Win 32 worm bagle

Bonjour,

Je suis nouveau sur le forum. Depuis quelques jours, mon anti virus, Avast, ne démarre plus ainsi que les autres logiciel comme spybot et Windows Defender (Je suis sur VISTA).

J'ai beaucoup cherché sur différents forum et il y a tellement d'infos, et qui ont l'air d'être très personnalisées selon la config de chacun que je m'en remet à vous pour m'aider.

Merci d'avance. (J'attend votre demande pour diffuser un rapport de scan)

Get27
Configuration: Windows Vista
Firefox 2.0.0.12

29 réponses

Résumé de la discussion

Problème central : sous Windows Vista, Avast et d'autres logiciels comme Spybot et Windows Defender ne démarrent plus, et la grande variété de configurations rend les solutions difficiles à trier, d'où une aide demandée. Plusieurs conseils évoquent la suppression de Defender si Avast est utilisé, et insistent sur l'importance d'éviter les programmes crackés; d'autres manipulations dépendent de la configuration et peuvent être nécessaires. Des rapports de scan avec EliBagle ont été partagés montrant des fichiers infectés Bagle et des actions répétées d'élimination, ce qui illustre l'utilité de rapports précis pour guider le nettoyage. En fin de fil, certains participants indiquent avoir utilisé Trojan Remover et d'autres outils pour sécuriser le système, mais la vérification continue via scans réguliers est recommandée.

Bobot (l’IA à votre service)
  1. Contributeur
    salut,

    fais ceci :

    Télécharge combofix.exe (par sUBs) sur ton Bureau.

    -> http://download.bleepingcomputer.com/sUBs/ComboFix.exe

    -> Double clique combofix.exe.
    -> Tape sur la touche 1 (Yes) pour démarrer le scan.
    -> Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.

    NOTE : Le rapport se trouve également ici : C:\Combofix.txt

    Avant d'utiliser ComboFix :

    -> Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.

    -> Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent géner fortement la procédure de recherche et de nettoyage de l'outil.

    Une fois fait, sur ton bureau double-clic sur Combofix.exe.

    - Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.

    /!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.

    - En fin de scan il est possible que ComboFix ait besoin de redemarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.

    - Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\Combofix.txt)

    -> Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.

    -> Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.

    @+

    tutoriel https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
    1. re je suis sous xp sp2 ,probleme de virus ou fichier infecter,j'aimerais l'aide d'une ame charitable ras le bol tout ces virus
      1. salut voila un rapport de scan avec ELIBAGLA si quequ'un peut me lire merci windows me rend malade

        Thu Feb 14 18:51:41 2008
        EliBagle v11.00 (c)2008 S.G.H. / Satinfo S.L.
        ----------------------------------------------
        Lista de Acciones (por Acción Directa):
        C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
        C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.

        Thu Feb 14 18:51:48 2008
        EliBagle v11.00 (c)2008 S.G.H. / Satinfo S.L.
        ----------------------------------------------
        Lista de Acciones (por Exploración):
        Explorando Unidad C:\

        Nº Total de Directorios: 6561
        Nº Total de Ficheros: 62424
        Nº de Ficheros Analizados: 10379
        Nº de Ficheros Infectados: 1
        Nº de Ficheros Limpiados: 0

        Thu Feb 14 18:57:58 2008
        EliBagle v11.00 (c)2008 S.G.H. / Satinfo S.L.
        ----------------------------------------------
        Lista de Acciones (por Exploración):
        Explorando Unidad C:\

        Nº Total de Directorios: 6561
        Nº Total de Ficheros: 62424
        Nº de Ficheros Analizados: 10379
        Nº de Ficheros Infectados: 1
        Nº de Ficheros Limpiados: 0
        1. Contributeur
          salut get27,

          l´antivirus que tu avais "avast" ne detecte pas grand chose, quand a antivir il va les detecter a l´ouverture des fichiers zippés et stopper l´infection; mais ca ne veut pas dire qu´il faille telecharger tout et n´importe quoi...

          si bagle etait encore present tu n´aurais pas pu installer antivir, alors pour moi c´est ok.

          Tu as bien instalé zone alarm?

          fais ceci :

          Désactive ta restauration système:
          pour cela :
          Click droit sur poste de travail, dans l´arborescence sur propriétés;
          dans la nouvelle fenettre click sur l´onglet restauration système;
          coche la case désactiver la restauration systèm et applique.
          puis redemarre le pc et click droit sur poste de travail, dans l´arborescence sur propriétés;
          dans la nouvelle fenettre click sur l´onglet restauration systèm
          décoche la case désactiver la restauration systèm et applique.

          et

          Télécharge ToolsCleaner sur ton bureau.
          --> http://www.commentcamarche.net/telecharger/telechargement 34055291 toolsclean(...)
          # Clique sur Recherche et laisse le scan agir ...
          # Clique sur Suppression pour finaliser.
          # Tu peux, si tu le souhaites, te servir des Options facultatives.
          # Clique sur Quitter pour obtenir le rapport.
          # Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).

          @+
          1. Ben pour l'instant il fonctionne plutôt bien.
            C'est vrai qu'il est risqué de récupéré des programmes crackés sur la mule mais bon il y en a tellement que pour pouvoir les tester en version officielle.....bref j'invente rien.
            Comment se fait-il d'ailleurs que l'antivirus n'ait pas détecté les virus contenu dans ces fichiers crackés?

            Sinon dois faire d'autres choses pour m'assurer que Bagle soit totalement éradiqué de mon PC? Et promis, à l'avenir, je ferai plus attention aux sources de mes programmes ;-))

            Merci pour l'aide.
            1. Contributeur
              Re,

              Comment va ton pc?

              Arretes de prendre des programmes crackés sur e_mule!!!

              @+
              1. AntiVir PersonalEdition Classic
                Report file date: 2008-02-12 18:37

                Scanning for 1100436 virus strains and unwanted programs.

                Licensed to: Avira AntiVir PersonalEdition Classic
                Serial number: 0000149996-ADJIE-0001
                Platform: Windows Vista
                Windows version: (plain) [6.0.6000]
                Username: SYSTEM
                Computer name: PC_DES_CHATS

                Version information:
                BUILD.DAT : 270 15603 Bytes 2007-09-19 13:32:00
                AVSCAN.EXE : 7.0.6.1 290856 Bytes 2007-08-23 12:16:29
                AVSCAN.DLL : 7.0.6.0 49192 Bytes 2007-08-16 11:23:51
                LUKE.DLL : 7.0.5.3 147496 Bytes 2007-08-14 14:32:47
                LUKERES.DLL : 7.0.6.1 10280 Bytes 2007-08-21 11:35:20
                ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 2007-07-18 13:27:15
                ANTIVIR1.VDF : 7.0.1.95 3367424 Bytes 2007-12-14 16:07:36
                ANTIVIR2.VDF : 7.0.2.113 1673728 Bytes 2008-02-08 16:07:36
                ANTIVIR3.VDF : 7.0.2.125 54784 Bytes 2008-02-12 16:07:36
                AVEWIN32.DLL : 7.6.0.65 3240448 Bytes 2008-02-12 16:07:36
                AVWINLL.DLL : 1.0.0.7 14376 Bytes 2007-02-26 09:36:26
                AVPREF.DLL : 7.0.2.2 25640 Bytes 2007-07-18 06:39:17
                AVREP.DLL : 7.0.0.1 155688 Bytes 2007-04-16 12:16:24
                AVPACK32.DLL : 7.6.0.3 360488 Bytes 2008-02-12 16:07:36
                AVREG.DLL : 7.0.1.6 30760 Bytes 2007-07-18 06:17:06
                AVARKT.DLL : 1.0.0.20 278568 Bytes 2007-08-28 11:26:33
                AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 2007-07-18 06:10:18
                NETNT.DLL : 7.0.0.0 7720 Bytes 2007-03-08 10:09:42
                RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 2007-08-07 11:38:13
                RCTEXT.DLL : 7.0.62.0 86056 Bytes 2007-08-21 11:50:37
                SQLITE3.DLL : 3.3.17.1 339968 Bytes 2007-07-23 08:37:21

                Configuration settings for the scan:
                Jobname..........................: Complete system scan
                Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
                Logging..........................: low
                Primary action...................: interactive
                Secondary action.................: ignore
                Scan master boot sector..........: on
                Scan boot sector.................: on
                Boot sectors.....................: E:,
                Scan memory......................: on
                Process scan.....................: on
                Scan registry....................: on
                Search for rootkits..............: on
                Scan all files...................: All files
                Scan archives....................: on
                Recursion depth..................: 20
                Smart extensions.................: on
                Macro heuristic..................: on
                File heuristic...................: medium

                Start of the scan: 2008-02-12 18:37

                Starting search for hidden objects.
                '58523' objects were checked, '0' hidden objects were found.

                The scan of running processes will be started
                Scan process 'avscan.exe' - '1' Module(s) have been scanned
                Scan process 'avcenter.exe' - '1' Module(s) have been scanned
                Scan process 'sched.exe' - '1' Module(s) have been scanned
                Scan process 'avgnt.exe' - '1' Module(s) have been scanned
                Scan process 'avguard.exe' - '1' Module(s) have been scanned
                Scan process 'firefox.exe' - '1' Module(s) have been scanned
                Scan process 'OUTLOOK.EXE' - '1' Module(s) have been scanned
                Scan process 'skypePM.exe' - '1' Module(s) have been scanned
                Scan process 'COCIManager.exe' - '1' Module(s) have been scanned
                Scan process 'NMIndexStoreSvr.exe' - '1' Module(s) have been scanned
                Scan process 'NMIndexingService.exe' - '1' Module(s) have been scanned
                Scan process 'wmpnetwk.exe' - '1' Module(s) have been scanned
                Scan process 'KHALMNPR.exe' - '1' Module(s) have been scanned
                Scan process 'KEM.exe' - '1' Module(s) have been scanned
                Scan process 'TeaTimer.exe' - '1' Module(s) have been scanned
                Scan process 'wmpnscfg.exe' - '1' Module(s) have been scanned
                Scan process 'CTSyncU.exe' - '1' Module(s) have been scanned
                Scan process 'NMBgMonitor.exe' - '1' Module(s) have been scanned
                Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
                Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
                Scan process 'YahooMessenger.exe' - '1' Module(s) have been scanned
                Scan process 'Skype.exe' - '1' Module(s) have been scanned
                Scan process 'taskeng.exe' - '1' Module(s) have been scanned
                Scan process 'zlclient.exe' - '0' Module(s) have been scanned
                Scan process 'SOUNDMAN.EXE' - '1' Module(s) have been scanned
                Scan process 'CTCheck.exe' - '1' Module(s) have been scanned
                Scan process 'jusched.exe' - '1' Module(s) have been scanned
                Scan process 'GrooveMonitor.exe' - '1' Module(s) have been scanned
                Scan process 'Quickcam.exe' - '1' Module(s) have been scanned
                Scan process 'Communications_Helper.exe' - '1' Module(s) have been scanned
                Scan process 'dragdiag.exe' - '1' Module(s) have been scanned
                Scan process 'SDWinSec.exe' - '1' Module(s) have been scanned
                Scan process 'WUDFHost.exe' - '1' Module(s) have been scanned
                Scan process 'SearchIndexer.exe' - '1' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'LVComSer.exe' - '1' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'NBService.exe' - '1' Module(s) have been scanned
                Scan process 'LVComSer.exe' - '1' Module(s) have been scanned
                Scan process 'taskeng.exe' - '1' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
                Scan process 'aawservice.exe' - '1' Module(s) have been scanned
                Scan process 'explorer.exe' - '1' Module(s) have been scanned
                Scan process 'dwm.exe' - '1' Module(s) have been scanned
                Scan process 'vsmon.exe' - '0' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'SLsvc.exe' - '1' Module(s) have been scanned
                Scan process 'audiodg.exe' - '0' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'LVPrcSrv.exe' - '1' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'svchost.exe' - '1' Module(s) have been scanned
                Scan process 'lsm.exe' - '1' Module(s) have been scanned
                Scan process 'lsass.exe' - '1' Module(s) have been scanned
                Scan process 'services.exe' - '1' Module(s) have been scanned
                Scan process 'winlogon.exe' - '1' Module(s) have been scanned
                Scan process 'csrss.exe' - '1' Module(s) have been scanned
                Scan process 'wininit.exe' - '1' Module(s) have been scanned
                Scan process 'csrss.exe' - '1' Module(s) have been scanned
                Scan process 'smss.exe' - '1' Module(s) have been scanned
                63 processes with 63 modules were scanned

                Starting master boot sector scan:
                Master boot sector HD0
                [NOTE] No virus was found!
                Master boot sector HD1
                [NOTE] No virus was found!
                [WARNING] The boot sector file could not be read!
                [WARNING] Error code: 0x0015
                [NOTE] Please restart the search with Administrator rights
                Master boot sector HD2
                [NOTE] No virus was found!
                [WARNING] The boot sector file could not be read!
                [WARNING] Error code: 0x0015
                [NOTE] Please restart the search with Administrator rights
                Master boot sector HD3
                [NOTE] No virus was found!
                [WARNING] The boot sector file could not be read!
                [WARNING] Error code: 0x0015
                [NOTE] Please restart the search with Administrator rights
                Master boot sector HD4
                [NOTE] No virus was found!
                [WARNING] The boot sector file could not be read!
                [WARNING] Error code: 0x0015
                [NOTE] Please restart the search with Administrator rights
                Master boot sector HD5
                [NOTE] No virus was found!
                [WARNING] The boot sector file could not be read!
                [WARNING] Error code: 0x0015
                [NOTE] Please restart the search with Administrator rights

                Start scanning boot sectors:
                Boot sector 'C:\'
                [NOTE] No virus was found!
                Boot sector 'D:\'
                [NOTE] No virus was found!
                Boot sector 'E:\'
                [NOTE] No virus was found!

                Starting to scan the registry.
                The registry was scanned ( '12' files ).

                Starting the file scan:

                Begin scan in 'C:\' <VISTA>
                C:\hiberfil.sys
                [WARNING] The file could not be opened!
                C:\pagefile.sys
                [WARNING] The file could not be opened!
                C:\Muestras\FLEC006.EXE.Muestra EliBagle v10.97
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\102581984.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\102862375.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\102991015.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\103008640.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\104084562.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\117179515.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\117478953.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\117601437.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\117617296.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\122228750.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\131809156.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\132212281.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\132216281.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\136754078.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\146788890.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\146829953.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\146847578.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\14788187.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\14830296.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\14960312.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\151304015.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\15264687.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\15283046.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\161064609.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\161392093.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\161447890.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\161468875.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\175666250.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\176180062.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\180341421.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\183031.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\190905796.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\194940062.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\203156.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\205065218.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\205164750.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\205537906.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\209535171.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\210734.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\212078.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\219808343.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\220160296.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\220178484.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\224187609.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\234420375.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\234795906.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\238866343.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\243984.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\246859.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\249047890.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\249439750.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\253448031.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\268025375.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\278290750.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\282569953.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\292892656.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\29599484.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\29648875.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\297112812.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\29899515.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\29920109.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\311681203.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\326215359.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\340773500.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\344937.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\355371781.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\399100187.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\413680109.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\428285203.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\44071046.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\442797484.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\44297328.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\44495968.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\44513234.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\457365765.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\471911546.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\486424718.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\500956203.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\515517046.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\52094062.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\544982015.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\559851562.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\586609.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\58745906.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\59129515.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\59182375.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\59556234.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\638296.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\73620906.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\73734312.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\73749937.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\73788953.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\74456765.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\87952531.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\88345328.exe.vir
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\QooBox\Quarantine\C\Windows\System32\drivers\down\89503578.exe.vir
                [DETECTION] Contains detection pattern of the worm WORM/Bagle.Gen
                [INFO] The file was deleted!
                C:\System Volume Information\SystemRestore\FRStaging\Users\Les Chats\AppData\Roaming\m\flec006.exe
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\System Volume Information\SystemRestore\FRStaging\Windows\System32\mdelk.exe
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\System Volume Information\SystemRestore\FRStaging\Windows\System32\wintems.exe
                [DETECTION] Is the Trojan horse TR/Bagle.Gen.B
                [INFO] The file was deleted!
                C:\System Volume Information\SystemRestore\FRStaging\Windows\System32\drivers\srosa.sys
                [DETECTION] Is the Trojan horse TR/Rootkit.Gen
                [INFO] The file was deleted!
                Begin scan in 'D:\' <A graver>
                D:\System Volume Information\_restore{87763945-402F-481C-AFDD-268B9E84853A}\RP775\A0151134.dll
                [DETECTION] Is the Trojan horse TR/Crypt.T.519
                [INFO] The file was deleted!
                Begin scan in 'E:\' <Mes documents>
                E:\Nouveau dossier (2)\eMule\Incoming\Interactive JPEG Optimizer 7.01.zip
                [0] Archive type: ZIP
                --> Interactive JPEG Optimizer 7.01.exe
                [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
                [INFO] The file was deleted!
                E:\Nouveau dossier (2)\eMule\Incoming\JPEG Wizard 2.4 [Cracked].zip
                [0] Archive type: ZIP
                --> JPEG Wizard 2.4 [Cracked].exe
                [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
                [INFO] The file was deleted!
                E:\Nouveau dossier (2)\eMule\Incoming\Interactive JPEG Optimizer 7.01\Interactive JPEG Optimizer 7.01.exe
                [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
                [INFO] The file was deleted!
                E:\Nouveau dossier (2)\eMule\Incoming\JPEG Wizard 2.4 [Cracked]\JPEG Wizard 2.4 [Cracked].exe
                [DETECTION] Is the Trojan horse TR/Crypt.XPACK.Gen
                [INFO] The file was deleted!

                End of the scan: 2008-02-12 19:51
                Used time: 1:14:10 min

                The scan has been done completely.

                12846 Scanning directories
                342771 Files were scanned
                106 viruses and/or unwanted programs were found
                0 Files were classified as suspicious:
                106 files were deleted
                0 files were repaired
                0 files were moved to quarantine
                0 files were renamed
                2 Files cannot be scanned
                342665 Files not concerned
                5191 Archives were scanned
                2 Warnings
                0 Notes
                58523 Objects were scanned with rootkit scan
                0 Hidden objects were found
                1. Kerio n'est pas compatible avec Vista pour l'instant j'ai l'impression....
                  1. Contributeur
                    Re,

                    ok cool.

                    installes un par feu :

                    par feu : kerio

                    http://www.malekal.com/kerio_firewall.php#mozTocId721480

                    https://www.vulgarisation-informatique.com/kerio.php

                    https://kerio.probb.fr/f2-sunbelt-kerio-personal-firewall

                    ou zone alarm plus facil a configurer mais moins performant

                    https://www.malekal.com/tutoriel-zonealarm-firewall/

                    puis regarde ceci concernant avast :

                    antivir vs avast :

                    -> http://forum.malekal.com/ftopic3528.php

                    alors je te conseille de le desinstaller et d´installer antivir a la place

                    Telecharge et instal l'antivirus Antivir Personal Edition Classic :

                    ->https://www.malekal.com/avira-free-security-antivirus-gratuit/

                    https://www.avira.com/en/prime

                    http://mickael.barroux.free.fr/securite/antivir.php
                    http://speedweb1.free.fr/frames2.php?page=tuto5
                    <- tutoriel configuration du scanner...

                    une fois antivir ouvert click surconfiguration et coche la case "expert mode" puis sur l´onglet scanner dans la fenetre du dessous tu va voir : rootkit search click sur le petit + pour deployer et coche la case a coté de ton disk dur
                    puis click sur configuration en haut a droite; dans la nouvelle fenetre a gauche >scanner > coche "scan all files" et en dessous >scanner priority = High
                    coche : allow stopping the scanner, comme cela tu peux faire une pause pendant le scan si tu le desir.
                    puis sur la droite coche les case suivantes :
                    scan boot sectors of selected drives
                    scan master boot sectors
                    scan memory
                    search foe rootkit before scan
                    decoche :
                    ignore off line files
                    toujours a gauche > scan > deploie > heuristique > macrovirus heuristic = coché et en dessous > win32 heuristic la case coché et high detection level

                    je te dis tous ca sur avast car j´aimerais que tu performes un scan complet de ta machine a l´aide d´antivir avec les reglages stipulés ci dessus et que tu post le rapport ici stp

                    @+
                    1. oui avast remarche.

                      et Spybot aussi.

                      Voici le rapport hijackthis:

                      Logfile of Trend Micro HijackThis v2.0.2
                      Scan saved at 16:05:03, on 12/02/2008
                      Platform: Windows Vista (WinNT 6.00.1904)
                      MSIE: Internet Explorer v7.00 (7.00.6000.16575)
                      Boot mode: Normal

                      Running processes:
                      C:\Windows\system32\Dwm.exe
                      C:\Windows\Explorer.EXE
                      C:\Program Files\Thomson\SpeedTouch USB\dragdiag.exe
                      C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
                      C:\Program Files\Logitech\QuickCam\Quickcam.exe
                      C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
                      C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
                      C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe
                      C:\Windows\SOUNDMAN.EXE
                      C:\Program Files\Alwil Software\Avast4\ashDisp.exe
                      C:\Program Files\Skype\Phone\Skype.exe
                      C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
                      C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                      C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
                      C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
                      C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
                      C:\Program Files\Windows Media Player\wmpnscfg.exe
                      C:\Program Files\Logitech\SetPoint\KEM.exe
                      C:\Windows\system32\taskeng.exe
                      C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
                      C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
                      C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
                      C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
                      C:\Program Files\Skype\Plugin Manager\skypePM.exe
                      C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
                      C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
                      C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                      C:\Windows\system32\conime.exe
                      C:\Program Files\eMule\emule.exe
                      C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
                      C:\Windows\system32\SearchFilterHost.exe

                      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
                      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
                      R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
                      O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
                      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                      O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                      O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                      O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
                      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
                      O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                      O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
                      O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
                      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
                      O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
                      O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
                      O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
                      O4 - HKLM\..\Run: [ASUS Probe] C:\Program Files\ASUS\Probe\AsusProb.exe
                      O4 - HKLM\..\Run: [NVidia System Utility] "C:\Program Files\NVIDIA Corporation\NVIDIA System Utility\\NVSystemUtility.exe" clear
                      O4 - HKLM\..\Run: [SetPoint] C:\Program Files\Logitech\SetPoint\KEM.EXE
                      O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
                      O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
                      O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
                      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
                      O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
                      O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
                      O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
                      O4 - HKLM\..\Run: [CTCheck] C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe
                      O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
                      O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
                      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                      O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
                      O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
                      O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
                      O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
                      O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
                      O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
                      O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
                      O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
                      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                      O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
                      O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
                      O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
                      O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
                      O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
                      O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
                      O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe
                      O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
                      O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
                      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
                      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
                      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
                      O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
                      O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
                      O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
                      O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
                      O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                      O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                      O13 - Gopher Prefix:
                      O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su2/CTL_V02002/ocx/15031/CTSUEng.cab
                      O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
                      O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
                      O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su2/CTL_V02002/ocx/15034/CTPID.cab
                      O17 - HKLM\System\CCS\Services\Tcpip\..\{BAC3630D-B70D-4DA6-89DB-E484608B3C4E}: NameServer = 193.231.100.130 193.231.100.134
                      O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
                      O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
                      O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
                      O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
                      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                      O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                      O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                      O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
                      O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
                      O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
                      O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
                      O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
                      O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
                      1. Contributeur
                        Salut get,

                        avast remarche?

