Probleme de virus

maxacaen -  
 maxacaen -
Bonjour,
j'ai de multi problemes avec mon ordinateur depuis que mon petit frere le sacripant a osé y touché,
il y a des fenetres internet qui s'ouvrent toutes seules, un antivirus 2009 qui me harcellent, des programmes que j'aimerai désinstaller mais qui n'apparaissent pas dans le panneau de config, un logiciel play's mp3 que j'ai desinstallé mais qui est toujours dans mon menu demarrer, bref c'est la merde !
j'ai telechargé unilog j'ai fais choix 1 recherche voila ce que ça donne:

Search Navipromo version 3.6.1 commencé le 01/08/2008 à 2:33:31,66

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "portable"

Mise à jour le 19.07.2008 à 20h00 par IL-MAFIOSO

Microsoft Windows Vista 6.0.6000
Internet Explorer : 7.0.6000.16681
Système de fichiers : NTFS

Recherche executé en mode normal

*** Recherche Programmes installés ***

*** Recherche dossiers dans "C:\Windows" ***

*** Recherche dossiers dans "C:\Program Files" ***

*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1\programs" ***

*** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1" ***

*** Recherche dossiers dans "C:\ProgramData" ***

*** Recherche dossiers dans "c:\users\portable\appdata\roaming\micros~1\windows\startm~1\programs" ***

*** Recherche dossiers dans "C:\Users\portable\AppData\Local\virtualstore\Program Files" ***

*** Recherche dossiers dans "C:\Users\portable\AppData\Roaming" ***

*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier Navipromo trouvé

*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\Windows\system32" *

* Recherche dans "C:\Users\portable\AppData\Local\Microsoft" *

* Recherche dans "C:\Users\portable\AppData\Local" *

*** Recherche fichiers ***

*** Recherche clés spécifiques dans le Registre ***

*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :

2)Recherche Heuristique :

* Dans "C:\Windows\system32" :

* Dans "C:\Users\portable\AppData\Local\Microsoft" :

* Dans "C:\Users\portable\AppData\Local" :

3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche fichiers connus :

*** Analyse terminée le 01/08/2008 à 2:45:33,54 ***

merci beaucoup
maxacaen
A voir également:

17 réponses

maxacaen
 
et voila le rapport avec le 2eme programme:

--------------------\\ Lop S&D 4.2.2-4 XP/Vista

[ Windows VISTA (NT 6.0) Workstation Build 6000 ]
[ USER : portable ] [ "C:\Lop SD" ] [ Selection : 1 ]
[ 01/08/2008 | 2:57:11,44 ] [ PC : PC-DE-PORTABLE ]
[ MAJ : 25-07-2008 | 17:45 ]
[ UAC => 0 ]

--------------------\\ Listing des dossiers dans Local

[25/06/2008|20:57] C:\Users\portable\AppData\Local\Adobe
[01/02/2008|16:09] C:\Users\portable\AppData\Local\Application Data
[28/07/2008|14:43] C:\Users\portable\AppData\Local\ApplicationHistory
[06/07/2008|13:57] C:\Users\portable\AppData\Local\d3d9caps.dat
[07/07/2008|22:06] C:\Users\portable\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[11/03/2008|23:59] C:\Users\portable\AppData\Local\fusioncache.dat
[25/06/2008|20:53] C:\Users\portable\AppData\Local\GDIPFONTCACHEV1.DAT
[31/05/2008|04:12] C:\Users\portable\AppData\Local\Google
[01/02/2008|16:09] C:\Users\portable\AppData\Local\Historique
[01/08/2008|01:03] C:\Users\portable\AppData\Local\IconCache.db
[29/07/2008|21:50] C:\Users\portable\AppData\Local\Installer2384
[01/08/2008|02:45] C:\Users\portable\AppData\Local\Microsoft
[14/06/2008|12:24] C:\Users\portable\AppData\Local\Microsoft Games
[13/03/2008|04:22] C:\Users\portable\AppData\Local\Microsoft Help
[13/03/2008|06:05] C:\Users\portable\AppData\Local\MicroVision Applications
[19/03/2008|00:00] C:\Users\portable\AppData\Local\Mozilla
[28/07/2008|14:07] C:\Users\portable\AppData\Local\RegFreeze
[01/08/2008|02:55] C:\Users\portable\AppData\Local\Temp
[01/02/2008|16:09] C:\Users\portable\AppData\Local\Temporary Internet Files
[01/02/2008|16:11] C:\Users\portable\AppData\Local\Toshiba
[02/02/2008|07:35] C:\Users\portable\AppData\Local\VirtualStore

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[01/08/2008 02:32][--a------] C:\Windows\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[31/07/2008 22:30][--ah-----] C:\Windows\tasks\User_Feed_Synchronization-{836029E6-8F6F-49C6-B6C0-9DBD7C8AF31E}.job
[01/08/2008 01:04][--ah-----] C:\Windows\tasks\SA.DAT
[01/08/2008 01:03][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[25/09/2007|16:08] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[02/02/2008|07:56] C:\ProgramData\Acronis
[25/06/2008|16:43] C:\ProgramData\Adobe
[25/06/2008|20:50] C:\ProgramData\Adobe Systems
[02/11/2006|18:32] C:\ProgramData\Application Data
[01/02/2008|16:05] C:\ProgramData\Bureau
[16/05/2008|02:15] C:\ProgramData\CyberLink
[02/11/2006|18:32] C:\ProgramData\Desktop
[02/11/2006|18:32] C:\ProgramData\Documents
[01/02/2008|16:05] C:\ProgramData\Favoris
[02/11/2006|18:32] C:\ProgramData\Favorites
[16/05/2008|20:30] C:\ProgramData\FlashFXP
[25/06/2008|22:19] C:\ProgramData\FLEXnet
[31/03/2008|23:18] C:\ProgramData\Google
[25/09/2007|16:14] C:\ProgramData\InstallShield
[02/02/2008|06:53] C:\ProgramData\Intel
[01/08/2008|01:05] C:\ProgramData\Kaspersky Lab
[28/05/2008|17:04] C:\ProgramData\LauncherAccess.dt
[01/02/2008|16:05] C:\ProgramData\Menu D‚marrer
[01/08/2008|00:32] C:\ProgramData\Microsoft
[01/08/2008|00:55] C:\ProgramData\Microsoft Help
[01/02/2008|16:05] C:\ProgramData\ModŠles
[20/03/2008|10:34] C:\ProgramData\ntuser.pol
[18/03/2008|21:24] C:\ProgramData\Prevx
[02/02/2008|06:53] C:\ProgramData\Roaming
[13/03/2008|08:19] C:\ProgramData\Roxio
[25/09/2007|16:13] C:\ProgramData\Sonic
[01/08/2008|00:23] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|18:32] C:\ProgramData\Start Menu
[01/08/2008|00:34] C:\ProgramData\TEMP
[02/11/2006|18:32] C:\ProgramData\Templates
[14/06/2008|19:02] C:\ProgramData\Ulead Systems
[25/06/2008|16:38] C:\ProgramData\WinZip
[20/03/2008|23:13] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[02/02/2008|07:46] C:\Program Files\Acronis
[25/09/2007|16:08] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[31/07/2008|12:30] C:\Program Files\Adobe
[01/08/2008|01:52] C:\Program Files\AdvancedTool
[31/07/2008|23:53] C:\Program Files\AV9
[28/07/2008|22:01] C:\Program Files\BitDefender
[01/08/2008|02:26] C:\Program Files\Common Files
[25/09/2007|16:16] C:\Program Files\Cyberlink
[28/07/2008|16:06] C:\Program Files\desktop.ini
[06/03/2008|06:02] C:\Program Files\Dofus
[30/07/2008|23:38] C:\Program Files\Everest Poker
[27/07/2008|18:53] C:\Program Files\FBrowserAdvisor
[01/08/2008|02:54] C:\Program Files\FBrowsingAdvisor
[01/02/2008|16:05] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[16/05/2008|20:30] C:\Program Files\FlashFXP
[06/06/2008|14:46] C:\Program Files\Google
[01/08/2008|00:33] C:\Program Files\Hitman Pro
[14/06/2008|18:58] C:\Program Files\InstallShield Installation Information
[02/02/2008|06:51] C:\Program Files\Intel
[28/07/2008|16:02] C:\Program Files\Internet Explorer
[01/04/2008|01:04] C:\Program Files\Java
[01/08/2008|00:45] C:\Program Files\Kaspersky Lab
[12/03/2008|23:04] C:\Program Files\K-Lite Codec Pack
[02/04/2008|20:48] C:\Program Files\Microsoft Games
[25/09/2007|16:07] C:\Program Files\Microsoft Office
[25/09/2007|16:08] C:\Program Files\Microsoft Small Business
[11/03/2008|23:16] C:\Program Files\Microsoft SQL Server
[20/03/2008|23:23] C:\Program Files\Microsoft SQL Server Compact Edition
[25/09/2007|16:03] C:\Program Files\Microsoft Visual Studio
[25/09/2007|16:03] C:\Program Files\Microsoft Works
[11/03/2008|23:15] C:\Program Files\Microsoft.NET
[13/06/2008|19:58] C:\Program Files\Movie Maker
[27/07/2008|18:53] C:\Program Files\Mozilla Firefox
[02/11/2006|18:07] C:\Program Files\MSBuild
[02/11/2006|18:07] C:\Program Files\MSN
[11/03/2008|23:57] C:\Program Files\MSXML 4.0
[01/08/2008|02:45] C:\Program Files\Navilog1
[11/03/2008|23:16] C:\Program Files\NEC Computers
[11/03/2008|23:32] C:\Program Files\OO Software
[01/06/2008|19:16] C:\Program Files\Picasa2
[25/09/2007|15:47] C:\Program Files\Realtek
[02/11/2006|18:07] C:\Program Files\Reference Assemblies
[28/07/2008|14:06] C:\Program Files\RegFreeze
[25/09/2007|16:13] C:\Program Files\Roxio
[29/03/2008|03:40] C:\Program Files\Samsung
[18/03/2008|21:49] C:\Program Files\Spybot - Search & Destroy
[26/09/2007|00:51] C:\Program Files\Synaptics
[25/09/2007|15:48] C:\Program Files\System Control Manager
[25/09/2007|15:50] C:\Program Files\Toshiba
[14/06/2008|18:58] C:\Program Files\Ulead Systems
[02/11/2006|18:31] C:\Program Files\Uninstall Information
[26/09/2007|00:57] C:\Program Files\Windows Calendar
[26/09/2007|00:57] C:\Program Files\Windows Collaboration
[26/09/2007|01:11] C:\Program Files\Windows Defender
[26/09/2007|00:57] C:\Program Files\Windows Journal
[28/07/2008|14:35] C:\Program Files\Windows Live
[20/03/2008|23:21] C:\Program Files\Windows Live Favorites
[20/03/2008|23:22] C:\Program Files\Windows Live Toolbar
[26/09/2007|01:24] C:\Program Files\Windows Mail
[14/06/2008|18:59] C:\Program Files\Windows Media Components
[13/06/2008|20:02] C:\Program Files\Windows Media Player
[01/02/2008|16:05] C:\Program Files\Windows NT
[26/09/2007|00:57] C:\Program Files\Windows Photo Gallery
[12/03/2008|02:39] C:\Program Files\Windows Sidebar
[11/03/2008|23:31] C:\Program Files\WinRAR

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[02/02/2008|07:46] C:\Program Files\Common Files\Acronis
[31/07/2008|12:38] C:\Program Files\Common Files\Adobe
[25/06/2008|16:44] C:\Program Files\Common Files\Adobe Systems Shared
[28/07/2008|22:01] C:\Program Files\Common Files\BitDefender
[25/09/2007|16:03] C:\Program Files\Common Files\DESIGNER
[25/09/2007|16:15] C:\Program Files\Common Files\InstallShield
[13/03/2008|04:21] C:\Program Files\Common Files\microsoft shared
[25/09/2007|16:13] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|16:48] C:\Program Files\Common Files\Services
[25/09/2007|15:45] C:\Program Files\Common Files\snp2std
[25/09/2007|16:13] C:\Program Files\Common Files\Sonic Shared
[02/11/2006|16:48] C:\Program Files\Common Files\SpeechEngines
[25/09/2007|16:13] C:\Program Files\Common Files\SureThing Shared
[25/09/2007|16:00] C:\Program Files\Common Files\System
[14/06/2008|18:58] C:\Program Files\Common Files\Ulead Systems
[25/06/2008|21:58] C:\Program Files\Common Files\Vbox
[18/02/2008|21:03] C:\Program Files\Common Files\WindowsLiveInstaller

--------------------\\ Process

( 74 Processus )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE

--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-01 02:57:35
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 52

--------------------\\ Recherche d'autres infections

Aucune autre infection trouvée !

[F:4748][D:264]-> C:\Users\portable\AppData\Local\Temp
[F:20][D:1]-> C:\Users\portable\AppData\Roaming\MICROS~1\Windows\Cookies
[F:2211][D:17]-> C:\Users\portable\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:4][D:3]-> C:\$Recycle.Bin

--------------------\\ Fin du rapport a 2:59:33,07
[ UAC => 1 ]
0
anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
 
Bonsoir,

Navilog et LopS&D ne sont efficaces que contre des infections spécifiques (MagicControl/Navipromo et Lop), et ils n'ont rien trouvé... Pour voir quelle infection a ton ordinateur, fais ceci :

Télécharge hijackthis sur ton bureau :
http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis

Installe le, lance le et clique sur "Do a system scan and save a logfile".
Fais un copier-coller du rapport entier sur le forum

0
maxacaen
 
voici le rapport complet avec hijackthis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:35:39, on 01/08/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16681)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\vsnp2std.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\System Control Manager\MGSysCtrl.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe
C:\Windows\System32\oodtray.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [snp2std] C:\Windows\vsnp2std.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\Cyberlink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [OODefragTray] C:\Windows\system32\oodtray.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [28897855640102607478440271102935] C:\Program Files\AV9\av2009.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: RegFreeze.lnk = C:\Program Files\RegFreeze\regfreeze.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
O17 - HKLM\System\CS1\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
O17 - HKLM\System\CS2\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll
O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - C:\Program Files\System Control Manager\edd.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\Windows\system32\oodag.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared Files\RichVideo.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
0
anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
 
Bon, on va utiliser plusieurs logiciels pour désinfecter, commence par celui-ci :

Télécharge SmitfraudFix :
http://siri.urz.free.fr/Fix/SmitfraudFix.exe

- Enregistre-le sur le bureau

- Double-clique sur SmitfraudFix.exe et choisis l'option 1 puis Entrée

- Un rapport sera généré, poste-le dans ta prochaine réponse stp.

Tutoriel ici pour t'aider : http://www.malekal.com//tutorial_SmitFraudfix.php

0
maxacaen
 
j'ai bien installé le programme j'ai bien lancé une recherche mais aucun bloc note ne s'ouvre !
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
maxacaen
 
ça marque accès refusé
0
anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
 
Ca doit être à cause de certaines restrictions sur Vista, fais ceci :

Désactive le contrôle des comptes utilisateurs (tu le réactiveras après ta désinfection):

- Va dans démarrer puis panneau de configuration
- Double Clique sur l'icône "Comptes d'utilisateurs"
- Clique ensuite sur désactiver et valide.

Télécharge à nouveau SmitfraudFix : http://siri.urz.free.fr/Fix/SmitfraudFix.exe

- Enregistre-le sur le bureau

- Clique du droit sur SmitfraudFix.exe et choisis "exécuter en temps qu'administrateur", puis choisis l'option 1 puis Entrée

- Un rapport sera généré, poste-le dans ta prochaine réponse stp.

Tutoriel ici pour t'aider : http://www.malekal.com//tutorial_SmitFraudfix.php

0
maxacaen
 
voila le rapport:
SmitFraudFix v2.332

Scan done at 23:57:45,74, 01/08/2008
Run from C:\Users\portable\Desktop\SmitfraudFix
OS: Microsoft Windows [version 6.0.6000] - Windows_NT
The filesystem type is NTFS
Fix run in normal mode

»»»»»»»»»»»»»»»»»»»»»»»» Process

C:\Windows\system32\csrss.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\csrss.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\winlogon.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\svchost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\System Control Manager\edd.exe
C:\Windows\system32\oodag.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Cyberlink\Shared Files\RichVideo.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\vsnp2std.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\System Control Manager\MGSysCtrl.exe
C:\Windows\system32\svchost.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe
C:\Windows\System32\svchost.exe
C:\Windows\System32\oodtray.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\AV9\av2009.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\conime.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\cmd.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\wbem\wmiprvse.exe

»»»»»»»»»»»»»»»»»»»»»»»» hosts


»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows


»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32


»»»»»»»»»»»»»»»»»»»»»»»» C:\Windows\system32\LogFiles


»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\portable


»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\portable\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Start Menu


»»»»»»»»»»»»»»»»»»»»»»»» C:\Users\portable\FAVORI~1


»»»»»»»»»»»»»»»»»»»»»»»» Desktop


»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


»»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys


»»»»»»»»»»»»»»»»»»»»»»»» Desktop Components



»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
!!!Attention, following keys are not inevitably infected!!!

