httproxy_clt0798CF301217336271"
                    29 Jul 2008 18:33:58 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336636"
                    29 Jul 2008 18:38:16 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336895"
                    30 Jul 2008 19:36:22 725 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426780"
                    31 Jul 2008 13:08:44 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489923"
                    31 Jul 2008 13:08:54 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489933"
                    30 Jul 2008 20:01:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428272"
                    30 Jul 2008 20:09:42 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428780"
                    30 Jul 2008 20:01:34 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428292"
                    30 Jul 2008 20:00:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428252"
                    30 Jul 2008 20:09:22 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428760"
                    29 Jul 2008 13:24:34 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318072"
                    30 Jul 2008 19:50:12 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427610"
                    29 Jul 2008 13:20:20 32 003 A.... "C:\Windows\Temp\httproxy_clt045295881217317818"
                    29 Jul 2008 18:16:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335598"
                    30 Jul 2008 13:15:34 7 041 A.... "C:\Windows\Temp\httproxy_clt079902481217403933"
                    29 Jul 2008 18:50:02 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337600"
                    29 Jul 2008 18:47:02 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337421"
                    29 Jul 2008 13:21:20 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317878"
                    29 Jul 2008 18:47:22 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337441"
                    29 Jul 2008 18:49:32 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337571"
                    29 Jul 2008 18:17:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335638"
                    29 Jul 2008 18:17:40 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335658"
                    29 Jul 2008 18:19:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335777"
                    29 Jul 2008 18:14:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335479"
                    29 Jul 2008 13:21:48 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317907"
                    30 Jul 2008 1:01:42 919 A.... "C:\Windows\Temp\httproxy_clt0781C6581217359900"
                    29 Jul 2008 18:29:48 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336386"
                    29 Jul 2008 18:29:58 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336396"
                    30 Jul 2008 13:14:08 726 A.... "C:\Windows\Temp\httproxy_clt077CDA081217403847"
                    31 Jul 2008 23:49:54 110 A.... "C:\Windows\Temp\httproxy_clt077284A81217528392"
                    30 Jul 2008 13:15:24 723 A.... "C:\Windows\Temp\httproxy_clt07998A881217403923"
                    29 Jul 2008 23:35:54 175 A.... "C:\Windows\Temp\httproxy_clt099D68381217354753"
                    30 Jul 2008 19:36:46 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426805"
                    30 Jul 2008 19:29:00 148 A.... "C:\Windows\Temp\httproxy_clt078908081217426338"
                    29 Jul 2008 13:21:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317883"
                    31 Jul 2008 23:48:48 110 A.... "C:\Windows\Temp\httproxy_clt0772A6B81217528326"
                    30 Jul 2008 19:18:22 3 798 A.... "C:\Windows\Temp\httproxy_clt097127D81217425700"
                    29 Jul 2008 19:06:08 163 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338566"
                    29 Jul 2008 18:34:18 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336657"
                    29 Jul 2008 18:34:38 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336677"
                    30 Jul 2008 19:39:22 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426960"
                    29 Jul 2008 18:15:40 23 337 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335539"
                    29 Jul 2008 23:44:52 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355290"
                    30 Jul 2008 20:10:02 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428800"
                    30 Jul 2008 20:00:14 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428213"
                    29 Jul 2008 23:43:32 120 A.... "C:\Windows\Temp\httproxy_clt078408781217355210"
                    30 Jul 2008 20:01:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428313"
                    30 Jul 2008 20:00:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428233"
                    29 Jul 2008 23:43:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355230"
                    29 Jul 2008 13:18:58 726 A.... "C:\Windows\Temp\httproxy_clt044928681217317737"
                    30 Jul 2008 19:44:36 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427275"
                    29 Jul 2008 18:20:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335798"
                    29 Jul 2008 18:18:20 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335699"
                    29 Jul 2008 18:11:44 25 887 A.... "C:\Windows\Temp\httproxy_clt079078901217335303"
                    29 Jul 2008 18:40:16 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337014"
                    29 Jul 2008 18:48:44 58 A.... "C:\Windows\Temp\httproxy_clt079078901217337522"
                    29 Jul 2008 18:50:32 169 A.... "C:\Windows\Temp\httproxy_clt079078901217337631"
                    29 Jul 2008 18:20:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335818"
                    30 Jul 2008 19:24:46 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426084"
                    30 Jul 2008 19:24:02 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426040"
                    29 Jul 2008 18:18:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335679"
                    29 Jul 2008 1:56:22 110 A.... "C:\Windows\Temp\httproxy_clt043AB3101217276780"
                    30 Jul 2008 19:26:22 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426180"
                    30 Jul 2008 19:40:26 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427024"
                    30 Jul 2008 19:43:54 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427233"
                    29 Jul 2008 23:35:26 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354724"
                    29 Jul 2008 13:19:18 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317757"
                    29 Jul 2008 23:36:54 162 A.... "C:\Windows\Temp\httproxy_clt099D68381217354813"
                    30 Jul 2008 19:37:18 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426836"
                    30 Jul 2008 19:37:38 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426856"
                    29 Jul 2008 18:24:26 30 165 A.... "C:\Windows\Temp\httproxy_clt079056801217336064"
                    30 Jul 2008 19:18:12 3 807 A.... "C:\Windows\Temp\httproxy_clt097127D81217425691"
                    29 Jul 2008 19:06:08 1 106 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338567"
                    31 Jul 2008 0:49:42 110 A.... "C:\Windows\Temp\httproxy_clt097149E81217445581"
                    30 Jul 2008 20:58:26 163 A.... "C:\Windows\Temp\httproxy_clt078890D01217431704"