                        post un rapport hijack this stp

                        Télécharge HijackThis ici :

                        -> http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis

                        Tutoriel d´instalation : (Merci a Balltrap34 pour cette réalisation)

                        -> http://pageperso.aol.fr/balltrap34/Hijenr.gif

                        Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)

                        -> http://pageperso.aol.fr/balltrap34/demohijack.htm

                        Post le rapport généré ici stp...

                        @+
                        1. j'ai supprimé Defender, car de toutes façons j'utilise Avast.

                          Dois-je continuer les scans, ou bien je peux considerer que mon problème est résolu?

                          @+
                          1. Salut,

                            Voila, j'ai fais ce que tu m'a dit et visiblement ces fichiers n'existent plus.
                            Cependant windows defender ne se lance toujours pas et j'ai toujours ce message d'erreur. Etant donné que j'ai déja un anti virus - Avast - je pense qu'il serait préférable que je supprime Defender.

                            Y a t-il d'autres manip' a executer pour être tranquille avec bagle??

                            J'attend ta réponse, merci d'avance
                            1. Contributeur
                              re,

                              fais ceci : (merci Mérillym de 01.net, pour l´astuce)

                              Redémarre en mode sans échec ! aide ici : http://forum.telecharger.01net.com/forum/

                              Ouvre l'invite de commande : démarrage > programme > accessoire > invite de commande ou dans outils système > invite de commande
                              Tape les commandes suivantes successivement :

                              N.B : si tu as des messages d'erreur lors de la suppression de certains fichiers, ne pas s'inquiéter, cela signifie qu'ils ne sont pas présents sur ta machine. Attention de ne pas faire de faute de frappe !

                              del c:\windows\system32\mdelk.exe > entrer : le fichier va s'effacer
                              puis
                              del c:\windows\system32\drivers\srosa.sys > entrer : le fichier va s'effacer
                              puis
                              del c:\windows\system32\drivers\hldrrr.exe > entrer : le fichier va s'effacer
                              puis
                              del c:\windows\system32\wintems.exe > entrer : le fichier va s'effacer
                              puis
                              del c:\users\les chats\appdata\roaming\m\flec006.exe

                              3) Désinstalle ton antivirus et réinstalle le ;)

                              4) Redémarre en mode normal et dis-moi si ton antivirus remarche ;)

                              @+
                              1. voici le dernier rapport d'Eliblaga en mode sans echec.

                                Pour info, j'ai pu réinstaller Avast, qui m'a fait un scan au redémarrage, en y trouvant et effacant 15 fichiers infectés par Bagle YN.

                                Y a t-il d'autres manip' à effectuer? A chaque démarrage de Vista j'ai un message d'alerte pour windows defender qui ne se lance pas: Application failed to initialize 0x800 106 ba

                                Bref, pour l'instant voici le rapport:

                                Fri Feb 08 15:25:07 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
                                C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle.dldr Acceso Denegado.
                                Por favor, envienos una muestra del fichero
                                C:\Muestras\FLEC006.EXE.Muestra EliBagle v10.97
                                a "virus@satinfo.es". Gracias.
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle Acceso Denegado.
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\LIST.OCT --> Eliminado Bagle

                                Fri Feb 08 15:28:41 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle.dldr Acceso Denegado.
                                Por favor, envienos una muestra del fichero
                                C:\Muestras\FLEC006.EXE.Muestra EliBagle v10.97
                                a "virus@satinfo.es". Gracias.
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle Acceso Denegado.

                                Mon Feb 11 13:13:05 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Exploración):
                                Explorando Unidad C:\
                                C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BACKWEB-8876480.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\102879906.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\103005703.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\104071890.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\104097546.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\117495031.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\117614562.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\122239781.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\132174828.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\132215000.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\136739515.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\136764312.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\137312.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\146802812.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\146844484.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\14762656.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\14801656.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\151289875.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\161393562.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\161464812.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\165812609.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\165819500.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\175991140.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\180330765.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\180360406.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\190590156.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\190902281.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\194903375.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\194941562.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\203187.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\205178734.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\209510453.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\219824937.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\220176875.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\223890.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\224152359.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\224218671.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\238840718.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\238886093.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\253465750.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\268014078.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\268029578.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\282570843.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\29323984.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\29674406.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\297103000.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\297131765.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\307437.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\311664125.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\311682046.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\326199421.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\326229109.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\340778781.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\355442593.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\370010578.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\384596218.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\392062.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\399119625.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\428289546.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\442810656.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\44311281.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\44486937.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\44642953.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\457369718.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\471915390.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\500972312.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\515519390.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\52073828.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\52098625.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\530156250.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\545042515.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\545053750.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\559864546.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\59318218.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\59750687.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\73632734.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\73746796.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\74488531.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\88259421.EXE --> Eliminado Bagle.dldr
                                C:\Windows\System32\drivers\down\89491234.EXE --> Eliminado Bagle
                                C:\Windows\System32\drivers\down\89505109.EXE --> Eliminado Bagle

                                Nº Total de Directorios: 11581
                                Nº Total de Ficheros: 73077
                                Nº de Ficheros Analizados: 12071
                                Nº de Ficheros Infectados: 82
                                Nº de Ficheros Limpiados: 81

                                Mon Feb 11 13:33:35 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
                                C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle.dldr Acceso Denegado.
                                Por favor, envienos una muestra del fichero
                                C:\Muestras\FLEC006.EXE.Muestra EliBagle v10.97
                                a "virus@satinfo.es". Gracias.
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle Acceso Denegado.
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\LIST.OCT --> Eliminado Bagle

                                Mon Feb 11 13:36:34 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle.dldr Acceso Denegado.
                                Por favor, envienos una muestra del fichero
                                C:\Muestras\FLEC006.EXE.Muestra EliBagle v10.97
                                a "virus@satinfo.es". Gracias.
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle Acceso Denegado.

                                Mon Feb 11 13:37:05 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Exploración):
                                Explorando Unidad C:\

                                Nº Total de Directorios: 11577
                                Nº Total de Ficheros: 72926
                                Nº de Ficheros Analizados: 11990
                                Nº de Ficheros Infectados: 1
                                Nº de Ficheros Limpiados: 0

                                Mon Feb 11 14:15:00 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle.dldr Acceso Denegado.
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle.dldr Acceso Denegado.

                                Mon Feb 11 14:24:01 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle.dldr Acceso Denegado.
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle.dldr Acceso Denegado.

                                Mon Feb 11 15:09:13 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                C:\WINDOWS\SYSTEM32\WINTEMS.EXE.VIR --> Eliminado
                                C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\Drivers\HLDRRR.EXE.VIR --> Eliminado
                                C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle.dldr Acceso Denegado.
                                C:\Users\Les Chats\AppData\Roaming\M\FLEC006.EXE.VIR --> Eliminado
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle.dldr Acceso Denegado.

                                Mon Feb 11 15:13:19 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Exploración):
                                Explorando Unidad C:\

                                Nº Total de Directorios: 11576
                                Nº Total de Ficheros: 72847
                                Nº de Ficheros Analizados: 11892
                                Nº de Ficheros Infectados: 0
                                Nº de Ficheros Limpiados: 0

                                Mon Feb 11 15:51:11 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
                                C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle.dldr Acceso Denegado.
                                C:\USERS\LES CHATS\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle.dldr Acceso Denegado.

                                Mon Feb 11 16:04:32 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.

                                Mon Feb 11 16:04:56 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Exploración):
                                Explorando Unidad C:\

                                Nº Total de Directorios: 11588
                                Nº Total de Ficheros: 72551
                                Nº de Ficheros Analizados: 11981
                                Nº de Ficheros Infectados: 0
                                Nº de Ficheros Limpiados: 0

                                Mon Feb 11 16:28:36 2008
                                EliBagle v10.97 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):
                                Eliminada Carpeta "%AppData%\M"

                                Mon Feb 11 17:10:46 2008
                                EliBagle v10.98 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):

                                Mon Feb 11 17:10:49 2008
                                EliBagle v10.98 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Exploración):
                                Explorando Unidad C:\

                                Nº Total de Directorios: 11625
                                Nº Total de Ficheros: 73755
                                Nº de Ficheros Analizados: 12022
                                Nº de Ficheros Infectados: 0
                                Nº de Ficheros Limpiados: 0

                                Tue Feb 12 00:14:57 2008
                                EliBagle v10.98 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Acción Directa):

                                Tue Feb 12 00:15:01 2008
                                EliBagle v10.98 (c)2008 S.G.H. / Satinfo S.L.
                                ----------------------------------------------
                                Lista de Acciones (por Exploración):
                                Explorando Unidad C:\

                                Nº Total de Directorios: 11668
                                Nº Total de Ficheros: 70961
                                Nº de Ficheros Analizados: 12016
                                Nº de Ficheros Infectados: 0
                                Nº de Ficheros Limpiados: 0

                                Merci pour ton aide....
                                1. Contributeur
                                  Ok ;-)

                                  Repost un rapport d´Eliblaga en mode sans echec stp.