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri



»»»»»»»»»»»»»»»»»»»»»»»» VACFix
!!!Attention, following keys are not inevitably infected!!!

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
!!!Attention, following keys are not inevitably infected!!!

404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, following keys are not inevitably infected!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\\PROGRA~1\\KASPER~1\\KASPER~1\\mzvkbd.dll"
"LoadAppInit_DLLs"=dword:00000001


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon
!!!Attention, following keys are not inevitably infected!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\Windows\\system32\\userinit.exe,"


»»»»»»»»»»»»»»»»»»»»»»»» Rustock



»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: Intel(R) PRO/Wireless 3945ABG Network Connection
DNS Server Search Order: 192.168.1.1

HKLM\SYSTEM\CCS\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer=212.27.53.252,212.27.54.252
HKLM\SYSTEM\CCS\Services\Tcpip\..\{BECD22A4-4F9E-472F-9599-B8664245D5CB}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer=212.27.53.252,212.27.54.252
HKLM\SYSTEM\CS1\Services\Tcpip\..\{BECD22A4-4F9E-472F-9599-B8664245D5CB}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS2\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer=212.27.53.252,212.27.54.252
HKLM\SYSTEM\CS2\Services\Tcpip\..\{BECD22A4-4F9E-472F-9599-B8664245D5CB}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1


»»»»»»»»»»»»»»»»»»»»»»»» Scanning for wininet.dll infection


»»»»»»»»»»»»»»»»»»»»»»»» End
0
anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
 
Ok, on passe à MalwareByte's

Télécharge et installe Malwarebyte's Anti-Malware : http://www.malwarebytes.org/mbam/program/mbam-setup.exe
- A la fin de l'installation, veille à ce que l'option « mettre a jour Malwarebyte's Anti-Malware » soit cochée
- Lance Malwarebyte's Anti-Malware, laisse les Mises à jour se télécharger et referme le programme

Redémarre en "Mode sans échec" : redémarre ton ordinateur et tapote sur la touche F8 jusqu'à l'affichage du menu des options avancées de Windows, et sélectionne "Mode sans échec".
Choisis ta session habituelle

Lance Malwarebyte's Anti-Malware
- Puis va dans l'onglet "Recherche", coche "Exécuter un examen complet" puis "Rechercher"
- Sélectionne tes disques durs" puis clique sur "Lancer l’examen"
- A la fin du scan, clique sur Afficher les résultats puis sur Enregistrer le rapport
- Suppression des éléments détectés --> clique sur Supprimer la sélection
- S'il t'es demandé de redémarrer, clique sur Yes

Poste le rapport de scan après la suppression ici

0
maxacaen
 
Malwarebytes' Anti-Malware 1.24
Version de la base de données: 1013
Windows 6.0.6000

04:22:43 02/08/2008
mbam-log-8-2-2008 (04-22-43).txt

Type de recherche: Examen complet (C:\|E:\|)
Eléments examinés: 129988
Temps écoulé: 1 hour(s), 36 minute(s), 22 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 8
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 4
Fichier(s) infecté(s): 13

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\Interface\{54b287f9-fd90-4457-b65e-cb91560c021d} (Adware.Mirar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6e4c7afc-9915-4036-b7f9-8b3f1710788f} (Adware.Mirar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\MediaHoldings (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Mirar (Adware.Mirar) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\PlayMP3 (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\FBrowsingAdvisor (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\fbrowsingadvisor_is1 (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\RelatedPageInstall (Adware.Mirar) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\FBrowsingAdvisor (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
C:\Program Files\FBrowserAdvisor (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMP3z (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
C:\Users\portable\AppData\Roaming\Microsoft\Windows\Start Menu\Antivirus 2009 (Rogue.Antivirus) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\Program Files\FBrowsingAdvisor\XPCOMEvents.dll (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
C:\Program Files\Mozilla Firefox\regxpcom.exe (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
C:\Users\portable\AppData\Local\Temp\tem3833.tmp.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Users\portable\AppData\Local\Temp\updAD20.tmp.exe (Adware.Agent) -> Quarantined and deleted successfully.
C:\Program Files\FBrowsingAdvisor\IXPCOMEvents.xpt (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
C:\Program Files\FBrowsingAdvisor\Logo.png (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
C:\Program Files\FBrowsingAdvisor\main.db (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
C:\Program Files\FBrowsingAdvisor\unins000.dat (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
C:\Program Files\FBrowsingAdvisor\unins000.exe (Trojan.FBrowsingAdvisor) -> Quarantined and deleted successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PlayMP3z\Run PlayMP3z.lnk (Adware.PlayMP3Z) -> Quarantined and deleted successfully.
C:\Users\portable\AppData\Roaming\Microsoft\Windows\Start Menu\Antivirus 2009\Antivirus 2009.lnk (Rogue.Antivirus) -> Quarantined and deleted successfully.
C:\Users\portable\AppData\Roaming\Microsoft\Windows\Start Menu\Antivirus 2009\Uninstall Antivirus 2009.lnk (Rogue.Antivirus) -> Quarantined and deleted successfully.
C:\Users\portable\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Antivirus 2009.lnk (Rogue.Antivirus2008) -> Quarantined and deleted successfully.
0
anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
 
Ok, maintenant j'aurai besoin d'un nouveau rapport hijackthis stp.

Ensuite, fais exactement ce qui suit :

Télécharge ComboFix (de sUBs) sur ton Bureau (et pas ailleurs !) :
Fais un clic droit sur ce lien et choisis "enregistrer la cible sous ... " : dans la fenêtre qui s'ouvre tape C-Fix, choisis le bureau comme destination et valide : http://download.bleepingcomputer.com/sUBs/ComboFix.exe

--------------------------------------------- [ ! ATTENTION ! ] ----------------------------------------------------------
!! déconnecte toi, ferme toutes tes applications en cours et DESACTIVE TOUTES TES DEFENCES (anti-virus, antispyware, pare-feu) le temps de la manipulation :
en effet , activés, ils pourraient gêner fortement la procédure de recherche et de nettoyage de l'outil ( voir planter le PC )...Tu les réactiveras donc après !!
UAC pour Vista : Désactive le contrôle des comptes utilisateurs : Menu démarrer --> panneau de configuration --> Comptes utilisateurs

---> Surtout, si tu rencontres des difficultés à ce niveau là, dis le moi avant de poursuivre ...
Tuto ici : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
---------------------------------------------------------------------------------------------------------------------------------

Ensuite :

Clic droit sur C-Fix.exe (= combofix.exe) --> exécuter en tant qu’administrateur

Appuie sur la touche Y (Yes) pour démarrer le scan.

Attention : n'utilise pas ta souris ni ton clavier pendant que le programme tourne. Cela pourrait figer l'ordi ---> si un message d'erreur windows apparait à un momment : clique sur la croix rouge en haut à droite de la fenêtre pour la fermer

Le rapport sera crée dans: C:\Combofix.txt , poste le ici stp

0
maxacaen
 
voici le nouveau rapport de hijack
je fais le reste maintenant
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:05:23, on 05/08/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16681)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\vsnp2std.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\System Control Manager\MGSysCtrl.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe
C:\Windows\System32\oodtray.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtHsp.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [snp2std] C:\Windows\vsnp2std.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [MGSysCtrl] C:\Program Files\System Control Manager\MGSysCtrl.exe
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\Cyberlink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [LanguageShortcut] "C:\Program Files\Cyberlink\PowerDVD\Language\Language.exe"
O4 - HKLM\..\Run: [OODefragTray] C:\Windows\system32\oodtray.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [28897855640102607478440271102935] C:\Program Files\AV9\av2009.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Bluetooth Manager.lnk = ?
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file)
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
O17 - HKLM\System\CS1\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
O17 - HKLM\System\CS2\Services\Tcpip\..\{01F01CC1-F93B-4A78-8601-EA15C46205AD}: NameServer = 212.27.53.252,212.27.54.252
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll
O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Kaspersky Anti-Virus (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: SCM Driver Daemon (NishService) - Unknown owner - C:\Program Files\System Control Manager\edd.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\Windows\system32\oodag.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared Files\RichVideo.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: TOSHIBA Bluetooth Service - TOSHIBA CORPORATION - C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
0
maxacaen
 
j'ai bien suivi toutes tes instructions, a savoir couper tous les antivirus,couper le net,aller dans le panneau de config mais quand je fais clic droit executer en tant qu'administrateur une fenetre noir s'ouvre pendant 1 demi seconde et se referme aussitot !
que dois je faire?
0
maxacaen > maxacaen
 
petite remarque en plus j'ai l'impression que la qualité de l'image sur mon pc est moins bonne qu'avant ça me parait un peu moins net, il n'y a pas une histoire de mode sans échec ou quelque chose comme ça?
0
maxacaen
 
j'ai désinstallé et réinstallé combofix, cela me met maintenant que combofix n'est compatible qu'avec xp et windows 2000 hors j'ai vista...
0
anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
 
Ok, je vais me renseigner...
0
maxacaen
 
merci beaucoup anthony c'est très sympa !
au niveau du pc bilan général: il y a toujours antivirus 2009 dans le pc qui continue de prendre la tête mais sinon les fenetres internet qui s'ouvraient toutes seules ont disparu.
j'ai un écran bleu qui apparait de temps en temps pour me dire en anglais que mon ordi est infecté par un spyware monster et que ça dois redémarré et ça me lance une page de rédemarrage windows mais en anglais et ça dur que 20 secondes et finalement le pc redeviens normal
le temps que j'écrive ce message j'ai eu 2 écran bleu !
0
anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
 
Bon, j'ai fait le test sur mon propre ordinateur (avec Vista donc), et j'ai eu le même message d'erreur que toi.
Puis, en supprimant manuellement tous les dossiers créés par Combofix sur le disque dur, et en téléchargeant à nouveau combofix, ça a fonctionné...

Vérifie ici :
Menu démarrer --> Ordinateur --> disque C --> donne moi le nom de tous les dossiers qui apparaissent stp

0
maxacaen
 
voila ce que j'ai dans le C:
327882R2FWJFW
drivers
intel
lop sd
programmes
temp
utilisateurs
windows
0
anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
 
Vérifie que le dossier 327882R2FWJFW contient bien des fichiers Combofix et si oui, supprime le. Supprime également tout ce qui se trouve sur ton bureau en rapport avec Combofix.

On va essayer autrement, je me suis renseigné et il ne faut plus utiliser Combofix sur Vista pour le moment...
Commence par ceci :

Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
• Redémarre ton ordinateur
• Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
• A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
• Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
• Choisis ton compte.

• Puis, ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
• Appuie sur Y pour commencer le processus de nettoyage.
• Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
• Appuie sur une touche pour redémarrer le PC.
• Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
• Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
• Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
• Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.

0
maxacaen
 
alors quand je me mettais en mode sans échec le programme ne voulait pas se lancer en revanche quand je passais par le mode msconfig oui voila le rapport que ça m'a donné(j'ai cliqué a :create system report)(en revanche il n'a pas été question de redémarrage...), j'ai toujours le antivirus2009 qui se lance ainsi que les écrans bleu en anglais en mode attention virus monster.spyware ...



[b]System Report[/b]
*************

Run on 07/08/2008 at 02:43

Microsoft Windows [version 6.0.6000]

Current user is an administrator

[b]Running Processes[/b]:

\SystemRoot\System32\smss.exe [464]
C:\Windows\system32\csrss.exe [548]
C:\Windows\system32\wininit.exe [592]
C:\Windows\system32\csrss.exe [604]
C:\Windows\system32\services.exe [640]
C:\Windows\system32\lsass.exe [652]
C:\Windows\system32\lsm.exe [660]
C:\Windows\system32\winlogon.exe [732]
C:\Windows\system32\svchost.exe [868]
C:\Windows\system32\svchost.exe [900]
C:\Windows\system32\svchost.exe [936]
C:\Windows\system32\SLsvc.exe [1000]
C:\Windows\Explorer.EXE [1224]


[b]Drivers - Running[/b]:

ACPI
AFD
atapi
avgio
avipbb
Beep
cdfs
cdrom
CLFS
CmBatt
Compbatt
crcdisk
DfsC
disk
DXGKrnl
e1express
Ecache
FileInfo
FltMgr
HDAudBus
i8042prt
igfx
IntcAzAudAddService
intelppm
irda
IRENUM
iScsiPrt
kbdclass
kl1
KSecDD
lltdio
luafv
monitor
mouclass
MountMgr
msahci
Msfs
msisadrv
mssmbios
Mup
NDIS
NdisTapi
NdisWan
NDProxy
NetBIOS
netbt
NETw4v32
Npfs
NSCIRDA
nsiproxy
Ntfs
Null
ohci1394
Parport
partmgr
Parvdm
pci
pciide
pcmcia
PEAUTH
PptpMiniport
PSched
PxHelp20
RasAcd
Rasl2tp
RasPppoe
rdbss
RDPCDD
RDPENCDD
rimmptsk
rimsptsk
rismxdp
rspndr
sdbus
secdrv
Serenum
Serial
Smb
snapman
SNP2STD
spldr
ssmdrv
StarOpen
swenum
SynTP
Tcpip
tcpipreg
tdx
TermDD
tosporte
Tosrfcom
Tosrfusb
tunmp
tunnel
umbus
usbehci
usbhub
usbuhci
VgaSave
volmgr
volmgrx
volsnap
Wanarpv6
Wdf01000


[b]Drivers - Stopped[/b]:

adp94xx
adpahci
adpu160m
adpu320
agp440
aic78xx
aliide
amdagp
amdide
AmdK7
AmdK8
arc
arcsas
AsyncMac
avgntflt
blbdrive
bowser
BrFiltLo
BrFiltUp
Brserid
BrSerWdm
BrUsbMdm
BrUsbSer
BTHMODEM
catchme
circlass
cmdide
Crusoe
drmkaud
E1G60
elxstor
fastfat
fdc
Filetrace
flpydisk
gagp30kx
HdAudAddService
HidBth
HidIr
HidUsb
HpCISSs
HTTP
i2omp
iaStorV
iirsp
intelide
IpFilterDriver
IpInIp
IPMIDRV
IPNAT
isapnp
iteatapi
iteraid
kbdhid
LSI_FC
LSI_SAS
LSI_SCSI
megasas
MGHwCtrl
Modem
mouhid
mpio
mpsdrv
Mraid35x
MRxDAV
mrxsmb
mrxsmb10
mrxsmb20
msdsm
MSKSSRV
MSPCLOCK
MSPQM
MsRPC
MSTEE
NativeWifiP
Ndisuio
NETw3v32
nfrd960
ntrigdigi
nvraid
nvstor
nv_agp
NwlnkFlt
NwlnkFwd
Processor
Profos
ql2300
ql40xx
QWAVEdrv
rdpdr
RDPWD
sbp2port
sermouse
sffdisk
sffp_mmc
sffp_sd
sfloppy
sisagp
SiSRaid2
SiSRaid4
srv
srv2
srvnet
ssm_bus
ssm_mdfl
ssm_mdm
Symc8xx
Sym_hi
Sym_u3
Tcpip6
TDPIPE
TDTCP
tosrfbd
tosrfbnp
Tosrfhid
tosrfnds
Trufos
tssecsrv
uagp35
udfs
uliagpkx
uliahci
UlSata
ulsata2
usbaudio
usbccgp
usbcir
usbohci
usbprint
usbscan
USBSTOR
vga
viaagp
ViaC7
viaide
vsmraid
WacomPen
Wanarp
Wd
WmiAcpi
WpdUsb
ws2ifsl
WUDFRd


[b]Services - Running[/b]:

DcomLaunch
gpsvc
ProfSvc
RpcSs
slsvc


[b]Services - Stopped[/b]:

AcronisOSSReinstallSvc
Adobe
AeLookupSvc
ALG
AntiVirScheduler
AntiVirService
Appinfo
AudioEndpointBuilder
Audiosrv
BcmSqlStartupSvc
BFE
BITS
Browser
CertPropSvc
clr_optimization_v2.0.50727_32
COMSysApp
CryptSvc
DFSR
Dhcp
Dnscache
dot3svc
DPS
EapHost
ehRecvr
ehSched
ehstart
EMDMgmt
Eventlog
EventSystem
EvtEng
fdPHost
FDResPub
FontCache3.0.0.0
gusvc
hidserv
hkmsvc
IDriverT
idsvc
IKEEXT
IPBusEnum
iphlpsvc
Irmon
KeyIso
KtmRm
LanmanServer
LanmanWorkstation
lltdsvc
lmhosts
Mcx2Svc
MMCSS
MpsSvc
MSDTC
MSiSCSI
msiserver
napagent
Netlogon
Netman
netprofm
NetTcpPortSharing
NishService
NlaSvc
nsi
O&O
odserv
ose
p2pimsvc
p2psvc
PcaSvc
pla
PlugPlay
PNRPAutoReg
PNRPsvc
PolicyAgent
ProtectedStorage
QWAVE
RasAuto
RasMan
RegSrvc
RemoteAccess
RemoteRegistry
RichVideo
RoxMediaDB9
RoxWatch9
RpcLocator
SamSs
SCardSvr
Schedule
SCPolicySvc
SDRSVC
seclogon
SENS
SessionEnv
SharedAccess
ShellHWDetection
SLUINotify
SNMPTRAP
Spooler
SSDPSRV
stisvc
stllssvr
swprv
SysMain
TabletInputService
TapiSrv
TBS
TermService
Themes
THREADORDER
TOSHIBA
TrkWks
TrustedInstaller
UI0Detect
upnphost
usnjsvc
UxSms
vds
VSS
W32Time
wcncsvc
WcsPlugInService
WdiServiceHost
WdiSystemHost
WebClient
Wecsvc
wercplsupport
WerSvc
WinDefend
WinHttpAutoProxySvc
Winmgmt
WinRM
Wlansvc
WLSetupSvc
wmiApSrv
WMPNetworkSvc
WPCSvc
WPDBusEnum
wscsvc
WSearch
wuauserv
wudfsvc