                    29 Jul 2008 18:35:20 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336718"
                    30 Jul 2008 19:12:58 23 303 A.... "C:\Windows\Temp\httproxy_clt078890D01217425376"
                    29 Jul 2008 18:35:00 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336698"
                    30 Jul 2008 19:43:04 3 795 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427183"
                    31 Jul 2008 13:09:26 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489965"
                    31 Jul 2008 13:09:36 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489975"
                    30 Jul 2008 0:58:30 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359709"
                    29 Jul 2008 23:44:32 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355271"
                    29 Jul 2008 23:47:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355470"
                    30 Jul 2008 20:02:56 363 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428374"
                    29 Jul 2008 23:42:54 45 A.... "C:\Windows\Temp\httproxy_clt078408781217355172"
                    30 Jul 2008 20:03:16 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428394"
                    29 Jul 2008 18:53:36 264 A.... "C:\Windows\Temp\httproxy_clt079924581217337815"
                    29 Jul 2008 23:45:02 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355301"
                    29 Jul 2008 23:45:12 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355311"
                    30 Jul 2008 19:44:08 363 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427246"
                    29 Jul 2008 18:53:56 295 A.... "C:\Windows\Temp\httproxy_clt079924581217337835"
                    30 Jul 2008 20:02:16 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428334"
                    29 Jul 2008 23:45:32 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355331"
                    29 Jul 2008 23:49:02 189 A.... "C:\Windows\Temp\httproxy_clt078408781217355540"
                    29 Jul 2008 23:48:32 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355510"
                    29 Jul 2008 23:48:12 173 A.... "C:\Windows\Temp\httproxy_clt078529881217355490"
                    29 Jul 2008 13:24:16 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318054"
                    29 Jul 2008 13:22:00 31 863 A.... "C:\Windows\Temp\httproxy_clt045295881217317919"
                    30 Jul 2008 13:15:46 31 939 A.... "C:\Windows\Temp\httproxy_clt079902481217403945"
                    29 Jul 2008 18:50:04 173 A.... "C:\Windows\Temp\httproxy_clt079078901217337602"
                    30 Jul 2008 19:25:26 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426125"
                    29 Jul 2008 18:40:36 364 A.... "C:\Windows\Temp\httproxy_clt079078901217337035"
                    29 Jul 2008 18:49:04 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337543"
                    29 Jul 2008 18:09:26 3 815 A.... "C:\Windows\Temp\httproxy_clt079078901217335165"
                    29 Jul 2008 18:40:56 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337055"
                    29 Jul 2008 18:50:54 272 A.... "C:\Windows\Temp\httproxy_clt079078901217337652"
                    29 Jul 2008 18:49:34 182 A.... "C:\Windows\Temp\httproxy_clt079078901217337573"
                    30 Jul 2008 19:23:22 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426001"
                    29 Jul 2008 18:20:40 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335839"
                    29 Jul 2008 18:21:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335859"
                    29 Jul 2008 18:30:08 723 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336407"
                    29 Jul 2008 18:35:08 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336706"
                    29 Jul 2008 13:15:48 110 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317547"
                    29 Jul 2008 18:32:38 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336557"
                    30 Jul 2008 19:42:56 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427175"
                    31 Jul 2008 23:39:18 107 A.... "C:\Windows\Temp\httproxy_clt095767081217527756"
                    31 Jul 2008 23:43:28 110 A.... "C:\Windows\Temp\httproxy_clt096001C81217528007"
                    30 Jul 2008 19:42:06 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427125"
                    29 Jul 2008 18:36:42 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336801"
                    31 Jul 2008 23:47:02 32 837 A.... "C:\Windows\Temp\httproxy_clt095722E81217528220"
                    30 Jul 2008 20:10:54 177 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217428853"
                    29 Jul 2008 23:41:56 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355114"
                    30 Jul 2008 19:39:38 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426977"
                    29 Jul 2008 18:34:44 25 538 A.... "C:\Windows\Temp\httproxy_clt079056801217336682"
                    30 Jul 2008 12:45:42 110 A.... "C:\Windows\Temp\httproxy_clt07A203381217402141"
                    30 Jul 2008 19:22:52 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217425971"
                    30 Jul 2008 20:58:26 1 123 A.... "C:\Windows\Temp\httproxy_clt078890D01217431705"
                    29 Jul 2008 18:35:40 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336739"
                    30 Jul 2008 19:39:04 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426942"
                    30 Jul 2008 19:37:24 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426842"
                    30 Jul 2008 12:51:12 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402471"
                    31 Jul 2008 13:08:48 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489926"
                    31 Jul 2008 13:08:58 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489936"
                    29 Jul 2008 23:46:14 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355372"
                    29 Jul 2008 23:44:44 197 A.... "C:\Windows\Temp\httproxy_clt078408781217355282"
                    30 Jul 2008 20:04:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428494"
                    29 Jul 2008 23:45:04 166 A.... "C:\Windows\Temp\httproxy_clt078408781217355302"
                    30 Jul 2008 20:03:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428414"
                    30 Jul 2008 20:05:16 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428514"
                    29 Jul 2008 23:45:24 213 A.... "C:\Windows\Temp\httproxy_clt078408781217355322"
                    29 Jul 2008 23:48:42 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355521"
                    30 Jul 2008 20:03:56 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428434"
                    29 Jul 2008 23:47:12 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355431"
                    30 Jul 2008 20:04:16 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428454"
                    30 Jul 2008 20:02:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428355"
                    29 Jul 2008 23:45:54 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355352"
                    29 Jul 2008 23:48:42 169 A.... "C:\Windows\Temp\httproxy_clt078529881217355521"
                    29 Jul 2008 23:45:54 183 A.... "C:\Windows\Temp\httproxy_clt078529881217355352"
                    30 Jul 2008 19:46:46 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427404"
                    29 Jul 2008 23:49:32 182 A.... "C:\Windows\Temp\httproxy_clt078529881217355571"