                                  @+
                                  1. C:\Windows\system32\drivers\down\384675671.exe
                                    C:\Windows\system32\drivers\down\384680093.exe
                                    C:\Windows\system32\drivers\down\386843.exe
                                    C:\Windows\system32\drivers\down\389109.exe
                                    C:\Windows\system32\drivers\down\391453.exe
                                    C:\Windows\system32\drivers\down\394250.exe
                                    C:\Windows\system32\drivers\down\396531.exe
                                    C:\Windows\system32\drivers\down\398750.exe
                                    C:\Windows\system32\drivers\down\398859.exe
                                    C:\Windows\system32\drivers\down\399099000.exe
                                    C:\Windows\system32\drivers\down\399100187.exe
                                    C:\Windows\system32\drivers\down\399123890.exe
                                    C:\Windows\system32\drivers\down\399130156.exe
                                    C:\Windows\system32\drivers\down\399143359.exe
                                    C:\Windows\system32\drivers\down\399148109.exe
                                    C:\Windows\system32\drivers\down\399150265.exe
                                    C:\Windows\system32\drivers\down\399154203.exe
                                    C:\Windows\system32\drivers\down\399158515.exe
                                    C:\Windows\system32\drivers\down\399173359.exe
                                    C:\Windows\system32\drivers\down\399177078.exe
                                    C:\Windows\system32\drivers\down\399179046.exe
                                    C:\Windows\system32\drivers\down\399184078.exe
                                    C:\Windows\system32\drivers\down\399187453.exe
                                    C:\Windows\system32\drivers\down\399189281.exe
                                    C:\Windows\system32\drivers\down\399189890.exe
                                    C:\Windows\system32\drivers\down\399190687.exe
                                    C:\Windows\system32\drivers\down\399191843.exe
                                    C:\Windows\system32\drivers\down\399194187.exe
                                    C:\Windows\system32\drivers\down\399199765.exe
                                    C:\Windows\system32\drivers\down\399227453.exe
                                    C:\Windows\system32\drivers\down\399235328.exe
                                    C:\Windows\system32\drivers\down\399240218.exe
                                    C:\Windows\system32\drivers\down\399296.exe
                                    C:\Windows\system32\drivers\down\406984.exe
                                    C:\Windows\system32\drivers\down\407953.exe
                                    C:\Windows\system32\drivers\down\408250.exe
                                    C:\Windows\system32\drivers\down\413679703.exe
                                    C:\Windows\system32\drivers\down\413680109.exe
                                    C:\Windows\system32\drivers\down\413689375.exe
                                    C:\Windows\system32\drivers\down\413692421.exe
                                    C:\Windows\system32\drivers\down\413704437.exe
                                    C:\Windows\system32\drivers\down\413710281.exe
                                    C:\Windows\system32\drivers\down\413710484.exe
                                    C:\Windows\system32\drivers\down\413727390.exe
                                    C:\Windows\system32\drivers\down\413729906.exe
                                    C:\Windows\system32\drivers\down\413746265.exe
                                    C:\Windows\system32\drivers\down\413749031.exe
                                    C:\Windows\system32\drivers\down\413757546.exe
                                    C:\Windows\system32\drivers\down\413766937.exe
                                    C:\Windows\system32\drivers\down\413779093.exe
                                    C:\Windows\system32\drivers\down\413787390.exe
                                    C:\Windows\system32\drivers\down\413788859.exe
                                    C:\Windows\system32\drivers\down\413790718.exe
                                    C:\Windows\system32\drivers\down\413791953.exe
                                    C:\Windows\system32\drivers\down\413800921.exe
                                    C:\Windows\system32\drivers\down\413805390.exe
                                    C:\Windows\system32\drivers\down\413840453.exe
                                    C:\Windows\system32\drivers\down\413847406.exe
                                    C:\Windows\system32\drivers\down\413854421.exe
                                    C:\Windows\system32\drivers\down\416921.exe
                                    C:\Windows\system32\drivers\down\420718.exe
                                    C:\Windows\system32\drivers\down\428284718.exe
                                    C:\Windows\system32\drivers\down\428285203.exe
                                    C:\Windows\system32\drivers\down\428293437.exe
                                    C:\Windows\system32\drivers\down\428296484.exe
                                    C:\Windows\system32\drivers\down\428313234.exe
                                    C:\Windows\system32\drivers\down\428315281.exe
                                    C:\Windows\system32\drivers\down\428315312.exe
                                    C:\Windows\system32\drivers\down\428321265.exe
                                    C:\Windows\system32\drivers\down\428324421.exe
                                    C:\Windows\system32\drivers\down\428331343.exe
                                    C:\Windows\system32\drivers\down\428332171.exe
                                    C:\Windows\system32\drivers\down\428334718.exe
                                    C:\Windows\system32\drivers\down\428337859.exe
                                    C:\Windows\system32\drivers\down\428339406.exe
                                    C:\Windows\system32\drivers\down\428341875.exe
                                    C:\Windows\system32\drivers\down\428343015.exe
                                    C:\Windows\system32\drivers\down\428343390.exe
                                    C:\Windows\system32\drivers\down\428344328.exe
                                    C:\Windows\system32\drivers\down\428345640.exe
                                    C:\Windows\system32\drivers\down\428350187.exe
                                    C:\Windows\system32\drivers\down\428376171.exe
                                    C:\Windows\system32\drivers\down\428377968.exe
                                    C:\Windows\system32\drivers\down\428382203.exe
                                    C:\Windows\system32\drivers\down\433250.exe
                                    C:\Windows\system32\drivers\down\437765.exe
                                    C:\Windows\system32\drivers\down\44071046.exe
                                    C:\Windows\system32\drivers\down\44084187.exe
                                    C:\Windows\system32\drivers\down\44091937.exe
                                    C:\Windows\system32\drivers\down\44105218.exe
                                    C:\Windows\system32\drivers\down\44108812.exe
                                    C:\Windows\system32\drivers\down\44118156.exe
                                    C:\Windows\system32\drivers\down\44120140.exe
                                    C:\Windows\system32\drivers\down\44131312.exe
                                    C:\Windows\system32\drivers\down\44135781.exe
                                    C:\Windows\system32\drivers\down\44139734.exe
                                    C:\Windows\system32\drivers\down\44149609.exe
                                    C:\Windows\system32\drivers\down\441593.exe
                                    C:\Windows\system32\drivers\down\44237562.exe
                                    C:\Windows\system32\drivers\down\44246000.exe
                                    C:\Windows\system32\drivers\down\442796015.exe
                                    C:\Windows\system32\drivers\down\442797484.exe
                                    C:\Windows\system32\drivers\down\442814140.exe
                                    C:\Windows\system32\drivers\down\442818750.exe
                                    C:\Windows\system32\drivers\down\44282765.exe
                                    C:\Windows\system32\drivers\down\442831093.exe
                                    C:\Windows\system32\drivers\down\442833437.exe
                                    C:\Windows\system32\drivers\down\442835796.exe
                                    C:\Windows\system32\drivers\down\442839421.exe
                                    C:\Windows\system32\drivers\down\442851515.exe
                                    C:\Windows\system32\drivers\down\442855343.exe
                                    C:\Windows\system32\drivers\down\442858390.exe
                                    C:\Windows\system32\drivers\down\442862187.exe
                                    C:\Windows\system32\drivers\down\442866625.exe
                                    C:\Windows\system32\drivers\down\442879406.exe
                                    C:\Windows\system32\drivers\down\442899031.exe
                                    C:\Windows\system32\drivers\down\442900250.exe
                                    C:\Windows\system32\drivers\down\442901171.exe
                                    C:\Windows\system32\drivers\down\442904640.exe
                                    C:\Windows\system32\drivers\down\442906140.exe
                                    C:\Windows\system32\drivers\down\442911796.exe
                                    C:\Windows\system32\drivers\down\442937500.exe
                                    C:\Windows\system32\drivers\down\442939890.exe
                                    C:\Windows\system32\drivers\down\442945953.exe
                                    C:\Windows\system32\drivers\down\44297046.exe
                                    C:\Windows\system32\drivers\down\44297328.exe
                                    C:\Windows\system32\drivers\down\44297421.exe
                                    C:\Windows\system32\drivers\down\44316046.exe
                                    C:\Windows\system32\drivers\down\44320125.exe
                                    C:\Windows\system32\drivers\down\44336812.exe
                                    C:\Windows\system32\drivers\down\44338015.exe
                                    C:\Windows\system32\drivers\down\44345312.exe
                                    C:\Windows\system32\drivers\down\44348828.exe
                                    C:\Windows\system32\drivers\down\44351593.exe
                                    C:\Windows\system32\drivers\down\44409046.exe
                                    C:\Windows\system32\drivers\down\44436421.exe
                                    C:\Windows\system32\drivers\down\44495968.exe
                                    C:\Windows\system32\drivers\down\44513234.exe
                                    C:\Windows\system32\drivers\down\44516203.exe
                                    C:\Windows\system32\drivers\down\44520796.exe
                                    C:\Windows\system32\drivers\down\44525828.exe
                                    C:\Windows\system32\drivers\down\44529937.exe
                                    C:\Windows\system32\drivers\down\44544578.exe
                                    C:\Windows\system32\drivers\down\44548468.exe
                                    C:\Windows\system32\drivers\down\44552640.exe
                                    C:\Windows\system32\drivers\down\44555562.exe
                                    C:\Windows\system32\drivers\down\44558546.exe
                                    C:\Windows\system32\drivers\down\44563546.exe
                                    C:\Windows\system32\drivers\down\44565843.exe
                                    C:\Windows\system32\drivers\down\44567359.exe
                                    C:\Windows\system32\drivers\down\44578484.exe
                                    C:\Windows\system32\drivers\down\44578531.exe
                                    C:\Windows\system32\drivers\down\44578812.exe
                                    C:\Windows\system32\drivers\down\44580515.exe
                                    C:\Windows\system32\drivers\down\44585156.exe
                                    C:\Windows\system32\drivers\down\44592093.exe
                                    C:\Windows\system32\drivers\down\44596437.exe
                                    C:\Windows\system32\drivers\down\44601000.exe
                                    C:\Windows\system32\drivers\down\44603609.exe
                                    C:\Windows\system32\drivers\down\44605484.exe
                                    C:\Windows\system32\drivers\down\44610437.exe
                                    C:\Windows\system32\drivers\down\44612859.exe
                                    C:\Windows\system32\drivers\down\44618906.exe
                                    C:\Windows\system32\drivers\down\44637296.exe
                                    C:\Windows\system32\drivers\down\44666750.exe
                                    C:\Windows\system32\drivers\down\44668875.exe
                                    C:\Windows\system32\drivers\down\44672531.exe
                                    C:\Windows\system32\drivers\down\44686265.exe
                                    C:\Windows\system32\drivers\down\44695656.exe
                                    C:\Windows\system32\drivers\down\44701281.exe
                                    C:\Windows\system32\drivers\down\44706625.exe
                                    C:\Windows\system32\drivers\down\44710484.exe
                                    C:\Windows\system32\drivers\down\44711375.exe
                                    C:\Windows\system32\drivers\down\44723031.exe
                                    C:\Windows\system32\drivers\down\44733828.exe
                                    C:\Windows\system32\drivers\down\44737187.exe
                                    C:\Windows\system32\drivers\down\44737937.exe
                                    C:\Windows\system32\drivers\down\44740796.exe
                                    C:\Windows\system32\drivers\down\44753062.exe
                                    C:\Windows\system32\drivers\down\44760609.exe
                                    C:\Windows\system32\drivers\down\44766890.exe
                                    C:\Windows\system32\drivers\down\44781343.exe
                                    C:\Windows\system32\drivers\down\44789015.exe
                                    C:\Windows\system32\drivers\down\44800046.exe
                                    C:\Windows\system32\drivers\down\44806234.exe
                                    C:\Windows\system32\drivers\down\44816703.exe
                                    C:\Windows\system32\drivers\down\44817812.exe
                                    C:\Windows\system32\drivers\down\44821109.exe
                                    C:\Windows\system32\drivers\down\44822015.exe
                                    C:\Windows\system32\drivers\down\44829593.exe
                                    C:\Windows\system32\drivers\down\44836078.exe
                                    C:\Windows\system32\drivers\down\44875703.exe
                                    C:\Windows\system32\drivers\down\448890.exe
                                    C:\Windows\system32\drivers\down\44889093.exe
                                    C:\Windows\system32\drivers\down\44898390.exe
                                    C:\Windows\system32\drivers\down\457365437.exe
                                    C:\Windows\system32\drivers\down\457365765.exe
                                    C:\Windows\system32\drivers\down\457377734.exe
                                    C:\Windows\system32\drivers\down\457380953.exe
                                    C:\Windows\system32\drivers\down\457396468.exe
                                    C:\Windows\system32\drivers\down\457402781.exe
                                    C:\Windows\system32\drivers\down\457402796.exe
                                    C:\Windows\system32\drivers\down\457411140.exe
                                    C:\Windows\system32\drivers\down\457413250.exe
                                    C:\Windows\system32\drivers\down\457415468.exe
                                    C:\Windows\system32\drivers\down\457416406.exe
                                    C:\Windows\system32\drivers\down\457418296.exe
                                    C:\Windows\system32\drivers\down\457425234.exe
                                    C:\Windows\system32\drivers\down\457426875.exe
                                    C:\Windows\system32\drivers\down\457429046.exe
                                    C:\Windows\system32\drivers\down\457430015.exe
                                    C:\Windows\system32\drivers\down\457433140.exe
                                    C:\Windows\system32\drivers\down\457434000.exe
                                    C:\Windows\system32\drivers\down\457435140.exe
                                    C:\Windows\system32\drivers\down\457439093.exe
                                    C:\Windows\system32\drivers\down\457468062.exe
                                    C:\Windows\system32\drivers\down\457479828.exe
                                    C:\Windows\system32\drivers\down\457484187.exe
                                    C:\Windows\system32\drivers\down\466312.exe
                                    C:\Windows\system32\drivers\down\470421.exe
                                    C:\Windows\system32\drivers\down\471734.exe
                                    C:\Windows\system32\drivers\down\471910953.exe
                                    C:\Windows\system32\drivers\down\471911546.exe
                                    C:\Windows\system32\drivers\down\471919718.exe
                                    C:\Windows\system32\drivers\down\471923531.exe
                                    C:\Windows\system32\drivers\down\471937796.exe
                                    C:\Windows\system32\drivers\down\471940687.exe
                                    C:\Windows\system32\drivers\down\471940703.exe
                                    C:\Windows\system32\drivers\down\471945250.exe
                                    C:\Windows\system32\drivers\down\471952265.exe
                                    C:\Windows\system32\drivers\down\471954234.exe
                                    C:\Windows\system32\drivers\down\471955593.exe
                                    C:\Windows\system32\drivers\down\471957843.exe
                                    C:\Windows\system32\drivers\down\471962484.exe
                                    C:\Windows\system32\drivers\down\471964546.exe
                                    C:\Windows\system32\drivers\down\471967453.exe
                                    C:\Windows\system32\drivers\down\471967656.exe
                                    C:\Windows\system32\drivers\down\471967843.exe
                                    C:\Windows\system32\drivers\down\471968765.exe
                                    C:\Windows\system32\drivers\down\471970109.exe
                                    C:\Windows\system32\drivers\down\471974531.exe
                                    C:\Windows\system32\drivers\down\472000875.exe
                                    C:\Windows\system32\drivers\down\472003562.exe
                                    C:\Windows\system32\drivers\down\472008203.exe
                                    C:\Windows\system32\drivers\down\477109.exe
                                    C:\Windows\system32\drivers\down\477859.exe
                                    C:\Windows\system32\drivers\down\486423390.exe
                                    C:\Windows\system32\drivers\down\486424718.exe
                                    C:\Windows\system32\drivers\down\486430218.exe
                                    C:\Windows\system32\drivers\down\486436312.exe
                                    C:\Windows\system32\drivers\down\486448703.exe
                                    C:\Windows\system32\drivers\down\486451203.exe
                                    C:\Windows\system32\drivers\down\486453375.exe
                                    C:\Windows\system32\drivers\down\486458453.exe
                                    C:\Windows\system32\drivers\down\486460984.exe
                                    C:\Windows\system32\drivers\down\486467531.exe
                                    C:\Windows\system32\drivers\down\486471156.exe
                                    C:\Windows\system32\drivers\down\486473250.exe
                                    C:\Windows\system32\drivers\down\486478578.exe
                                    C:\Windows\system32\drivers\down\486480171.exe
                                    C:\Windows\system32\drivers\down\486482328.exe
                                    C:\Windows\system32\drivers\down\486482578.exe
                                    C:\Windows\system32\drivers\down\486483703.exe
                                    C:\Windows\system32\drivers\down\486484453.exe
                                    C:\Windows\system32\drivers\down\486486734.exe
                                    C:\Windows\system32\drivers\down\486492812.exe
                                    C:\Windows\system32\drivers\down\486519359.exe
                                    C:\Windows\system32\drivers\down\486522046.exe
                                    C:\Windows\system32\drivers\down\486529250.exe
                                    C:\Windows\system32\drivers\down\493140.exe
                                    C:\Windows\system32\drivers\down\495812.exe
                                    C:\Windows\system32\drivers\down\497203.exe
                                    C:\Windows\system32\drivers\down\500359.exe
                                    C:\Windows\system32\drivers\down\500954609.exe
                                    C:\Windows\system32\drivers\down\500956203.exe
                                    C:\Windows\system32\drivers\down\500981421.exe
                                    C:\Windows\system32\drivers\down\500985953.exe
                                    C:\Windows\system32\drivers\down\501002296.exe
                                    C:\Windows\system32\drivers\down\501009921.exe
                                    C:\Windows\system32\drivers\down\501009968.exe
                                    C:\Windows\system32\drivers\down\501017984.exe
                                    C:\Windows\system32\drivers\down\501019953.exe
                                    C:\Windows\system32\drivers\down\501021843.exe
                                    C:\Windows\system32\drivers\down\501023359.exe
                                    C:\Windows\system32\drivers\down\501025671.exe
                                    C:\Windows\system32\drivers\down\501031843.exe
                                    C:\Windows\system32\drivers\down\501033812.exe
                                    C:\Windows\system32\drivers\down\501036281.exe
                                    C:\Windows\system32\drivers\down\501036484.exe
                                    C:\Windows\system32\drivers\down\501037046.exe
                                    C:\Windows\system32\drivers\down\501037687.exe
                                    C:\Windows\system32\drivers\down\501040453.exe
                                    C:\Windows\system32\drivers\down\501045234.exe
                                    C:\Windows\system32\drivers\down\501078609.exe
                                    C:\Windows\system32\drivers\down\501083640.exe
                                    C:\Windows\system32\drivers\down\501088312.exe
                                    C:\Windows\system32\drivers\down\502687.exe
                                    C:\Windows\system32\drivers\down\504343.exe
                                    C:\Windows\system32\drivers\down\507125.exe
                                    C:\Windows\system32\drivers\down\510593.exe
                                    C:\Windows\system32\drivers\down\515515609.exe
                                    C:\Windows\system32\drivers\down\515517046.exe
                                    C:\Windows\system32\drivers\down\515524250.exe
                                    C:\Windows\system32\drivers\down\515527312.exe
                                    C:\Windows\system32\drivers\down\515541828.exe
                                    C:\Windows\system32\drivers\down\515544453.exe
                                    C:\Windows\system32\drivers\down\515544484.exe
                                    C:\Windows\system32\drivers\down\515552515.exe
                                    C:\Windows\system32\drivers\down\515554968.exe
                                    C:\Windows\system32\drivers\down\515558015.exe
                                    C:\Windows\system32\drivers\down\515558984.exe
                                    C:\Windows\system32\drivers\down\515561500.exe
                                    C:\Windows\system32\drivers\down\515569515.exe
                                    C:\Windows\system32\drivers\down\515578953.exe
                                    C:\Windows\system32\drivers\down\515582812.exe
                                    C:\Windows\system32\drivers\down\515584078.exe
                                    C:\Windows\system32\drivers\down\515584281.exe
                                    C:\Windows\system32\drivers\down\515584437.exe
                                    C:\Windows\system32\drivers\down\515586000.exe
                                    C:\Windows\system32\drivers\down\515590515.exe
                                    C:\Windows\system32\drivers\down\515617359.exe
                                    C:\Windows\system32\drivers\down\515625609.exe
                                    C:\Windows\system32\drivers\down\515630234.exe
                                    C:\Windows\system32\drivers\down\515630828.exe
                                    C:\Windows\system32\drivers\down\515843.exe
                                    C:\Windows\system32\drivers\down\52092859.exe
                                    C:\Windows\system32\drivers\down\52094062.exe
                                    C:\Windows\system32\drivers\down\52106531.exe
                                    C:\Windows\system32\drivers\down\52112062.exe
                                    C:\Windows\system32\drivers\down\52119078.exe
                                    C:\Windows\system32\drivers\down\52127156.exe
                                    C:\Windows\system32\drivers\down\52129343.exe
                                    C:\Windows\system32\drivers\down\52131453.exe
                                    C:\Windows\system32\drivers\down\52137343.exe
                                    C:\Windows\system32\drivers\down\52141718.exe
                                    C:\Windows\system32\drivers\down\52143890.exe
                                    C:\Windows\system32\drivers\down\52147000.exe
                                    C:\Windows\system32\drivers\down\52151046.exe
                                    C:\Windows\system32\drivers\down\52156828.exe
                                    C:\Windows\system32\drivers\down\52158484.exe
                                    C:\Windows\system32\drivers\down\52160265.exe
                                    C:\Windows\system32\drivers\down\52164859.exe
                                    C:\Windows\system32\drivers\down\52166671.exe
                                    C:\Windows\system32\drivers\down\52167671.exe
                                    C:\Windows\system32\drivers\down\52169375.exe
                                    C:\Windows\system32\drivers\down\52171156.exe
                                    C:\Windows\system32\drivers\down\52177125.exe
                                    C:\Windows\system32\drivers\down\52213343.exe
                                    C:\Windows\system32\drivers\down\52220125.exe
                                    C:\Windows\system32\drivers\down\522859.exe
                                    C:\Windows\system32\drivers\down\525265.exe
                                    C:\Windows\system32\drivers\down\528093.exe
                                    C:\Windows\system32\drivers\down\528187.exe
                                    C:\Windows\system32\drivers\down\530133531.exe
                                    C:\Windows\system32\drivers\down\530172953.exe
                                    C:\Windows\system32\drivers\down\530188265.exe
                                    C:\Windows\system32\drivers\down\530230046.exe
                                    C:\Windows\system32\drivers\down\530240187.exe
                                    C:\Windows\system32\drivers\down\530251078.exe
                                    C:\Windows\system32\drivers\down\530269781.exe
                                    C:\Windows\system32\drivers\down\530287875.exe
                                    C:\Windows\system32\drivers\down\530296421.exe
                                    C:\Windows\system32\drivers\down\530305078.exe
                                    C:\Windows\system32\drivers\down\530317046.exe
                                    C:\Windows\system32\drivers\down\530334437.exe
                                    C:\Windows\system32\drivers\down\530351078.exe
                                    C:\Windows\system32\drivers\down\530363875.exe
                                    C:\Windows\system32\drivers\down\530365406.exe
                                    C:\Windows\system32\drivers\down\530372031.exe
                                    C:\Windows\system32\drivers\down\530375062.exe
                                    C:\Windows\system32\drivers\down\530386078.exe
                                    C:\Windows\system32\drivers\down\530400390.exe
                                    C:\Windows\system32\drivers\down\530459718.exe
                                    C:\Windows\system32\drivers\down\530471390.exe
                                    C:\Windows\system32\drivers\down\530486421.exe
                                    C:\Windows\system32\drivers\down\530495812.exe
                                    C:\Windows\system32\drivers\down\532109.exe
                                    C:\Windows\system32\drivers\down\544975843.exe
                                    C:\Windows\system32\drivers\down\544982015.exe
                                    C:\Windows\system32\drivers\down\545090312.exe
                                    C:\Windows\system32\drivers\down\545104953.exe
                                    C:\Windows\system32\drivers\down\545156812.exe
                                    C:\Windows\system32\drivers\down\545167609.exe
                                    C:\Windows\system32\drivers\down\545167750.exe
                                    C:\Windows\system32\drivers\down\545184312.exe
                                    C:\Windows\system32\drivers\down\545202562.exe
                                    C:\Windows\system32\drivers\down\545212703.exe
                                    C:\Windows\system32\drivers\down\545219343.exe
                                    C:\Windows\system32\drivers\down\545236546.exe
                                    C:\Windows\system32\drivers\down\545255828.exe
                                    C:\Windows\system32\drivers\down\545270734.exe
                                    C:\Windows\system32\drivers\down\545283296.exe
                                    C:\Windows\system32\drivers\down\545284562.exe
                                    C:\Windows\system32\drivers\down\545289937.exe
                                    C:\Windows\system32\drivers\down\545295515.exe
                                    C:\Windows\system32\drivers\down\545325343.exe
                                    C:\Windows\system32\drivers\down\545329500.exe
                                    C:\Windows\system32\drivers\down\545384515.exe
                                    C:\Windows\system32\drivers\down\545396875.exe
                                    C:\Windows\system32\drivers\down\545407125.exe
                                    C:\Windows\system32\drivers\down\545418890.exe
                                    C:\Windows\system32\drivers\down\552875.exe
                                    C:\Windows\system32\drivers\down\557531.exe
                                    C:\Windows\system32\drivers\down\559851281.exe
                                    C:\Windows\system32\drivers\down\559851562.exe
                                    C:\Windows\system32\drivers\down\559869265.exe
                                    C:\Windows\system32\drivers\down\559872250.exe
                                    C:\Windows\system32\drivers\down\559887203.exe
                                    C:\Windows\system32\drivers\down\559887234.exe
                                    C:\Windows\system32\drivers\down\559890031.exe
                                    C:\Windows\system32\drivers\down\559892328.exe
                                    C:\Windows\system32\drivers\down\559894406.exe
                                    C:\Windows\system32\drivers\down\559898109.exe
                                    C:\Windows\system32\drivers\down\559900937.exe
                                    C:\Windows\system32\drivers\down\559904546.exe
                                    C:\Windows\system32\drivers\down\559906046.exe
                                    C:\Windows\system32\drivers\down\559909140.exe
                                    C:\Windows\system32\drivers\down\559909359.exe
                                    C:\Windows\system32\drivers\down\559909812.exe
                                    C:\Windows\system32\drivers\down\559910187.exe
                                    C:\Windows\system32\drivers\down\559911500.exe
                                    C:\Windows\system32\drivers\down\559916296.exe
                                    C:\Windows\system32\drivers\down\559942890.exe
                                    C:\Windows\system32\drivers\down\559944843.exe
                                    C:\Windows\system32\drivers\down\559949093.exe
                                    C:\Windows\system32\drivers\down\568031.exe
                                    C:\Windows\system32\drivers\down\573500.exe
                                    C:\Windows\system32\drivers\down\577578.exe
                                    C:\Windows\system32\drivers\down\583468.exe
                                    C:\Windows\system32\drivers\down\586609.exe
                                    C:\Windows\system32\drivers\down\58745906.exe
                                    C:\Windows\system32\drivers\down\58750078.exe
                                    C:\Windows\system32\drivers\down\58753515.exe
                                    C:\Windows\system32\drivers\down\58770906.exe
                                    C:\Windows\system32\drivers\down\58770953.exe
                                    C:\Windows\system32\drivers\down\58774671.exe
                                    C:\Windows\system32\drivers\down\58776593.exe
                                    C:\Windows\system32\drivers\down\58779046.exe
                                    C:\Windows\system32\drivers\down\58780203.exe
                                    C:\Windows\system32\drivers\down\58782187.exe
                                    C:\Windows\system32\drivers\down\58788171.exe
                                    C:\Windows\system32\drivers\down\58875093.exe
                                    C:\Windows\system32\drivers\down\58879171.exe
                                    C:\Windows\system32\drivers\down\58905468.exe
                                    C:\Windows\system32\drivers\down\58907687.exe
                                    C:\Windows\system32\drivers\down\59003765.exe
                                    C:\Windows\system32\drivers\down\59004031.exe
                                    C:\Windows\system32\drivers\down\59013890.exe
                                    C:\Windows\system32\drivers\down\59018781.exe
                                    C:\Windows\system32\drivers\down\59038218.exe
                                    C:\Windows\system32\drivers\down\59038250.exe
                                    C:\Windows\system32\drivers\down\59045156.exe
                                    C:\Windows\system32\drivers\down\59047156.exe
                                    C:\Windows\system32\drivers\down\59048453.exe
                                    C:\Windows\system32\drivers\down\59049203.exe
                                    C:\Windows\system32\drivers\down\59053515.exe
                                    C:\Windows\system32\drivers\down\59060421.exe
                                    C:\Windows\system32\drivers\down\590734.exe
                                    C:\Windows\system32\drivers\down\59129515.exe
                                    C:\Windows\system32\drivers\down\59151531.exe
                                    C:\Windows\system32\drivers\down\59156640.exe
                                    C:\Windows\system32\drivers\down\59167281.exe
                                    C:\Windows\system32\drivers\down\59170796.exe
                                    C:\Windows\system32\drivers\down\59180546.exe
                                    C:\Windows\system32\drivers\down\59180578.exe
                                    C:\Windows\system32\drivers\down\59182375.exe
                                    C:\Windows\system32\drivers\down\59184203.exe
                                    C:\Windows\system32\drivers\down\59185921.exe
                                    C:\Windows\system32\drivers\down\59187296.exe
                                    C:\Windows\system32\drivers\down\59187656.exe
                                    C:\Windows\system32\drivers\down\59189015.exe
                                    C:\Windows\system32\drivers\down\59190781.exe
                                    C:\Windows\system32\drivers\down\59191593.exe
                                    C:\Windows\system32\drivers\down\59196000.exe
                                    C:\Windows\system32\drivers\down\59197812.exe
                                    C:\Windows\system32\drivers\down\59202203.exe
                                    C:\Windows\system32\drivers\down\59205890.exe
                                    C:\Windows\system32\drivers\down\59219984.exe
                                    C:\Windows\system32\drivers\down\59220078.exe
                                    C:\Windows\system32\drivers\down\59230859.exe
                                    C:\Windows\system32\drivers\down\59233187.exe
                                    C:\Windows\system32\drivers\down\59235203.exe
                                    C:\Windows\system32\drivers\down\59236312.exe
                                    C:\Windows\system32\drivers\down\59240078.exe
                                    C:\Windows\system32\drivers\down\59247906.exe
                                    C:\Windows\system32\drivers\down\59284875.exe
                                    C:\Windows\system32\drivers\down\59286875.exe
                                    C:\Windows\system32\drivers\down\59313687.exe
                                    C:\Windows\system32\drivers\down\59317687.exe
                                    C:\Windows\system32\drivers\down\59337078.exe
                                    C:\Windows\system32\drivers\down\59338953.exe
                                    C:\Windows\system32\drivers\down\59369343.exe
                                    C:\Windows\system32\drivers\down\59371875.exe
                                    C:\Windows\system32\drivers\down\59555390.exe
                                    C:\Windows\system32\drivers\down\59556234.exe
                                    C:\Windows\system32\drivers\down\59780250.exe
                                    C:\Windows\system32\drivers\down\59788359.exe
                                    C:\Windows\system32\drivers\down\59815953.exe
                                    C:\Windows\system32\drivers\down\59825781.exe
                                    C:\Windows\system32\drivers\down\59826140.exe
                                    C:\Windows\system32\drivers\down\59837734.exe
                                    C:\Windows\system32\drivers\down\59842453.exe
                                    C:\Windows\system32\drivers\down\59847250.exe
                                    C:\Windows\system32\drivers\down\59849421.exe
                                    C:\Windows\system32\drivers\down\59856203.exe
                                    C:\Windows\system32\drivers\down\59863328.exe
                                    C:\Windows\system32\drivers\down\59874515.exe
                                    C:\Windows\system32\drivers\down\59879812.exe
                                    C:\Windows\system32\drivers\down\59880468.exe
                                    C:\Windows\system32\drivers\down\59882015.exe
                                    C:\Windows\system32\drivers\down\59883484.exe
                                    C:\Windows\system32\drivers\down\59889562.exe
                                    C:\Windows\system32\drivers\down\59894921.exe
                                    C:\Windows\system32\drivers\down\59933562.exe
                                    C:\Windows\system32\drivers\down\59941875.exe
                                    C:\Windows\system32\drivers\down\59947140.exe
                                    C:\Windows\system32\drivers\down\605968.exe
                                    C:\Windows\system32\drivers\down\606859.exe
                                    C:\Windows\system32\drivers\down\616937.exe
                                    C:\Windows\system32\drivers\down\619234.exe
                                    C:\Windows\system32\drivers\down\627468.exe
                                    C:\Windows\system32\drivers\down\638296.exe
                                    C:\Windows\system32\drivers\down\639656.exe
                                    C:\Windows\system32\drivers\down\644375.exe
                                    C:\Windows\system32\drivers\down\646281.exe
                                    C:\Windows\system32\drivers\down\651390.exe
                                    C:\Windows\system32\drivers\down\654828.exe
                                    C:\Windows\system32\drivers\down\656640.exe
                                    C:\Windows\system32\drivers\down\659140.exe
                                    C:\Windows\system32\drivers\down\663000.exe
                                    C:\Windows\system32\drivers\down\667515.exe
                                    C:\Windows\system32\drivers\down\669500.exe
                                    C:\Windows\system32\drivers\down\675843.exe
                                    C:\Windows\system32\drivers\down\675921.exe
                                    C:\Windows\system32\drivers\down\680734.exe
                                    C:\Windows\system32\drivers\down\683812.exe
                                    C:\Windows\system32\drivers\down\684765.exe
                                    C:\Windows\system32\drivers\down\688359.exe
                                    C:\Windows\system32\drivers\down\689984.exe
                                    C:\Windows\system32\drivers\down\692625.exe
                                    C:\Windows\system32\drivers\down\709296.exe
                                    C:\Windows\system32\drivers\down\713468.exe
                                    C:\Windows\system32\drivers\down\717421.exe
                                    C:\Windows\system32\drivers\down\727093.exe
                                    C:\Windows\system32\drivers\down\73327531.exe
                                    C:\Windows\system32\drivers\down\73331421.exe
                                    C:\Windows\system32\drivers\down\73357468.exe
                                    C:\Windows\system32\drivers\down\73357484.exe
                                    C:\Windows\system32\drivers\down\73381312.exe
                                    C:\Windows\system32\drivers\down\73383421.exe
                                    C:\Windows\system32\drivers\down\73385812.exe
                                    C:\Windows\system32\drivers\down\73387234.exe
                                    C:\Windows\system32\drivers\down\73414203.exe
                                    C:\Windows\system32\drivers\down\73501656.exe
                                    C:\Windows\system32\drivers\down\73506390.exe
                                    C:\Windows\system32\drivers\down\73533640.exe
                                    C:\Windows\system32\drivers\down\73536359.exe
                                    C:\Windows\system32\drivers\down\73620078.exe
                                    C:\Windows\system32\drivers\down\73620906.exe
                                    C:\Windows\system32\drivers\down\73637187.exe
                                    C:\Windows\system32\drivers\down\73642687.exe
                                    C:\Windows\system32\drivers\down\73662265.exe
                                    C:\Windows\system32\drivers\down\73665015.exe
                                    C:\Windows\system32\drivers\down\73672625.exe
                                    C:\Windows\system32\drivers\down\73674609.exe
                                    C:\Windows\system32\drivers\down\73679859.exe
                                    C:\Windows\system32\drivers\down\73683515.exe
                                    C:\Windows\system32\drivers\down\73685406.exe
                                    C:\Windows\system32\drivers\down\73693031.exe
                                    C:\Windows\system32\drivers\down\73734312.exe
                                    C:\Windows\system32\drivers\down\73749937.exe
                                    C:\Windows\system32\drivers\down\73755375.exe
                                    C:\Windows\system32\drivers\down\73758968.exe
                                    C:\Windows\system32\drivers\down\73769937.exe
                                    C:\Windows\system32\drivers\down\73769968.exe
                                    C:\Windows\system32\drivers\down\73776687.exe
                                    C:\Windows\system32\drivers\down\73778765.exe
                                    C:\Windows\system32\drivers\down\73780843.exe
                                    C:\Windows\system32\drivers\down\73781359.exe
                                    C:\Windows\system32\drivers\down\73781968.exe
                                    C:\Windows\system32\drivers\down\73784984.exe
                                    C:\Windows\system32\drivers\down\73787953.exe
                                    C:\Windows\system32\drivers\down\73788953.exe
                                    C:\Windows\system32\drivers\down\73793859.exe
                                    C:\Windows\system32\drivers\down\73813843.exe
                                    C:\Windows\system32\drivers\down\73816265.exe
                                    C:\Windows\system32\drivers\down\73819937.exe
                                    C:\Windows\system32\drivers\down\73823265.exe
                                    C:\Windows\system32\drivers\down\73823718.exe
                                    C:\Windows\system32\drivers\down\73837406.exe
                                    C:\Windows\system32\drivers\down\73861453.exe
                                    C:\Windows\system32\drivers\down\73863328.exe
                                    C:\Windows\system32\drivers\down\73870671.exe
                                    C:\Windows\system32\drivers\down\73871593.exe
                                    C:\Windows\system32\drivers\down\73874203.exe
                                    C:\Windows\system32\drivers\down\73880921.exe
                                    C:\Windows\system32\drivers\down\73882468.exe
                                    C:\Windows\system32\drivers\down\73882531.exe
                                    C:\Windows\system32\drivers\down\73908718.exe
                                    C:\Windows\system32\drivers\down\73910890.exe
                                    C:\Windows\system32\drivers\down\73986390.exe
                                    C:\Windows\system32\drivers\down\73990281.exe
                                    C:\Windows\system32\drivers\down\74021640.exe
                                    C:\Windows\system32\drivers\down\74025812.exe
                                    C:\Windows\system32\drivers\down\74455953.exe
                                    C:\Windows\system32\drivers\down\74456765.exe
                                    C:\Windows\system32\drivers\down\74784781.exe
                                    C:\Windows\system32\drivers\down\74794546.exe
                                    C:\Windows\system32\drivers\down\74848406.exe
                                    C:\Windows\system32\drivers\down\74861421.exe
                                    C:\Windows\system32\drivers\down\74861437.exe
                                    C:\Windows\system32\drivers\down\74867468.exe
                                    C:\Windows\system32\drivers\down\74876531.exe
                                    C:\Windows\system32\drivers\down\74906890.exe
                                    C:\Windows\system32\drivers\down\74908000.exe
                                    C:\Windows\system32\drivers\down\74918359.exe
                                    C:\Windows\system32\drivers\down\74933125.exe
                                    C:\Windows\system32\drivers\down\74943187.exe
                                    C:\Windows\system32\drivers\down\74961718.exe
                                    C:\Windows\system32\drivers\down\74962343.exe
                                    C:\Windows\system32\drivers\down\74967546.exe
                                    C:\Windows\system32\drivers\down\74967921.exe
                                    C:\Windows\system32\drivers\down\74975109.exe
                                    C:\Windows\system32\drivers\down\74989437.exe
                                    C:\Windows\system32\drivers\down\75036609.exe
                                    C:\Windows\system32\drivers\down\75044843.exe
                                    C:\Windows\system32\drivers\down\75055343.exe
                                    C:\Windows\system32\drivers\down\753375.exe
                                    C:\Windows\system32\drivers\down\756390.exe
                                    C:\Windows\system32\drivers\down\798843.exe
                                    C:\Windows\system32\drivers\down\803093.exe
                                    C:\Windows\system32\drivers\down\803843.exe
                                    C:\Windows\system32\drivers\down\812593.exe
                                    C:\Windows\system32\drivers\down\835593.exe
                                    C:\Windows\system32\drivers\down\839609.exe
                                    C:\Windows\system32\drivers\down\843968.exe
                                    C:\Windows\system32\drivers\down\857437.exe
                                    C:\Windows\system32\drivers\down\87952531.exe
                                    C:\Windows\system32\drivers\down\87969500.exe
                                    C:\Windows\system32\drivers\down\87973437.exe
                                    C:\Windows\system32\drivers\down\87985406.exe
                                    C:\Windows\system32\drivers\down\87988937.exe
                                    C:\Windows\system32\drivers\down\87992828.exe
                                    C:\Windows\system32\drivers\down\87994812.exe
                                    C:\Windows\system32\drivers\down\87996875.exe
                                    C:\Windows\system32\drivers\down\88001187.exe
                                    C:\Windows\system32\drivers\down\88003031.exe
                                    C:\Windows\system32\drivers\down\88008421.exe
                                    C:\Windows\system32\drivers\down\88103218.exe
                                    C:\Windows\system32\drivers\down\88112218.exe
                                    C:\Windows\system32\drivers\down\88140734.exe
                                    C:\Windows\system32\drivers\down\88150859.exe
                                    C:\Windows\system32\drivers\down\88247171.exe
                                    C:\Windows\system32\drivers\down\88264484.exe
                                    C:\Windows\system32\drivers\down\88282218.exe
                                    C:\Windows\system32\drivers\down\88299093.exe
                                    C:\Windows\system32\drivers\down\88299171.exe
                                    C:\Windows\system32\drivers\down\88302000.exe
                                    C:\Windows\system32\drivers\down\88303328.exe
                                    C:\Windows\system32\drivers\down\88304453.exe
                                    C:\Windows\system32\drivers\down\88305375.exe
                                    C:\Windows\system32\drivers\down\88307484.exe
                                    C:\Windows\system32\drivers\down\88315828.exe
                                    C:\Windows\system32\drivers\down\88345328.exe
                                    C:\Windows\system32\drivers\down\88353218.exe
                                    C:\Windows\system32\drivers\down\88360828.exe
                                    C:\Windows\system32\drivers\down\88372000.exe
                                    C:\Windows\system32\drivers\down\88375796.exe
                                    C:\Windows\system32\drivers\down\88381890.exe
                                    C:\Windows\system32\drivers\down\88384671.exe
                                    C:\Windows\system32\drivers\down\88386562.exe
                                    C:\Windows\system32\drivers\down\88390953.exe
                                    C:\Windows\system32\drivers\down\88393343.exe
                                    C:\Windows\system32\drivers\down\88404312.exe
                                    C:\Windows\system32\drivers\down\88404515.exe
                                    C:\Windows\system32\drivers\down\88408656.exe
                                    C:\Windows\system32\drivers\down\88436046.exe
                                    C:\Windows\system32\drivers\down\88440859.exe
                                    C:\Windows\system32\drivers\down\88445437.exe
                                    C:\Windows\system32\drivers\down\88519937.exe
                                    C:\Windows\system32\drivers\down\88524562.exe
                                    C:\Windows\system32\drivers\down\88550953.exe
                                    C:\Windows\system32\drivers\down\88553578.exe
                                    C:\Windows\system32\drivers\down\89502093.exe
                                    C:\Windows\system32\drivers\down\89503578.exe
                                    C:\Windows\system32\drivers\down\89509156.exe
                                    C:\Windows\system32\drivers\down\89517859.exe
                                    C:\Windows\system32\drivers\down\89530531.exe
                                    C:\Windows\system32\drivers\down\89532953.exe
                                    C:\Windows\system32\drivers\down\89535109.exe
                                    C:\Windows\system32\drivers\down\89546140.exe
                                    C:\Windows\system32\drivers\down\89556593.exe
                                    C:\Windows\system32\drivers\down\89579265.exe
                                    C:\Windows\system32\drivers\down\89585781.exe
                                    C:\Windows\system32\drivers\down\89590453.exe
                                    C:\Windows\system32\drivers\down\89596312.exe
                                    C:\Windows\system32\drivers\down\89602765.exe
                                    C:\Windows\system32\drivers\down\89605046.exe
                                    C:\Windows\system32\drivers\down\89606375.exe
                                    C:\Windows\system32\drivers\down\89607234.exe
                                    C:\Windows\system32\drivers\down\89611218.exe
                                    C:\Windows\system32\drivers\down\89612671.exe
                                    C:\Windows\system32\drivers\down\89620250.exe
                                    C:\Windows\system32\drivers\down\89649609.exe
                                    C:\Windows\system32\drivers\down\89654093.exe
                                    C:\Windows\system32\drivers\down\89662250.exe