[b]Files Created/Modified - 60 Days[/b]:


C:\

5 Aug 2008 3:35:24 712 A.... "C:\Bug.txt"
1 Aug 2008 2:45:34 2 361 A.... "C:\fixnavi.txt"
5 Aug 2008 0:14:50 0 A.SHR "C:\IO.SYS"
1 Aug 2008 2:59:34 10 154 A.... "C:\lopR.txt"
5 Aug 2008 0:14:50 0 A.SHR "C:\MSDOS.SYS"
27 Jun 2008 2:27:44 715 A..H. "C:\os618886.bin"
7 Aug 2008 2:41:00 2 452 160 512 A.SH. "C:\pagefile.sys"
1 Aug 2008 23:59:32 6 275 A.... "C:\rapport.txt"
29 Jul 2008 3:10:58 244 A..H. "C:\sqmnoopt12.sqm"
29 Jul 2008 13:55:24 244 A..H. "C:\sqmnoopt13.sqm"
28 Jul 2008 16:01:58 244 A..H. "C:\sqmnoopt10.sqm"
28 Jul 2008 22:04:06 244 A..H. "C:\sqmnoopt11.sqm"
18 Jun 2008 17:21:58 244 A..H. "C:\sqmnoopt08.sqm"
20 Jun 2008 19:19:36 244 A..H. "C:\sqmnoopt09.sqm"
28 Jul 2008 16:01:58 268 A..H. "C:\sqmdata10.sqm"
18 Jun 2008 17:21:58 268 A..H. "C:\sqmdata08.sqm"
28 Jul 2008 22:04:06 268 A..H. "C:\sqmdata11.sqm"
20 Jun 2008 19:19:36 268 A..H. "C:\sqmdata09.sqm"
29 Jul 2008 3:10:58 268 A..H. "C:\sqmdata12.sqm"
29 Jul 2008 13:55:24 268 A..H. "C:\sqmdata13.sqm"