                    29 Jul 2008 23:46:34 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355392"
                    30 Jul 2008 19:50:44 263 A.... "C:\Windows\Temp\httproxy_clt07921E001217427643"
                    29 Jul 2008 18:23:14 129 A.... "C:\Windows\Temp\httproxy_clt09949A601217335992"
                    29 Jul 2008 18:41:58 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337116"
                    30 Jul 2008 19:28:36 3 174 A.... "C:\Windows\Temp\httproxy_clt097127D81217426315"
                    29 Jul 2008 18:42:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337136"
                    29 Jul 2008 18:09:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335181"
                    29 Jul 2008 18:42:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337156"
                    29 Jul 2008 18:42:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337176"
                    29 Jul 2008 18:41:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337076"
                    29 Jul 2008 18:43:18 426 A.... "C:\Windows\Temp\httproxy_clt079078901217337196"
                    29 Jul 2008 18:41:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337096"
                    29 Jul 2008 18:11:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335300"
                    31 Jul 2008 2:21:48 110 A.... "C:\Windows\Temp\httproxy_clt07807E501217451107"
                    30 Jul 2008 19:40:58 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427056"
                    30 Jul 2008 19:41:28 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427086"
                    30 Jul 2008 19:29:32 64 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426371"
                    31 Jul 2008 14:06:26 16 384 A.... "C:\Windows\Temp\httproxy_srv0A5DB4201217493384"
                    29 Jul 2008 18:05:40 1 958 A.... "C:\Windows\Temp\httproxy_clt077D0D201217334939"
                    29 Jul 2008 18:37:24 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336842"
                    29 Jul 2008 23:36:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354796"
                    30 Jul 2008 12:37:06 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401624"
                    29 Jul 2008 18:23:44 726 A.... "C:\Windows\Temp\httproxy_clt077CC9001217336022"
                    29 Jul 2008 23:41:18 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355076"
                    30 Jul 2008 19:36:00 45 A.... "C:\Windows\Temp\httproxy_clt078908081217426759"
                    30 Jul 2008 19:28:12 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426291"
                    29 Jul 2008 13:21:18 724 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317876"
                    29 Jul 2008 18:25:08 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336106"
                    30 Jul 2008 19:18:44 3 794 A.... "C:\Windows\Temp\httproxy_clt097127D81217425723"
                    29 Jul 2008 1:55:30 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276728"
                    30 Jul 2008 19:23:04 3 129 A.... "C:\Windows\Temp\httproxy_clt097127D81217425982"
                    30 Jul 2008 12:45:04 142 A.... "C:\Windows\Temp\httproxy_clt07A203381217402102"
                    30 Jul 2008 19:39:14 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426953"
                    30 Jul 2008 12:50:14 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402412"
                    29 Jul 2008 18:13:52 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335431"
                    31 Jul 2008 13:07:50 204 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489868"
                    31 Jul 2008 13:08:58 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489937"
                    30 Jul 2008 20:04:36 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428475"
                    30 Jul 2008 20:06:16 356 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428575"
                    29 Jul 2008 23:46:34 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355393"
                    29 Jul 2008 23:43:34 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355213"
                    29 Jul 2008 23:43:44 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355223"
                    29 Jul 2008 23:43:54 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355233"
                    30 Jul 2008 20:05:36 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428535"
                    30 Jul 2008 20:05:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428555"
                    29 Jul 2008 1:47:16 312 A.... "C:\Windows\Temp\httproxy_clt043146001217276235"
                    30 Jul 2008 13:13:32 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403810"
                    29 Jul 2008 23:47:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355432"
                    29 Jul 2008 23:46:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355373"
                    30 Jul 2008 19:47:06 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427425"
                    29 Jul 2008 13:23:58 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318036"
                    30 Jul 2008 19:47:26 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427445"
                    29 Jul 2008 18:10:34 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335232"
                    29 Jul 2008 18:13:46 22 875 A.... "C:\Windows\Temp\httproxy_clt079078901217335425"
                    30 Jul 2008 19:17:58 726 A.... "C:\Windows\Temp\httproxy_clt07803A301217425676"
                    29 Jul 2008 18:50:26 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337624"
                    29 Jul 2008 18:50:36 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337634"
                    30 Jul 2008 19:25:58 23 379 A.... "C:\Windows\Temp\httproxy_clt097127D81217426157"
                    29 Jul 2008 18:49:46 188 A.... "C:\Windows\Temp\httproxy_clt079078901217337585"
                    29 Jul 2008 13:18:02 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317680"
                    30 Jul 2008 19:29:14 213 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426352"
                    30 Jul 2008 19:25:04 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426103"
                    29 Jul 2008 18:56:58 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338017"
                    29 Jul 2008 18:58:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338117"
                    29 Jul 2008 18:38:04 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336883"
                    29 Jul 2008 18:57:18 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338037"
                    29 Jul 2008 18:57:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338057"
                    31 Jul 2008 23:45:34 3 684 A.... "C:\Windows\Temp\httproxy_clt095722E81217528133"
                    29 Jul 2008 23:37:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354856"
                    30 Jul 2008 19:52:26 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427744"
                    30 Jul 2008 19:52:46 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427764"
                    30 Jul 2008 19:19:22 129 A.... "C:\Windows\Temp\httproxy_clt0779EA781217425760"
                    29 Jul 2008 18:24:48 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336087"
                    29 Jul 2008 18:37:44 25 838 A.... "C:\Windows\Temp\httproxy_clt079056801217336863"
                    29 Jul 2008 18:06:34 3 699 A.... "C:\Windows\Temp\httproxy_clt079078901217334993"