                                    ----- BITS: Possible sites infectés -----

                                    hxxp://www.download.windowsupdate.com
                                    .
                                    ((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

                                    .
                                    -------\LEGACY_SROSA

                                    ((((((((((((((((((((((((((((( Fichiers créés 2008-01-11 to 2008-02-11 ))))))))))))))))))))))))))))))))))))
                                    .

                                    2008-02-11 17:49 . 2007-12-04 14:54 95,608 --a------ C:\Windows\System32\AvastSS.scr
                                    2008-02-11 17:49 . 2007-12-04 16:51 42,912 --a------ C:\Windows\System32\drivers\aswTdi.sys
                                    2008-02-11 17:49 . 2007-12-04 16:53 23,152 --a------ C:\Windows\System32\drivers\aswRdr.sys
                                    2008-02-11 16:04 . 2007-12-04 15:04 837,496 --a------ C:\Windows\System32\aswBoot.exe
                                    2008-02-11 16:04 . 2004-01-09 11:13 380,928 --a------ C:\Windows\System32\actskin4.ocx
                                    2008-02-11 16:04 . 2007-12-04 16:52 45,648 --a------ C:\Windows\System32\drivers\aswMonFlt.sys
                                    2008-02-11 15:00 . 2008-02-11 16:29 <REP> d-a------ C:\PROGRA~2\TEMP
                                    2008-02-11 14:59 . 2008-02-11 14:59 <REP> d-------- C:\Users\LESCHA~1\AppData\Roaming\Simply Super Software
                                    2008-02-11 14:59 . 2008-02-11 14:59 <REP> d-------- C:\Users\Les Chats\AppData\Roaming\Simply Super Software
                                    2008-02-11 14:59 . 2008-02-11 15:00 <REP> d-------- C:\Program Files\Trojan Remover
                                    2008-02-11 14:59 . 2008-02-11 14:59 <REP> d-------- C:\PROGRA~2\Simply Super Software
                                    2008-02-11 14:59 . 2006-05-25 14:52 162,304 --a------ C:\Windows\System32\ztvunrar36.dll
                                    2008-02-11 14:59 . 2003-02-02 19:06 153,088 --a------ C:\Windows\System32\UNRAR3.dll
                                    2008-02-11 14:59 . 2005-08-26 00:50 77,312 --a------ C:\Windows\System32\ztvunace26.dll
                                    2008-02-11 14:59 . 2002-03-06 00:00 75,264 --a------ C:\Windows\System32\unacev2.dll
                                    2008-02-11 14:59 . 2006-06-19 12:01 69,632 --a------ C:\Windows\System32\ztvcabinet.dll
                                    2008-02-11 14:44 . 2008-02-11 14:44 <REP> d-------- C:\Users\Les Chats\.housecall6.6
                                    2008-02-11 13:57 . 2008-02-11 13:57 <REP> d-------- C:\PROGRA~2\Messenger Plus!
                                    2008-02-11 09:13 . 2008-02-11 09:13 0 --ah----- C:\ntuser.dat.LOG2
                                    2008-02-11 09:13 . 2008-02-11 09:13 0 --ah----- C:\ntuser.dat.LOG1
                                    2008-02-11 09:13 . 2008-02-11 09:13 0 --a------ C:\ntuser.dat
                                    2008-02-08 15:25 . 2008-02-08 15:25 <REP> d-------- C:\Muestras
                                    2008-02-08 15:05 . 2008-02-08 18:57 <REP> d-------- C:\SDFix
                                    2008-02-08 14:38 . 2008-02-08 14:38 <REP> d-------- C:\Program Files\Lavasoft
                                    2008-02-08 14:38 . 2008-02-08 14:39 <REP> d-------- C:\PROGRA~2\Lavasoft
                                    2008-02-08 14:36 . 2008-02-08 14:36 <REP> d-------- C:\Program Files\Common Files\Wise Installation Wizard
                                    2008-02-08 14:16 . 2008-02-08 14:16 <REP> d-------- C:\Program Files\Messenger Plus! Live
                                    2008-02-08 14:14 . 2008-02-08 14:14 <REP> d-------- C:\Program Files\Trend Micro
                                    2008-02-08 14:11 . 2008-02-08 14:12 32,768 --a------ C:\Windows\System32\Ikeext.etl
                                    2008-02-07 14:21 . 2008-02-07 14:21 <REP> d-------- C:\Program Files\PROnetworks
                                    2008-02-07 13:53 . 2008-02-07 13:53 1,152,000 --a------ C:\Windows\System32\themecpl.dll
                                    2008-02-07 13:53 . 2008-02-07 13:53 233,888 --a------ C:\Windows\System32\DreamScene.dll
                                    2008-02-07 13:50 . 2008-02-07 13:50 229,888 --a------ C:\Windows\System32\msshsq.dll
                                    2008-02-07 13:49 . 2008-02-07 13:49 <REP> d-------- C:\Program Files\BitLocker
                                    2008-02-07 13:48 . 2008-02-07 13:48 1,171,848 --a------ C:\Windows\System32\SecureKeyBackupCPL.dll
                                    2008-02-07 13:48 . 2008-02-07 13:48 711 --a------ C:\Windows\System32\CPSOKBTasks.xml
                                    2008-02-07 13:36 . 2008-02-09 13:45 <REP> d-------- C:\Users\Les Chats\AdSigner
                                    2008-02-07 13:27 . 2008-02-07 13:27 <REP> d-------- C:\Windows\Sun
                                    2008-01-19 13:04 . 2008-02-11 09:13 69 --a------ C:\Windows\NeroDigital.ini
                                    2008-01-18 15:47 . 2008-01-18 15:47 169 --a------ C:\Windows\RtlRack.ini
                                    2008-01-18 15:41 . 2008-01-18 15:41 <REP> d-------- C:\Windows\System32\Lang
                                    2008-01-18 15:41 . 2008-01-18 15:41 146,650 --a------ C:\Windows\System32\BuzzingBee.wav
                                    2008-01-18 15:41 . 2008-01-18 15:41 125,690 --a------ C:\Windows\System32\LoopyMusic.wav
                                    2008-01-18 14:15 . 2008-02-08 14:06 54,156 --ah----- C:\Windows\QTFont.qfn
                                    2008-01-18 14:15 . 2008-01-18 14:15 1,409 --a------ C:\Windows\QTFont.for
                                    2008-01-18 13:29 . 2008-01-18 13:33 <REP> d-------- C:\Program Files\JPEG Compression
                                    2008-01-17 11:12 . 2008-01-17 11:12 <REP> d-------- C:\Users\LESCHA~1\AppData\Roaming\Simple Star
                                    2008-01-17 11:12 . 2008-01-17 11:12 <REP> d-------- C:\Users\Les Chats\AppData\Roaming\Simple Star
                                    2008-01-17 11:07 . 2008-01-17 11:12 <REP> d-------- C:\Users\LESCHA~1\AppData\Roaming\Nero
                                    2008-01-17 11:07 . 2008-01-17 11:12 <REP> d-------- C:\Users\Les Chats\AppData\Roaming\Nero
                                    2008-01-17 10:57 . 2008-01-17 10:57 <REP> d-------- C:\Program Files\Nero
                                    2008-01-17 10:57 . 2008-01-17 11:04 <REP> d-------- C:\Program Files\Common Files\Nero
                                    2008-01-17 10:57 . 2008-01-17 10:58 <REP> d-------- C:\PROGRA~2\Nero
                                    2008-01-17 03:03 . 2008-01-17 03:03 <REP> d-------- C:\Program Files\MSXML 4.0
                                    2008-01-16 22:47 . 2007-09-24 23:31 69,632 --a------ C:\Windows\System32\javacpl.cpl
                                    2008-01-16 22:46 . 2008-01-16 22:47 <REP> d-------- C:\Program Files\Java
                                    2008-01-16 22:45 . 2008-01-16 22:45 <REP> d-------- C:\Program Files\Common Files\Java
                                    2008-01-16 22:21 . 2008-01-16 22:21 <REP> d-------- C:\Users\Les Chats\Videos
                                    2008-01-16 22:21 . 2008-01-16 22:21 <REP> d-------- C:\Users\Les Chats\Pictures
                                    2008-01-16 17:45 . 2008-01-16 17:49 <REP> d-------- C:\Program Files\Common Files\Adobe
                                    2008-01-16 15:26 . 2008-01-16 15:30 <REP> d-------- C:\Program Files\Common Files\DistributeShield
                                    2008-01-16 14:24 . 2008-01-16 14:24 <REP> d-------- C:\PROGRA~2\Yahoo! Companion
                                    2008-01-16 13:07 . 2008-01-16 13:07 94,208 --a------ C:\Windows\System32\drivers\ezplay.sys
                                    2008-01-16 13:07 . 2008-01-16 15:22 94,208 --a------ C:\Users\LESCHA~1\AppData\Roaming\ezplay.sys
                                    2008-01-16 13:07 . 2008-01-16 15:22 94,208 --a------ C:\Users\Les Chats\AppData\Roaming\ezplay.sys
                                    2008-01-16 13:06 . 2008-01-16 15:22 <REP> d-------- C:\Users\LESCHA~1\AppData\Roaming\Vso
                                    2008-01-16 13:06 . 2008-01-16 15:22 <REP> d-------- C:\Users\Les Chats\AppData\Roaming\Vso
                                    2008-01-16 13:06 . 2008-01-16 13:06 47,360 --a------ C:\Windows\System32\drivers\pcouffin.sys
                                    2008-01-16 13:06 . 2008-01-16 15:21 47,360 --a------ C:\Users\LESCHA~1\AppData\Roaming\pcouffin.sys
                                    2008-01-16 13:06 . 2008-01-16 15:21 47,360 --a------ C:\Users\Les Chats\AppData\Roaming\pcouffin.sys
                                    2008-01-16 12:41 . 2008-01-16 12:43 <REP> d-------- C:\Users\LESCHA~1\AppData\Roaming\DeepBurner
                                    2008-01-16 12:41 . 2008-01-16 12:43 <REP> d-------- C:\Users\Les Chats\AppData\Roaming\DeepBurner
                                    2008-01-15 18:59 . 2008-01-15 18:59 <REP> d-------- C:\PROGRA~2\eMule
                                    2008-01-15 18:44 . 2008-01-15 18:44 <REP> d-------- C:\Users\LESCHA~1\AppData\Roaming\eMule
                                    2008-01-15 18:44 . 2008-01-15 18:44 <REP> d-------- C:\Users\Les Chats\AppData\Roaming\eMule
                                    2008-01-15 18:44 . 2008-01-15 18:44 <REP> d-------- C:\Program Files\eMule
                                    2008-01-14 17:38 . 2008-01-14 17:38 <REP> d-------- C:\Program Files\windirstat
                                    2008-01-14 16:45 . 2008-01-14 16:46 <REP> d-------- C:\Program Files\QuickTime
                                    2008-01-14 16:44 . 2008-01-14 16:44 <REP> d-------- C:\PROGRA~2\Apple Computer
                                    2008-01-14 16:42 . 2008-01-14 16:43 <REP> d-------- C:\Program Files\Apple Software Update
                                    2008-01-14 16:42 . 2008-01-14 16:42 <REP> d-------- C:\PROGRA~2\Apple
                                    2008-01-14 12:26 . 2008-01-14 14:02 1,905 --a------ C:\Windows\diagwrn.xml
                                    2008-01-14 12:26 . 2008-01-14 14:02 1,905 --a------ C:\Windows\diagerr.xml
                                    2008-01-14 11:45 . 2008-01-14 11:45 <REP> d-------- C:\Program Files\Common Files\MAPILab Ltd
                                    2008-01-14 11:45 . 2008-02-07 14:53 <REP> d-------- C:\Program Files\Canon
                                    2008-01-14 11:42 . 1998-01-23 12:20 305,664 --a------ C:\Windows\IsUn040c.exe
                                    2008-01-13 12:37 . 2008-01-13 12:37 1,244,672 --a------ C:\Windows\System32\mcmde.dll
                                    2008-01-12 03:37 . 2008-02-11 14:06 205,323,192 --a------ C:\Windows\MEMORY.DMP
                                    2008-01-12 03:24 . 2008-01-12 03:24 2,923,520 --a------ C:\Windows\explorer.exe
                                    2008-01-12 03:22 . 2008-01-12 03:22 376,320 --a------ C:\Windows\System32\winsrv.dll
                                    2008-01-12 03:22 . 2008-01-12 03:22 49,664 --a------ C:\Windows\System32\csrsrv.dll
                                    2008-01-12 03:21 . 2008-01-12 03:21 802,816 --a------ C:\Windows\System32\drivers\tcpip.sys
                                    2008-01-12 03:21 . 2008-01-12 03:21 216,760 --a------ C:\Windows\System32\drivers\netio.sys
                                    2008-01-12 03:21 . 2008-01-12 03:21 167,424 --a------ C:\Windows\System32\tcpipcfg.dll
                                    2008-01-12 03:21 . 2008-01-12 03:21 24,064 --a------ C:\Windows\System32\netcfg.exe
                                    2008-01-12 03:21 . 2008-01-12 03:21 22,016 --a------ C:\Windows\System32\netiougc.exe
                                    2008-01-12 03:20 . 2008-01-12 03:20 414,208 --a------ C:\Windows\System32\msscp.dll
                                    2008-01-12 03:17 . 2008-01-12 03:17 <REP> d-------- C:\Program Files\Microsoft CAPICOM 2.1.0.2
                                    2008-01-12 03:16 . 2008-01-12 03:16 4,247,552 --a------ C:\Windows\System32\GameUXLegacyGDFs.dll
                                    2008-01-12 03:16 . 2008-01-12 03:16 1,686,016 --a------ C:\Windows\System32\gameux.dll