C:\Windows\

1 Aug 2008 0:01:38 121 A.... "C:\Windows\bdagent.INI"
7 Aug 2008 2:41:06 67 584 A.S.. "C:\Windows\bootstat.dat"
28 Jul 2008 14:35:28 59 861 A.... "C:\Windows\DirectX.log"
7 Aug 2008 2:36:52 879 500 A.... "C:\Windows\ntbtlog.txt"
26 Jun 2008 4:28:06 0 A.... "C:\Windows\oodcnt.INI"
1 Aug 2008 0:56:40 4 094 158 A.... "C:\Windows\PFRO.log"
2 Aug 2008 19:39:14 700 A.... "C:\Windows\setupact.log"
2 Aug 2008 0:06:06 0 A.... "C:\Windows\setuperr.log"
14 Jun 2008 18:59:12 216 A.... "C:\Windows\Ulead32.ini"
28 Jul 2008 14:29:56 571 A.... "C:\Windows\win.ini"
7 Aug 2008 2:34:04 1 819 009 A.... "C:\Windows\WindowsUpdate.log"
28 Jul 2008 16:06:08 749 A..HR "C:\Windows\WindowsShell.Manifest"
28 Jul 2008 14:21:44 52 736 A.... "C:\Windows\AppPatch\iebrshim.dll"
28 Jul 2008 14:20:02 2 262 A.... "C:\Windows\Debug\mrt.log"
28 Jul 2008 14:20:02 1 154 A.... "C:\Windows\Debug\mrteng.log"
7 Aug 2008 2:41:04 0 A.... "C:\Windows\Debug\PASSWD.LOG"
23 Jul 2008 17:27:50 28 616 A.... "C:\Windows\Fonts\Bosox.ttf"
23 Jul 2008 17:29:46 69 460 A.... "C:\Windows\Fonts\Bosox Full.ttf"
23 Jul 2008 17:27:52 51 600 A.... "C:\Windows\Fonts\Bosox Outline.ttf"
23 Jul 2008 17:39:24 51 188 A.... "C:\Windows\Fonts\Bosox Outline Heavy.ttf"
23 Jul 2008 17:38:38 69 484 A.... "C:\Windows\Fonts\Bosox SemiBold.ttf"
17 Jun 2008 14:41:52 73 172 A.... "C:\Windows\Fonts\FontdinerdotcomSparkly.ttf"
17 Jun 2008 20:56:22 35 468 A.... "C:\Windows\Fonts\FONTH__.TTF"
18 Jun 2008 18:18:02 193 508 A.... "C:\Windows\Fonts\GASMASK.TTF"
28 Jul 2008 16:02:46 34 598 A.... "C:\Windows\inf\bth.inf"
28 Jul 2008 16:02:46 39 712 A.... "C:\Windows\inf\bth.PNF"
28 Jul 2008 16:02:46 665 600 A.... "C:\Windows\inf\drvindex.dat"
5 Aug 2008 1:26:56 1 701 216 A.... "C:\Windows\inf\INFCACHE.1"
5 Aug 2008 1:26:56 51 200 A.... "C:\Windows\inf\infpub.dat"
5 Aug 2008 1:26:56 86 016 A.... "C:\Windows\inf\infstor.dat"
5 Aug 2008 1:26:56 86 016 A.... "C:\Windows\inf\infstrng.dat"
28 Jul 2008 14:33:22 9 170 A.... "C:\Windows\inf\netpgm.inf"
28 Jul 2008 22:02:56 1 550 A.... "C:\Windows\inf\oem61.inf"
28 Jul 2008 22:03:20 5 648 A.... "C:\Windows\inf\oem61.PNF"
28 Jul 2008 22:03:16 2 872 A.... "C:\Windows\inf\oem62.inf"
28 Jul 2008 22:03:18 8 868 A.... "C:\Windows\inf\oem62.PNF"
25 Jun 2008 16:43:00 1 651 ..... "C:\Windows\inf\pxhelp20.inf"
2 Aug 2008 19:39:10 16 600 A.... "C:\Windows\inf\setupapi.ev1"
2 Aug 2008 19:39:10 29 048 A.... "C:\Windows\inf\setupapi.ev2"
2 Aug 2008 19:39:10 143 360 A.... "C:\Windows\inf\setupapi.ev3"
7 Aug 2008 2:40:06 18 092 807 A.... "C:\Windows\inf\setupapi.app.log"
5 Aug 2008 1:26:56 13 804 629 A.... "C:\Windows\inf\setupapi.dev.log"
13 Jun 2008 21:36:12 91 988 A.... "C:\Windows\inf\wdma_usb.PNF"
25 Jun 2008 16:46:18 1 173 ..... "C:\Windows\pss\Adobe Gamma.lnk.Startup"
28 Jul 2008 16:06:04 682 072 A.... "C:\Windows\rescache\ResCache.mni"
7 Aug 2008 2:41:10 3 072 A..H. "C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0"
7 Aug 2008 2:41:10 3 072 A..H. "C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0"
28 Jul 2008 14:21:44 124 928 A.... "C:\Windows\System32\advpack.dll"
1 Aug 2008 0:01:38 81 984 A.... "C:\Windows\System32\bdod.bin"
28 Jul 2008 14:36:56 620 088 A.... "C:\Windows\System32\ci.dll"
28 Jul 2008 14:30:52 162 816 A.... "C:\Windows\System32\dnsapi.dll"
28 Jul 2008 14:30:52 83 968 A.... "C:\Windows\System32\dnsrslvr.dll"
28 Jul 2008 14:21:42 347 136 A.... "C:\Windows\System32\dxtmsft.dll"
28 Jul 2008 14:21:42 214 528 A.... "C:\Windows\System32\dxtrans.dll"
28 Jul 2008 14:36:56 7 168 A.... "C:\Windows\System32\f3ahvoas.dll"
5 Aug 2008 0:17:24 851 272 A.... "C:\Windows\System32\FNTCACHE.DAT"
28 Jul 2008 14:34:34 296 448 A.... "C:\Windows\System32\gdi32.dll"
28 Jul 2008 14:21:34 63 488 A.... "C:\Windows\System32\icardie.dll"
28 Jul 2008 14:21:30 70 656 A.... "C:\Windows\System32\ie4uinit.exe"
28 Jul 2008 14:21:44 383 488 A.... "C:\Windows\System32\ieapfltr.dll"
4 Aug 2008 1:51:18 82 944 A.... "C:\Windows\System32\IEDFix.exe"
3 Aug 2008 1:53:14 82 432 A.... "C:\Windows\System32\IEDFix.C.exe"
28 Jul 2008 14:21:40 6 066 176 A.... "C:\Windows\System32\ieframe.dll"
28 Jul 2008 14:21:30 44 544 A.... "C:\Windows\System32\iernonce.dll"
28 Jul 2008 14:21:30 56 320 A.... "C:\Windows\System32\iesetup.dll"
28 Jul 2008 14:21:40 180 736 A.... "C:\Windows\System32\ieui.dll"
28 Jul 2008 14:21:32 26 624 A.... "C:\Windows\System32\ieUnatt.exe"
28 Jul 2008 14:21:34 1 831 424 A.... "C:\Windows\System32\inetcpl.cpl"
28 Jul 2008 14:21:42 27 648 A.... "C:\Windows\System32\jsproxy.dll"
28 Jul 2008 14:36:56 6 656 A.... "C:\Windows\System32\kbd106n.dll"
28 Jul 2008 14:36:56 19 000 A.... "C:\Windows\System32\kd1394.dll"
28 Jul 2008 14:42:18 447 A.... "C:\Windows\System32\mapisvc.inf"
25 Jun 2008 9:15:48 17 972 344 A.... "C:\Windows\System32\mrt.exe"
28 Jul 2008 14:21:36 3 591 680 A.... "C:\Windows\System32\mshtml.dll"
28 Jul 2008 14:21:36 1 383 424 A.... "C:\Windows\System32\mshtml.tlb"
28 Jul 2008 14:21:38 478 208 A.... "C:\Windows\System32\mshtmled.dll"
28 Jul 2008 14:21:34 671 232 A.... "C:\Windows\System32\mstime.dll"
7 Aug 2008 2:41:00 209 428 A.... "C:\Windows\System32\oodbs.lor"
7 Aug 2008 0:06:00 108 458 A.... "C:\Windows\System32\perfc009.dat"
7 Aug 2008 0:06:00 122 898 A.... "C:\Windows\System32\perfc00C.dat"
7 Aug 2008 0:06:00 621 374 A.... "C:\Windows\System32\perfh009.dat"
7 Aug 2008 0:06:00 702 978 A.... "C:\Windows\System32\perfh00C.dat"
7 Aug 2008 0:06:00 1 546 568 A.... "C:\Windows\System32\PerfStringBackup.INI"
28 Jul 2008 14:21:30 44 544 A.... "C:\Windows\System32\pngfilt.dll"
28 Jul 2008 14:24:06 99 840 A.... "C:\Windows\System32\poqexec.exe"
25 Jun 2008 16:43:00 53 248 ..... "C:\Windows\System32\pxhpinst.exe"
28 Jul 2008 14:25:00 1 327 104 A.... "C:\Windows\System32\quartz.dll"
28 Jul 2008 14:36:56 313 856 A.... "C:\Windows\System32\rstrui.exe"
28 Jul 2008 14:43:40 11 315 712 A.... "C:\Windows\System32\shell32.dll"
28 Jul 2008 14:36:56 40 960 A.... "C:\Windows\System32\srclient.dll"
28 Jul 2008 14:36:56 371 712 A.... "C:\Windows\System32\srcore.dll"
1 Aug 2008 23:57:48 3 556 A.... "C:\Windows\System32\tmp.reg"
1 Aug 2008 23:57:48 0 A.... "C:\Windows\System32\tmp.txt"
28 Jul 2008 14:21:32 1 159 680 A.... "C:\Windows\System32\urlmon.dll"
28 Jul 2008 14:35:42 2 027 008 A.... "C:\Windows\System32\win32k.sys"
28 Jul 2008 14:21:42 826 368 A.... "C:\Windows\System32\wininet.dll"
28 Jul 2008 14:36:56 944 184 A.... "C:\Windows\System32\winload.exe"
28 Jul 2008 14:33:22 14 848 A.... "C:\Windows\System32\wshrm.dll"
7 Aug 2008 2:40:06 6 A..H. "C:\Windows\Tasks\SA.DAT"
7 Aug 2008 2:40:06 32 576 A.... "C:\Windows\Tasks\SCHEDLGU.TXT"
6 Aug 2008 13:29:40 424 A..H. "C:\Windows\Tasks\User_Feed_Synchronization-{836029E6-8F6F-49C6-B6C0-9DBD7C8AF31E}.job"
7 Aug 2008 2:32:08 260 A.... "C:\Windows\Tasks\V‚rifier les mises … jour de Windows Live Toolbar.job"
2 Aug 2008 22:11:44 38 588 A.... "C:\Windows\Temp\coinlog.log"
26 Jun 2008 22:58:56 0 A.... "C:\Windows\Temp\DMID7F2.tmp"
2 Aug 2008 12:56:52 608 A.... "C:\Windows\Temp\fwtsqmfile13.sqm"
2 Aug 2008 12:56:54 120 A.... "C:\Windows\Temp\fwtsqmfile14.sqm"
1 Aug 2008 23:21:24 120 A.... "C:\Windows\Temp\fwtsqmfile11.sqm"
1 Aug 2008 23:21:34 120 A.... "C:\Windows\Temp\fwtsqmfile12.sqm"
13 Jul 2008 21:59:22 120 A.... "C:\Windows\Temp\fwtsqmfile04.sqm"
13 Jul 2008 21:59:00 120 A.... "C:\Windows\Temp\fwtsqmfile17.sqm"
13 Jul 2008 21:59:00 120 A.... "C:\Windows\Temp\fwtsqmfile18.sqm"
2 Aug 2008 12:58:02 120 A.... "C:\Windows\Temp\fwtsqmfile15.sqm"
2 Aug 2008 13:37:08 120 A.... "C:\Windows\Temp\fwtsqmfile16.sqm"
30 Jul 2008 13:53:58 608 A.... "C:\Windows\Temp\fwtsqmfile07.sqm"
30 Jul 2008 22:03:26 608 A.... "C:\Windows\Temp\fwtsqmfile08.sqm"
13 Jul 2008 22:11:24 120 A.... "C:\Windows\Temp\fwtsqmfile05.sqm"
13 Jul 2008 22:11:24 120 A.... "C:\Windows\Temp\fwtsqmfile06.sqm"
13 Jul 2008 21:59:02 120 A.... "C:\Windows\Temp\fwtsqmfile19.sqm"
30 Jul 2008 22:03:26 120 A.... "C:\Windows\Temp\fwtsqmfile09.sqm"
1 Aug 2008 23:21:24 608 A.... "C:\Windows\Temp\fwtsqmfile10.sqm"
13 Jul 2008 21:59:04 120 A.... "C:\Windows\Temp\fwtsqmfile00.sqm"
13 Jul 2008 21:59:12 120 A.... "C:\Windows\Temp\fwtsqmfile01.sqm"
13 Jul 2008 21:59:12 120 A.... "C:\Windows\Temp\fwtsqmfile02.sqm"
13 Jul 2008 21:59:16 120 A.... "C:\Windows\Temp\fwtsqmfile03.sqm"
29 Jul 2008 18:37:02 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336821"
29 Jul 2008 18:27:46 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336264"
29 Jul 2008 18:10:28 25 887 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335226"
31 Jul 2008 13:07:32 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489850"
30 Jul 2008 0:56:46 116 A.... "C:\Windows\Temp\httproxy_clt099D35201217359604"
30 Jul 2008 0:50:18 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359216"
31 Jul 2008 15:20:02 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217497800"
29 Jul 2008 13:21:38 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317897"
30 Jul 2008 0:51:38 220 A.... "C:\Windows\Temp\httproxy_clt099D35201217359296"
30 Jul 2008 19:42:52 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427171"
31 Jul 2008 2:26:26 110 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451385"
30 Jul 2008 0:47:44 137 A.... "C:\Windows\Temp\httproxy_clt079946681217359062"
29 Jul 2008 18:30:38 3 705 A.... "C:\Windows\Temp\httproxy_clt078256E01217336437"
29 Jul 2008 13:22:14 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317933"
29 Jul 2008 18:17:06 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335624"
29 Jul 2008 18:07:18 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335037"
29 Jul 2008 18:10:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335236"
29 Jul 2008 18:07:38 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335057"
29 Jul 2008 18:10:58 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335256"
29 Jul 2008 18:09:28 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335166"
30 Jul 2008 13:15:58 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403957"
30 Jul 2008 19:35:08 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426706"
29 Jul 2008 18:30:32 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336431"
29 Jul 2008 13:17:12 639 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317631"
30 Jul 2008 19:34:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426686"
30 Jul 2008 19:22:06 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425925"
31 Jul 2008 3:00:46 110 A.... "C:\Windows\Temp\httproxy_clt0971B0181217453445"
29 Jul 2008 13:19:30 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317768"
31 Jul 2008 23:38:12 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527690"
30 Jul 2008 19:32:04 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426523"
30 Jul 2008 19:29:06 64 A.... "C:\Windows\Temp\httproxy_clt078908081217426344"
29 Jul 2008 13:13:42 110 A.... "C:\Windows\Temp\httproxy_clt06D393C01217317420"
30 Jul 2008 19:28:40 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426319"
30 Jul 2008 19:28:50 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426329"
29 Jul 2008 18:26:56 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336215"
29 Jul 2008 18:27:26 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336245"
29 Jul 2008 18:24:28 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336066"
29 Jul 2008 18:37:44 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336862"
29 Jul 2008 18:33:06 110 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336584"
31 Jul 2008 15:24:28 0 A.... "C:\Windows\Temp\httproxy_srv0A5E6F781217498067"
31 Jul 2008 13:08:32 180 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489910"
31 Jul 2008 13:08:52 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489930"
30 Jul 2008 19:58:12 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428090"
30 Jul 2008 19:43:42 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427221"
30 Jul 2008 19:58:32 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428110"
30 Jul 2008 19:22:36 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425954"
30 Jul 2008 19:46:56 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427414"
29 Jul 2008 18:34:08 25 509 A.... "C:\Windows\Temp\httproxy_clt078256E01217336647"
29 Jul 2008 18:34:58 25 872 A.... "C:\Windows\Temp\httproxy_clt078256E01217336697"
29 Jul 2008 18:11:38 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335297"
30 Jul 2008 12:35:28 110 A.... "C:\Windows\Temp\httproxy_clt077D2F301217401526"
29 Jul 2008 1:52:50 110 A.... "C:\Windows\Temp\httproxy_clt043A91001217276569"
29 Jul 2008 13:22:26 31 857 A.... "C:\Windows\Temp\httproxy_clt045295881217317944"
29 Jul 2008 18:07:52 3 802 A.... "C:\Windows\Temp\httproxy_clt079078901217335070"
30 Jul 2008 19:38:20 487 A.... "C:\Windows\Temp\httproxy_clt097A17C01217426898"
29 Jul 2008 18:08:00 179 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335078"
29 Jul 2008 18:11:18 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335277"
30 Jul 2008 19:35:28 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426727"
30 Jul 2008 19:33:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426627"
30 Jul 2008 19:34:08 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426647"
30 Jul 2008 19:34:28 518 A.... "C:\Windows\Temp\httproxy_clt096826E81217426667"
30 Jul 2008 19:22:38 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425956"
30 Jul 2008 19:21:18 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425876"
29 Jul 2008 13:11:18 110 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317277"
29 Jul 2008 13:11:28 188 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317287"
30 Jul 2008 13:11:46 642 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403705"
30 Jul 2008 13:15:32 726 A.... "C:\Windows\Temp\httproxy_clt07998A881217403930"
30 Jul 2008 19:32:46 549 A.... "C:\Windows\Temp\httproxy_clt078908081217426564"
30 Jul 2008 19:29:36 189 A.... "C:\Windows\Temp\httproxy_clt078908081217426375"
31 Jul 2008 13:10:28 110 A.... "C:\Windows\Temp\httproxy_clt07728A001217490027"
29 Jul 2008 23:05:08 90 A.... "C:\Windows\Temp\httproxy_clt0798BE281217352907"
29 Jul 2008 1:56:24 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276782"
30 Jul 2008 0:44:52 178 A.... "C:\Windows\Temp\httproxy_clt078FDF481217358891"
29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336744"
30 Jul 2008 19:13:14 23 307 A.... "C:\Windows\Temp\httproxy_clt078890D01217425392"
29 Jul 2008 18:08:00 3 803 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335079"
31 Jul 2008 23:49:40 110 A.... "C:\Windows\Temp\httproxy_clt095756001217528378"
29 Jul 2008 18:07:40 3 800 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335059"
31 Jul 2008 13:09:32 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489971"
30 Jul 2008 0:54:28 45 A.... "C:\Windows\Temp\httproxy_clt099D35201217359467"
30 Jul 2008 0:53:18 104 A.... "C:\Windows\Temp\httproxy_clt099D35201217359397"
30 Jul 2008 13:17:54 66 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404072"
30 Jul 2008 19:58:52 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428131"
29 Jul 2008 13:19:06 722 A.... "C:\Windows\Temp\httproxy_clt044928681217317744"
30 Jul 2008 19:25:02 22 925 A.... "C:\Windows\Temp\httproxy_clt097127D81217426101"
29 Jul 2008 13:17:46 726 A.... "C:\Windows\Temp\httproxy_clt06D666681217317664"
29 Jul 2008 18:09:02 3 712 A.... "C:\Windows\Temp\httproxy_clt079078901217335141"
30 Jul 2008 13:14:54 32 711 A.... "C:\Windows\Temp\httproxy_clt079902481217403892"
29 Jul 2008 18:10:30 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335228"
29 Jul 2008 18:13:48 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335427"
29 Jul 2008 18:46:22 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337380"
30 Jul 2008 0:55:58 117 A.... "C:\Windows\Temp\httproxy_clt07999B901217359556"
29 Jul 2008 13:17:14 640 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317633"
29 Jul 2008 18:35:54 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336752"
30 Jul 2008 13:15:10 726 A.... "C:\Windows\Temp\httproxy_clt07A225481217403909"
30 Jul 2008 19:40:42 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427041"
31 Jul 2008 23:39:14 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527752"
30 Jul 2008 19:40:02 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427001"
29 Jul 2008 13:22:40 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317959"
29 Jul 2008 19:00:22 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338220"
29 Jul 2008 19:00:42 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338240"
29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338260"
31 Jul 2008 2:17:30 55 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450848"
31 Jul 2008 2:17:50 110 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450868"
30 Jul 2008 19:36:26 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426784"
29 Jul 2008 18:25:10 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336108"
29 Jul 2008 18:33:36 178 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336615"
29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336745"
29 Jul 2008 18:24:50 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336088"
29 Jul 2008 18:14:20 22 873 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335458"
30 Jul 2008 19:59:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428172"
30 Jul 2008 19:59:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428192"
30 Jul 2008 19:18:28 726 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425707"
30 Jul 2008 19:20:28 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425827"
30 Jul 2008 19:44:24 45 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427263"
30 Jul 2008 19:59:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428152"
30 Jul 2008 19:49:52 363 A.... "C:\Windows\Temp\httproxy_clt07921E001217427590"
30 Jul 2008 19:48:58 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427536"
29 Jul 2008 18:46:42 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337400"
29 Jul 2008 18:15:22 23 337 A.... "C:\Windows\Temp\httproxy_clt079078901217335520"
29 Jul 2008 18:10:22 25 860 A.... "C:\Windows\Temp\httproxy_clt079078901217335221"
29 Jul 2008 18:16:02 23 255 A.... "C:\Windows\Temp\httproxy_clt079078901217335560"
29 Jul 2008 18:08:30 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335109"
29 Jul 2008 18:49:52 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337590"
29 Jul 2008 18:34:14 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336653"
29 Jul 2008 18:31:16 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336474"
29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338261"
30 Jul 2008 13:11:48 643 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403707"
30 Jul 2008 13:11:08 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403667"
30 Jul 2008 12:37:02 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401620"
29 Jul 2008 13:19:46 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317785"
29 Jul 2008 13:20:02 723 A.... "C:\Windows\Temp\httproxy_clt06FA66B81217317800"
29 Jul 2008 13:20:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317822"
29 Jul 2008 18:27:52 724 A.... "C:\Windows\Temp\httproxy_clt0798CF301217336271"
29 Jul 2008 18:33:58 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336636"
29 Jul 2008 18:38:16 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336895"
30 Jul 2008 19:36:22 725 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426780"
31 Jul 2008 13:08:44 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489923"
31 Jul 2008 13:08:54 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489933"
30 Jul 2008 20:01:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428272"
30 Jul 2008 20:09:42 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428780"
30 Jul 2008 20:01:34 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428292"
30 Jul 2008 20:00:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428252"
30 Jul 2008 20:09:22 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428760"
29 Jul 2008 13:24:34 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318072"
30 Jul 2008 19:50:12 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427610"
29 Jul 2008 13:20:20 32 003 A.... "C:\Windows\Temp\httproxy_clt045295881217317818"