                    29 Jul 2008 23:51:40 312 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217355698"
                    31 Jul 2008 23:45:12 110 A.... "C:\Windows\Temp\httproxy_clt095778101217528110"
                    29 Jul 2008 18:24:10 14 218 A.... "C:\Windows\Temp\httproxych_tmp077E63281217336049"
                    31 Jul 2008 13:08:20 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489899"
                    29 Jul 2008 18:13:24 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335402"
                    29 Jul 2008 18:13:34 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335412"
                    29 Jul 2008 23:44:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355294"
                    30 Jul 2008 13:17:00 110 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404019"
                    30 Jul 2008 20:06:38 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428596"
                    30 Jul 2008 19:56:50 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428008"
                    29 Jul 2008 23:46:54 222 A.... "C:\Windows\Temp\httproxy_clt078408781217355413"
                    30 Jul 2008 19:57:10 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428028"
                    29 Jul 2008 23:48:44 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355523"
                    29 Jul 2008 23:47:14 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355433"
                    29 Jul 2008 18:54:10 673 A.... "C:\Windows\Temp\httproxy_clt079924581217337848"
                    29 Jul 2008 23:44:16 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355254"
                    29 Jul 2008 23:45:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355354"
                    29 Jul 2008 13:24:48 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318087"
                    29 Jul 2008 23:46:54 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355413"
                    29 Jul 2008 23:47:44 259 A.... "C:\Windows\Temp\httproxy_clt078529881217355463"
                    30 Jul 2008 19:22:18 3 133 A.... "C:\Windows\Temp\httproxy_clt078018201217425936"
                    29 Jul 2008 18:16:52 723 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335611"
                    29 Jul 2008 18:17:12 725 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335631"
                    29 Jul 2008 1:58:24 110 A.... "C:\Windows\Temp\httproxy_clt043909481217276902"
                    30 Jul 2008 13:15:52 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403950"
                    29 Jul 2008 18:43:38 357 A.... "C:\Windows\Temp\httproxy_clt079078901217337217"
                    29 Jul 2008 18:09:34 723 A.... "C:\Windows\Temp\httproxy_clt079089981217335173"
                    29 Jul 2008 18:07:30 3 793 A.... "C:\Windows\Temp\httproxy_clt079078901217335048"
                    29 Jul 2008 18:43:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337237"
                    29 Jul 2008 18:49:08 174 A.... "C:\Windows\Temp\httproxy_clt079078901217337546"
                    29 Jul 2008 18:49:28 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337566"
                    30 Jul 2008 19:26:20 23 381 A.... "C:\Windows\Temp\httproxy_clt097127D81217426178"
                    29 Jul 2008 18:10:00 25 512 A.... "C:\Windows\Temp\httproxy_clt079078901217335198"
                    30 Jul 2008 19:28:08 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217426287"
                    30 Jul 2008 19:23:46 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426024"
                    29 Jul 2008 18:10:04 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335203"
                    30 Jul 2008 13:15:20 32 715 A.... "C:\Windows\Temp\httproxy_clt079902481217403918"
                    30 Jul 2008 13:15:02 726 A.... "C:\Windows\Temp\httproxy_clt07A225481217403900"
                    30 Jul 2008 19:29:04 110 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426343"
                    30 Jul 2008 19:31:44 387 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426502"
                    29 Jul 2008 18:59:00 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338138"
                    29 Jul 2008 18:59:20 364 A.... "C:\Windows\Temp\httproxy_clt099434301217338158"
                    29 Jul 2008 18:58:00 364 A.... "C:\Windows\Temp\httproxy_clt099434301217338078"
                    29 Jul 2008 18:58:20 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338098"
                    29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt077D40381217336744"
                    31 Jul 2008 23:45:26 3 696 A.... "C:\Windows\Temp\httproxy_clt095722E81217528124"
                    30 Jul 2008 19:53:06 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427785"
                    30 Jul 2008 0:44:26 110 A.... "C:\Windows\Temp\httproxy_clt07A214401217358864"
                    30 Jul 2008 12:36:58 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401616"
                    29 Jul 2008 18:04:02 198 A.... "C:\Windows\Temp\httproxy_clt07A225481217334840"
                    29 Jul 2008 23:42:48 61 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355167"
                    29 Jul 2008 13:22:34 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217317952"
                    29 Jul 2008 18:35:26 25 894 A.... "C:\Windows\Temp\httproxy_clt079056801217336725"
                    29 Jul 2008 18:30:58 3 800 A.... "C:\Windows\Temp\httproxy_clt079056801217336456"
                    31 Jul 2008 23:51:48 726 A.... "C:\Windows\Temp\httproxy_clt077BB8B01217528506"
                    29 Jul 2008 18:39:16 264 A.... "C:\Windows\Temp\httproxy_clt079078901217336954"
                    29 Jul 2008 18:39:56 295 A.... "C:\Windows\Temp\httproxy_clt079078901217336994"
                    29 Jul 2008 18:27:28 726 A.... "C:\Windows\Temp\httproxy_clt0798CF301217336247"
                    30 Jul 2008 19:39:46 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426985"
                    30 Jul 2008 19:40:18 3 707 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427017"
                    29 Jul 2008 13:21:52 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317911"
                    30 Jul 2008 19:42:48 3 793 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427167"
                    30 Jul 2008 12:49:46 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402384"
                    30 Jul 2008 0:51:22 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359280"
                    31 Jul 2008 13:09:30 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489969"
                    29 Jul 2008 18:55:36 264 A.... "C:\Windows\Temp\httproxy_clt099434301217337935"
                    29 Jul 2008 18:55:56 295 A.... "C:\Windows\Temp\httproxy_clt099434301217337955"
                    30 Jul 2008 19:13:16 129 A.... "C:\Windows\Temp\httproxy_clt0791B7D01217425394"
                    31 Jul 2008 13:09:00 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489939"
                    29 Jul 2008 23:44:36 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355275"
                    29 Jul 2008 23:46:16 182 A.... "C:\Windows\Temp\httproxy_clt078408781217355375"
                    29 Jul 2008 23:49:46 194 A.... "C:\Windows\Temp\httproxy_clt078408781217355584"
                    29 Jul 2008 23:50:04 62 A.... "C:\Windows\Temp\httproxy_clt078408781217355603"
                    30 Jul 2008 20:06:58 425 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428616"
                    29 Jul 2008 23:43:36 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355215"
                    29 Jul 2008 23:43:46 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355225"