                                    .
                                    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
                                    .
                                    2008-02-07 11:44 --------- d-----w C:\Program Files\Microsoft Games
                                    2008-01-13 10:47 174 --sha-w C:\Program Files\desktop.ini
                                    2008-01-13 10:34 88,576 ----a-w C:\Windows\System32\avifil32.dll
                                    2008-01-13 10:34 82,944 ----a-w C:\Windows\System32\mciavi32.dll
                                    2008-01-13 10:34 8,138,240 ----a-w C:\Windows\System32\ssBranded.scr
                                    2008-01-13 10:34 712,192 ----a-w C:\Windows\System32\WindowsCodecs.dll
                                    2008-01-13 10:34 69,632 ----a-w C:\Windows\System32\sendmail.dll
                                    2008-01-13 10:34 65,024 ----a-w C:\Windows\System32\avicap32.dll
                                    2008-01-13 10:34 61,440 ----a-w C:\Windows\System32\ntprint.exe
                                    2008-01-13 10:34 320,000 ----a-w C:\Windows\system32\drivers\csc.sys
                                    2008-01-13 10:34 31,232 ----a-w C:\Windows\System32\msvidc32.dll
                                    2008-01-13 10:34 269,824 ----a-w C:\Windows\System32\schannel.dll
                                    2008-01-13 10:34 220,160 ----a-w C:\Windows\System32\ntprint.dll
                                    2008-01-13 10:34 123,904 ----a-w C:\Windows\System32\msvfw32.dll
                                    2008-01-13 10:34 120,320 ----a-w C:\Windows\System32\dhcpcsvc6.dll
                                    2008-01-13 10:34 12,800 ----a-w C:\Windows\System32\msrle32.dll
                                    2008-01-13 10:34 105,984 ----a-w C:\Windows\System32\CscMig.dll
                                    2008-01-13 10:34 10,240 ----a-w C:\Windows\System32\dhcpcmonitor.dll
                                    2008-01-13 10:34 1,984,512 ----a-w C:\Windows\System32\authui.dll
                                    2008-01-12 01:37 --------- d-----w C:\Program Files\Windows Sidebar
                                    2008-01-12 01:37 --------- d-----w C:\Program Files\Windows Mail
                                    2008-01-12 01:37 --------- d-----w C:\Program Files\Windows Defender
                                    2008-01-12 01:37 --------- d-----w C:\Program Files\Windows Calendar
                                    2008-01-12 01:25 87,040 ----a-w C:\Windows\System32\msoert2.dll
                                    2008-01-12 01:25 8,192 ----a-w C:\Windows\System32\riched32.dll
                                    2008-01-12 01:25 77,824 ----a-w C:\Windows\System32\rascfg.dll
                                    2008-01-12 01:25 70,144 ----a-w C:\Windows\system32\drivers\pacer.sys
                                    2008-01-12 01:25 694,784 ----a-w C:\Windows\System32\localspl.dll
                                    2008-01-12 01:25 619,008 ----a-w C:\Windows\system32\drivers\dxgkrnl.sys
                                    2008-01-12 01:25 61,952 ----a-w C:\Windows\system32\drivers\wanarp.sys
                                    2008-01-12 01:25 52,736 ----a-w C:\Windows\System32\rasdiag.dll
                                    2008-01-12 01:25 48,640 ----a-w C:\Windows\system32\drivers\ndproxy.sys
                                    2008-01-12 01:25 39,424 ----a-w C:\Windows\System32\ACCTRES.dll
                                    2008-01-12 01:25 384,000 ----a-w C:\Windows\System32\netcfgx.dll
                                    2008-01-12 01:25 36,864 ----a-w C:\Windows\System32\cdd.dll
                                    2008-01-12 01:25 33,280 ----a-w C:\Windows\System32\traffic.dll
                                    2008-01-12 01:25 32,768 ----a-w C:\Windows\System32\rasmxs.dll
                                    2008-01-12 01:25 286,208 ----a-w C:\Windows\System32\ipnathlp.dll
                                    2008-01-12 01:25 22,016 ----a-w C:\Windows\System32\rasser.dll
                                    2008-01-12 01:25 205,824 ----a-w C:\Windows\System32\msoeacct.dll
                                    2008-01-12 01:25 20,480 ----a-w C:\Windows\system32\drivers\ndistapi.sys
                                    2008-01-12 01:25 15,360 ----a-w C:\Windows\System32\pacerprf.dll
                                    2008-01-12 01:25 134,656 ----a-w C:\Windows\System32\dps.dll
                                    2008-01-12 01:25 13,824 ----a-w C:\Windows\System32\wshqos.dll
                                    2008-01-12 01:25 13,824 ----a-w C:\Windows\System32\icsunattend.exe
                                    2008-01-12 01:24 704,000 ----a-w C:\Windows\System32\PhotoScreensaver.scr
                                    2008-01-12 01:24 67,584 ----a-w C:\Windows\System32\wlanhlp.dll
                                    2008-01-12 01:24 542,720 ----a-w C:\Windows\System32\sysmain.dll
                                    2008-01-12 01:24 502,784 ----a-w C:\Windows\System32\wlansvc.dll
                                    2008-01-12 01:24 47,104 ----a-w C:\Windows\System32\wlanapi.dll
                                    2008-01-12 01:24 297,984 ----a-w C:\Windows\System32\wlansec.dll
                                    2008-01-12 01:24 290,816 ----a-w C:\Windows\System32\wlanmsm.dll
                                    2008-01-12 01:24 258,232 ----a-w C:\Windows\system32\drivers\acpi.sys
                                    2008-01-12 01:24 24,064 ----a-w C:\Windows\System32\wtsapi32.dll
                                    2008-01-12 01:24 2,027,008 ----a-w C:\Windows\System32\win32k.sys
                                    2008-01-12 01:19 86,016 ----a-w C:\Windows\System32\icfupgd.dll
                                    2008-01-12 01:19 8,147,968 ----a-w C:\Windows\System32\wmploc.DLL
                                    2008-01-12 01:19 7,680 ----a-w C:\Windows\System32\spwmp.dll
                                    2008-01-12 01:19 63,488 ----a-w C:\Windows\system32\drivers\mpsdrv.sys
                                    2008-01-12 01:19 61,952 ----a-w C:\Windows\System32\cmifw.dll
                                    2008-01-12 01:19 4,096 ----a-w C:\Windows\System32\dxmasf.dll
                                    2008-01-12 01:19 396,800 ----a-w C:\Windows\System32\MPSSVC.dll
                                    2008-01-12 01:19 392,192 ----a-w C:\Windows\System32\FirewallAPI.dll
                                    2008-01-12 01:19 356,864 ----a-w C:\Windows\System32\MediaMetadataHandler.dll
                                    2008-01-12 01:19 23,040 ----a-w C:\Windows\system32\drivers\tunnel.sys
                                    2008-01-12 01:19 178,688 ----a-w C:\Windows\System32\iphlpsvc.dll
                                    2008-01-12 01:19 16,896 ----a-w C:\Windows\System32\wfapigp.dll
                                    2008-01-12 01:19 15,360 ----a-w C:\Windows\system32\drivers\TUNMP.SYS
                                    2008-01-12 01:16 537,600 ----a-w C:\Windows\AppPatch\AcLayers.dll
                                    2008-01-12 01:16 449,024 ----a-w C:\Windows\AppPatch\AcSpecfc.dll
                                    2008-01-12 01:16 2,143,744 ----a-w C:\Windows\AppPatch\AcGenral.dll
                                    2008-01-12 01:16 173,056 ----a-w C:\Windows\AppPatch\AcXtrnal.dll
                                    2008-01-12 01:11 57,856 ----a-w C:\Windows\System32\SLUINotify.dll
                                    2008-01-12 01:11 566,784 ----a-w C:\Windows\System32\SLCommDlg.dll
                                    2008-01-12 01:11 39,936 ----a-w C:\Windows\System32\slcinst.dll
                                    2008-01-12 01:11 351,232 ----a-w C:\Windows\System32\SLUI.exe
                                    2008-01-12 01:11 33,280 ----a-w C:\Windows\System32\slwmi.dll
                                    2008-01-12 01:11 268,288 ----a-w C:\Windows\System32\mcbuilder.exe
                                    2008-01-12 01:11 223,232 ----a-w C:\Windows\System32\SLC.dll
                                    2008-01-12 01:11 2,605,568 ----a-w C:\Windows\System32\SLsvc.exe
                                    2008-01-12 01:11 186,368 ----a-w C:\Windows\System32\SLLUA.exe
                                    2008-01-12 01:11 1,335,296 ----a-w C:\Windows\System32\msxml6.dll
                                    2008-01-12 01:08 824,832 ----a-w C:\Windows\System32\wininet.dll
                                    2008-01-12 01:08 56,320 ----a-w C:\Windows\System32\iesetup.dll
                                    2008-01-12 01:08 52,736 ----a-w C:\Windows\AppPatch\iebrshim.dll
                                    2008-01-12 01:08 26,624 ----a-w C:\Windows\System32\ieUnatt.exe
                                    2008-01-11 14:48 --------- d-----w C:\Program Files\MSBuild
                                    2008-01-10 18:58 --------- d-sh--w C:\Program Files\Fichiers communs
                                    2008-01-10 18:58 --------- d-sh--w C:\PROGRA~2\Modèles
                                    2008-01-10 18:58 --------- d-sh--w C:\PROGRA~2\Menu Démarrer
                                    2008-01-10 18:58 --------- d-sh--w C:\PROGRA~2\Favoris
                                    2008-01-10 18:58 --------- d-sh--w C:\PROGRA~2\Bureau
                                    2008-01-04 21:59 524,288 ----a-w C:\Windows\System32\DivXsm.exe
                                    2008-01-04 21:58 3,596,288 ----a-w C:\Windows\System32\qt-dx331.dll
                                    2008-01-04 21:58 200,704 ----a-w C:\Windows\System32\ssldivx.dll
                                    2008-01-04 21:58 1,044,480 ----a-w C:\Windows\System32\libdivx.dll
                                    2008-01-04 21:57 823,296 ----a-w C:\Windows\System32\divx_xx0c.dll
                                    2008-01-04 21:57 823,296 ----a-w C:\Windows\System32\divx_xx07.dll
                                    2008-01-04 21:57 81,920 ----a-w C:\Windows\System32\dpl100.dll
                                    2008-01-04 21:57 802,816 ----a-w C:\Windows\System32\divx_xx11.dll
                                    .

                                    ((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
                                    .
                                    .
                                    REGEDIT4
                                    *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

                                    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                                    "LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe" [ ]
                                    "Skype"="C:\Program Files\Skype\Phone\Skype.exe" [2007-12-07 15:08 21686568]
                                    "Yahoo! Pager"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" [2007-08-30 17:43 4670704]
                                    "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184]
                                    "swg"="C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe" [2008-01-11 11:55 171448]
                                    "BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe" [2007-08-03 12:51 202024]
                                    "CTSyncU.exe"="C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe" [2007-07-17 11:03 868352]
                                    "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2006-11-02 14:33 201728]

                                    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                                    "Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [2008-01-12 03:21 1006264]
                                    "SpeedTouch USB Diagnostics"="C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" [2004-01-26 11:38 866816]
                                    "ASUS Probe"="C:\Program Files\ASUS\Probe\AsusProb.exe" [2002-12-06 16:07 617984]
                                    "NVidia System Utility"="C:\Program Files\NVIDIA Corporation\NVIDIA System Utility\\NVSystemUtility.exe" [2004-05-21 14:05 520192]
                                    "SetPoint"="C:\Program Files\Logitech\SetPoint\KEM.EXE" [2004-10-28 09:29 581632]
                                    "LogitechCommunicationsManager"="C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-10-25 16:33 563984]
                                    "LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam\Quickcam.exe" [2007-10-25 16:37 2178832]
                                    "GrooveMonitor"="C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" [2007-08-24 07:00 33648]
                                    "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 06:24 286720]
                                    "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
                                    "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]
                                    "NeroFilterCheck"="C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 15:57 153136]
                                    "NBKeyScan"="C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" [2007-08-08 09:25 1828136]
                                    "CTCheck"="C:\Program Files\Creative\Creative ZEN\ZEN Media Explorer\CTCheck.exe" [2007-11-06 11:08 397312]
                                    "SoundMan"="SOUNDMAN.EXE" [2007-03-09 16:28 598016 C:\Windows\SOUNDMAN.EXE]
                                    "TrojanScanner"="C:\Program Files\Trojan Remover\Trjscan.exe" [2008-02-11 16:11 744528]
                                    "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 15:00 79224]

                                    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
                                    "msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184]

                                    C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Startup\
                                    Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe [2008-01-11 11:12:48 450560]
                                    Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\KEM.exe [2008-01-11 11:11:46 581632]

                                    R2 aswMonFlt;aswMonFlt;C:\Windows\system32\DRIVERS\aswMonFlt.sys [2007-12-04 16:52]
                                    R3 R300;R300;C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-02 09:36]

                                    .
                                    **************************************************************************

                                    catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                                    Rootkit scan 2008-02-11 19:46:47
                                    Windows 6.0.6000 NTFS

                                    Balayage processus cachés ...

                                    Balayage caché autostart entries ...

                                    Balayage des fichiers cachés ...

                                    Scan terminé avec succès
                                    Les fichiers cachés: 0

                                    **************************************************************************
                                    .
                                    ------------------------ Other Running Processes ------------------------
                                    .
                                    C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
                                    C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
                                    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                                    C:\Program Files\Alwil Software\Avast4\ashServ.exe
                                    C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
                                    C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
                                    C:\Program Files\Windows Live\Messenger\usnsvc.exe
                                    C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
                                    C:\Windows\system32\WUDFHost.exe
                                    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                                    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                                    C:\Windows\system32\conime.exe
                                    C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
                                    C:\Program Files\Alwil Software\Avast4\ashDisp.exe
                                    C:\Program Files\Windows Media Player\wmpnetwk.exe
                                    C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
                                    C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
                                    C:\Program Files\Skype\Plugin Manager\skypePM.exe
                                    C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
                                    .
                                    **************************************************************************
                                    .
                                    Temps d'accomplissement: 2008-02-11 19:52:48 - machine was rebooted
                                    ComboFix-quarantined-files.txt 2008-02-11 17:52:41
                                    .
                                    2008-02-07 12:35:11 --- E O F ---
                                    1. ComboFix 08-02.05.3 - Les Chats 2008-02-11 19:29:37.1 - NTFSx86
                                      Microsoft® Windows Vista™ Édition Intégrale 6.0.6000.0.1252.1.1036.18.218 [GMT 2:00]
                                      Endroit: C:\Users\Les Chats\Desktop\ComboFix.exe
                                      * Création d'un nouveau point de restauration
                                      .

                                      (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
                                      .