29 Jul 2008 18:16:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335598"
30 Jul 2008 13:15:34 7 041 A.... "C:\Windows\Temp\httproxy_clt079902481217403933"
29 Jul 2008 18:50:02 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337600"
29 Jul 2008 18:47:02 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337421"
29 Jul 2008 13:21:20 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317878"
29 Jul 2008 18:47:22 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337441"
29 Jul 2008 18:49:32 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337571"
29 Jul 2008 18:17:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335638"
29 Jul 2008 18:17:40 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335658"
29 Jul 2008 18:19:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335777"
29 Jul 2008 18:14:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335479"
29 Jul 2008 13:21:48 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317907"
30 Jul 2008 1:01:42 919 A.... "C:\Windows\Temp\httproxy_clt0781C6581217359900"
29 Jul 2008 18:29:48 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336386"
29 Jul 2008 18:29:58 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336396"
30 Jul 2008 13:14:08 726 A.... "C:\Windows\Temp\httproxy_clt077CDA081217403847"
31 Jul 2008 23:49:54 110 A.... "C:\Windows\Temp\httproxy_clt077284A81217528392"
30 Jul 2008 13:15:24 723 A.... "C:\Windows\Temp\httproxy_clt07998A881217403923"
29 Jul 2008 23:35:54 175 A.... "C:\Windows\Temp\httproxy_clt099D68381217354753"
30 Jul 2008 19:36:46 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426805"
30 Jul 2008 19:29:00 148 A.... "C:\Windows\Temp\httproxy_clt078908081217426338"
29 Jul 2008 13:21:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317883"
31 Jul 2008 23:48:48 110 A.... "C:\Windows\Temp\httproxy_clt0772A6B81217528326"
30 Jul 2008 19:18:22 3 798 A.... "C:\Windows\Temp\httproxy_clt097127D81217425700"
29 Jul 2008 19:06:08 163 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338566"
29 Jul 2008 18:34:18 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336657"
29 Jul 2008 18:34:38 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336677"
30 Jul 2008 19:39:22 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426960"
29 Jul 2008 18:15:40 23 337 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335539"
29 Jul 2008 23:44:52 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355290"
30 Jul 2008 20:10:02 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428800"
30 Jul 2008 20:00:14 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428213"
29 Jul 2008 23:43:32 120 A.... "C:\Windows\Temp\httproxy_clt078408781217355210"
30 Jul 2008 20:01:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428313"
30 Jul 2008 20:00:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428233"
29 Jul 2008 23:43:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355230"
29 Jul 2008 13:18:58 726 A.... "C:\Windows\Temp\httproxy_clt044928681217317737"
30 Jul 2008 19:44:36 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427275"
29 Jul 2008 18:20:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335798"
29 Jul 2008 18:18:20 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335699"
29 Jul 2008 18:11:44 25 887 A.... "C:\Windows\Temp\httproxy_clt079078901217335303"
29 Jul 2008 18:40:16 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337014"
29 Jul 2008 18:48:44 58 A.... "C:\Windows\Temp\httproxy_clt079078901217337522"
29 Jul 2008 18:50:32 169 A.... "C:\Windows\Temp\httproxy_clt079078901217337631"
29 Jul 2008 18:20:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335818"
30 Jul 2008 19:24:46 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426084"
30 Jul 2008 19:24:02 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426040"
29 Jul 2008 18:18:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335679"
29 Jul 2008 1:56:22 110 A.... "C:\Windows\Temp\httproxy_clt043AB3101217276780"
30 Jul 2008 19:26:22 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426180"
30 Jul 2008 19:40:26 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427024"
30 Jul 2008 19:43:54 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427233"
29 Jul 2008 23:35:26 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354724"
29 Jul 2008 13:19:18 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317757"
29 Jul 2008 23:36:54 162 A.... "C:\Windows\Temp\httproxy_clt099D68381217354813"
30 Jul 2008 19:37:18 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426836"
30 Jul 2008 19:37:38 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426856"
29 Jul 2008 18:24:26 30 165 A.... "C:\Windows\Temp\httproxy_clt079056801217336064"
30 Jul 2008 19:18:12 3 807 A.... "C:\Windows\Temp\httproxy_clt097127D81217425691"
29 Jul 2008 19:06:08 1 106 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338567"
31 Jul 2008 0:49:42 110 A.... "C:\Windows\Temp\httproxy_clt097149E81217445581"
30 Jul 2008 20:58:26 163 A.... "C:\Windows\Temp\httproxy_clt078890D01217431704"
29 Jul 2008 18:35:20 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336718"
30 Jul 2008 19:12:58 23 303 A.... "C:\Windows\Temp\httproxy_clt078890D01217425376"
29 Jul 2008 18:35:00 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336698"
30 Jul 2008 19:43:04 3 795 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427183"
31 Jul 2008 13:09:26 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489965"
31 Jul 2008 13:09:36 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489975"
30 Jul 2008 0:58:30 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359709"
29 Jul 2008 23:44:32 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355271"
29 Jul 2008 23:47:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355470"
30 Jul 2008 20:02:56 363 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428374"
29 Jul 2008 23:42:54 45 A.... "C:\Windows\Temp\httproxy_clt078408781217355172"
30 Jul 2008 20:03:16 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428394"
29 Jul 2008 18:53:36 264 A.... "C:\Windows\Temp\httproxy_clt079924581217337815"
29 Jul 2008 23:45:02 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355301"
29 Jul 2008 23:45:12 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355311"
30 Jul 2008 19:44:08 363 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427246"
29 Jul 2008 18:53:56 295 A.... "C:\Windows\Temp\httproxy_clt079924581217337835"
30 Jul 2008 20:02:16 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428334"
29 Jul 2008 23:45:32 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355331"
29 Jul 2008 23:49:02 189 A.... "C:\Windows\Temp\httproxy_clt078408781217355540"
29 Jul 2008 23:48:32 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355510"
29 Jul 2008 23:48:12 173 A.... "C:\Windows\Temp\httproxy_clt078529881217355490"
29 Jul 2008 13:24:16 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318054"
29 Jul 2008 13:22:00 31 863 A.... "C:\Windows\Temp\httproxy_clt045295881217317919"
30 Jul 2008 13:15:46 31 939 A.... "C:\Windows\Temp\httproxy_clt079902481217403945"
29 Jul 2008 18:50:04 173 A.... "C:\Windows\Temp\httproxy_clt079078901217337602"
30 Jul 2008 19:25:26 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426125"
29 Jul 2008 18:40:36 364 A.... "C:\Windows\Temp\httproxy_clt079078901217337035"
29 Jul 2008 18:49:04 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337543"
29 Jul 2008 18:09:26 3 815 A.... "C:\Windows\Temp\httproxy_clt079078901217335165"
29 Jul 2008 18:40:56 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337055"
29 Jul 2008 18:50:54 272 A.... "C:\Windows\Temp\httproxy_clt079078901217337652"
29 Jul 2008 18:49:34 182 A.... "C:\Windows\Temp\httproxy_clt079078901217337573"
30 Jul 2008 19:23:22 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426001"
29 Jul 2008 18:20:40 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335839"
29 Jul 2008 18:21:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335859"
29 Jul 2008 18:30:08 723 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336407"
29 Jul 2008 18:35:08 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336706"
29 Jul 2008 13:15:48 110 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317547"
29 Jul 2008 18:32:38 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336557"
30 Jul 2008 19:42:56 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427175"
31 Jul 2008 23:39:18 107 A.... "C:\Windows\Temp\httproxy_clt095767081217527756"
31 Jul 2008 23:43:28 110 A.... "C:\Windows\Temp\httproxy_clt096001C81217528007"
30 Jul 2008 19:42:06 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427125"
29 Jul 2008 18:36:42 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336801"
31 Jul 2008 23:47:02 32 837 A.... "C:\Windows\Temp\httproxy_clt095722E81217528220"
30 Jul 2008 20:10:54 177 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217428853"
29 Jul 2008 23:41:56 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355114"
30 Jul 2008 19:39:38 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426977"
29 Jul 2008 18:34:44 25 538 A.... "C:\Windows\Temp\httproxy_clt079056801217336682"
30 Jul 2008 12:45:42 110 A.... "C:\Windows\Temp\httproxy_clt07A203381217402141"
30 Jul 2008 19:22:52 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217425971"
30 Jul 2008 20:58:26 1 123 A.... "C:\Windows\Temp\httproxy_clt078890D01217431705"
29 Jul 2008 18:35:40 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336739"
30 Jul 2008 19:39:04 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426942"
30 Jul 2008 19:37:24 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426842"
30 Jul 2008 12:51:12 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402471"
31 Jul 2008 13:08:48 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489926"
31 Jul 2008 13:08:58 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489936"
29 Jul 2008 23:46:14 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355372"
29 Jul 2008 23:44:44 197 A.... "C:\Windows\Temp\httproxy_clt078408781217355282"
30 Jul 2008 20:04:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428494"
29 Jul 2008 23:45:04 166 A.... "C:\Windows\Temp\httproxy_clt078408781217355302"
30 Jul 2008 20:03:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428414"
30 Jul 2008 20:05:16 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428514"
29 Jul 2008 23:45:24 213 A.... "C:\Windows\Temp\httproxy_clt078408781217355322"
29 Jul 2008 23:48:42 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355521"
30 Jul 2008 20:03:56 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428434"
29 Jul 2008 23:47:12 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355431"
30 Jul 2008 20:04:16 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428454"
30 Jul 2008 20:02:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428355"
29 Jul 2008 23:45:54 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355352"
29 Jul 2008 23:48:42 169 A.... "C:\Windows\Temp\httproxy_clt078529881217355521"
29 Jul 2008 23:45:54 183 A.... "C:\Windows\Temp\httproxy_clt078529881217355352"
30 Jul 2008 19:46:46 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427404"
29 Jul 2008 23:49:32 182 A.... "C:\Windows\Temp\httproxy_clt078529881217355571"
29 Jul 2008 23:46:34 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355392"
30 Jul 2008 19:50:44 263 A.... "C:\Windows\Temp\httproxy_clt07921E001217427643"
29 Jul 2008 18:23:14 129 A.... "C:\Windows\Temp\httproxy_clt09949A601217335992"
29 Jul 2008 18:41:58 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337116"
30 Jul 2008 19:28:36 3 174 A.... "C:\Windows\Temp\httproxy_clt097127D81217426315"
29 Jul 2008 18:42:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337136"
29 Jul 2008 18:09:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335181"
29 Jul 2008 18:42:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337156"
29 Jul 2008 18:42:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337176"
29 Jul 2008 18:41:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337076"
29 Jul 2008 18:43:18 426 A.... "C:\Windows\Temp\httproxy_clt079078901217337196"
29 Jul 2008 18:41:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337096"
29 Jul 2008 18:11:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335300"
31 Jul 2008 2:21:48 110 A.... "C:\Windows\Temp\httproxy_clt07807E501217451107"
30 Jul 2008 19:40:58 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427056"
30 Jul 2008 19:41:28 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427086"
30 Jul 2008 19:29:32 64 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426371"
31 Jul 2008 14:06:26 16 384 A.... "C:\Windows\Temp\httproxy_srv0A5DB4201217493384"
29 Jul 2008 18:05:40 1 958 A.... "C:\Windows\Temp\httproxy_clt077D0D201217334939"
29 Jul 2008 18:37:24 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336842"
29 Jul 2008 23:36:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354796"
30 Jul 2008 12:37:06 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401624"
29 Jul 2008 18:23:44 726 A.... "C:\Windows\Temp\httproxy_clt077CC9001217336022"
29 Jul 2008 23:41:18 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355076"
30 Jul 2008 19:36:00 45 A.... "C:\Windows\Temp\httproxy_clt078908081217426759"
30 Jul 2008 19:28:12 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426291"
29 Jul 2008 13:21:18 724 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317876"
29 Jul 2008 18:25:08 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336106"
30 Jul 2008 19:18:44 3 794 A.... "C:\Windows\Temp\httproxy_clt097127D81217425723"
29 Jul 2008 1:55:30 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276728"
30 Jul 2008 19:23:04 3 129 A.... "C:\Windows\Temp\httproxy_clt097127D81217425982"
30 Jul 2008 12:45:04 142 A.... "C:\Windows\Temp\httproxy_clt07A203381217402102"
30 Jul 2008 19:39:14 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426953"
30 Jul 2008 12:50:14 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402412"
29 Jul 2008 18:13:52 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335431"
31 Jul 2008 13:07:50 204 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489868"
31 Jul 2008 13:08:58 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489937"
30 Jul 2008 20:04:36 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428475"
30 Jul 2008 20:06:16 356 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428575"
29 Jul 2008 23:46:34 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355393"
29 Jul 2008 23:43:34 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355213"
29 Jul 2008 23:43:44 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355223"
29 Jul 2008 23:43:54 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355233"
30 Jul 2008 20:05:36 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428535"
30 Jul 2008 20:05:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428555"
29 Jul 2008 1:47:16 312 A.... "C:\Windows\Temp\httproxy_clt043146001217276235"
30 Jul 2008 13:13:32 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403810"
29 Jul 2008 23:47:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355432"
29 Jul 2008 23:46:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355373"
30 Jul 2008 19:47:06 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427425"
29 Jul 2008 13:23:58 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318036"
30 Jul 2008 19:47:26 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427445"
29 Jul 2008 18:10:34 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335232"
29 Jul 2008 18:13:46 22 875 A.... "C:\Windows\Temp\httproxy_clt079078901217335425"
30 Jul 2008 19:17:58 726 A.... "C:\Windows\Temp\httproxy_clt07803A301217425676"
29 Jul 2008 18:50:26 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337624"
29 Jul 2008 18:50:36 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337634"
30 Jul 2008 19:25:58 23 379 A.... "C:\Windows\Temp\httproxy_clt097127D81217426157"
29 Jul 2008 18:49:46 188 A.... "C:\Windows\Temp\httproxy_clt079078901217337585"
29 Jul 2008 13:18:02 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317680"
30 Jul 2008 19:29:14 213 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426352"
30 Jul 2008 19:25:04 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426103"
29 Jul 2008 18:56:58 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338017"
29 Jul 2008 18:58:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338117"
29 Jul 2008 18:38:04 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336883"
29 Jul 2008 18:57:18 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338037"
29 Jul 2008 18:57:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338057"
31 Jul 2008 23:45:34 3 684 A.... "C:\Windows\Temp\httproxy_clt095722E81217528133"
29 Jul 2008 23:37:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354856"
30 Jul 2008 19:52:26 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427744"
30 Jul 2008 19:52:46 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427764"
30 Jul 2008 19:19:22 129 A.... "C:\Windows\Temp\httproxy_clt0779EA781217425760"
29 Jul 2008 18:24:48 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336087"
29 Jul 2008 18:37:44 25 838 A.... "C:\Windows\Temp\httproxy_clt079056801217336863"
29 Jul 2008 18:06:34 3 699 A.... "C:\Windows\Temp\httproxy_clt079078901217334993"
29 Jul 2008 23:51:40 312 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217355698"
31 Jul 2008 23:45:12 110 A.... "C:\Windows\Temp\httproxy_clt095778101217528110"
29 Jul 2008 18:24:10 14 218 A.... "C:\Windows\Temp\httproxych_tmp077E63281217336049"
31 Jul 2008 13:08:20 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489899"
29 Jul 2008 18:13:24 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335402"
29 Jul 2008 18:13:34 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335412"
29 Jul 2008 23:44:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355294"
30 Jul 2008 13:17:00 110 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404019"
30 Jul 2008 20:06:38 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428596"
30 Jul 2008 19:56:50 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428008"
29 Jul 2008 23:46:54 222 A.... "C:\Windows\Temp\httproxy_clt078408781217355413"
30 Jul 2008 19:57:10 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428028"
29 Jul 2008 23:48:44 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355523"
29 Jul 2008 23:47:14 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355433"
29 Jul 2008 18:54:10 673 A.... "C:\Windows\Temp\httproxy_clt079924581217337848"
29 Jul 2008 23:44:16 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355254"
29 Jul 2008 23:45:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355354"
29 Jul 2008 13:24:48 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318087"
29 Jul 2008 23:46:54 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355413"
29 Jul 2008 23:47:44 259 A.... "C:\Windows\Temp\httproxy_clt078529881217355463"
30 Jul 2008 19:22:18 3 133 A.... "C:\Windows\Temp\httproxy_clt078018201217425936"
29 Jul 2008 18:16:52 723 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335611"
29 Jul 2008 18:17:12 725 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335631"
29 Jul 2008 1:58:24 110 A.... "C:\Windows\Temp\httproxy_clt043909481217276902"
30 Jul 2008 13:15:52 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403950"
29 Jul 2008 18:43:38 357 A.... "C:\Windows\Temp\httproxy_clt079078901217337217"
29 Jul 2008 18:09:34 723 A.... "C:\Windows\Temp\httproxy_clt079089981217335173"
29 Jul 2008 18:07:30 3 793 A.... "C:\Windows\Temp\httproxy_clt079078901217335048"
29 Jul 2008 18:43:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337237"
29 Jul 2008 18:49:08 174 A.... "C:\Windows\Temp\httproxy_clt079078901217337546"
29 Jul 2008 18:49:28 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337566"
30 Jul 2008 19:26:20 23 381 A.... "C:\Windows\Temp\httproxy_clt097127D81217426178"
29 Jul 2008 18:10:00 25 512 A.... "C:\Windows\Temp\httproxy_clt079078901217335198"
30 Jul 2008 19:28:08 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217426287"
30 Jul 2008 19:23:46 726 A.... &
0
anthony5151 Messages postés 10927 Statut Contributeur sécurité 790
 