                    29 Jul 2008 23:43:56 189 A.... "C:\Windows\Temp\httproxy_clt078408781217355235"
                    30 Jul 2008 19:57:30 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428049"
                    30 Jul 2008 19:57:50 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428069"
                    30 Jul 2008 13:13:54 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403832"
                    29 Jul 2008 23:47:36 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355454"
                    29 Jul 2008 23:49:16 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355554"
                    29 Jul 2008 23:49:26 189 A.... "C:\Windows\Temp\httproxy_clt078529881217355564"
                    29 Jul 2008 23:47:56 294 A.... "C:\Windows\Temp\httproxy_clt078529881217355474"
                    30 Jul 2008 19:51:34 263 A.... "C:\Windows\Temp\httproxy_clt077A7B001217427692"
                    29 Jul 2008 18:12:24 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335343"
                    30 Jul 2008 13:16:00 7 041 A.... "C:\Windows\Temp\httproxy_clt079902481217403959"
                    29 Jul 2008 18:44:20 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337258"
                    29 Jul 2008 18:11:20 25 839 A.... "C:\Windows\Temp\httproxy_clt079078901217335278"
                    29 Jul 2008 18:14:38 22 951 A.... "C:\Windows\Temp\httproxy_clt079078901217335477"
                    29 Jul 2008 18:44:40 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337278"
                    29 Jul 2008 18:49:58 214 A.... "C:\Windows\Temp\httproxy_clt079078901217337597"
                    29 Jul 2008 18:45:00 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337298"
                    29 Jul 2008 18:38:10 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336889"
                    30 Jul 2008 19:28:46 58 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426324"
                    30 Jul 2008 19:41:20 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427079"
                    30 Jul 2008 19:29:46 110 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426384"
                    29 Jul 2008 18:38:16 333 A.... "C:\Windows\Temp\httproxy_clt077D40381217336895"
                    29 Jul 2008 18:05:56 726 A.... "C:\Windows\Temp\httproxy_clt099434301217334955"
                    29 Jul 2008 18:59:40 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338179"
                    29 Jul 2008 18:25:00 726 A.... "C:\Windows\Temp\httproxy_clt099434301217336099"
                    30 Jul 2008 12:39:58 110 A.... "C:\Windows\Temp\httproxy_clt079078901217401796"
                    29 Jul 2008 19:00:00 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338199"
                    31 Jul 2008 2:18:12 99 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450890"
                    30 Jul 2008 12:36:48 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401607"
                    29 Jul 2008 18:06:40 723 A.... "C:\Windows\Temp\httproxy_clt099D68381217334998"
                    30 Jul 2008 19:53:26 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427805"
                    29 Jul 2008 23:41:30 112 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355089"
                    30 Jul 2008 19:28:24 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426303"
                    30 Jul 2008 19:28:34 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426313"
                    29 Jul 2008 23:42:10 99 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355128"
                    30 Jul 2008 12:50:16 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402415"
                    30 Jul 2008 19:42:30 3 701 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427148"
                    30 Jul 2008 0:52:12 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359330"
                    30 Jul 2008 0:49:42 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359181"
                    29 Jul 2008 18:14:06 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335444"
                    29 Jul 2008 18:56:18 295 A.... "C:\Windows\Temp\httproxy_clt099434301217337976"
                    29 Jul 2008 18:56:38 364 A.... "C:\Windows\Temp\httproxy_clt099434301217337996"
                    29 Jul 2008 23:49:36 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355575"
                    29 Jul 2008 23:48:16 325 A.... "C:\Windows\Temp\httproxy_clt078408781217355495"
                    30 Jul 2008 19:40:12 418 A.... "C:\Windows\Temp\httproxy_clt078908081217427010"
                    29 Jul 2008 23:48:36 394 A.... "C:\Windows\Temp\httproxy_clt078408781217355515"
                    29 Jul 2008 23:43:48 145 A.... "C:\Windows\Temp\httproxy_clt078408781217355226"
                    29 Jul 2008 23:50:26 99 A.... "C:\Windows\Temp\httproxy_clt078408781217355624"
                    30 Jul 2008 20:07:18 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428637"
                    30 Jul 2008 20:07:38 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428657"
                    29 Jul 2008 23:47:36 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355455"
                    29 Jul 2008 23:49:16 294 A.... "C:\Windows\Temp\httproxy_clt078408781217355555"
                    30 Jul 2008 13:13:44 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403823"
                    29 Jul 2008 23:45:58 179 A.... "C:\Windows\Temp\httproxy_clt078529881217355356"
                    29 Jul 2008 23:46:38 175 A.... "C:\Windows\Temp\httproxy_clt078529881217355396"
                    29 Jul 2008 23:49:56 426 A.... "C:\Windows\Temp\httproxy_clt078529881217355595"
                    30 Jul 2008 19:48:50 325 A.... "C:\Windows\Temp\httproxy_clt07921E001217427528"
                    30 Jul 2008 19:49:10 325 A.... "C:\Windows\Temp\httproxy_clt07921E001217427548"
                    29 Jul 2008 18:12:12 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335330"
                    30 Jul 2008 19:28:30 3 161 A.... "C:\Windows\Temp\httproxy_clt097127D81217426309"
                    30 Jul 2008 19:35:22 487 A.... "C:\Windows\Temp\httproxy_clt096826E81217426721"
                    29 Jul 2008 18:45:20 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337319"
                    29 Jul 2008 18:45:40 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337339"
                    29 Jul 2008 18:46:00 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337359"
                    29 Jul 2008 18:49:20 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337558"
                    30 Jul 2008 19:28:20 3 124 A.... "C:\Windows\Temp\httproxy_clt097127D81217426299"
                    29 Jul 2008 23:39:50 110 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217354989"
                    30 Jul 2008 19:32:26 418 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426544"
                    30 Jul 2008 19:24:48 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426086"
                    30 Jul 2008 19:39:26 1 957 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217426964"
                    30 Jul 2008 19:43:50 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427229"
                    31 Jul 2008 23:45:08 3 598 A.... "C:\Windows\Temp\httproxy_clt095722E81217528106"
                    30 Jul 2008 19:55:08 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427906"
                    30 Jul 2008 19:53:48 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427826"
                    30 Jul 2008 19:55:28 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427926"