                                      C:\Windows\system32\koos.exe
                                      C:\Windows\system32\kprof
                                      C:\Windows\system32\poof
                                      C:\PROGRA~2\Microsoft\Network\Downloader\qmgr0.dat
                                      C:\PROGRA~2\Microsoft\Network\Downloader\qmgr1.dat
                                      C:\Users\Les Chats\AppData\Roaming\inst.exe
                                      C:\Users\LESCHA~1\AppData\Roaming\inst.exe
                                      C:\Windows\system32\drivers\down
                                      C:\Windows\system32\drivers\down\102581984.exe
                                      C:\Windows\system32\drivers\down\102599515.exe
                                      C:\Windows\system32\drivers\down\102603781.exe
                                      C:\Windows\system32\drivers\down\102616812.exe
                                      C:\Windows\system32\drivers\down\102616828.exe
                                      C:\Windows\system32\drivers\down\102627531.exe
                                      C:\Windows\system32\drivers\down\102630187.exe
                                      C:\Windows\system32\drivers\down\102632171.exe
                                      C:\Windows\system32\drivers\down\102632906.exe
                                      C:\Windows\system32\drivers\down\102636109.exe
                                      C:\Windows\system32\drivers\down\102642937.exe
                                      C:\Windows\system32\drivers\down\102731656.exe
                                      C:\Windows\system32\drivers\down\102736531.exe
                                      C:\Windows\system32\drivers\down\102763109.exe
                                      C:\Windows\system32\drivers\down\102766078.exe
                                      C:\Windows\system32\drivers\down\102861953.exe
                                      C:\Windows\system32\drivers\down\102862375.exe
                                      C:\Windows\system32\drivers\down\102885484.exe
                                      C:\Windows\system32\drivers\down\102889140.exe
                                      C:\Windows\system32\drivers\down\102905671.exe
                                      C:\Windows\system32\drivers\down\102905703.exe
                                      C:\Windows\system32\drivers\down\102912375.exe
                                      C:\Windows\system32\drivers\down\102914125.exe
                                      C:\Windows\system32\drivers\down\102915828.exe
                                      C:\Windows\system32\drivers\down\102916671.exe
                                      C:\Windows\system32\drivers\down\102918890.exe
                                      C:\Windows\system32\drivers\down\102926625.exe
                                      C:\Windows\system32\drivers\down\102991015.exe
                                      C:\Windows\system32\drivers\down\103008640.exe
                                      C:\Windows\system32\drivers\down\103013359.exe
                                      C:\Windows\system32\drivers\down\103013703.exe
                                      C:\Windows\system32\drivers\down\103016765.exe
                                      C:\Windows\system32\drivers\down\103016875.exe
                                      C:\Windows\system32\drivers\down\103030046.exe
                                      C:\Windows\system32\drivers\down\103030328.exe
                                      C:\Windows\system32\drivers\down\103035671.exe
                                      C:\Windows\system32\drivers\down\103038265.exe
                                      C:\Windows\system32\drivers\down\103043296.exe
                                      C:\Windows\system32\drivers\down\103043562.exe
                                      C:\Windows\system32\drivers\down\103044671.exe
                                      C:\Windows\system32\drivers\down\103045125.exe
                                      C:\Windows\system32\drivers\down\103047031.exe
                                      C:\Windows\system32\drivers\down\103050046.exe
                                      C:\Windows\system32\drivers\down\103058000.exe
                                      C:\Windows\system32\drivers\down\103146453.exe
                                      C:\Windows\system32\drivers\down\103147812.exe
                                      C:\Windows\system32\drivers\down\103177593.exe
                                      C:\Windows\system32\drivers\down\103180250.exe
                                      C:\Windows\system32\drivers\down\104084250.exe
                                      C:\Windows\system32\drivers\down\104084562.exe
                                      C:\Windows\system32\drivers\down\104100906.exe
                                      C:\Windows\system32\drivers\down\104104390.exe
                                      C:\Windows\system32\drivers\down\104118859.exe
                                      C:\Windows\system32\drivers\down\104124671.exe
                                      C:\Windows\system32\drivers\down\104124687.exe
                                      C:\Windows\system32\drivers\down\104134406.exe
                                      C:\Windows\system32\drivers\down\104151765.exe
                                      C:\Windows\system32\drivers\down\104153796.exe
                                      C:\Windows\system32\drivers\down\104154640.exe
                                      C:\Windows\system32\drivers\down\104157796.exe
                                      C:\Windows\system32\drivers\down\104162312.exe
                                      C:\Windows\system32\drivers\down\104164062.exe
                                      C:\Windows\system32\drivers\down\104166250.exe
                                      C:\Windows\system32\drivers\down\104166421.exe
                                      C:\Windows\system32\drivers\down\104167046.exe
                                      C:\Windows\system32\drivers\down\104167203.exe
                                      C:\Windows\system32\drivers\down\104169375.exe
                                      C:\Windows\system32\drivers\down\104173843.exe
                                      C:\Windows\system32\drivers\down\104200312.exe
                                      C:\Windows\system32\drivers\down\104203515.exe
                                      C:\Windows\system32\drivers\down\104208031.exe
                                      C:\Windows\system32\drivers\down\117178046.exe
                                      C:\Windows\system32\drivers\down\117179515.exe
                                      C:\Windows\system32\drivers\down\117215140.exe
                                      C:\Windows\system32\drivers\down\117228359.exe
                                      C:\Windows\system32\drivers\down\117244281.exe
                                      C:\Windows\system32\drivers\down\117244593.exe
                                      C:\Windows\system32\drivers\down\117254500.exe
                                      C:\Windows\system32\drivers\down\117258015.exe
                                      C:\Windows\system32\drivers\down\117262937.exe
                                      C:\Windows\system32\drivers\down\117264031.exe
                                      C:\Windows\system32\drivers\down\117266359.exe
                                      C:\Windows\system32\drivers\down\117274078.exe
                                      C:\Windows\system32\drivers\down\117361078.exe
                                      C:\Windows\system32\drivers\down\117368671.exe
                                      C:\Windows\system32\drivers\down\117394609.exe
                                      C:\Windows\system32\drivers\down\117396453.exe
                                      C:\Windows\system32\drivers\down\117477546.exe
                                      C:\Windows\system32\drivers\down\117478953.exe
                                      C:\Windows\system32\drivers\down\117499250.exe
                                      C:\Windows\system32\drivers\down\117506421.exe
                                      C:\Windows\system32\drivers\down\117538484.exe
                                      C:\Windows\system32\drivers\down\117542171.exe
                                      C:\Windows\system32\drivers\down\117550468.exe
                                      C:\Windows\system32\drivers\down\117555281.exe
                                      C:\Windows\system32\drivers\down\117557859.exe
                                      C:\Windows\system32\drivers\down\117575921.exe
                                      C:\Windows\system32\drivers\down\117578015.exe
                                      C:\Windows\system32\drivers\down\117590093.exe
                                      C:\Windows\system32\drivers\down\117601437.exe
                                      C:\Windows\system32\drivers\down\117617296.exe
                                      C:\Windows\system32\drivers\down\117622265.exe
                                      C:\Windows\system32\drivers\down\117625562.exe
                                      C:\Windows\system32\drivers\down\117641531.exe
                                      C:\Windows\system32\drivers\down\117641562.exe
                                      C:\Windows\system32\drivers\down\117650375.exe
                                      C:\Windows\system32\drivers\down\117651984.exe
                                      C:\Windows\system32\drivers\down\117653828.exe
                                      C:\Windows\system32\drivers\down\117655046.exe
                                      C:\Windows\system32\drivers\down\117657375.exe
                                      C:\Windows\system32\drivers\down\117663343.exe
                                      C:\Windows\system32\drivers\down\117677796.exe
                                      C:\Windows\system32\drivers\down\117690031.exe
                                      C:\Windows\system32\drivers\down\117718937.exe
                                      C:\Windows\system32\drivers\down\117749921.exe
                                      C:\Windows\system32\drivers\down\117750234.exe
                                      C:\Windows\system32\drivers\down\117751593.exe
                                      C:\Windows\system32\drivers\down\117757875.exe
                                      C:\Windows\system32\drivers\down\117778250.exe
                                      C:\Windows\system32\drivers\down\117781359.exe
                                      C:\Windows\system32\drivers\down\122228468.exe
                                      C:\Windows\system32\drivers\down\122228750.exe
                                      C:\Windows\system32\drivers\down\122243734.exe
                                      C:\Windows\system32\drivers\down\122247281.exe
                                      C:\Windows\system32\drivers\down\122259000.exe
                                      C:\Windows\system32\drivers\down\122261531.exe
                                      C:\Windows\system32\drivers\down\122261546.exe
                                      C:\Windows\system32\drivers\down\122264437.exe
                                      C:\Windows\system32\drivers\down\122273703.exe
                                      C:\Windows\system32\drivers\down\122275203.exe
                                      C:\Windows\system32\drivers\down\122276125.exe
                                      C:\Windows\system32\drivers\down\122280343.exe
                                      C:\Windows\system32\drivers\down\122284968.exe
                                      C:\Windows\system32\drivers\down\122286656.exe
                                      C:\Windows\system32\drivers\down\122289281.exe
                                      C:\Windows\system32\drivers\down\122289421.exe
                                      C:\Windows\system32\drivers\down\122289562.exe
                                      C:\Windows\system32\drivers\down\122289781.exe
                                      C:\Windows\system32\drivers\down\122291156.exe
                                      C:\Windows\system32\drivers\down\122295453.exe
                                      C:\Windows\system32\drivers\down\122321468.exe
                                      C:\Windows\system32\drivers\down\122323375.exe
                                      C:\Windows\system32\drivers\down\122327734.exe
                                      C:\Windows\system32\drivers\down\131809156.exe
                                      C:\Windows\system32\drivers\down\131816750.exe
                                      C:\Windows\system32\drivers\down\131822953.exe
                                      C:\Windows\system32\drivers\down\131836515.exe
                                      C:\Windows\system32\drivers\down\131840140.exe
                                      C:\Windows\system32\drivers\down\131843609.exe
                                      C:\Windows\system32\drivers\down\131845343.exe
                                      C:\Windows\system32\drivers\down\131847312.exe
                                      C:\Windows\system32\drivers\down\131851906.exe
                                      C:\Windows\system32\drivers\down\131855140.exe
                                      C:\Windows\system32\drivers\down\131892437.exe
                                      C:\Windows\system32\drivers\down\131979734.exe
                                      C:\Windows\system32\drivers\down\131987015.exe
                                      C:\Windows\system32\drivers\down\132047328.exe
                                      C:\Windows\system32\drivers\down\132171359.exe
                                      C:\Windows\system32\drivers\down\132179437.exe
                                      C:\Windows\system32\drivers\down\132183015.exe
                                      C:\Windows\system32\drivers\down\132202906.exe
                                      C:\Windows\system32\drivers\down\132204796.exe
                                      C:\Windows\system32\drivers\down\132208000.exe
                                      C:\Windows\system32\drivers\down\132209593.exe
                                      C:\Windows\system32\drivers\down\132210625.exe
                                      C:\Windows\system32\drivers\down\132212281.exe
                                      C:\Windows\system32\drivers\down\132216281.exe
                                      C:\Windows\system32\drivers\down\132217484.exe
                                      C:\Windows\system32\drivers\down\132218406.exe
                                      C:\Windows\system32\drivers\down\132219484.exe
                                      C:\Windows\system32\drivers\down\132222046.exe
                                      C:\Windows\system32\drivers\down\132225109.exe
                                      C:\Windows\system32\drivers\down\132257625.exe
                                      C:\Windows\system32\drivers\down\132261515.exe
                                      C:\Windows\system32\drivers\down\132270250.exe
                                      C:\Windows\system32\drivers\down\132272437.exe
                                      C:\Windows\system32\drivers\down\132274343.exe
                                      C:\Windows\system32\drivers\down\132279265.exe
                                      C:\Windows\system32\drivers\down\132281421.exe
                                      C:\Windows\system32\drivers\down\132288031.exe
                                      C:\Windows\system32\drivers\down\132312453.exe
                                      C:\Windows\system32\drivers\down\132317296.exe
                                      C:\Windows\system32\drivers\down\132346437.exe
                                      C:\Windows\system32\drivers\down\132349125.exe
                                      C:\Windows\system32\drivers\down\132353875.exe
                                      C:\Windows\system32\drivers\down\132376578.exe
                                      C:\Windows\system32\drivers\down\132381296.exe
                                      C:\Windows\system32\drivers\down\132407703.exe
                                      C:\Windows\system32\drivers\down\132410484.exe
                                      C:\Windows\system32\drivers\down\136752734.exe
                                      C:\Windows\system32\drivers\down\136754078.exe
                                      C:\Windows\system32\drivers\down\136768250.exe
                                      C:\Windows\system32\drivers\down\136774609.exe
                                      C:\Windows\system32\drivers\down\136790015.exe
                                      C:\Windows\system32\drivers\down\136793187.exe
                                      C:\Windows\system32\drivers\down\136795453.exe
                                      C:\Windows\system32\drivers\down\136805468.exe
                                      C:\Windows\system32\drivers\down\136807953.exe
                                      C:\Windows\system32\drivers\down\136810046.exe
                                      C:\Windows\system32\drivers\down\136813406.exe
                                      C:\Windows\system32\drivers\down\136815546.exe
                                      C:\Windows\system32\drivers\down\136820562.exe
                                      C:\Windows\system32\drivers\down\136823546.exe
                                      C:\Windows\system32\drivers\down\136826109.exe
                                      C:\Windows\system32\drivers\down\136826359.exe
                                      C:\Windows\system32\drivers\down\136826890.exe
                                      C:\Windows\system32\drivers\down\136830203.exe
                                      C:\Windows\system32\drivers\down\136832218.exe
                                      C:\Windows\system32\drivers\down\136840078.exe
                                      C:\Windows\system32\drivers\down\136866546.exe
                                      C:\Windows\system32\drivers\down\136873343.exe
                                      C:\Windows\system32\drivers\down\136880890.exe
                                      C:\Windows\system32\drivers\down\146484453.exe
                                      C:\Windows\system32\drivers\down\146487703.exe
                                      C:\Windows\system32\drivers\down\146499921.exe
                                      C:\Windows\system32\drivers\down\146499953.exe
                                      C:\Windows\system32\drivers\down\146505062.exe
                                      C:\Windows\system32\drivers\down\146507250.exe
                                      C:\Windows\system32\drivers\down\146509078.exe
                                      C:\Windows\system32\drivers\down\146510062.exe
                                      C:\Windows\system32\drivers\down\146512171.exe
                                      C:\Windows\system32\drivers\down\146520906.exe
                                      C:\Windows\system32\drivers\down\146608015.exe
                                      C:\Windows\system32\drivers\down\146611250.exe
                                      C:\Windows\system32\drivers\down\146637312.exe
                                      C:\Windows\system32\drivers\down\146639828.exe
                                      C:\Windows\system32\drivers\down\146788531.exe
                                      C:\Windows\system32\drivers\down\146788890.exe
                                      C:\Windows\system32\drivers\down\146805250.exe
                                      C:\Windows\system32\drivers\down\146808812.exe
                                      C:\Windows\system32\drivers\down\146823718.exe
                                      C:\Windows\system32\drivers\down\146823843.exe
                                      C:\Windows\system32\drivers\down\146827812.exe
                                      C:\Windows\system32\drivers\down\146829953.exe
                                      C:\Windows\system32\drivers\down\146834296.exe
                                      C:\Windows\system32\drivers\down\146835421.exe
                                      C:\Windows\system32\drivers\down\146836500.exe
                                      C:\Windows\system32\drivers\down\146838984.exe
                                      C:\Windows\system32\drivers\down\146844468.exe
                                      C:\Windows\system32\drivers\down\146847578.exe
                                      C:\Windows\system32\drivers\down\146851625.exe
                                      C:\Windows\system32\drivers\down\146856593.exe
                                      C:\Windows\system32\drivers\down\146890500.exe
                                      C:\Windows\system32\drivers\down\146890562.exe
                                      C:\Windows\system32\drivers\down\146894781.exe
                                      C:\Windows\system32\drivers\down\146896765.exe
                                      C:\Windows\system32\drivers\down\146899453.exe
                                      C:\Windows\system32\drivers\down\146900687.exe
                                      C:\Windows\system32\drivers\down\146903046.exe
                                      C:\Windows\system32\drivers\down\146913531.exe
                                      C:\Windows\system32\drivers\down\146931765.exe
                                      C:\Windows\system32\drivers\down\146935718.exe
                                      C:\Windows\system32\drivers\down\146962625.exe
                                      C:\Windows\system32\drivers\down\146965531.exe
                                      C:\Windows\system32\drivers\down\146969875.exe
                                      C:\Windows\system32\drivers\down\147000890.exe
                                      C:\Windows\system32\drivers\down\147002656.exe
                                      C:\Windows\system32\drivers\down\147029843.exe
                                      C:\Windows\system32\drivers\down\147032578.exe
                                      C:\Windows\system32\drivers\down\14787187.exe
                                      C:\Windows\system32\drivers\down\14788187.exe
                                      C:\Windows\system32\drivers\down\14808031.exe
                                      C:\Windows\system32\drivers\down\14811906.exe
                                      C:\Windows\system32\drivers\down\14825078.exe
                                      C:\Windows\system32\drivers\down\14830062.exe
                                      C:\Windows\system32\drivers\down\14830296.exe
                                      C:\Windows\system32\drivers\down\14830625.exe
                                      C:\Windows\system32\drivers\down\14835046.exe
                                      C:\Windows\system32\drivers\down\14835125.exe
                                      C:\Windows\system32\drivers\down\14838828.exe
                                      C:\Windows\system32\drivers\down\14841703.exe
                                      C:\Windows\system32\drivers\down\14846156.exe
                                      C:\Windows\system32\drivers\down\14847468.exe
                                      C:\Windows\system32\drivers\down\14848281.exe
                                      C:\Windows\system32\drivers\down\14849703.exe
                                      C:\Windows\system32\drivers\down\14850531.exe
                                      C:\Windows\system32\drivers\down\14856875.exe
                                      C:\Windows\system32\drivers\down\14862031.exe
                                      C:\Windows\system32\drivers\down\14866031.exe
                                      C:\Windows\system32\drivers\down\14869578.exe
                                      C:\Windows\system32\drivers\down\14869984.exe
                                      C:\Windows\system32\drivers\down\14870203.exe
                                      C:\Windows\system32\drivers\down\14871609.exe
                                      C:\Windows\system32\drivers\down\14876125.exe
                                      C:\Windows\system32\drivers\down\14883828.exe
                                      C:\Windows\system32\drivers\down\14883859.exe
                                      C:\Windows\system32\drivers\down\14893187.exe
                                      C:\Windows\system32\drivers\down\14894640.exe
                                      C:\Windows\system32\drivers\down\14896125.exe
                                      C:\Windows\system32\drivers\down\14897015.exe
                                      C:\Windows\system32\drivers\down\14898781.exe
                                      C:\Windows\system32\drivers\down\14905015.exe
                                      C:\Windows\system32\drivers\down\14910109.exe
                                      C:\Windows\system32\drivers\down\14914703.exe
                                      C:\Windows\system32\drivers\down\14959843.exe
                                      C:\Windows\system32\drivers\down\14960312.exe
                                      C:\Windows\system32\drivers\down\14994421.exe
                                      C:\Windows\system32\drivers\down\15000328.exe
                                      C:\Windows\system32\drivers\down\15003812.exe
                                      C:\Windows\system32\drivers\down\15015812.exe
                                      C:\Windows\system32\drivers\down\15019031.exe
                                      C:\Windows\system32\drivers\down\15033171.exe
                                      C:\Windows\system32\drivers\down\15033203.exe
                                      C:\Windows\system32\drivers\down\15039062.exe
                                      C:\Windows\system32\drivers\down\15040687.exe
                                      C:\Windows\system32\drivers\down\15041828.exe
                                      C:\Windows\system32\drivers\down\15042656.exe
                                      C:\Windows\system32\drivers\down\15044656.exe
                                      C:\Windows\system32\drivers\down\15046406.exe
                                      C:\Windows\system32\drivers\down\15048453.exe
                                      C:\Windows\system32\drivers\down\15053031.exe
                                      C:\Windows\system32\drivers\down\151303656.exe
                                      C:\Windows\system32\drivers\down\151304015.exe
                                      C:\Windows\system32\drivers\down\151319093.exe
                                      C:\Windows\system32\drivers\down\151322640.exe
                                      C:\Windows\system32\drivers\down\151334765.exe
                                      C:\Windows\system32\drivers\down\151337078.exe
                                      C:\Windows\system32\drivers\down\151337093.exe
                                      C:\Windows\system32\drivers\down\151341718.exe
                                      C:\Windows\system32\drivers\down\151343781.exe
                                      C:\Windows\system32\drivers\down\151345531.exe
                                      C:\Windows\system32\drivers\down\151346937.exe
                                      C:\Windows\system32\drivers\down\151355203.exe
                                      C:\Windows\system32\drivers\down\151358781.exe
                                      C:\Windows\system32\drivers\down\151360765.exe
                                      C:\Windows\system32\drivers\down\151365812.exe
                                      C:\Windows\system32\drivers\down\151365953.exe
                                      C:\Windows\system32\drivers\down\151366265.exe
                                      C:\Windows\system32\drivers\down\151366484.exe
                                      C:\Windows\system32\drivers\down\151367843.exe
                                      C:\Windows\system32\drivers\down\151371312.exe
                                      C:\Windows\system32\drivers\down\151396968.exe
                                      C:\Windows\system32\drivers\down\151398734.exe
                                      C:\Windows\system32\drivers\down\151403187.exe
                                      C:\Windows\system32\drivers\down\15142593.exe
                                      C:\Windows\system32\drivers\down\15146890.exe
                                      C:\Windows\system32\drivers\down\15204234.exe
                                      C:\Windows\system32\drivers\down\15210578.exe
                                      C:\Windows\system32\drivers\down\15214953.exe
                                      C:\Windows\system32\drivers\down\15264687.exe
                                      C:\Windows\system32\drivers\down\15270953.exe
                                      C:\Windows\system32\drivers\down\15275218.exe
                                      C:\Windows\system32\drivers\down\15283046.exe
                                      C:\Windows\system32\drivers\down\15292671.exe
                                      C:\Windows\system32\drivers\down\15297046.exe
                                      C:\Windows\system32\drivers\down\15302828.exe
                                      C:\Windows\system32\drivers\down\15304218.exe
                                      C:\Windows\system32\drivers\down\15310625.exe
                                      C:\Windows\system32\drivers\down\15312625.exe
                                      C:\Windows\system32\drivers\down\15314484.exe
                                      C:\Windows\system32\drivers\down\15314531.exe
                                      C:\Windows\system32\drivers\down\15314671.exe
                                      C:\Windows\system32\drivers\down\15315718.exe
                                      C:\Windows\system32\drivers\down\15318828.exe
                                      C:\Windows\system32\drivers\down\15323468.exe
                                      C:\Windows\system32\drivers\down\15325296.exe
                                      C:\Windows\system32\drivers\down\15328390.exe
                                      C:\Windows\system32\drivers\down\15329234.exe
                                      C:\Windows\system32\drivers\down\15333203.exe
                                      C:\Windows\system32\drivers\down\15333921.exe
                                      C:\Windows\system32\drivers\down\15343187.exe
                                      C:\Windows\system32\drivers\down\15420312.exe
                                      C:\Windows\system32\drivers\down\15421562.exe
                                      C:\Windows\system32\drivers\down\15431218.exe
                                      C:\Windows\system32\drivers\down\15436031.exe
                                      C:\Windows\system32\drivers\down\15448984.exe
                                      C:\Windows\system32\drivers\down\15451203.exe
                                      C:\Windows\system32\drivers\down\15468703.exe
                                      C:\Windows\system32\drivers\down\15488562.exe
                                      C:\Windows\system32\drivers\down\161064609.exe
                                      C:\Windows\system32\drivers\down\161089937.exe
                                      C:\Windows\system32\drivers\down\161093656.exe
                                      C:\Windows\system32\drivers\down\161105187.exe
                                      C:\Windows\system32\drivers\down\161109500.exe
                                      C:\Windows\system32\drivers\down\161111203.exe
                                      C:\Windows\system32\drivers\down\161113937.exe
                                      C:\Windows\system32\drivers\down\161114984.exe
                                      C:\Windows\system32\drivers\down\161116906.exe
                                      C:\Windows\system32\drivers\down\161124625.exe
                                      C:\Windows\system32\drivers\down\161212125.exe
                                      C:\Windows\system32\drivers\down\161216796.exe
                                      C:\Windows\system32\drivers\down\161244390.exe
                                      C:\Windows\system32\drivers\down\161249468.exe
                                      C:\Windows\system32\drivers\down\161391250.exe
                                      C:\Windows\system32\drivers\down\161392093.exe
                                      C:\Windows\system32\drivers\down\161399000.exe
                                      C:\Windows\system32\drivers\down\161406234.exe
                                      C:\Windows\system32\drivers\down\161419312.exe
                                      C:\Windows\system32\drivers\down\161423140.exe
                                      C:\Windows\system32\drivers\down\161427125.exe
                                      C:\Windows\system32\drivers\down\161428937.exe
                                      C:\Windows\system32\drivers\down\161432937.exe
                                      C:\Windows\system32\drivers\down\161437531.exe
                                      C:\Windows\system32\drivers\down\161439531.exe
                                      C:\Windows\system32\drivers\down\161445343.exe
                                      C:\Windows\system32\drivers\down\161447890.exe
                                      C:\Windows\system32\drivers\down\161468875.exe
                                      C:\Windows\system32\drivers\down\161478828.exe
                                      C:\Windows\system32\drivers\down\161482875.exe
                                      C:\Windows\system32\drivers\down\161533671.exe
                                      C:\Windows\system32\drivers\down\161537859.exe
                                      C:\Windows\system32\drivers\down\161537968.exe
                                      C:\Windows\system32\drivers\down\161539093.exe
                                      C:\Windows\system32\drivers\down\161562359.exe