Euh... C'est un rapport de SDFix ça ? Je n'ai jamais vu ça... En plus il est coupé, il manque la fin, peux-tu poster le reste pour voir stp ?

"quand je passais par le mode msconfig"
==> à éviter, tu risque de te retrouver bloqué comme ça...
Pour le mode sans échec, parfois c'est la touche F5 qu'il faut presser et non F8

0
maxacaen
 
29 Jul 2008 18:37:02 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336821"
29 Jul 2008 18:27:46 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336264"
29 Jul 2008 18:10:28 25 887 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335226"
31 Jul 2008 13:07:32 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489850"
30 Jul 2008 0:56:46 116 A.... "C:\Windows\Temp\httproxy_clt099D35201217359604"
30 Jul 2008 0:50:18 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359216"
31 Jul 2008 15:20:02 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217497800"
29 Jul 2008 13:21:38 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317897"
30 Jul 2008 0:51:38 220 A.... "C:\Windows\Temp\httproxy_clt099D35201217359296"
30 Jul 2008 19:42:52 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427171"
31 Jul 2008 2:26:26 110 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451385"
30 Jul 2008 0:47:44 137 A.... "C:\Windows\Temp\httproxy_clt079946681217359062"
29 Jul 2008 18:30:38 3 705 A.... "C:\Windows\Temp\httproxy_clt078256E01217336437"
29 Jul 2008 13:22:14 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317933"
29 Jul 2008 18:17:06 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335624"
29 Jul 2008 18:07:18 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335037"
29 Jul 2008 18:10:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335236"
29 Jul 2008 18:07:38 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335057"
29 Jul 2008 18:10:58 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335256"
29 Jul 2008 18:09:28 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335166"
30 Jul 2008 13:15:58 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403957"
30 Jul 2008 19:35:08 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426706"
29 Jul 2008 18:30:32 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336431"
29 Jul 2008 13:17:12 639 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317631"
30 Jul 2008 19:34:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426686"
30 Jul 2008 19:22:06 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425925"
31 Jul 2008 3:00:46 110 A.... "C:\Windows\Temp\httproxy_clt0971B0181217453445"
29 Jul 2008 13:19:30 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317768"
31 Jul 2008 23:38:12 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527690"
30 Jul 2008 19:32:04 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426523"
30 Jul 2008 19:29:06 64 A.... "C:\Windows\Temp\httproxy_clt078908081217426344"
29 Jul 2008 13:13:42 110 A.... "C:\Windows\Temp\httproxy_clt06D393C01217317420"
30 Jul 2008 19:28:40 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426319"
30 Jul 2008 19:28:50 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426329"
29 Jul 2008 18:26:56 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336215"
29 Jul 2008 18:27:26 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336245"
29 Jul 2008 18:24:28 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336066"
29 Jul 2008 18:37:44 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336862"
29 Jul 2008 18:33:06 110 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336584"
31 Jul 2008 15:24:28 0 A.... "C:\Windows\Temp\httproxy_srv0A5E6F781217498067"
31 Jul 2008 13:08:32 180 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489910"
31 Jul 2008 13:08:52 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489930"
30 Jul 2008 19:58:12 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428090"
30 Jul 2008 19:43:42 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427221"
30 Jul 2008 19:58:32 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428110"
30 Jul 2008 19:22:36 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425954"
30 Jul 2008 19:46:56 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427414"
29 Jul 2008 18:34:08 25 509 A.... "C:\Windows\Temp\httproxy_clt078256E01217336647"
29 Jul 2008 18:34:58 25 872 A.... "C:\Windows\Temp\httproxy_clt078256E01217336697"
29 Jul 2008 18:11:38 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335297"
30 Jul 2008 12:35:28 110 A.... "C:\Windows\Temp\httproxy_clt077D2F301217401526"
29 Jul 2008 1:52:50 110 A.... "C:\Windows\Temp\httproxy_clt043A91001217276569"
29 Jul 2008 13:22:26 31 857 A.... "C:\Windows\Temp\httproxy_clt045295881217317944"
29 Jul 2008 18:07:52 3 802 A.... "C:\Windows\Temp\httproxy_clt079078901217335070"
30 Jul 2008 19:38:20 487 A.... "C:\Windows\Temp\httproxy_clt097A17C01217426898"
29 Jul 2008 18:08:00 179 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335078"
29 Jul 2008 18:11:18 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335277"
30 Jul 2008 19:35:28 418 A.... "C:\Windows\Temp\httproxy_clt096826E81217426727"
30 Jul 2008 19:33:48 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426627"
30 Jul 2008 19:34:08 449 A.... "C:\Windows\Temp\httproxy_clt096826E81217426647"
30 Jul 2008 19:34:28 518 A.... "C:\Windows\Temp\httproxy_clt096826E81217426667"
30 Jul 2008 19:22:38 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425956"
30 Jul 2008 19:21:18 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425876"
29 Jul 2008 13:11:18 110 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317277"
29 Jul 2008 13:11:28 188 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317287"
30 Jul 2008 13:11:46 642 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403705"
30 Jul 2008 13:15:32 726 A.... "C:\Windows\Temp\httproxy_clt07998A881217403930"
30 Jul 2008 19:32:46 549 A.... "C:\Windows\Temp\httproxy_clt078908081217426564"
30 Jul 2008 19:29:36 189 A.... "C:\Windows\Temp\httproxy_clt078908081217426375"
31 Jul 2008 13:10:28 110 A.... "C:\Windows\Temp\httproxy_clt07728A001217490027"
29 Jul 2008 23:05:08 90 A.... "C:\Windows\Temp\httproxy_clt0798BE281217352907"
29 Jul 2008 1:56:24 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276782"
30 Jul 2008 0:44:52 178 A.... "C:\Windows\Temp\httproxy_clt078FDF481217358891"
29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336744"
30 Jul 2008 19:13:14 23 307 A.... "C:\Windows\Temp\httproxy_clt078890D01217425392"
29 Jul 2008 18:08:00 3 803 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335079"
31 Jul 2008 23:49:40 110 A.... "C:\Windows\Temp\httproxy_clt095756001217528378"
29 Jul 2008 18:07:40 3 800 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335059"
31 Jul 2008 13:09:32 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489971"
30 Jul 2008 0:54:28 45 A.... "C:\Windows\Temp\httproxy_clt099D35201217359467"
30 Jul 2008 0:53:18 104 A.... "C:\Windows\Temp\httproxy_clt099D35201217359397"
30 Jul 2008 13:17:54 66 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404072"
30 Jul 2008 19:58:52 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428131"
29 Jul 2008 13:19:06 722 A.... "C:\Windows\Temp\httproxy_clt044928681217317744"
30 Jul 2008 19:25:02 22 925 A.... "C:\Windows\Temp\httproxy_clt097127D81217426101"
29 Jul 2008 13:17:46 726 A.... "C:\Windows\Temp\httproxy_clt06D666681217317664"
29 Jul 2008 18:09:02 3 712 A.... "C:\Windows\Temp\httproxy_clt079078901217335141"
30 Jul 2008 13:14:54 32 711 A.... "C:\Windows\Temp\httproxy_clt079902481217403892"
29 Jul 2008 18:10:30 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335228"
29 Jul 2008 18:13:48 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335427"
29 Jul 2008 18:46:22 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337380"
30 Jul 2008 0:55:58 117 A.... "C:\Windows\Temp\httproxy_clt07999B901217359556"
29 Jul 2008 13:17:14 640 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317633"
29 Jul 2008 18:35:54 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336752"
30 Jul 2008 13:15:10 726 A.... "C:\Windows\Temp\httproxy_clt07A225481217403909"
30 Jul 2008 19:40:42 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427041"
31 Jul 2008 23:39:14 110 A.... "C:\Windows\Temp\httproxy_clt095767081217527752"
30 Jul 2008 19:40:02 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427001"
29 Jul 2008 13:22:40 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317959"
29 Jul 2008 19:00:22 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338220"
29 Jul 2008 19:00:42 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338240"
29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338260"
31 Jul 2008 2:17:30 55 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450848"
31 Jul 2008 2:17:50 110 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450868"
30 Jul 2008 19:36:26 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426784"
29 Jul 2008 18:25:10 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336108"
29 Jul 2008 18:33:36 178 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336615"
29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336745"
29 Jul 2008 18:24:50 129 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336088"
29 Jul 2008 18:14:20 22 873 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335458"
30 Jul 2008 19:59:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428172"
30 Jul 2008 19:59:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428192"
30 Jul 2008 19:18:28 726 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425707"
30 Jul 2008 19:20:28 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425827"
30 Jul 2008 19:44:24 45 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427263"
30 Jul 2008 19:59:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428152"
30 Jul 2008 19:49:52 363 A.... "C:\Windows\Temp\httproxy_clt07921E001217427590"
30 Jul 2008 19:48:58 726 A.... "C:\Windows\Temp\httproxy_clt078908081217427536"
29 Jul 2008 18:46:42 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337400"
29 Jul 2008 18:15:22 23 337 A.... "C:\Windows\Temp\httproxy_clt079078901217335520"
29 Jul 2008 18:10:22 25 860 A.... "C:\Windows\Temp\httproxy_clt079078901217335221"
29 Jul 2008 18:16:02 23 255 A.... "C:\Windows\Temp\httproxy_clt079078901217335560"
29 Jul 2008 18:08:30 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335109"
29 Jul 2008 18:49:52 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337590"
29 Jul 2008 18:34:14 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336653"
29 Jul 2008 18:31:16 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336474"
29 Jul 2008 19:01:02 333 A.... "C:\Windows\Temp\httproxy_clt099434301217338261"
30 Jul 2008 13:11:48 643 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403707"
30 Jul 2008 13:11:08 110 A.... "C:\Windows\Temp\httproxy_clt077CFC181217403667"
30 Jul 2008 12:37:02 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401620"
29 Jul 2008 13:19:46 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317785"
29 Jul 2008 13:20:02 723 A.... "C:\Windows\Temp\httproxy_clt06FA66B81217317800"
29 Jul 2008 13:20:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317822"
29 Jul 2008 18:27:52 724 A.... "C:\Windows\Temp\httproxy_clt0798CF301217336271"
29 Jul 2008 18:33:58 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336636"
29 Jul 2008 18:38:16 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336895"
30 Jul 2008 19:36:22 725 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426780"
31 Jul 2008 13:08:44 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489923"
31 Jul 2008 13:08:54 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489933"
30 Jul 2008 20:01:14 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428272"
30 Jul 2008 20:09:42 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428780"
30 Jul 2008 20:01:34 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428292"
30 Jul 2008 20:00:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428252"
30 Jul 2008 20:09:22 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428760"
29 Jul 2008 13:24:34 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318072"
30 Jul 2008 19:50:12 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427610"
29 Jul 2008 13:20:20 32 003 A.... "C:\Windows\Temp\httproxy_clt045295881217317818"
29 Jul 2008 18:16:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335598"
30 Jul 2008 13:15:34 7 041 A.... "C:\Windows\Temp\httproxy_clt079902481217403933"
29 Jul 2008 18:50:02 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337600"
29 Jul 2008 18:47:02 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337421"
29 Jul 2008 13:21:20 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317878"
29 Jul 2008 18:47:22 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337441"
29 Jul 2008 18:49:32 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337571"
29 Jul 2008 18:17:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335638"
29 Jul 2008 18:17:40 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335658"
29 Jul 2008 18:19:38 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335777"
29 Jul 2008 18:14:40 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335479"
29 Jul 2008 13:21:48 7 031 A.... "C:\Windows\Temp\httproxy_clt045295881217317907"
30 Jul 2008 1:01:42 919 A.... "C:\Windows\Temp\httproxy_clt0781C6581217359900"
29 Jul 2008 18:29:48 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336386"
29 Jul 2008 18:29:58 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336396"
30 Jul 2008 13:14:08 726 A.... "C:\Windows\Temp\httproxy_clt077CDA081217403847"
31 Jul 2008 23:49:54 110 A.... "C:\Windows\Temp\httproxy_clt077284A81217528392"
30 Jul 2008 13:15:24 723 A.... "C:\Windows\Temp\httproxy_clt07998A881217403923"
29 Jul 2008 23:35:54 175 A.... "C:\Windows\Temp\httproxy_clt099D68381217354753"
30 Jul 2008 19:36:46 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426805"
30 Jul 2008 19:29:00 148 A.... "C:\Windows\Temp\httproxy_clt078908081217426338"
29 Jul 2008 13:21:24 726 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317883"
31 Jul 2008 23:48:48 110 A.... "C:\Windows\Temp\httproxy_clt0772A6B81217528326"
30 Jul 2008 19:18:22 3 798 A.... "C:\Windows\Temp\httproxy_clt097127D81217425700"
29 Jul 2008 19:06:08 163 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338566"
29 Jul 2008 18:34:18 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336657"
29 Jul 2008 18:34:38 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336677"
30 Jul 2008 19:39:22 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426960"
29 Jul 2008 18:15:40 23 337 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335539"
29 Jul 2008 23:44:52 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355290"
30 Jul 2008 20:10:02 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428800"
30 Jul 2008 20:00:14 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428213"
29 Jul 2008 23:43:32 120 A.... "C:\Windows\Temp\httproxy_clt078408781217355210"
30 Jul 2008 20:01:54 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428313"
30 Jul 2008 20:00:34 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428233"
29 Jul 2008 23:43:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355230"
29 Jul 2008 13:18:58 726 A.... "C:\Windows\Temp\httproxy_clt044928681217317737"
30 Jul 2008 19:44:36 325 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427275"
29 Jul 2008 18:20:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335798"
29 Jul 2008 18:18:20 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335699"
29 Jul 2008 18:11:44 25 887 A.... "C:\Windows\Temp\httproxy_clt079078901217335303"
29 Jul 2008 18:40:16 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337014"
29 Jul 2008 18:48:44 58 A.... "C:\Windows\Temp\httproxy_clt079078901217337522"
29 Jul 2008 18:50:32 169 A.... "C:\Windows\Temp\httproxy_clt079078901217337631"
29 Jul 2008 18:20:20 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335818"
30 Jul 2008 19:24:46 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426084"
30 Jul 2008 19:24:02 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426040"
29 Jul 2008 18:18:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335679"
29 Jul 2008 1:56:22 110 A.... "C:\Windows\Temp\httproxy_clt043AB3101217276780"
30 Jul 2008 19:26:22 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426180"
30 Jul 2008 19:40:26 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427024"
30 Jul 2008 19:43:54 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427233"
29 Jul 2008 23:35:26 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354724"
29 Jul 2008 13:19:18 726 A.... "C:\Windows\Temp\httproxy_clt06FA33A01217317757"
29 Jul 2008 23:36:54 162 A.... "C:\Windows\Temp\httproxy_clt099D68381217354813"
30 Jul 2008 19:37:18 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426836"
30 Jul 2008 19:37:38 387 A.... "C:\Windows\Temp\httproxy_clt078908081217426856"
29 Jul 2008 18:24:26 30 165 A.... "C:\Windows\Temp\httproxy_clt079056801217336064"
30 Jul 2008 19:18:12 3 807 A.... "C:\Windows\Temp\httproxy_clt097127D81217425691"
29 Jul 2008 19:06:08 1 106 A.... "C:\Windows\Temp\httproxy_clt078FBD381217338567"
31 Jul 2008 0:49:42 110 A.... "C:\Windows\Temp\httproxy_clt097149E81217445581"
30 Jul 2008 20:58:26 163 A.... "C:\Windows\Temp\httproxy_clt078890D01217431704"
29 Jul 2008 18:35:20 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336718"
30 Jul 2008 19:12:58 23 303 A.... "C:\Windows\Temp\httproxy_clt078890D01217425376"
29 Jul 2008 18:35:00 333 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336698"
30 Jul 2008 19:43:04 3 795 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427183"
31 Jul 2008 13:09:26 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489965"
31 Jul 2008 13:09:36 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489975"
30 Jul 2008 0:58:30 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359709"
29 Jul 2008 23:44:32 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355271"
29 Jul 2008 23:47:52 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355470"
30 Jul 2008 20:02:56 363 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428374"
29 Jul 2008 23:42:54 45 A.... "C:\Windows\Temp\httproxy_clt078408781217355172"
30 Jul 2008 20:03:16 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428394"
29 Jul 2008 18:53:36 264 A.... "C:\Windows\Temp\httproxy_clt079924581217337815"
29 Jul 2008 23:45:02 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355301"
29 Jul 2008 23:45:12 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355311"
30 Jul 2008 19:44:08 363 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217427246"
29 Jul 2008 18:53:56 295 A.... "C:\Windows\Temp\httproxy_clt079924581217337835"
30 Jul 2008 20:02:16 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428334"
29 Jul 2008 23:45:32 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355331"
29 Jul 2008 23:49:02 189 A.... "C:\Windows\Temp\httproxy_clt078408781217355540"
29 Jul 2008 23:48:32 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355510"
29 Jul 2008 23:48:12 173 A.... "C:\Windows\Temp\httproxy_clt078529881217355490"
29 Jul 2008 13:24:16 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318054"
29 Jul 2008 13:22:00 31 863 A.... "C:\Windows\Temp\httproxy_clt045295881217317919"
30 Jul 2008 13:15:46 31 939 A.... "C:\Windows\Temp\httproxy_clt079902481217403945"
29 Jul 2008 18:50:04 173 A.... "C:\Windows\Temp\httproxy_clt079078901217337602"
30 Jul 2008 19:25:26 22 929 A.... "C:\Windows\Temp\httproxy_clt097127D81217426125"
29 Jul 2008 18:40:36 364 A.... "C:\Windows\Temp\httproxy_clt079078901217337035"
29 Jul 2008 18:49:04 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337543"
29 Jul 2008 18:09:26 3 815 A.... "C:\Windows\Temp\httproxy_clt079078901217335165"
29 Jul 2008 18:40:56 295 A.... "C:\Windows\Temp\httproxy_clt079078901217337055"
29 Jul 2008 18:50:54 272 A.... "C:\Windows\Temp\httproxy_clt079078901217337652"
29 Jul 2008 18:49:34 182 A.... "C:\Windows\Temp\httproxy_clt079078901217337573"
30 Jul 2008 19:23:22 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426001"
29 Jul 2008 18:20:40 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335839"
29 Jul 2008 18:21:00 327 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335859"
29 Jul 2008 18:30:08 723 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336407"
29 Jul 2008 18:35:08 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336706"
29 Jul 2008 13:15:48 110 A.... "C:\Windows\Temp\httproxy_clt0451FC401217317547"
29 Jul 2008 18:32:38 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336557"
30 Jul 2008 19:42:56 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427175"
31 Jul 2008 23:39:18 107 A.... "C:\Windows\Temp\httproxy_clt095767081217527756"
31 Jul 2008 23:43:28 110 A.... "C:\Windows\Temp\httproxy_clt096001C81217528007"
30 Jul 2008 19:42:06 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427125"
29 Jul 2008 18:36:42 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336801"
31 Jul 2008 23:47:02 32 837 A.... "C:\Windows\Temp\httproxy_clt095722E81217528220"
30 Jul 2008 20:10:54 177 A.... "C:\Windows\Temp\httproxy_clt0788C3E81217428853"
29 Jul 2008 23:41:56 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355114"
30 Jul 2008 19:39:38 418 A.... "C:\Windows\Temp\httproxy_clt078908081217426977"
29 Jul 2008 18:34:44 25 538 A.... "C:\Windows\Temp\httproxy_clt079056801217336682"
30 Jul 2008 12:45:42 110 A.... "C:\Windows\Temp\httproxy_clt07A203381217402141"
30 Jul 2008 19:22:52 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217425971"
30 Jul 2008 20:58:26 1 123 A.... "C:\Windows\Temp\httproxy_clt078890D01217431705"
29 Jul 2008 18:35:40 264 A.... "C:\Windows\Temp\httproxy_clt078FF0501217336739"
30 Jul 2008 19:39:04 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426942"
30 Jul 2008 19:37:24 723 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426842"
30 Jul 2008 12:51:12 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402471"
31 Jul 2008 13:08:48 159 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489926"
31 Jul 2008 13:08:58 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489936"
29 Jul 2008 23:46:14 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355372"
29 Jul 2008 23:44:44 197 A.... "C:\Windows\Temp\httproxy_clt078408781217355282"
30 Jul 2008 20:04:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428494"
29 Jul 2008 23:45:04 166 A.... "C:\Windows\Temp\httproxy_clt078408781217355302"
30 Jul 2008 20:03:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428414"
30 Jul 2008 20:05:16 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428514"
29 Jul 2008 23:45:24 213 A.... "C:\Windows\Temp\httproxy_clt078408781217355322"
29 Jul 2008 23:48:42 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355521"
30 Jul 2008 20:03:56 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428434"
29 Jul 2008 23:47:12 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355431"
30 Jul 2008 20:04:16 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428454"
30 Jul 2008 20:02:36 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428355"
29 Jul 2008 23:45:54 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355352"
29 Jul 2008 23:48:42 169 A.... "C:\Windows\Temp\httproxy_clt078529881217355521"
29 Jul 2008 23:45:54 183 A.... "C:\Windows\Temp\httproxy_clt078529881217355352"
30 Jul 2008 19:46:46 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427404"
29 Jul 2008 23:49:32 182 A.... "C:\Windows\Temp\httproxy_clt078529881217355571"
29 Jul 2008 23:46:34 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355392"
30 Jul 2008 19:50:44 263 A.... "C:\Windows\Temp\httproxy_clt07921E001217427643"
29 Jul 2008 18:23:14 129 A.... "C:\Windows\Temp\httproxy_clt09949A601217335992"
29 Jul 2008 18:41:58 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337116"
30 Jul 2008 19:28:36 3 174 A.... "C:\Windows\Temp\httproxy_clt097127D81217426315"
29 Jul 2008 18:42:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337136"