                    30 Jul 2008 19:54:08 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427846"
                    30 Jul 2008 19:54:28 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427866"
                    29 Jul 2008 13:20:10 726 A.... "C:\Windows\Temp\httproxy_clt06FA66B81217317808"
                    30 Jul 2008 19:26:26 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426185"
                    30 Jul 2008 19:18:38 3 798 A.... "C:\Windows\Temp\httproxy_clt097127D81217425717"
                    30 Jul 2008 19:39:02 487 A.... "C:\Windows\Temp\httproxy_clt07895D301217426940"
                    29 Jul 2008 13:24:48 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217318087"
                    29 Jul 2008 18:16:22 23 257 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335580"
                    31 Jul 2008 23:49:54 110 A.... "C:\Windows\Temp\httproxy_clt095756001217528392"
                    30 Jul 2008 12:54:56 110 A.... "C:\Windows\Temp\httproxy_clt079045781217402695"
                    29 Jul 2008 18:15:02 23 997 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335500"
                    30 Jul 2008 19:39:28 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426967"
                    31 Jul 2008 23:42:40 110 A.... "C:\Windows\Temp\httproxy_clt096001C81217527959"
                    31 Jul 2008 2:25:32 110 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451331"
                    30 Jul 2008 13:13:20 32 733 A.... "C:\Windows\Temp\httproxy_clt077CB7F81217403798"
                    30 Jul 2008 20:08:00 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428678"
                    29 Jul 2008 23:49:48 166 A.... "C:\Windows\Temp\httproxy_clt078408781217355586"
                    30 Jul 2008 20:08:20 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428698"
                    30 Jul 2008 13:13:40 32 715 A.... "C:\Windows\Temp\httproxy_clt077CB7F81217403818"
                    29 Jul 2008 23:48:28 222 A.... "C:\Windows\Temp\httproxy_clt078408781217355506"
                    29 Jul 2008 18:35:44 25 941 A.... "C:\Windows\Temp\httproxy_clt078256E01217336742"
                    29 Jul 2008 23:43:38 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355217"
                    29 Jul 2008 23:45:28 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355327"
                    29 Jul 2008 18:31:04 3 794 A.... "C:\Windows\Temp\httproxy_clt078256E01217336463"
                    29 Jul 2008 23:48:58 325 A.... "C:\Windows\Temp\httproxy_clt078408781217355536"
                    29 Jul 2008 23:45:48 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355347"
                    29 Jul 2008 23:42:50 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355168"
                    29 Jul 2008 23:49:28 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355566"
                    30 Jul 2008 19:49:30 325 A.... "C:\Windows\Temp\httproxy_clt07921E001217427569"
                    29 Jul 2008 23:47:28 257 A.... "C:\Windows\Temp\httproxy_clt078529881217355446"
                    30 Jul 2008 13:12:56 723 A.... "C:\Windows\Temp\httproxy_clt099401181217403774"
                    29 Jul 2008 23:46:18 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355377"
                    29 Jul 2008 23:49:48 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355586"
                    30 Jul 2008 13:16:04 723 A.... "C:\Windows\Temp\httproxy_clt099423281217403963"
                    30 Jul 2008 13:16:24 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403983"
                    29 Jul 2008 18:16:46 726 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335604"
                    29 Jul 2008 18:13:22 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335401"
                    29 Jul 2008 18:14:22 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335461"
                    30 Jul 2008 19:24:28 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426067"
                    30 Jul 2008 19:35:44 487 A.... "C:\Windows\Temp\httproxy_clt096826E81217426742"
                    29 Jul 2008 18:11:28 723 A.... "C:\Windows\Temp\httproxy_clt079089981217335286"
                    29 Jul 2008 18:49:20 167 A.... "C:\Windows\Temp\httproxy_clt079078901217337559"
                    29 Jul 2008 18:49:30 188 A.... "C:\Windows\Temp\httproxy_clt079078901217337569"
                    29 Jul 2008 18:49:40 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337579"
                    30 Jul 2008 19:21:02 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425861"
                    30 Jul 2008 19:14:42 129 A.... "C:\Windows\Temp\httproxy_clt077687481217425481"
                    29 Jul 2008 13:20:34 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317833"
                    30 Jul 2008 19:25:28 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426127"
                    29 Jul 2008 13:11:14 110 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317272"
                    31 Jul 2008 23:45:58 3 668 A.... "C:\Windows\Temp\httproxy_clt095722E81217528157"
                    30 Jul 2008 19:54:48 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427887"
                    30 Jul 2008 19:56:28 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427987"
                    30 Jul 2008 19:55:48 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427947"
                    30 Jul 2008 19:56:08 363 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427967"
                    30 Jul 2008 19:19:46 129 A.... "C:\Windows\Temp\httproxy_clt0779EA781217425784"
                    30 Jul 2008 19:26:48 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426206"
                    30 Jul 2008 19:18:00 3 705 A.... "C:\Windows\Temp\httproxy_clt097127D81217425678"
                    29 Jul 2008 18:07:06 3 799 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335024"
                    29 Jul 2008 13:18:54 32 659 A.... "C:\Windows\Temp\httproxy_clt06FB00001217317733"
                    29 Jul 2008 13:21:46 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317904"
                    31 Jul 2008 2:26:44 17 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451402"
                    30 Jul 2008 19:12:58 129 A.... "C:\Windows\Temp\httproxy_clt0791B7D01217425377"
                    30 Jul 2008 19:20:52 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425851"
                    29 Jul 2008 23:47:58 186 A.... "C:\Windows\Temp\httproxy_clt078408781217355477"
                    29 Jul 2008 23:49:38 182 A.... "C:\Windows\Temp\httproxy_clt078408781217355577"
                    29 Jul 2008 23:45:00 173 A.... "C:\Windows\Temp\httproxy_clt078408781217355298"
                    29 Jul 2008 23:46:40 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355398"
                    29 Jul 2008 23:45:10 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355308"
                    30 Jul 2008 20:08:40 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428719"
                    30 Jul 2008 13:52:44 110 A.... "C:\Windows\Temp\httproxy_clt078FF0501217406162"
                    30 Jul 2008 20:09:00 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428739"
                    29 Jul 2008 23:45:40 240 A.... "C:\Windows\Temp\httproxy_clt078408781217355338"
                    29 Jul 2008 23:47:08 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355427"
                    29 Jul 2008 23:48:58 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355537"
                    29 Jul 2008
                    0
                  2. @maxacaen[b]Program Folders[/b]:

                    C:\Program Files\

                    Acronis
                    Activation Assistant for the 2007 Microsoft Office suites
                    Adobe
                    AdvancedTool
                    AV9
                    Avira
                    BitDefender
                    Common Files
                    Cyberlink
                    Dofus
                    Everest Poker
                    Fichiers communs
                    FlashFXP
                    Google
                    Hitman Pro
                    InstallShield Installation Information
                    Intel
                    Internet Explorer
                    Java
                    Kaspersky Lab
                    K-Lite Codec Pack
                    Malwarebytes' Anti-Malware
                    Microsoft Games
                    Microsoft Office
                    Microsoft Small Business
                    Microsoft SQL Server
                    Microsoft SQL Server Compact Edition
                    Microsoft Visual Studio
                    Microsoft Works
                    Microsoft.NET
                    Movie Maker
                    Mozilla Firefox
                    MSBuild
                    MSN
                    MSXML 4.0
                    Navilog1
                    NEC Computers
                    OO Software
                    Picasa2
                    Realtek
                    Reference Assemblies
                    Roxio
                    Samsung
                    Spybot - Search & Destroy
                    Synaptics
                    System Control Manager
                    Toshiba
                    Trend Micro
                    Ulead Systems
                    Uninstall Information
                    Windows Calendar
                    Windows Collaboration
                    Windows Defender
                    Windows Journal
                    Windows Live
                    Windows Live Favorites
                    Windows Live Toolbar
                    Windows Mail
                    Windows Media Components
                    Windows Media Player
                    Windows NT
                    Windows Photo Gallery
                    Windows Sidebar
                    WinRAR

                    C:\Program Files\Common Files\

                    Acronis
                    Adobe
                    Adobe Systems Shared
                    BitDefender
                    DESIGNER
                    InstallShield
                    microsoft shared
                    Roxio Shared
                    Services
                    snp2std
                    Sonic Shared
                    SpeechEngines
                    SureThing Shared
                    System
                    Ulead Systems
                    Vbox
                    WindowsLiveInstaller

                    [b]Add/Remove Programs[/b]:

                    Activation Assistant for the 2007 Microsoft Office suites
                    Adobe Photoshop 7.0
                    Adobe Premiere Pro 2.0
                    Adobe Shockwave Player
                    Adobe Reader 8
                    Adobe ExtendScript Toolkit 2
                    AdvancedTool
                    Avira AntiVir Personal – Free Antivirus
                    Audio Realtek v6.0.1.5413
                    Bluetooth V5
                    Gestionnaire de contacts professionnels pour Outlook 2007 SP1
                    USB Camera
                    Creator 9
                    DJMixStation 2 feat. Virtual DJ
                    Online Documentation
                    Everest Poker (Remove Only)
                    Intel(R) Graphics Media Accelerator Driver
                    HijackThis 2.0.2
                    K-Lite Codec Pack 3.8.0 Full
                    Microsoft .NET Framework 1.1 Hotfix (KB929729)
                    Malwarebytes' Anti-Malware
                    Microsoft .NET Framework 1.1
                    Mozilla Firefox (2.0.0.16)
                    PowerDVD 7
                    Picasa 2
                    2007 Microsoft Office system
                    Logiciel Intel(R) PROSet/Wireless
                    Intel(R) PRO Network Connections Drivers
                    SAMSUNG Mobile Modem Driver Set
                    Samsung Mobile phone USB driver Software
                    SAMSUNG Mobile USB Modem Software
                    SAMSUNG Mobile USB Modem 1.0 Software
                    Synaptics Pointing Device Driver
                    Mouse Synaptics v9.1.11
                    Video Intel v7.14.10.1244
                    Windows Live Toolbar
                    Codeur Windows Media Série 9
                    Archiveur WinRAR
                    Windows Live Toolbar
                    Extension de Windows Live Toolbar (Windows Live Toolbar)
                    Menus intelligents (Windows Live Toolbar)
                    Acronis Disk Director Suite
                    Google Toolbar for Internet Explorer
                    Adobe ExtendScript Toolkit 2
                    Roxio Activation Module
                    Windows Live Writer
                    Microsoft Office 2007 Primary Interop Assemblies
                    O&O Defrag Professional Edition
                    Activation Assistant for the 2007 Microsoft Office suites
                    PowerDVD
                    Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)
                    Gestionnaire de contacts professionnels pour Outlook 2007 SP1
                    Windows Media Player Firefox Plugin
                    USB2.0 PC Camera (SN9C201&202)
                    Ulead VideoStudio 7 SE DVD
                    Windows Live Favorites pour Windows Live Toolbar
                    Adobe Stock Photos 1.0
                    Surligneur (Windows Live Toolbar)
                    mPfMgr
                    mHelp
                    Adobe Common File Installer
                    Adobe Help Center 2.0
                    Microsoft Office Professional Edition 2003
                    Microsoft Office Access MUI (French) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Excel MUI (French) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office PowerPoint MUI (French) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Publisher MUI (French) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Outlook MUI (French) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Word MUI (French) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Proof (Arabic) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Proof (German) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Proof (English) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Proof (French) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Proof (Dutch) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Proof (Spanish) 2007
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Microsoft Office Proofing (French) 2007
                    Microsoft Office Shared MUI (French) 2007
                    Microsoft Office Language Pack 2007 Service Pack 1 (SP1)
                    Microsoft Office 2003 Web Components
                    Microsoft Office Professional Hybrid 2007
                    Security Update for Office 2007 (KB947801)
                    Update for Outlook 2007 Junk Email Filter (kb953463)
                    Update for Microsoft Office Outlook 2007 (KB952142)
                    Security Update for Excel 2007 (KB946974)
                    Security Update for Microsoft Office system 2007 (KB951808)
                    Update for Office 2007 (KB946691)
                    Security Update for Microsoft Office Word 2007 (KB950113)
                    2007 Microsoft Office Suite Service Pack 1 (SP1)
                    Security Update for Microsoft Office Publisher 2007 (KB950114)
                    FlashFXP v3
                    mDriver
                    Galerie de photos Windows Live
                    Microsoft Office Small Business Connectivity Components
                    Adobe Reader 8.1.2 - Français
                    Adobe Bridge 1.0
                    Assistant de connexion Windows Live
                    Adobe Setup
                    Roxio Creator 9 LE
                    Windows Live Messenger
                    MSXML 4.0 SP2 (KB936181)
                    Samsung PC Studio 3
                    Windows Live Mail
                    Samsung PC Studio 3
                    Microsoft .NET Framework 1.1
                    Bluetooth Stack for Windows by Toshiba
                    Google Toolbar for Internet Explorer
                    Codeur Windows Media Série 9
                    System Control Manager
                    Microsoft SQL Server 2005 Compact Edition [ENU]
                    mMHouse
                    Realtek High Definition Audio Driver
                    mCore
                    Adobe Premiere Pro 2.0
                    Windows Live installer
                    Lop S&D