                                      C:\Windows\system32\drivers\down\161564281.exe
                                      C:\Windows\system32\drivers\down\161564968.exe
                                      C:\Windows\system32\drivers\down\161566359.exe
                                      C:\Windows\system32\drivers\down\161567484.exe
                                      C:\Windows\system32\drivers\down\161572359.exe
                                      C:\Windows\system32\drivers\down\161573578.exe
                                      C:\Windows\system32\drivers\down\161575703.exe
                                      C:\Windows\system32\drivers\down\161584703.exe
                                      C:\Windows\system32\drivers\down\161671828.exe
                                      C:\Windows\system32\drivers\down\161672968.exe
                                      C:\Windows\system32\drivers\down\161699000.exe
                                      C:\Windows\system32\drivers\down\161722062.exe
                                      C:\Windows\system32\drivers\down\165817906.exe
                                      C:\Windows\system32\drivers\down\165827296.exe
                                      C:\Windows\system32\drivers\down\165830421.exe
                                      C:\Windows\system32\drivers\down\165847718.exe
                                      C:\Windows\system32\drivers\down\165850281.exe
                                      C:\Windows\system32\drivers\down\165850296.exe
                                      C:\Windows\system32\drivers\down\165858812.exe
                                      C:\Windows\system32\drivers\down\165861015.exe
                                      C:\Windows\system32\drivers\down\165862750.exe
                                      C:\Windows\system32\drivers\down\165863875.exe
                                      C:\Windows\system32\drivers\down\165868968.exe
                                      C:\Windows\system32\drivers\down\165872421.exe
                                      C:\Windows\system32\drivers\down\165875437.exe
                                      C:\Windows\system32\drivers\down\165878171.exe
                                      C:\Windows\system32\drivers\down\165878875.exe
                                      C:\Windows\system32\drivers\down\165879250.exe
                                      C:\Windows\system32\drivers\down\165879687.exe
                                      C:\Windows\system32\drivers\down\165881156.exe
                                      C:\Windows\system32\drivers\down\165888515.exe
                                      C:\Windows\system32\drivers\down\165914328.exe
                                      C:\Windows\system32\drivers\down\165916296.exe
                                      C:\Windows\system32\drivers\down\165920718.exe
                                      C:\Windows\system32\drivers\down\175666250.exe
                                      C:\Windows\system32\drivers\down\175694875.exe
                                      C:\Windows\system32\drivers\down\175701546.exe
                                      C:\Windows\system32\drivers\down\175718812.exe
                                      C:\Windows\system32\drivers\down\175722421.exe
                                      C:\Windows\system32\drivers\down\175725531.exe
                                      C:\Windows\system32\drivers\down\175728828.exe
                                      C:\Windows\system32\drivers\down\175732625.exe
                                      C:\Windows\system32\drivers\down\175740031.exe
                                      C:\Windows\system32\drivers\down\175748765.exe
                                      C:\Windows\system32\drivers\down\175768828.exe
                                      C:\Windows\system32\drivers\down\175857671.exe
                                      C:\Windows\system32\drivers\down\175866171.exe
                                      C:\Windows\system32\drivers\down\175893828.exe
                                      C:\Windows\system32\drivers\down\175901515.exe
                                      C:\Windows\system32\drivers\down\175984937.exe
                                      C:\Windows\system32\drivers\down\175986937.exe
                                      C:\Windows\system32\drivers\down\175997390.exe
                                      C:\Windows\system32\drivers\down\176001734.exe
                                      C:\Windows\system32\drivers\down\176018734.exe
                                      C:\Windows\system32\drivers\down\176018750.exe
                                      C:\Windows\system32\drivers\down\176024453.exe
                                      C:\Windows\system32\drivers\down\176025968.exe
                                      C:\Windows\system32\drivers\down\176027093.exe
                                      C:\Windows\system32\drivers\down\176028203.exe
                                      C:\Windows\system32\drivers\down\176031250.exe
                                      C:\Windows\system32\drivers\down\176038515.exe
                                      C:\Windows\system32\drivers\down\176127921.exe
                                      C:\Windows\system32\drivers\down\176132453.exe
                                      C:\Windows\system32\drivers\down\176158796.exe
                                      C:\Windows\system32\drivers\down\176160843.exe
                                      C:\Windows\system32\drivers\down\176165609.exe
                                      C:\Windows\system32\drivers\down\176180062.exe
                                      C:\Windows\system32\drivers\down\176209718.exe
                                      C:\Windows\system32\drivers\down\176217687.exe
                                      C:\Windows\system32\drivers\down\176253656.exe
                                      C:\Windows\system32\drivers\down\176258046.exe
                                      C:\Windows\system32\drivers\down\176263796.exe
                                      C:\Windows\system32\drivers\down\176268750.exe
                                      C:\Windows\system32\drivers\down\176274500.exe
                                      C:\Windows\system32\drivers\down\176280031.exe
                                      C:\Windows\system32\drivers\down\176282937.exe
                                      C:\Windows\system32\drivers\down\176295359.exe
                                      C:\Windows\system32\drivers\down\176385468.exe
                                      C:\Windows\system32\drivers\down\176390734.exe
                                      C:\Windows\system32\drivers\down\176421718.exe
                                      C:\Windows\system32\drivers\down\176429406.exe
                                      C:\Windows\system32\drivers\down\179453.exe
                                      C:\Windows\system32\drivers\down\180337234.exe
                                      C:\Windows\system32\drivers\down\180341421.exe
                                      C:\Windows\system32\drivers\down\180366890.exe
                                      C:\Windows\system32\drivers\down\180372281.exe
                                      C:\Windows\system32\drivers\down\180386937.exe
                                      C:\Windows\system32\drivers\down\180390531.exe
                                      C:\Windows\system32\drivers\down\180392937.exe
                                      C:\Windows\system32\drivers\down\180397156.exe
                                      C:\Windows\system32\drivers\down\180416328.exe
                                      C:\Windows\system32\drivers\down\180418031.exe
                                      C:\Windows\system32\drivers\down\180421125.exe
                                      C:\Windows\system32\drivers\down\180423734.exe
                                      C:\Windows\system32\drivers\down\180430312.exe
                                      C:\Windows\system32\drivers\down\180434859.exe
                                      C:\Windows\system32\drivers\down\180437968.exe
                                      C:\Windows\system32\drivers\down\180440453.exe
                                      C:\Windows\system32\drivers\down\180440765.exe
                                      C:\Windows\system32\drivers\down\180441093.exe
                                      C:\Windows\system32\drivers\down\180442359.exe
                                      C:\Windows\system32\drivers\down\180448015.exe
                                      C:\Windows\system32\drivers\down\180474031.exe
                                      C:\Windows\system32\drivers\down\180480953.exe
                                      C:\Windows\system32\drivers\down\180490156.exe
                                      C:\Windows\system32\drivers\down\183031.exe
                                      C:\Windows\system32\drivers\down\190370359.exe
                                      C:\Windows\system32\drivers\down\190395421.exe
                                      C:\Windows\system32\drivers\down\190412578.exe
                                      C:\Windows\system32\drivers\down\190414625.exe
                                      C:\Windows\system32\drivers\down\190424375.exe
                                      C:\Windows\system32\drivers\down\190429296.exe
                                      C:\Windows\system32\drivers\down\190432796.exe
                                      C:\Windows\system32\drivers\down\190434062.exe
                                      C:\Windows\system32\drivers\down\190440765.exe
                                      C:\Windows\system32\drivers\down\190496500.exe
                                      C:\Windows\system32\drivers\down\190586515.exe
                                      C:\Windows\system32\drivers\down\190590812.exe
                                      C:\Windows\system32\drivers\down\190594859.exe
                                      C:\Windows\system32\drivers\down\190597609.exe
                                      C:\Windows\system32\drivers\down\190601046.exe
                                      C:\Windows\system32\drivers\down\190613046.exe
                                      C:\Windows\system32\drivers\down\190613093.exe
                                      C:\Windows\system32\drivers\down\190617015.exe
                                      C:\Windows\system32\drivers\down\190618984.exe
                                      C:\Windows\system32\drivers\down\190620140.exe
                                      C:\Windows\system32\drivers\down\190620968.exe
                                      C:\Windows\system32\drivers\down\190623156.exe
                                      C:\Windows\system32\drivers\down\190628625.exe
                                      C:\Windows\system32\drivers\down\190629859.exe
                                      C:\Windows\system32\drivers\down\190636921.exe
                                      C:\Windows\system32\drivers\down\190716015.exe
                                      C:\Windows\system32\drivers\down\190720109.exe
                                      C:\Windows\system32\drivers\down\190747203.exe
                                      C:\Windows\system32\drivers\down\190748750.exe
                                      C:\Windows\system32\drivers\down\190753609.exe
                                      C:\Windows\system32\drivers\down\190905796.exe
                                      C:\Windows\system32\drivers\down\190909468.exe
                                      C:\Windows\system32\drivers\down\190913687.exe
                                      C:\Windows\system32\drivers\down\190939453.exe
                                      C:\Windows\system32\drivers\down\190939484.exe
                                      C:\Windows\system32\drivers\down\190947046.exe
                                      C:\Windows\system32\drivers\down\190949656.exe
                                      C:\Windows\system32\drivers\down\190952406.exe
                                      C:\Windows\system32\drivers\down\190953656.exe
                                      C:\Windows\system32\drivers\down\190958671.exe
                                      C:\Windows\system32\drivers\down\190972296.exe
                                      C:\Windows\system32\drivers\down\191059984.exe
                                      C:\Windows\system32\drivers\down\191061671.exe
                                      C:\Windows\system32\drivers\down\191090625.exe
                                      C:\Windows\system32\drivers\down\191103281.exe
                                      C:\Windows\system32\drivers\down\194939781.exe
                                      C:\Windows\system32\drivers\down\194940062.exe
                                      C:\Windows\system32\drivers\down\194944390.exe
                                      C:\Windows\system32\drivers\down\194947546.exe
                                      C:\Windows\system32\drivers\down\194963703.exe
                                      C:\Windows\system32\drivers\down\194968296.exe
                                      C:\Windows\system32\drivers\down\194968328.exe
                                      C:\Windows\system32\drivers\down\195010812.exe
                                      C:\Windows\system32\drivers\down\195016187.exe
                                      C:\Windows\system32\drivers\down\195017859.exe
                                      C:\Windows\system32\drivers\down\195018656.exe
                                      C:\Windows\system32\drivers\down\195020781.exe
                                      C:\Windows\system32\drivers\down\195024203.exe
                                      C:\Windows\system32\drivers\down\195027468.exe
                                      C:\Windows\system32\drivers\down\195031484.exe
                                      C:\Windows\system32\drivers\down\195031625.exe
                                      C:\Windows\system32\drivers\down\195034750.exe
                                      C:\Windows\system32\drivers\down\195036343.exe
                                      C:\Windows\system32\drivers\down\195041968.exe
                                      C:\Windows\system32\drivers\down\195046203.exe
                                      C:\Windows\system32\drivers\down\195076375.exe
                                      C:\Windows\system32\drivers\down\195078203.exe
                                      C:\Windows\system32\drivers\down\195083125.exe
                                      C:\Windows\system32\drivers\down\197328.exe
                                      C:\Windows\system32\drivers\down\203156.exe
                                      C:\Windows\system32\drivers\down\205065218.exe
                                      C:\Windows\system32\drivers\down\205083078.exe
                                      C:\Windows\system32\drivers\down\205086484.exe
                                      C:\Windows\system32\drivers\down\205109375.exe
                                      C:\Windows\system32\drivers\down\205109421.exe
                                      C:\Windows\system32\drivers\down\205114312.exe
                                      C:\Windows\system32\drivers\down\205115671.exe
                                      C:\Windows\system32\drivers\down\205119828.exe
                                      C:\Windows\system32\drivers\down\205120859.exe
                                      C:\Windows\system32\drivers\down\205125296.exe
                                      C:\Windows\system32\drivers\down\205137656.exe
                                      C:\Windows\system32\drivers\down\205163687.exe
                                      C:\Windows\system32\drivers\down\205164750.exe
                                      C:\Windows\system32\drivers\down\205181750.exe
                                      C:\Windows\system32\drivers\down\205187812.exe
                                      C:\Windows\system32\drivers\down\205205515.exe
                                      C:\Windows\system32\drivers\down\205209156.exe
                                      C:\Windows\system32\drivers\down\205212296.exe
                                      C:\Windows\system32\drivers\down\205216140.exe
                                      C:\Windows\system32\drivers\down\205218062.exe
                                      C:\Windows\system32\drivers\down\205222703.exe
                                      C:\Windows\system32\drivers\down\205224906.exe
                                      C:\Windows\system32\drivers\down\205224984.exe
                                      C:\Windows\system32\drivers\down\205229406.exe
                                      C:\Windows\system32\drivers\down\205239156.exe
                                      C:\Windows\system32\drivers\down\205255890.exe
                                      C:\Windows\system32\drivers\down\205258203.exe
                                      C:\Windows\system32\drivers\down\205326531.exe
                                      C:\Windows\system32\drivers\down\205333640.exe
                                      C:\Windows\system32\drivers\down\205360250.exe
                                      C:\Windows\system32\drivers\down\205371578.exe
                                      C:\Windows\system32\drivers\down\205379281.exe
                                      C:\Windows\system32\drivers\down\205537906.exe
                                      C:\Windows\system32\drivers\down\205546015.exe
                                      C:\Windows\system32\drivers\down\205550265.exe
                                      C:\Windows\system32\drivers\down\205587421.exe
                                      C:\Windows\system32\drivers\down\205587453.exe
                                      C:\Windows\system32\drivers\down\205596078.exe
                                      C:\Windows\system32\drivers\down\205598515.exe
                                      C:\Windows\system32\drivers\down\205600953.exe
                                      C:\Windows\system32\drivers\down\205602031.exe
                                      C:\Windows\system32\drivers\down\205604843.exe
                                      C:\Windows\system32\drivers\down\205611906.exe
                                      C:\Windows\system32\drivers\down\205699296.exe
                                      C:\Windows\system32\drivers\down\205701078.exe
                                      C:\Windows\system32\drivers\down\205729578.exe
                                      C:\Windows\system32\drivers\down\205739031.exe
                                      C:\Windows\system32\drivers\down\209533531.exe
                                      C:\Windows\system32\drivers\down\209535171.exe
                                      C:\Windows\system32\drivers\down\209558406.exe
                                      C:\Windows\system32\drivers\down\209565453.exe
                                      C:\Windows\system32\drivers\down\209592531.exe
                                      C:\Windows\system32\drivers\down\209601000.exe
                                      C:\Windows\system32\drivers\down\209601078.exe
                                      C:\Windows\system32\drivers\down\209616640.exe
                                      C:\Windows\system32\drivers\down\209630703.exe
                                      C:\Windows\system32\drivers\down\209637875.exe
                                      C:\Windows\system32\drivers\down\209639906.exe
                                      C:\Windows\system32\drivers\down\209642796.exe
                                      C:\Windows\system32\drivers\down\209650406.exe
                                      C:\Windows\system32\drivers\down\209657734.exe
                                      C:\Windows\system32\drivers\down\209665609.exe
                                      C:\Windows\system32\drivers\down\209667609.exe
                                      C:\Windows\system32\drivers\down\209668046.exe
                                      C:\Windows\system32\drivers\down\209668609.exe
                                      C:\Windows\system32\drivers\down\209671.exe
                                      C:\Windows\system32\drivers\down\209672359.exe
                                      C:\Windows\system32\drivers\down\209676046.exe
                                      C:\Windows\system32\drivers\down\209707671.exe
                                      C:\Windows\system32\drivers\down\209713109.exe
                                      C:\Windows\system32\drivers\down\209721875.exe
                                      C:\Windows\system32\drivers\down\209875.exe
                                      C:\Windows\system32\drivers\down\210734.exe
                                      C:\Windows\system32\drivers\down\212078.exe
                                      C:\Windows\system32\drivers\down\213156.exe
                                      C:\Windows\system32\drivers\down\214468.exe
                                      C:\Windows\system32\drivers\down\219807890.exe
                                      C:\Windows\system32\drivers\down\219808343.exe
                                      C:\Windows\system32\drivers\down\219827609.exe
                                      C:\Windows\system32\drivers\down\219831468.exe
                                      C:\Windows\system32\drivers\down\219848984.exe
                                      C:\Windows\system32\drivers\down\219849187.exe
                                      C:\Windows\system32\drivers\down\219853875.exe
                                      C:\Windows\system32\drivers\down\219857625.exe
                                      C:\Windows\system32\drivers\down\219860000.exe
                                      C:\Windows\system32\drivers\down\219861140.exe
                                      C:\Windows\system32\drivers\down\219863375.exe
                                      C:\Windows\system32\drivers\down\219874921.exe
                                      C:\Windows\system32\drivers\down\219962125.exe
                                      C:\Windows\system32\drivers\down\219967000.exe
                                      C:\Windows\system32\drivers\down\219993562.exe
                                      C:\Windows\system32\drivers\down\219998546.exe
                                      C:\Windows\system32\drivers\down\220004015.exe
                                      C:\Windows\system32\drivers\down\220160296.exe
                                      C:\Windows\system32\drivers\down\220178484.exe
                                      C:\Windows\system32\drivers\down\220180812.exe
                                      C:\Windows\system32\drivers\down\220185281.exe
                                      C:\Windows\system32\drivers\down\220202281.exe
                                      C:\Windows\system32\drivers\down\220203.exe
                                      C:\Windows\system32\drivers\down\220206312.exe
                                      C:\Windows\system32\drivers\down\220211875.exe
                                      C:\Windows\system32\drivers\down\220214750.exe
                                      C:\Windows\system32\drivers\down\220221093.exe
                                      C:\Windows\system32\drivers\down\220226281.exe
                                      C:\Windows\system32\drivers\down\220230078.exe
                                      C:\Windows\system32\drivers\down\220238828.exe
                                      C:\Windows\system32\drivers\down\220327265.exe
                                      C:\Windows\system32\drivers\down\220333640.exe
                                      C:\Windows\system32\drivers\down\220361656.exe
                                      C:\Windows\system32\drivers\down\220365937.exe
                                      C:\Windows\system32\drivers\down\224181296.exe
                                      C:\Windows\system32\drivers\down\224187609.exe
                                      C:\Windows\system32\drivers\down\224222687.exe
                                      C:\Windows\system32\drivers\down\224230250.exe
                                      C:\Windows\system32\drivers\down\224246609.exe
                                      C:\Windows\system32\drivers\down\224250140.exe
                                      C:\Windows\system32\drivers\down\224254625.exe
                                      C:\Windows\system32\drivers\down\224263812.exe
                                      C:\Windows\system32\drivers\down\224268421.exe
                                      C:\Windows\system32\drivers\down\224292593.exe
                                      C:\Windows\system32\drivers\down\224296250.exe
                                      C:\Windows\system32\drivers\down\224299140.exe
                                      C:\Windows\system32\drivers\down\224305109.exe
                                      C:\Windows\system32\drivers\down\224307265.exe
                                      C:\Windows\system32\drivers\down\224311234.exe
                                      C:\Windows\system32\drivers\down\224317750.exe
                                      C:\Windows\system32\drivers\down\224319437.exe
                                      C:\Windows\system32\drivers\down\224370375.exe
                                      C:\Windows\system32\drivers\down\224375125.exe
                                      C:\Windows\system32\drivers\down\224385078.exe
                                      C:\Windows\system32\drivers\down\224417375.exe
                                      C:\Windows\system32\drivers\down\224425609.exe
                                      C:\Windows\system32\drivers\down\224431234.exe
                                      C:\Windows\system32\drivers\down\227546.exe
                                      C:\Windows\system32\drivers\down\229312.exe
                                      C:\Windows\system32\drivers\down\234420078.exe
                                      C:\Windows\system32\drivers\down\234420375.exe
                                      C:\Windows\system32\drivers\down\234456750.exe
                                      C:\Windows\system32\drivers\down\234462156.exe
                                      C:\Windows\system32\drivers\down\234482359.exe
                                      C:\Windows\system32\drivers\down\234482406.exe
                                      C:\Windows\system32\drivers\down\234486937.exe
                                      C:\Windows\system32\drivers\down\234488671.exe
                                      C:\Windows\system32\drivers\down\234490578.exe
                                      C:\Windows\system32\drivers\down\234492046.exe
                                      C:\Windows\system32\drivers\down\234498093.exe
                                      C:\Windows\system32\drivers\down\234585296.exe
                                      C:\Windows\system32\drivers\down\234589656.exe
                                      C:\Windows\system32\drivers\down\234616390.exe
                                      C:\Windows\system32\drivers\down\234618437.exe
                                      C:\Windows\system32\drivers\down\234623984.exe
                                      C:\Windows\system32\drivers\down\234795906.exe
                                      C:\Windows\system32\drivers\down\234804484.exe
                                      C:\Windows\system32\drivers\down\234808687.exe
                                      C:\Windows\system32\drivers\down\234822421.exe
                                      C:\Windows\system32\drivers\down\234823859.exe
                                      C:\Windows\system32\drivers\down\234828078.exe
                                      C:\Windows\system32\drivers\down\234830781.exe
                                      C:\Windows\system32\drivers\down\234833578.exe
                                      C:\Windows\system32\drivers\down\234834781.exe
                                      C:\Windows\system32\drivers\down\234837578.exe
                                      C:\Windows\system32\drivers\down\234845078.exe
                                      C:\Windows\system32\drivers\down\234935062.exe
                                      C:\Windows\system32\drivers\down\234937031.exe
                                      C:\Windows\system32\drivers\down\234964343.exe
                                      C:\Windows\system32\drivers\down\234967765.exe
                                      C:\Windows\system32\drivers\down\236984.exe
                                      C:\Windows\system32\drivers\down\238234.exe
                                      C:\Windows\system32\drivers\down\238865921.exe
                                      C:\Windows\system32\drivers\down\238866343.exe
                                      C:\Windows\system32\drivers\down\238892812.exe
                                      C:\Windows\system32\drivers\down\238897359.exe
                                      C:\Windows\system32\drivers\down\238921.exe
                                      C:\Windows\system32\drivers\down\238922609.exe
                                      C:\Windows\system32\drivers\down\238925843.exe
                                      C:\Windows\system32\drivers\down\238925906.exe
                                      C:\Windows\system32\drivers\down\238930718.exe
                                      C:\Windows\system32\drivers\down\238933265.exe
                                      C:\Windows\system32\drivers\down\238936593.exe
                                      C:\Windows\system32\drivers\down\238937968.exe
                                      C:\Windows\system32\drivers\down\238940546.exe
                                      C:\Windows\system32\drivers\down\238945437.exe
                                      C:\Windows\system32\drivers\down\238964953.exe
                                      C:\Windows\system32\drivers\down\238968812.exe
                                      C:\Windows\system32\drivers\down\238969578.exe
                                      C:\Windows\system32\drivers\down\238969921.exe
                                      C:\Windows\system32\drivers\down\238970250.exe
                                      C:\Windows\system32\drivers\down\238972671.exe
                                      C:\Windows\system32\drivers\down\238976921.exe
                                      C:\Windows\system32\drivers\down\239004859.exe
                                      C:\Windows\system32\drivers\down\239007578.exe
                                      C:\Windows\system32\drivers\down\239012484.exe
                                      C:\Windows\system32\drivers\down\243000.exe
                                      C:\Windows\system32\drivers\down\243984.exe
                                      C:\Windows\system32\drivers\down\246234.exe
                                      C:\Windows\system32\drivers\down\246859.exe
                                      C:\Windows\system32\drivers\down\247812.exe
                                      C:\Windows\system32\drivers\down\248890.exe
                                      C:\Windows\system32\drivers\down\249046656.exe
                                      C:\Windows\system32\drivers\down\249047890.exe
                                      C:\Windows\system32\drivers\down\249064250.exe
                                      C:\Windows\system32\drivers\down\249068328.exe
                                      C:\Windows\system32\drivers\down\249084562.exe
                                      C:\Windows\system32\drivers\down\249088187.exe
                                      C:\Windows\system32\drivers\down\249096828.exe
                                      C:\Windows\system32\drivers\down\249099000.exe
                                      C:\Windows\system32\drivers\down\249101453.exe
                                      C:\Windows\system32\drivers\down\249106812.exe
                                      C:\Windows\system32\drivers\down\249109109.exe
                                      C:\Windows\system32\drivers\down\249115546.exe
                                      C:\Windows\system32\drivers\down\249203343.exe
                                      C:\Windows\system32\drivers\down\249208875.exe
                                      C:\Windows\system32\drivers\down\249235218.exe
                                      C:\Windows\system32\drivers\down\249240812.exe
                                      C:\Windows\system32\drivers\down\249245859.exe
                                      C:\Windows\system32\drivers\down\249439750.exe
                                      C:\Windows\system32\drivers\down\249446406.exe
                                      C:\Windows\system32\drivers\down\249452984.exe
                                      C:\Windows\system32\drivers\down\249476375.exe
                                      C:\Windows\system32\drivers\down\249476406.exe
                                      C:\Windows\system32\drivers\down\249484046.exe
                                      C:\Windows\system32\drivers\down\249486796.exe
                                      C:\Windows\system32\drivers\down\249492125.exe
                                      C:\Windows\system32\drivers\down\249500062.exe
                                      C:\Windows\system32\drivers\down\249503781.exe
                                      C:\Windows\system32\drivers\down\249516390.exe
                                      C:\Windows\system32\drivers\down\249605578.exe
                                      C:\Windows\system32\drivers\down\249609437.exe
                                      C:\Windows\system32\drivers\down\249645140.exe
                                      C:\Windows\system32\drivers\down\249651000.exe
                                      C:\Windows\system32\drivers\down\250234.exe
                                      C:\Windows\system32\drivers\down\250953.exe
                                      C:\Windows\system32\drivers\down\251515.exe
                                      C:\Windows\system32\drivers\down\251812.exe
                                      C:\Windows\system32\drivers\down\251890.exe