29 Jul 2008 18:09:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335181"
29 Jul 2008 18:42:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337156"
29 Jul 2008 18:42:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337176"
29 Jul 2008 18:41:18 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337076"
29 Jul 2008 18:43:18 426 A.... "C:\Windows\Temp\httproxy_clt079078901217337196"
29 Jul 2008 18:41:38 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337096"
29 Jul 2008 18:11:42 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335300"
31 Jul 2008 2:21:48 110 A.... "C:\Windows\Temp\httproxy_clt07807E501217451107"
30 Jul 2008 19:40:58 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427056"
30 Jul 2008 19:41:28 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427086"
30 Jul 2008 19:29:32 64 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426371"
31 Jul 2008 14:06:26 16 384 A.... "C:\Windows\Temp\httproxy_srv0A5DB4201217493384"
29 Jul 2008 18:05:40 1 958 A.... "C:\Windows\Temp\httproxy_clt077D0D201217334939"
29 Jul 2008 18:37:24 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336842"
29 Jul 2008 23:36:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354796"
30 Jul 2008 12:37:06 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401624"
29 Jul 2008 18:23:44 726 A.... "C:\Windows\Temp\httproxy_clt077CC9001217336022"
29 Jul 2008 23:41:18 110 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355076"
30 Jul 2008 19:36:00 45 A.... "C:\Windows\Temp\httproxy_clt078908081217426759"
30 Jul 2008 19:28:12 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426291"
29 Jul 2008 13:21:18 724 A.... "C:\Windows\Temp\httproxy_clt0452D9A81217317876"
29 Jul 2008 18:25:08 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336106"
30 Jul 2008 19:18:44 3 794 A.... "C:\Windows\Temp\httproxy_clt097127D81217425723"
29 Jul 2008 1:55:30 110 A.... "C:\Windows\Temp\httproxy_clt0682F2901217276728"
30 Jul 2008 19:23:04 3 129 A.... "C:\Windows\Temp\httproxy_clt097127D81217425982"
30 Jul 2008 12:45:04 142 A.... "C:\Windows\Temp\httproxy_clt07A203381217402102"
30 Jul 2008 19:39:14 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426953"
30 Jul 2008 12:50:14 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402412"
29 Jul 2008 18:13:52 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335431"
31 Jul 2008 13:07:50 204 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489868"
31 Jul 2008 13:08:58 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489937"
30 Jul 2008 20:04:36 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428475"
30 Jul 2008 20:06:16 356 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428575"
29 Jul 2008 23:46:34 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355393"
29 Jul 2008 23:43:34 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355213"
29 Jul 2008 23:43:44 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355223"
29 Jul 2008 23:43:54 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355233"
30 Jul 2008 20:05:36 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428535"
30 Jul 2008 20:05:56 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428555"
29 Jul 2008 1:47:16 312 A.... "C:\Windows\Temp\httproxy_clt043146001217276235"
30 Jul 2008 13:13:32 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403810"
29 Jul 2008 23:47:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355432"
29 Jul 2008 23:46:14 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355373"
30 Jul 2008 19:47:06 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427425"
29 Jul 2008 13:23:58 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318036"
30 Jul 2008 19:47:26 294 A.... "C:\Windows\Temp\httproxy_clt07921E001217427445"
29 Jul 2008 18:10:34 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335232"
29 Jul 2008 18:13:46 22 875 A.... "C:\Windows\Temp\httproxy_clt079078901217335425"
30 Jul 2008 19:17:58 726 A.... "C:\Windows\Temp\httproxy_clt07803A301217425676"
29 Jul 2008 18:50:26 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337624"
29 Jul 2008 18:50:36 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337634"
30 Jul 2008 19:25:58 23 379 A.... "C:\Windows\Temp\httproxy_clt097127D81217426157"
29 Jul 2008 18:49:46 188 A.... "C:\Windows\Temp\httproxy_clt079078901217337585"
29 Jul 2008 13:18:02 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317680"
30 Jul 2008 19:29:14 213 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426352"
30 Jul 2008 19:25:04 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426103"
29 Jul 2008 18:56:58 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338017"
29 Jul 2008 18:58:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338117"
29 Jul 2008 18:38:04 264 A.... "C:\Windows\Temp\httproxy_clt077D40381217336883"
29 Jul 2008 18:57:18 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338037"
29 Jul 2008 18:57:38 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338057"
31 Jul 2008 23:45:34 3 684 A.... "C:\Windows\Temp\httproxy_clt095722E81217528133"
29 Jul 2008 23:37:38 110 A.... "C:\Windows\Temp\httproxy_clt099D68381217354856"
30 Jul 2008 19:52:26 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427744"
30 Jul 2008 19:52:46 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427764"
30 Jul 2008 19:19:22 129 A.... "C:\Windows\Temp\httproxy_clt0779EA781217425760"
29 Jul 2008 18:24:48 30 167 A.... "C:\Windows\Temp\httproxy_clt079056801217336087"
29 Jul 2008 18:37:44 25 838 A.... "C:\Windows\Temp\httproxy_clt079056801217336863"
29 Jul 2008 18:06:34 3 699 A.... "C:\Windows\Temp\httproxy_clt079078901217334993"
29 Jul 2008 23:51:40 312 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217355698"
31 Jul 2008 23:45:12 110 A.... "C:\Windows\Temp\httproxy_clt095778101217528110"
29 Jul 2008 18:24:10 14 218 A.... "C:\Windows\Temp\httproxych_tmp077E63281217336049"
31 Jul 2008 13:08:20 110 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489899"
29 Jul 2008 18:13:24 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335402"
29 Jul 2008 18:13:34 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335412"
29 Jul 2008 23:44:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355294"
30 Jul 2008 13:17:00 110 A.... "C:\Windows\Temp\httproxy_clt07A29C801217404019"
30 Jul 2008 20:06:38 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428596"
30 Jul 2008 19:56:50 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428008"
29 Jul 2008 23:46:54 222 A.... "C:\Windows\Temp\httproxy_clt078408781217355413"
30 Jul 2008 19:57:10 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428028"
29 Jul 2008 23:48:44 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355523"
29 Jul 2008 23:47:14 395 A.... "C:\Windows\Temp\httproxy_clt078408781217355433"
29 Jul 2008 18:54:10 673 A.... "C:\Windows\Temp\httproxy_clt079924581217337848"
29 Jul 2008 23:44:16 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355254"
29 Jul 2008 23:45:56 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355354"
29 Jul 2008 13:24:48 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217318087"
29 Jul 2008 23:46:54 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355413"
29 Jul 2008 23:47:44 259 A.... "C:\Windows\Temp\httproxy_clt078529881217355463"
30 Jul 2008 19:22:18 3 133 A.... "C:\Windows\Temp\httproxy_clt078018201217425936"
29 Jul 2008 18:16:52 723 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335611"
29 Jul 2008 18:17:12 725 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335631"
29 Jul 2008 1:58:24 110 A.... "C:\Windows\Temp\httproxy_clt043909481217276902"
30 Jul 2008 13:15:52 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403950"
29 Jul 2008 18:43:38 357 A.... "C:\Windows\Temp\httproxy_clt079078901217337217"
29 Jul 2008 18:09:34 723 A.... "C:\Windows\Temp\httproxy_clt079089981217335173"
29 Jul 2008 18:07:30 3 793 A.... "C:\Windows\Temp\httproxy_clt079078901217335048"
29 Jul 2008 18:43:58 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337237"
29 Jul 2008 18:49:08 174 A.... "C:\Windows\Temp\httproxy_clt079078901217337546"
29 Jul 2008 18:49:28 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337566"
30 Jul 2008 19:26:20 23 381 A.... "C:\Windows\Temp\httproxy_clt097127D81217426178"
29 Jul 2008 18:10:00 25 512 A.... "C:\Windows\Temp\httproxy_clt079078901217335198"
30 Jul 2008 19:28:08 1 947 A.... "C:\Windows\Temp\httproxy_clt097127D81217426287"
30 Jul 2008 19:23:46 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426024"
29 Jul 2008 18:10:04 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335203"
30 Jul 2008 13:15:20 32 715 A.... "C:\Windows\Temp\httproxy_clt079902481217403918"
30 Jul 2008 13:15:02 726 A.... "C:\Windows\Temp\httproxy_clt07A225481217403900"
30 Jul 2008 19:29:04 110 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426343"
30 Jul 2008 19:31:44 387 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426502"
29 Jul 2008 18:59:00 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338138"
29 Jul 2008 18:59:20 364 A.... "C:\Windows\Temp\httproxy_clt099434301217338158"
29 Jul 2008 18:58:00 364 A.... "C:\Windows\Temp\httproxy_clt099434301217338078"
29 Jul 2008 18:58:20 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338098"
29 Jul 2008 18:35:46 333 A.... "C:\Windows\Temp\httproxy_clt077D40381217336744"
31 Jul 2008 23:45:26 3 696 A.... "C:\Windows\Temp\httproxy_clt095722E81217528124"
30 Jul 2008 19:53:06 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427785"
30 Jul 2008 0:44:26 110 A.... "C:\Windows\Temp\httproxy_clt07A214401217358864"
30 Jul 2008 12:36:58 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401616"
29 Jul 2008 18:04:02 198 A.... "C:\Windows\Temp\httproxy_clt07A225481217334840"
29 Jul 2008 23:42:48 61 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355167"
29 Jul 2008 13:22:34 726 A.... "C:\Windows\Temp\httproxy_clt0449B0A81217317952"
29 Jul 2008 18:35:26 25 894 A.... "C:\Windows\Temp\httproxy_clt079056801217336725"
29 Jul 2008 18:30:58 3 800 A.... "C:\Windows\Temp\httproxy_clt079056801217336456"
31 Jul 2008 23:51:48 726 A.... "C:\Windows\Temp\httproxy_clt077BB8B01217528506"
29 Jul 2008 18:39:16 264 A.... "C:\Windows\Temp\httproxy_clt079078901217336954"
29 Jul 2008 18:39:56 295 A.... "C:\Windows\Temp\httproxy_clt079078901217336994"
29 Jul 2008 18:27:28 726 A.... "C:\Windows\Temp\httproxy_clt0798CF301217336247"
30 Jul 2008 19:39:46 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426985"
30 Jul 2008 19:40:18 3 707 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427017"
29 Jul 2008 13:21:52 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317911"
30 Jul 2008 19:42:48 3 793 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427167"
30 Jul 2008 12:49:46 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402384"
30 Jul 2008 0:51:22 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359280"
31 Jul 2008 13:09:30 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489969"
29 Jul 2008 18:55:36 264 A.... "C:\Windows\Temp\httproxy_clt099434301217337935"
29 Jul 2008 18:55:56 295 A.... "C:\Windows\Temp\httproxy_clt099434301217337955"
30 Jul 2008 19:13:16 129 A.... "C:\Windows\Temp\httproxy_clt0791B7D01217425394"
31 Jul 2008 13:09:00 161 A.... "C:\Windows\Temp\httproxy_clt0786B3C81217489939"
29 Jul 2008 23:44:36 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355275"
29 Jul 2008 23:46:16 182 A.... "C:\Windows\Temp\httproxy_clt078408781217355375"
29 Jul 2008 23:49:46 194 A.... "C:\Windows\Temp\httproxy_clt078408781217355584"
29 Jul 2008 23:50:04 62 A.... "C:\Windows\Temp\httproxy_clt078408781217355603"
30 Jul 2008 20:06:58 425 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428616"
29 Jul 2008 23:43:36 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355215"
29 Jul 2008 23:43:46 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355225"
29 Jul 2008 23:43:56 189 A.... "C:\Windows\Temp\httproxy_clt078408781217355235"
30 Jul 2008 19:57:30 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428049"
30 Jul 2008 19:57:50 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428069"
30 Jul 2008 13:13:54 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403832"
29 Jul 2008 23:47:36 326 A.... "C:\Windows\Temp\httproxy_clt078529881217355454"
29 Jul 2008 23:49:16 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355554"
29 Jul 2008 23:49:26 189 A.... "C:\Windows\Temp\httproxy_clt078529881217355564"
29 Jul 2008 23:47:56 294 A.... "C:\Windows\Temp\httproxy_clt078529881217355474"
30 Jul 2008 19:51:34 263 A.... "C:\Windows\Temp\httproxy_clt077A7B001217427692"
29 Jul 2008 18:12:24 726 A.... "C:\Windows\Temp\httproxy_clt079089981217335343"
30 Jul 2008 13:16:00 7 041 A.... "C:\Windows\Temp\httproxy_clt079902481217403959"
29 Jul 2008 18:44:20 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337258"
29 Jul 2008 18:11:20 25 839 A.... "C:\Windows\Temp\httproxy_clt079078901217335278"
29 Jul 2008 18:14:38 22 951 A.... "C:\Windows\Temp\httproxy_clt079078901217335477"
29 Jul 2008 18:44:40 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337278"
29 Jul 2008 18:49:58 214 A.... "C:\Windows\Temp\httproxy_clt079078901217337597"
29 Jul 2008 18:45:00 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337298"
29 Jul 2008 18:38:10 726 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217336889"
30 Jul 2008 19:28:46 58 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426324"
30 Jul 2008 19:41:20 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427079"
30 Jul 2008 19:29:46 110 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426384"
29 Jul 2008 18:38:16 333 A.... "C:\Windows\Temp\httproxy_clt077D40381217336895"
29 Jul 2008 18:05:56 726 A.... "C:\Windows\Temp\httproxy_clt099434301217334955"
29 Jul 2008 18:59:40 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338179"
29 Jul 2008 18:25:00 726 A.... "C:\Windows\Temp\httproxy_clt099434301217336099"
30 Jul 2008 12:39:58 110 A.... "C:\Windows\Temp\httproxy_clt079078901217401796"
29 Jul 2008 19:00:00 295 A.... "C:\Windows\Temp\httproxy_clt099434301217338199"
31 Jul 2008 2:18:12 99 A.... "C:\Windows\Temp\httproxy_clt077FA0E81217450890"
30 Jul 2008 12:36:48 110 A.... "C:\Windows\Temp\httproxy_clt0994AB681217401607"
29 Jul 2008 18:06:40 723 A.... "C:\Windows\Temp\httproxy_clt099D68381217334998"
30 Jul 2008 19:53:26 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427805"
29 Jul 2008 23:41:30 112 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355089"
30 Jul 2008 19:28:24 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426303"
30 Jul 2008 19:28:34 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426313"
29 Jul 2008 23:42:10 99 A.... "C:\Windows\Temp\httproxy_clt077C84E01217355128"
30 Jul 2008 12:50:16 110 A.... "C:\Windows\Temp\httproxy_clt077CEB101217402415"
30 Jul 2008 19:42:30 3 701 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217427148"
30 Jul 2008 0:52:12 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359330"
30 Jul 2008 0:49:42 110 A.... "C:\Windows\Temp\httproxy_clt099D35201217359181"
29 Jul 2008 18:14:06 726 A.... "C:\Windows\Temp\httproxy_clt079001581217335444"
29 Jul 2008 18:56:18 295 A.... "C:\Windows\Temp\httproxy_clt099434301217337976"
29 Jul 2008 18:56:38 364 A.... "C:\Windows\Temp\httproxy_clt099434301217337996"
29 Jul 2008 23:49:36 326 A.... "C:\Windows\Temp\httproxy_clt078408781217355575"
29 Jul 2008 23:48:16 325 A.... "C:\Windows\Temp\httproxy_clt078408781217355495"
30 Jul 2008 19:40:12 418 A.... "C:\Windows\Temp\httproxy_clt078908081217427010"
29 Jul 2008 23:48:36 394 A.... "C:\Windows\Temp\httproxy_clt078408781217355515"
29 Jul 2008 23:43:48 145 A.... "C:\Windows\Temp\httproxy_clt078408781217355226"
29 Jul 2008 23:50:26 99 A.... "C:\Windows\Temp\httproxy_clt078408781217355624"
30 Jul 2008 20:07:18 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428637"
30 Jul 2008 20:07:38 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428657"
29 Jul 2008 23:47:36 58 A.... "C:\Windows\Temp\httproxy_clt078408781217355455"
29 Jul 2008 23:49:16 294 A.... "C:\Windows\Temp\httproxy_clt078408781217355555"
30 Jul 2008 13:13:44 726 A.... "C:\Windows\Temp\httproxy_clt099401181217403823"
29 Jul 2008 23:45:58 179 A.... "C:\Windows\Temp\httproxy_clt078529881217355356"
29 Jul 2008 23:46:38 175 A.... "C:\Windows\Temp\httproxy_clt078529881217355396"
29 Jul 2008 23:49:56 426 A.... "C:\Windows\Temp\httproxy_clt078529881217355595"
30 Jul 2008 19:48:50 325 A.... "C:\Windows\Temp\httproxy_clt07921E001217427528"
30 Jul 2008 19:49:10 325 A.... "C:\Windows\Temp\httproxy_clt07921E001217427548"
29 Jul 2008 18:12:12 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335330"
30 Jul 2008 19:28:30 3 161 A.... "C:\Windows\Temp\httproxy_clt097127D81217426309"
30 Jul 2008 19:35:22 487 A.... "C:\Windows\Temp\httproxy_clt096826E81217426721"
29 Jul 2008 18:45:20 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337319"
29 Jul 2008 18:45:40 326 A.... "C:\Windows\Temp\httproxy_clt079078901217337339"
29 Jul 2008 18:46:00 395 A.... "C:\Windows\Temp\httproxy_clt079078901217337359"
29 Jul 2008 18:49:20 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337558"
30 Jul 2008 19:28:20 3 124 A.... "C:\Windows\Temp\httproxy_clt097127D81217426299"
29 Jul 2008 23:39:50 110 A.... "C:\Windows\Temp\httproxy_clt077CA6F01217354989"
30 Jul 2008 19:32:26 418 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426544"
30 Jul 2008 19:24:48 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426086"
30 Jul 2008 19:39:26 1 957 A.... "C:\Windows\Temp\httproxy_clt0967C0B81217426964"
30 Jul 2008 19:43:50 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217427229"
31 Jul 2008 23:45:08 3 598 A.... "C:\Windows\Temp\httproxy_clt095722E81217528106"
30 Jul 2008 19:55:08 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427906"
30 Jul 2008 19:53:48 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427826"
30 Jul 2008 19:55:28 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427926"
30 Jul 2008 19:54:08 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427846"
30 Jul 2008 19:54:28 263 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427866"
29 Jul 2008 13:20:10 726 A.... "C:\Windows\Temp\httproxy_clt06FA66B81217317808"
30 Jul 2008 19:26:26 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426185"
30 Jul 2008 19:18:38 3 798 A.... "C:\Windows\Temp\httproxy_clt097127D81217425717"
30 Jul 2008 19:39:02 487 A.... "C:\Windows\Temp\httproxy_clt07895D301217426940"
29 Jul 2008 13:24:48 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217318087"
29 Jul 2008 18:16:22 23 257 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335580"
31 Jul 2008 23:49:54 110 A.... "C:\Windows\Temp\httproxy_clt095756001217528392"
30 Jul 2008 12:54:56 110 A.... "C:\Windows\Temp\httproxy_clt079045781217402695"
29 Jul 2008 18:15:02 23 997 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335500"
30 Jul 2008 19:39:28 726 A.... "C:\Windows\Temp\httproxy_clt077CBD201217426967"
31 Jul 2008 23:42:40 110 A.... "C:\Windows\Temp\httproxy_clt096001C81217527959"
31 Jul 2008 2:25:32 110 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451331"
30 Jul 2008 13:13:20 32 733 A.... "C:\Windows\Temp\httproxy_clt077CB7F81217403798"
30 Jul 2008 20:08:00 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428678"
29 Jul 2008 23:49:48 166 A.... "C:\Windows\Temp\httproxy_clt078408781217355586"
30 Jul 2008 20:08:20 394 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428698"
30 Jul 2008 13:13:40 32 715 A.... "C:\Windows\Temp\httproxy_clt077CB7F81217403818"
29 Jul 2008 23:48:28 222 A.... "C:\Windows\Temp\httproxy_clt078408781217355506"
29 Jul 2008 18:35:44 25 941 A.... "C:\Windows\Temp\httproxy_clt078256E01217336742"
29 Jul 2008 23:43:38 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355217"
29 Jul 2008 23:45:28 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355327"
29 Jul 2008 18:31:04 3 794 A.... "C:\Windows\Temp\httproxy_clt078256E01217336463"
29 Jul 2008 23:48:58 325 A.... "C:\Windows\Temp\httproxy_clt078408781217355536"
29 Jul 2008 23:45:48 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355347"
29 Jul 2008 23:42:50 178 A.... "C:\Windows\Temp\httproxy_clt078408781217355168"
29 Jul 2008 23:49:28 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355566"
30 Jul 2008 19:49:30 325 A.... "C:\Windows\Temp\httproxy_clt07921E001217427569"
29 Jul 2008 23:47:28 257 A.... "C:\Windows\Temp\httproxy_clt078529881217355446"
30 Jul 2008 13:12:56 723 A.... "C:\Windows\Temp\httproxy_clt099401181217403774"
29 Jul 2008 23:46:18 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355377"
29 Jul 2008 23:49:48 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355586"
30 Jul 2008 13:16:04 723 A.... "C:\Windows\Temp\httproxy_clt099423281217403963"
30 Jul 2008 13:16:24 726 A.... "C:\Windows\Temp\httproxy_clt099423281217403983"
29 Jul 2008 18:16:46 726 A.... "C:\Windows\Temp\httproxy_clt077CEB101217335604"
29 Jul 2008 18:13:22 396 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335401"
29 Jul 2008 18:14:22 365 A.... "C:\Windows\Temp\httproxy_clt077CFC181217335461"
30 Jul 2008 19:24:28 726 A.... "C:\Windows\Temp\httproxy_clt097A39D01217426067"
30 Jul 2008 19:35:44 487 A.... "C:\Windows\Temp\httproxy_clt096826E81217426742"
29 Jul 2008 18:11:28 723 A.... "C:\Windows\Temp\httproxy_clt079089981217335286"
29 Jul 2008 18:49:20 167 A.... "C:\Windows\Temp\httproxy_clt079078901217337559"
29 Jul 2008 18:49:30 188 A.... "C:\Windows\Temp\httproxy_clt079078901217337569"
29 Jul 2008 18:49:40 64 A.... "C:\Windows\Temp\httproxy_clt079078901217337579"
30 Jul 2008 19:21:02 726 A.... "C:\Windows\Temp\httproxy_clt07895D301217425861"
30 Jul 2008 19:14:42 129 A.... "C:\Windows\Temp\httproxy_clt077687481217425481"
29 Jul 2008 13:20:34 110 A.... "C:\Windows\Temp\httproxy_clt0452B7981217317833"
30 Jul 2008 19:25:28 129 A.... "C:\Windows\Temp\httproxy_clt0979E4A81217426127"
29 Jul 2008 13:11:14 110 A.... "C:\Windows\Temp\httproxy_clt04511ED81217317272"
31 Jul 2008 23:45:58 3 668 A.... "C:\Windows\Temp\httproxy_clt095722E81217528157"
30 Jul 2008 19:54:48 332 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427887"
30 Jul 2008 19:56:28 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427987"
30 Jul 2008 19:55:48 294 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427947"
30 Jul 2008 19:56:08 363 A.... "C:\Windows\Temp\httproxy_clt077EFF401217427967"
30 Jul 2008 19:19:46 129 A.... "C:\Windows\Temp\httproxy_clt0779EA781217425784"
30 Jul 2008 19:26:48 726 A.... "C:\Windows\Temp\httproxy_clt07922F081217426206"
30 Jul 2008 19:18:00 3 705 A.... "C:\Windows\Temp\httproxy_clt097127D81217425678"
29 Jul 2008 18:07:06 3 799 A.... "C:\Windows\Temp\httproxy_clt077D0D201217335024"
29 Jul 2008 13:18:54 32 659 A.... "C:\Windows\Temp\httproxy_clt06FB00001217317733"
29 Jul 2008 13:21:46 726 A.... "C:\Windows\Temp\httproxy_clt04520D481217317904"
31 Jul 2008 2:26:44 17 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217451402"
30 Jul 2008 19:12:58 129 A.... "C:\Windows\Temp\httproxy_clt0791B7D01217425377"
30 Jul 2008 19:20:52 129 A.... "C:\Windows\Temp\httproxy_clt0970F4C01217425851"
29 Jul 2008 23:47:58 186 A.... "C:\Windows\Temp\httproxy_clt078408781217355477"
29 Jul 2008 23:49:38 182 A.... "C:\Windows\Temp\httproxy_clt078408781217355577"
29 Jul 2008 23:45:00 173 A.... "C:\Windows\Temp\httproxy_clt078408781217355298"
29 Jul 2008 23:46:40 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355398"
29 Jul 2008 23:45:10 64 A.... "C:\Windows\Temp\httproxy_clt078408781217355308"
30 Jul 2008 20:08:40 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428719"
30 Jul 2008 13:52:44 110 A.... "C:\Windows\Temp\httproxy_clt078FF0501217406162"
30 Jul 2008 20:09:00 325 A.... "C:\Windows\Temp\httproxy_clt077EFF401217428739"
29 Jul 2008 23:45:40 240 A.... "C:\Windows\Temp\httproxy_clt078408781217355338"
29 Jul 2008 23:47:08 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355427"
29 Jul 2008 23:48:58 64 A.... "C:\Windows\Temp\httproxy_clt078529881217355537"
29 Jul 2008
0
maxacaen > maxacaen
 