                    [b]Run Values[/b]:

                    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
                    @=""
                    "MSConfig"="\"C:\\Windows\\system32\\msconfig.exe\" /auto"

                    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
                    @=""

                    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
                    "Installed"="1"
                    @=""

                    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
                    "Installed"="1"
                    "NoChange"="1"
                    @=""

                    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
                    "Installed"="1"
                    @=""

                    [b]Bot Check[/b]:

                    SERVICE_NAME: wscsvc
                    DISPLAY_NAME : Centre de sécurité
                    START_TYPE : 4 DISABLED

                    SERVICE_NAME: sharedaccess
                    DISPLAY_NAME : Partage de connexion Internet (ICS)
                    START_TYPE : 4 DISABLED

                    SERVICE_NAME: wuauserv
                    DISPLAY_NAME : Windows Update
                    START_TYPE : 4 DISABLED

                    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole]
                    "EnableDCOM"="Y"

                    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
                    "restrictanonymous"=dword:00000000

                    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update]
                    "AUOptions"=dword:00000002

                    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
                    "UacDisableNotify"=dword:00000001
                    "AntiVirusOverride"=dword:00000000
                    "AntiSpywareOverride"=dword:00000000
                    "FirewallOverride"=dword:00000000

                    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
                    "WaitToKillServiceTimeout"="20000"

                    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
                    "Shell"="explorer.exe"
                    "Userinit"="C:\\Windows\\system32\\userinit.exe,"

                    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shell extensions]

                    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters]
                    "TransportBindName"="\\Device\\"

                    [b]ShellExecuteHooks[/b]:

                    [b]Environment[/b]:

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager\environment
                    ComSpec REG_EXPAND_SZ %SystemRoot%\system32\cmd.exe
                    OS REG_SZ Windows_NT
                    Path REG_EXPAND_SZ %SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\;C:\Program Files\Samsung\Samsung PC Studio 3\;C:\Program Files\Common Files\Ulead Systems\MPEG;C:\Program Files\Common Files\Adobe\AGL
                    PATHEXT REG_SZ .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
                    TEMP REG_EXPAND_SZ %SystemRoot%\TEMP
                    TMP REG_EXPAND_SZ %SystemRoot%\TEMP
                    USERNAME REG_SZ SYSTEM
                    windir REG_EXPAND_SZ %SystemRoot%
                    RoxioCentral REG_SZ C:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\

                    [b]SecurityProviders[/b]:

                    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders
                    SecurityProviders REG_SZ credssp.dll

                    [b]Authentication Packages[/b]:

                    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa
                    Authentication Packages REG_MULTI_SZ msv1_0\0\0

                    [b]Subsystem Startup[/b]:

                    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems]
                    "Windows"="%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16"

                    [b]Midi Drivers[/b]:

                    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
                    "midi"="wdmaud.drv"
                    "midi1"="wdmaud.drv"

                    [b]Non-Default IFEO Debugger[/b]:

                    [b]Non-Default Installed Components[/b]:

                    [b]Non-Default Safeboot Minimal[/b]:

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\appinfo
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\keyiso
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\ntds
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\profsvc
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\sacsvr
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\swprv
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\tabletinputservice
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\tbs
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\trustedinstaller
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgr.sys
                    <NO NAME> REG_SZ Driver

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgrx.sys
                    <NO NAME> REG_SZ Driver

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\windefend
                    <NO NAME> REG_SZ Service

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{6bdd1fc1-810f-11d0-bec7-08002be2092f}
                    <NO NAME> REG_SZ IEEE 1394 Bus host controllers

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{d48179be-ec20-11d1-b6b8-00c04fa372a7}
                    <NO NAME> REG_SZ SBP2 IEEE 1394 Devices

                    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{d94ee5d8-d189-4994-83d2-f68d7d41b0e6}
                    <NO NAME> REG_SZ SecurityDevices

                    [b]File Associations[/b]:

                    [HKEY_CLASSES_ROOT\batfile\shell\open\command]
                    @="\"%1\" %*"

                    [HKEY_CLASSES_ROOT\cmdfile\shell\open\command]
                    @="\"%1\" %*"

                    [HKEY_CLASSES_ROOT\comfile\shell\open\command]
                    @="\"%1\" %*"

                    [HKEY_CLASSES_ROOT\exefile\shell\open\command]
                    @="\"%1\" %*"
                    "IsolatedCommand"="\"%1\" %*"

                    [HKEY_CLASSES_ROOT\htafile\shell\open\command]
                    @="C:\\Windows\\system32\\mshta.exe \"%1\" %*"

                    [HKEY_CLASSES_ROOT\http\shell\open\command]
                    @="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

                    [HKEY_CLASSES_ROOT\htmlfile\shell\open\command]
                    @="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

                    [HKEY_CLASSES_ROOT\regedit\shell\open\command]
                    @="regedit.exe \"%1\""

                    [HKEY_CLASSES_ROOT\regfile\shell\open\command]
                    @="regedit.exe \"%1\" %*"

                    [HKEY_CLASSES_ROOT\scrfile\shell\open\command]
                    @="\"%1\" %*"

                    [HKEY_CLASSES_ROOT\txtfile\shell\open\command]
                    @="%SystemRoot%\system32\NOTEPAD.EXE %1"

                    [b]Finished![/b]
                    0
                4. oui mais je sais lancer un mode sans echec avec f8 c'est juste que quand j'essaye il ne veut pas lancer le programme par contre quand je le lance avec le mode ms config ça fonctionne !
                  0
                  1. bon alors bonne nouvelle antivir m'a trouvé antivirus 2009 et me l'a supprimé, l'écran bleu n'apparait plus non plus ça a l'air d'aller mais j'aimerai bien en avoir confirmation !
                    0