[b]Program Folders[/b]:

C:\Program Files\

Acronis
Activation Assistant for the 2007 Microsoft Office suites
Adobe
AdvancedTool
AV9
Avira
BitDefender
Common Files
Cyberlink
Dofus
Everest Poker
Fichiers communs
FlashFXP
Google
Hitman Pro
InstallShield Installation Information
Intel
Internet Explorer
Java
Kaspersky Lab
K-Lite Codec Pack
Malwarebytes' Anti-Malware
Microsoft Games
Microsoft Office
Microsoft Small Business
Microsoft SQL Server
Microsoft SQL Server Compact Edition
Microsoft Visual Studio
Microsoft Works
Microsoft.NET
Movie Maker
Mozilla Firefox
MSBuild
MSN
MSXML 4.0
Navilog1
NEC Computers
OO Software
Picasa2
Realtek
Reference Assemblies
Roxio
Samsung
Spybot - Search & Destroy
Synaptics
System Control Manager
Toshiba
Trend Micro
Ulead Systems
Uninstall Information
Windows Calendar
Windows Collaboration
Windows Defender
Windows Journal
Windows Live
Windows Live Favorites
Windows Live Toolbar
Windows Mail
Windows Media Components
Windows Media Player
Windows NT
Windows Photo Gallery
Windows Sidebar
WinRAR

C:\Program Files\Common Files\

Acronis
Adobe
Adobe Systems Shared
BitDefender
DESIGNER
InstallShield
microsoft shared
Roxio Shared
Services
snp2std
Sonic Shared
SpeechEngines
SureThing Shared
System
Ulead Systems
Vbox
WindowsLiveInstaller


[b]Add/Remove Programs[/b]:

Activation Assistant for the 2007 Microsoft Office suites
Adobe Photoshop 7.0
Adobe Premiere Pro 2.0
Adobe Shockwave Player
Adobe Reader 8
Adobe ExtendScript Toolkit 2
AdvancedTool
Avira AntiVir Personal – Free Antivirus
Audio Realtek v6.0.1.5413
Bluetooth V5
Gestionnaire de contacts professionnels pour Outlook 2007 SP1
USB Camera
Creator 9
DJMixStation 2 feat. Virtual DJ
Online Documentation
Everest Poker (Remove Only)
Intel(R) Graphics Media Accelerator Driver
HijackThis 2.0.2
K-Lite Codec Pack 3.8.0 Full
Microsoft .NET Framework 1.1 Hotfix (KB929729)
Malwarebytes' Anti-Malware
Microsoft .NET Framework 1.1
Mozilla Firefox (2.0.0.16)
PowerDVD 7
Picasa 2
2007 Microsoft Office system
Logiciel Intel(R) PROSet/Wireless
Intel(R) PRO Network Connections Drivers
SAMSUNG Mobile Modem Driver Set
Samsung Mobile phone USB driver Software
SAMSUNG Mobile USB Modem Software
SAMSUNG Mobile USB Modem 1.0 Software
Synaptics Pointing Device Driver
Mouse Synaptics v9.1.11
Video Intel v7.14.10.1244
Windows Live Toolbar
Codeur Windows Media Série 9
Archiveur WinRAR
Windows Live Toolbar
Extension de Windows Live Toolbar (Windows Live Toolbar)
Menus intelligents (Windows Live Toolbar)
Acronis Disk Director Suite
Google Toolbar for Internet Explorer
Adobe ExtendScript Toolkit 2
Roxio Activation Module
Windows Live Writer
Microsoft Office 2007 Primary Interop Assemblies
O&O Defrag Professional Edition
Activation Assistant for the 2007 Microsoft Office suites
PowerDVD
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)
Gestionnaire de contacts professionnels pour Outlook 2007 SP1
Windows Media Player Firefox Plugin
USB2.0 PC Camera (SN9C201&202)
Ulead VideoStudio 7 SE DVD
Windows Live Favorites pour Windows Live Toolbar
Adobe Stock Photos 1.0
Surligneur (Windows Live Toolbar)
mPfMgr
mHelp
Adobe Common File Installer
Adobe Help Center 2.0
Microsoft Office Professional Edition 2003
Microsoft Office Access MUI (French) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Excel MUI (French) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office PowerPoint MUI (French) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Publisher MUI (French) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Outlook MUI (French) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Word MUI (French) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Proof (Arabic) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Proof (German) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Proof (English) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Proof (French) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Proof (Dutch) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Proof (Spanish) 2007
2007 Microsoft Office Suite Service Pack 1 (SP1)
Microsoft Office Proofing (French) 2007
Microsoft Office Shared MUI (French) 2007
Microsoft Office Language Pack 2007 Service Pack 1 (SP1)
Microsoft Office 2003 Web Components
Microsoft Office Professional Hybrid 2007
Security Update for Office 2007 (KB947801)
Update for Outlook 2007 Junk Email Filter (kb953463)
Update for Microsoft Office Outlook 2007 (KB952142)
Security Update for Excel 2007 (KB946974)
Security Update for Microsoft Office system 2007 (KB951808)
Update for Office 2007 (KB946691)
Security Update for Microsoft Office Word 2007 (KB950113)
2007 Microsoft Office Suite Service Pack 1 (SP1)
Security Update for Microsoft Office Publisher 2007 (KB950114)
FlashFXP v3
mDriver
Galerie de photos Windows Live
Microsoft Office Small Business Connectivity Components
Adobe Reader 8.1.2 - Français
Adobe Bridge 1.0
Assistant de connexion Windows Live
Adobe Setup
Roxio Creator 9 LE
Windows Live Messenger
MSXML 4.0 SP2 (KB936181)
Samsung PC Studio 3
Windows Live Mail
Samsung PC Studio 3
Microsoft .NET Framework 1.1
Bluetooth Stack for Windows by Toshiba
Google Toolbar for Internet Explorer
Codeur Windows Media Série 9
System Control Manager
Microsoft SQL Server 2005 Compact Edition [ENU]
mMHouse
Realtek High Definition Audio Driver
mCore
Adobe Premiere Pro 2.0
Windows Live installer
Lop S&D


[b]Run Values[/b]:

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
@=""
"MSConfig"="\"C:\\Windows\\system32\\msconfig.exe\" /auto"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
@=""


[b]Bot Check[/b]:

SERVICE_NAME: wscsvc
DISPLAY_NAME : Centre de sécurité
START_TYPE : 4 DISABLED

SERVICE_NAME: sharedaccess
DISPLAY_NAME : Partage de connexion Internet (ICS)
START_TYPE : 4 DISABLED

SERVICE_NAME: wuauserv
DISPLAY_NAME : Windows Update
START_TYPE : 4 DISABLED

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole]
"EnableDCOM"="Y"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"restrictanonymous"=dword:00000000

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update]
"AUOptions"=dword:00000002

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"UacDisableNotify"=dword:00000001
"AntiVirusOverride"=dword:00000000
"AntiSpywareOverride"=dword:00000000
"FirewallOverride"=dword:00000000

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"WaitToKillServiceTimeout"="20000"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Shell"="explorer.exe"
"Userinit"="C:\\Windows\\system32\\userinit.exe,"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shell extensions]


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters]
"TransportBindName"="\\Device\\"


[b]ShellExecuteHooks[/b]:


[b]Environment[/b]:


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager\environment
ComSpec REG_EXPAND_SZ %SystemRoot%\system32\cmd.exe
OS REG_SZ Windows_NT
Path REG_EXPAND_SZ %SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\;C:\Program Files\Samsung\Samsung PC Studio 3\;C:\Program Files\Common Files\Ulead Systems\MPEG;C:\Program Files\Common Files\Adobe\AGL
PATHEXT REG_SZ .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
TEMP REG_EXPAND_SZ %SystemRoot%\TEMP
TMP REG_EXPAND_SZ %SystemRoot%\TEMP
USERNAME REG_SZ SYSTEM
windir REG_EXPAND_SZ %SystemRoot%
RoxioCentral REG_SZ C:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\

[b]SecurityProviders[/b]:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders
SecurityProviders REG_SZ credssp.dll


[b]Authentication Packages[/b]:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa
Authentication Packages REG_MULTI_SZ msv1_0\0\0


[b]Subsystem Startup[/b]:

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems]
"Windows"="%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16"


[b]Midi Drivers[/b]:

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midi"="wdmaud.drv"
"midi1"="wdmaud.drv"


[b]Non-Default IFEO Debugger[/b]:


[b]Non-Default Installed Components[/b]:


[b]Non-Default Safeboot Minimal[/b]:


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\appinfo
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\keyiso
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\ntds
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\profsvc
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\sacsvr
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\swprv
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\tabletinputservice
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\tbs
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\trustedinstaller
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgr.sys
<NO NAME> REG_SZ Driver


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\volmgrx.sys
<NO NAME> REG_SZ Driver


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\windefend
<NO NAME> REG_SZ Service


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{6bdd1fc1-810f-11d0-bec7-08002be2092f}
<NO NAME> REG_SZ IEEE 1394 Bus host controllers


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{d48179be-ec20-11d1-b6b8-00c04fa372a7}
<NO NAME> REG_SZ SBP2 IEEE 1394 Devices


HKEY_LOCAL_MACHINE\system\currentcontrolset\control\safeboot\minimal\{d94ee5d8-d189-4994-83d2-f68d7d41b0e6}
<NO NAME> REG_SZ SecurityDevices


[b]File Associations[/b]:


[HKEY_CLASSES_ROOT\batfile\shell\open\command]
@="\"%1\" %*"

[HKEY_CLASSES_ROOT\cmdfile\shell\open\command]
@="\"%1\" %*"

[HKEY_CLASSES_ROOT\comfile\shell\open\command]
@="\"%1\" %*"

[HKEY_CLASSES_ROOT\exefile\shell\open\command]
@="\"%1\" %*"
"IsolatedCommand"="\"%1\" %*"

[HKEY_CLASSES_ROOT\htafile\shell\open\command]
@="C:\\Windows\\system32\\mshta.exe \"%1\" %*"

[HKEY_CLASSES_ROOT\http\shell\open\command]
@="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

[HKEY_CLASSES_ROOT\htmlfile\shell\open\command]
@="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

[HKEY_CLASSES_ROOT\regedit\shell\open\command]
@="regedit.exe \"%1\""

[HKEY_CLASSES_ROOT\regfile\shell\open\command]
@="regedit.exe \"%1\" %*"

[HKEY_CLASSES_ROOT\scrfile\shell\open\command]
@="\"%1\" %*"

[HKEY_CLASSES_ROOT\txtfile\shell\open\command]
@="%SystemRoot%\system32\NOTEPAD.EXE %1"


[b]Finished![/b]
0
maxacaen
 
oui mais je sais lancer un mode sans echec avec f8 c'est juste que quand j'essaye il ne veut pas lancer le programme par contre quand je le lance avec le mode ms config ça fonctionne !
0
maxacaen
 
bon alors bonne nouvelle antivir m'a trouvé antivirus 2009 et me l'a supprimé, l'écran bleu n'apparait plus non plus ça a l'air d'aller mais j'aimerai bien en avoir confirmation !
0