                                      C:\Windows\system32\drivers\down\253447093.exe
                                      C:\Windows\system32\drivers\down\253448031.exe
                                      C:\Windows\system32\drivers\down\253472578.exe
                                      C:\Windows\system32\drivers\down\253476328.exe
                                      C:\Windows\system32\drivers\down\253511671.exe
                                      C:\Windows\system32\drivers\down\253515218.exe
                                      C:\Windows\system32\drivers\down\253515875.exe
                                      C:\Windows\system32\drivers\down\253523265.exe
                                      C:\Windows\system32\drivers\down\253526406.exe
                                      C:\Windows\system32\drivers\down\253530875.exe
                                      C:\Windows\system32\drivers\down\253531906.exe
                                      C:\Windows\system32\drivers\down\253538421.exe
                                      C:\Windows\system32\drivers\down\253543500.exe
                                      C:\Windows\system32\drivers\down\253551515.exe
                                      C:\Windows\system32\drivers\down\253557828.exe
                                      C:\Windows\system32\drivers\down\253558250.exe
                                      C:\Windows\system32\drivers\down\253558453.exe
                                      C:\Windows\system32\drivers\down\253561656.exe
                                      C:\Windows\system32\drivers\down\253563218.exe
                                      C:\Windows\system32\drivers\down\253567562.exe
                                      C:\Windows\system32\drivers\down\253598484.exe
                                      C:\Windows\system32\drivers\down\253601171.exe
                                      C:\Windows\system32\drivers\down\253605781.exe
                                      C:\Windows\system32\drivers\down\256375.exe
                                      C:\Windows\system32\drivers\down\256437.exe
                                      C:\Windows\system32\drivers\down\256609.exe
                                      C:\Windows\system32\drivers\down\256906.exe
                                      C:\Windows\system32\drivers\down\258546.exe
                                      C:\Windows\system32\drivers\down\259281.exe
                                      C:\Windows\system32\drivers\down\261046.exe
                                      C:\Windows\system32\drivers\down\263265.exe
                                      C:\Windows\system32\drivers\down\263640.exe
                                      C:\Windows\system32\drivers\down\263661578.exe
                                      C:\Windows\system32\drivers\down\263668562.exe
                                      C:\Windows\system32\drivers\down\263673640.exe
                                      C:\Windows\system32\drivers\down\263692015.exe
                                      C:\Windows\system32\drivers\down\263692046.exe
                                      C:\Windows\system32\drivers\down\263700828.exe
                                      C:\Windows\system32\drivers\down\263702921.exe
                                      C:\Windows\system32\drivers\down\263705343.exe
                                      C:\Windows\system32\drivers\down\263706390.exe
                                      C:\Windows\system32\drivers\down\263708640.exe
                                      C:\Windows\system32\drivers\down\263716062.exe
                                      C:\Windows\system32\drivers\down\263804796.exe
                                      C:\Windows\system32\drivers\down\263809328.exe
                                      C:\Windows\system32\drivers\down\263835921.exe
                                      C:\Windows\system32\drivers\down\263838234.exe
                                      C:\Windows\system32\drivers\down\263843375.exe
                                      C:\Windows\system32\drivers\down\265703.exe
                                      C:\Windows\system32\drivers\down\266500.exe
                                      C:\Windows\system32\drivers\down\268024031.exe
                                      C:\Windows\system32\drivers\down\268025375.exe
                                      C:\Windows\system32\drivers\down\268031.exe
                                      C:\Windows\system32\drivers\down\268033109.exe
                                      C:\Windows\system32\drivers\down\268038750.exe
                                      C:\Windows\system32\drivers\down\268054937.exe
                                      C:\Windows\system32\drivers\down\268060156.exe
                                      C:\Windows\system32\drivers\down\268062437.exe
                                      C:\Windows\system32\drivers\down\268068250.exe
                                      C:\Windows\system32\drivers\down\268071156.exe
                                      C:\Windows\system32\drivers\down\268074453.exe
                                      C:\Windows\system32\drivers\down\268078453.exe
                                      C:\Windows\system32\drivers\down\268084109.exe
                                      C:\Windows\system32\drivers\down\268091671.exe
                                      C:\Windows\system32\drivers\down\268095625.exe
                                      C:\Windows\system32\drivers\down\268098765.exe
                                      C:\Windows\system32\drivers\down\268099281.exe
                                      C:\Windows\system32\drivers\down\268099578.exe
                                      C:\Windows\system32\drivers\down\268100281.exe
                                      C:\Windows\system32\drivers\down\268103890.exe
                                      C:\Windows\system32\drivers\down\268109875.exe
                                      C:\Windows\system32\drivers\down\268138625.exe
                                      C:\Windows\system32\drivers\down\268142390.exe
                                      C:\Windows\system32\drivers\down\268151015.exe
                                      C:\Windows\system32\drivers\down\270937.exe
                                      C:\Windows\system32\drivers\down\270968.exe
                                      C:\Windows\system32\drivers\down\271546.exe
                                      C:\Windows\system32\drivers\down\272328.exe
                                      C:\Windows\system32\drivers\down\274796.exe
                                      C:\Windows\system32\drivers\down\277671.exe
                                      C:\Windows\system32\drivers\down\277765.exe
                                      C:\Windows\system32\drivers\down\278290343.exe
                                      C:\Windows\system32\drivers\down\278290750.exe
                                      C:\Windows\system32\drivers\down\278296562.exe
                                      C:\Windows\system32\drivers\down\278300875.exe
                                      C:\Windows\system32\drivers\down\278318625.exe
                                      C:\Windows\system32\drivers\down\278318640.exe
                                      C:\Windows\system32\drivers\down\278324953.exe
                                      C:\Windows\system32\drivers\down\278327218.exe
                                      C:\Windows\system32\drivers\down\278330546.exe
                                      C:\Windows\system32\drivers\down\278331250.exe
                                      C:\Windows\system32\drivers\down\278334390.exe
                                      C:\Windows\system32\drivers\down\278341312.exe
                                      C:\Windows\system32\drivers\down\278428921.exe
                                      C:\Windows\system32\drivers\down\278436531.exe
                                      C:\Windows\system32\drivers\down\278463312.exe
                                      C:\Windows\system32\drivers\down\278468937.exe
                                      C:\Windows\system32\drivers\down\278474015.exe
                                      C:\Windows\system32\drivers\down\278593.exe
                                      C:\Windows\system32\drivers\down\280000.exe
                                      C:\Windows\system32\drivers\down\280812.exe
                                      C:\Windows\system32\drivers\down\281375.exe
                                      C:\Windows\system32\drivers\down\281796.exe
                                      C:\Windows\system32\drivers\down\282569265.exe
                                      C:\Windows\system32\drivers\down\282569953.exe
                                      C:\Windows\system32\drivers\down\282575281.exe
                                      C:\Windows\system32\drivers\down\282578125.exe
                                      C:\Windows\system32\drivers\down\282595609.exe
                                      C:\Windows\system32\drivers\down\282597968.exe
                                      C:\Windows\system32\drivers\down\282597984.exe
                                      C:\Windows\system32\drivers\down\282602890.exe
                                      C:\Windows\system32\drivers\down\282612500.exe
                                      C:\Windows\system32\drivers\down\282614984.exe
                                      C:\Windows\system32\drivers\down\282615796.exe
                                      C:\Windows\system32\drivers\down\282617843.exe
                                      C:\Windows\system32\drivers\down\282626734.exe
                                      C:\Windows\system32\drivers\down\282630515.exe
                                      C:\Windows\system32\drivers\down\282632703.exe
                                      C:\Windows\system32\drivers\down\282633343.exe
                                      C:\Windows\system32\drivers\down\282636546.exe
                                      C:\Windows\system32\drivers\down\282636812.exe
                                      C:\Windows\system32\drivers\down\282639593.exe
                                      C:\Windows\system32\drivers\down\282643921.exe
                                      C:\Windows\system32\drivers\down\282673187.exe
                                      C:\Windows\system32\drivers\down\282688875.exe
                                      C:\Windows\system32\drivers\down\282694234.exe
                                      C:\Windows\system32\drivers\down\283265.exe
                                      C:\Windows\system32\drivers\down\283796.exe
                                      C:\Windows\system32\drivers\down\285937.exe
                                      C:\Windows\system32\drivers\down\286718.exe
                                      C:\Windows\system32\drivers\down\287734.exe
                                      C:\Windows\system32\drivers\down\288671.exe
                                      C:\Windows\system32\drivers\down\290093.exe
                                      C:\Windows\system32\drivers\down\290625.exe
                                      C:\Windows\system32\drivers\down\290937.exe
                                      C:\Windows\system32\drivers\down\292891671.exe
                                      C:\Windows\system32\drivers\down\292892656.exe
                                      C:\Windows\system32\drivers\down\292908312.exe
                                      C:\Windows\system32\drivers\down\292918734.exe
                                      C:\Windows\system32\drivers\down\292936500.exe
                                      C:\Windows\system32\drivers\down\292940171.exe
                                      C:\Windows\system32\drivers\down\292946437.exe
                                      C:\Windows\system32\drivers\down\292948218.exe
                                      C:\Windows\system32\drivers\down\292950500.exe
                                      C:\Windows\system32\drivers\down\292954953.exe
                                      C:\Windows\system32\drivers\down\292957015.exe
                                      C:\Windows\system32\drivers\down\292967359.exe
                                      C:\Windows\system32\drivers\down\293054718.exe
                                      C:\Windows\system32\drivers\down\293062781.exe
                                      C:\Windows\system32\drivers\down\293088968.exe
                                      C:\Windows\system32\drivers\down\293120171.exe
                                      C:\Windows\system32\drivers\down\293128625.exe
                                      C:\Windows\system32\drivers\down\29467906.exe
                                      C:\Windows\system32\drivers\down\29479812.exe
                                      C:\Windows\system32\drivers\down\29484734.exe
                                      C:\Windows\system32\drivers\down\29504812.exe
                                      C:\Windows\system32\drivers\down\29504828.exe
                                      C:\Windows\system32\drivers\down\29509671.exe
                                      C:\Windows\system32\drivers\down\29514359.exe
                                      C:\Windows\system32\drivers\down\29516375.exe
                                      C:\Windows\system32\drivers\down\29517250.exe
                                      C:\Windows\system32\drivers\down\29519218.exe
                                      C:\Windows\system32\drivers\down\29524437.exe
                                      C:\Windows\system32\drivers\down\295296.exe
                                      C:\Windows\system32\drivers\down\29592875.exe
                                      C:\Windows\system32\drivers\down\29599484.exe
                                      C:\Windows\system32\drivers\down\29611968.exe
                                      C:\Windows\system32\drivers\down\296156.exe
                                      C:\Windows\system32\drivers\down\29616000.exe
                                      C:\Windows\system32\drivers\down\29642421.exe
                                      C:\Windows\system32\drivers\down\29644546.exe
                                      C:\Windows\system32\drivers\down\29647875.exe
                                      C:\Windows\system32\drivers\down\29648875.exe
                                      C:\Windows\system32\drivers\down\29648906.exe
                                      C:\Windows\system32\drivers\down\29665234.exe
                                      C:\Windows\system32\drivers\down\29671765.exe
                                      C:\Windows\system32\drivers\down\29692562.exe
                                      C:\Windows\system32\drivers\down\29695359.exe
                                      C:\Windows\system32\drivers\down\29702656.exe
                                      C:\Windows\system32\drivers\down\29704703.exe
                                      C:\Windows\system32\drivers\down\29708250.exe
                                      C:\Windows\system32\drivers\down\297112375.exe
                                      C:\Windows\system32\drivers\down\297112812.exe
                                      C:\Windows\system32\drivers\down\29711906.exe
                                      C:\Windows\system32\drivers\down\297139640.exe
                                      C:\Windows\system32\drivers\down\297144531.exe
                                      C:\Windows\system32\drivers\down\29714468.exe
                                      C:\Windows\system32\drivers\down\297164625.exe
                                      C:\Windows\system32\drivers\down\297167796.exe
                                      C:\Windows\system32\drivers\down\297167812.exe
                                      C:\Windows\system32\drivers\down\297171703.exe
                                      C:\Windows\system32\drivers\down\297174093.exe
                                      C:\Windows\system32\drivers\down\297176359.exe
                                      C:\Windows\system32\drivers\down\297177703.exe
                                      C:\Windows\system32\drivers\down\297181765.exe
                                      C:\Windows\system32\drivers\down\297187078.exe
                                      C:\Windows\system32\drivers\down\297195671.exe
                                      C:\Windows\system32\drivers\down\297198234.exe
                                      C:\Windows\system32\drivers\down\297198390.exe
                                      C:\Windows\system32\drivers\down\297198531.exe
                                      C:\Windows\system32\drivers\down\297199203.exe
                                      C:\Windows\system32\drivers\down\297200890.exe
                                      C:\Windows\system32\drivers\down\297205578.exe
                                      C:\Windows\system32\drivers\down\29723765.exe
                                      C:\Windows\system32\drivers\down\297237750.exe
                                      C:\Windows\system32\drivers\down\297243265.exe
                                      C:\Windows\system32\drivers\down\297251187.exe
                                      C:\Windows\system32\drivers\down\297328.exe
                                      C:\Windows\system32\drivers\down\297390.exe
                                      C:\Windows\system32\drivers\down\29812578.exe
                                      C:\Windows\system32\drivers\down\29818062.exe
                                      C:\Windows\system32\drivers\down\29829421.exe
                                      C:\Windows\system32\drivers\down\29844109.exe
                                      C:\Windows\system32\drivers\down\29852578.exe
                                      C:\Windows\system32\drivers\down\29872953.exe
                                      C:\Windows\system32\drivers\down\298796.exe
                                      C:\Windows\system32\drivers\down\29881078.exe
                                      C:\Windows\system32\drivers\down\29895296.exe
                                      C:\Windows\system32\drivers\down\29899515.exe
                                      C:\Windows\system32\drivers\down\29904390.exe
                                      C:\Windows\system32\drivers\down\29908218.exe
                                      C:\Windows\system32\drivers\down\29908937.exe
                                      C:\Windows\system32\drivers\down\29914000.exe
                                      C:\Windows\system32\drivers\down\29914031.exe
                                      C:\Windows\system32\drivers\down\29920109.exe
                                      C:\Windows\system32\drivers\down\29922296.exe
                                      C:\Windows\system32\drivers\down\29922312.exe
                                      C:\Windows\system32\drivers\down\29927890.exe
                                      C:\Windows\system32\drivers\down\29929890.exe
                                      C:\Windows\system32\drivers\down\29932375.exe
                                      C:\Windows\system32\drivers\down\29934218.exe
                                      C:\Windows\system32\drivers\down\29937140.exe
                                      C:\Windows\system32\drivers\down\29937421.exe
                                      C:\Windows\system32\drivers\down\29941453.exe
                                      C:\Windows\system32\drivers\down\29941687.exe
                                      C:\Windows\system32\drivers\down\29943921.exe
                                      C:\Windows\system32\drivers\down\29944562.exe
                                      C:\Windows\system32\drivers\down\29948921.exe
                                      C:\Windows\system32\drivers\down\29951343.exe
                                      C:\Windows\system32\drivers\down\29956078.exe
                                      C:\Windows\system32\drivers\down\299578.exe
                                      C:\Windows\system32\drivers\down\29965281.exe
                                      C:\Windows\system32\drivers\down\29968750.exe
                                      C:\Windows\system32\drivers\down\29968781.exe
                                      C:\Windows\system32\drivers\down\29970390.exe
                                      C:\Windows\system32\drivers\down\29973843.exe
                                      C:\Windows\system32\drivers\down\29976000.exe
                                      C:\Windows\system32\drivers\down\29979812.exe
                                      C:\Windows\system32\drivers\down\29980828.exe
                                      C:\Windows\system32\drivers\down\29982921.exe
                                      C:\Windows\system32\drivers\down\29984312.exe
                                      C:\Windows\system32\drivers\down\29985140.exe
                                      C:\Windows\system32\drivers\down\29985218.exe
                                      C:\Windows\system32\drivers\down\29992468.exe
                                      C:\Windows\system32\drivers\down\29996671.exe
                                      C:\Windows\system32\drivers\down\30002218.exe
                                      C:\Windows\system32\drivers\down\30013187.exe
                                      C:\Windows\system32\drivers\down\30030781.exe
                                      C:\Windows\system32\drivers\down\30032234.exe
                                      C:\Windows\system32\drivers\down\30041687.exe
                                      C:\Windows\system32\drivers\down\30051156.exe
                                      C:\Windows\system32\drivers\down\30061546.exe
                                      C:\Windows\system32\drivers\down\30068859.exe
                                      C:\Windows\system32\drivers\down\30077203.exe
                                      C:\Windows\system32\drivers\down\30100937.exe
                                      C:\Windows\system32\drivers\down\30105046.exe
                                      C:\Windows\system32\drivers\down\301093.exe
                                      C:\Windows\system32\drivers\down\30131500.exe
                                      C:\Windows\system32\drivers\down\30145046.exe
                                      C:\Windows\system32\drivers\down\303015.exe
                                      C:\Windows\system32\drivers\down\305781.exe
                                      C:\Windows\system32\drivers\down\305968.exe
                                      C:\Windows\system32\drivers\down\306390.exe
                                      C:\Windows\system32\drivers\down\307656.exe
                                      C:\Windows\system32\drivers\down\309031.exe
                                      C:\Windows\system32\drivers\down\309093.exe
                                      C:\Windows\system32\drivers\down\310109.exe
                                      C:\Windows\system32\drivers\down\310250.exe
                                      C:\Windows\system32\drivers\down\311679734.exe
                                      C:\Windows\system32\drivers\down\311681203.exe
                                      C:\Windows\system32\drivers\down\311685609.exe
                                      C:\Windows\system32\drivers\down\311689750.exe
                                      C:\Windows\system32\drivers\down\311703343.exe
                                      C:\Windows\system32\drivers\down\311706859.exe
                                      C:\Windows\system32\drivers\down\311709015.exe
                                      C:\Windows\system32\drivers\down\311717437.exe
                                      C:\Windows\system32\drivers\down\311720390.exe
                                      C:\Windows\system32\drivers\down\311722781.exe
                                      C:\Windows\system32\drivers\down\311726078.exe
                                      C:\Windows\system32\drivers\down\311728562.exe
                                      C:\Windows\system32\drivers\down\311734875.exe
                                      C:\Windows\system32\drivers\down\311742281.exe
                                      C:\Windows\system32\drivers\down\311745281.exe
                                      C:\Windows\system32\drivers\down\311745578.exe
                                      C:\Windows\system32\drivers\down\311745828.exe
                                      C:\Windows\system32\drivers\down\311746187.exe
                                      C:\Windows\system32\drivers\down\311747718.exe
                                      C:\Windows\system32\drivers\down\311753875.exe
                                      C:\Windows\system32\drivers\down\311781078.exe
                                      C:\Windows\system32\drivers\down\311784015.exe
                                      C:\Windows\system32\drivers\down\311789312.exe
                                      C:\Windows\system32\drivers\down\312796.exe
                                      C:\Windows\system32\drivers\down\314140.exe
                                      C:\Windows\system32\drivers\down\317984.exe
                                      C:\Windows\system32\drivers\down\319531.exe
                                      C:\Windows\system32\drivers\down\320140.exe
                                      C:\Windows\system32\drivers\down\326214750.exe
                                      C:\Windows\system32\drivers\down\326215359.exe
                                      C:\Windows\system32\drivers\down\326235218.exe
                                      C:\Windows\system32\drivers\down\326240375.exe
                                      C:\Windows\system32\drivers\down\326257156.exe
                                      C:\Windows\system32\drivers\down\326261031.exe
                                      C:\Windows\system32\drivers\down\326261093.exe
                                      C:\Windows\system32\drivers\down\326269718.exe
                                      C:\Windows\system32\drivers\down\326271953.exe
                                      C:\Windows\system32\drivers\down\326276921.exe
                                      C:\Windows\system32\drivers\down\326277953.exe
                                      C:\Windows\system32\drivers\down\326285484.exe
                                      C:\Windows\system32\drivers\down\326291265.exe
                                      C:\Windows\system32\drivers\down\326293687.exe
                                      C:\Windows\system32\drivers\down\326296843.exe
                                      C:\Windows\system32\drivers\down\326297156.exe
                                      C:\Windows\system32\drivers\down\326297437.exe
                                      C:\Windows\system32\drivers\down\326297812.exe
                                      C:\Windows\system32\drivers\down\326299890.exe
                                      C:\Windows\system32\drivers\down\326303468.exe
                                      C:\Windows\system32\drivers\down\326331015.exe
                                      C:\Windows\system32\drivers\down\326333328.exe
                                      C:\Windows\system32\drivers\down\326337921.exe
                                      C:\Windows\system32\drivers\down\327890.exe
                                      C:\Windows\system32\drivers\down\340772687.exe
                                      C:\Windows\system32\drivers\down\340773500.exe
                                      C:\Windows\system32\drivers\down\340784640.exe
                                      C:\Windows\system32\drivers\down\340788875.exe
                                      C:\Windows\system32\drivers\down\340807703.exe
                                      C:\Windows\system32\drivers\down\340811406.exe
                                      C:\Windows\system32\drivers\down\340811921.exe
                                      C:\Windows\system32\drivers\down\340829875.exe
                                      C:\Windows\system32\drivers\down\340834500.exe
                                      C:\Windows\system32\drivers\down\340839078.exe
                                      C:\Windows\system32\drivers\down\340843234.exe
                                      C:\Windows\system32\drivers\down\340852796.exe
                                      C:\Windows\system32\drivers\down\340857406.exe
                                      C:\Windows\system32\drivers\down\340859031.exe
                                      C:\Windows\system32\drivers\down\340865312.exe
                                      C:\Windows\system32\drivers\down\340866953.exe
                                      C:\Windows\system32\drivers\down\340867203.exe
                                      C:\Windows\system32\drivers\down\340867812.exe
                                      C:\Windows\system32\drivers\down\340869140.exe
                                      C:\Windows\system32\drivers\down\340873359.exe
                                      C:\Windows\system32\drivers\down\340901390.exe
                                      C:\Windows\system32\drivers\down\340903546.exe
                                      C:\Windows\system32\drivers\down\340908031.exe
                                      C:\Windows\system32\drivers\down\344468.exe
                                      C:\Windows\system32\drivers\down\344937.exe
                                      C:\Windows\system32\drivers\down\345234.exe
                                      C:\Windows\system32\drivers\down\348015.exe
                                      C:\Windows\system32\drivers\down\348546.exe
                                      C:\Windows\system32\drivers\down\349953.exe
                                      C:\Windows\system32\drivers\down\353515.exe
                                      C:\Windows\system32\drivers\down\353812.exe
                                      C:\Windows\system32\drivers\down\354328.exe
                                      C:\Windows\system32\drivers\down\355370265.exe
                                      C:\Windows\system32\drivers\down\355371781.exe
                                      C:\Windows\system32\drivers\down\355450390.exe
                                      C:\Windows\system32\drivers\down\355455796.exe
                                      C:\Windows\system32\drivers\down\355468656.exe
                                      C:\Windows\system32\drivers\down\355471968.exe
                                      C:\Windows\system32\drivers\down\355474296.exe
                                      C:\Windows\system32\drivers\down\355477375.exe
                                      C:\Windows\system32\drivers\down\355489812.exe
                                      C:\Windows\system32\drivers\down\355491875.exe
                                      C:\Windows\system32\drivers\down\355495406.exe
                                      C:\Windows\system32\drivers\down\355498046.exe
                                      C:\Windows\system32\drivers\down\355502953.exe
                                      C:\Windows\system32\drivers\down\355507828.exe
                                      C:\Windows\system32\drivers\down\355510343.exe
                                      C:\Windows\system32\drivers\down\355513406.exe
                                      C:\Windows\system32\drivers\down\355513937.exe
                                      C:\Windows\system32\drivers\down\355514687.exe
                                      C:\Windows\system32\drivers\down\355524562.exe
                                      C:\Windows\system32\drivers\down\355530953.exe
                                      C:\Windows\system32\drivers\down\355559718.exe
                                      C:\Windows\system32\drivers\down\355564937.exe
                                      C:\Windows\system32\drivers\down\355574171.exe
                                      C:\Windows\system32\drivers\down\356640.exe
                                      C:\Windows\system32\drivers\down\357906.exe
                                      C:\Windows\system32\drivers\down\358562.exe
                                      C:\Windows\system32\drivers\down\359734.exe
                                      C:\Windows\system32\drivers\down\361343.exe
                                      C:\Windows\system32\drivers\down\363250.exe
                                      C:\Windows\system32\drivers\down\367343.exe
                                      C:\Windows\system32\drivers\down\369015.exe
                                      C:\Windows\system32\drivers\down\369859.exe
                                      C:\Windows\system32\drivers\down\370006296.exe
                                      C:\Windows\system32\drivers\down\370014578.exe
                                      C:\Windows\system32\drivers\down\370020312.exe
                                      C:\Windows\system32\drivers\down\370081437.exe
                                      C:\Windows\system32\drivers\down\370084015.exe
                                      C:\Windows\system32\drivers\down\370084062.exe
                                      C:\Windows\system32\drivers\down\370087390.exe
                                      C:\Windows\system32\drivers\down\370096390.exe
                                      C:\Windows\system32\drivers\down\370101546.exe
                                      C:\Windows\system32\drivers\down\370103156.exe
                                      C:\Windows\system32\drivers\down\370106015.exe
                                      C:\Windows\system32\drivers\down\370109968.exe
                                      C:\Windows\system32\drivers\down\370111656.exe
                                      C:\Windows\system32\drivers\down\370115437.exe
                                      C:\Windows\system32\drivers\down\370115609.exe
                                      C:\Windows\system32\drivers\down\370115750.exe
                                      C:\Windows\system32\drivers\down\370116593.exe
                                      C:\Windows\system32\drivers\down\370118578.exe
                                      C:\Windows\system32\drivers\down\370121828.exe
                                      C:\Windows\system32\drivers\down\370150515.exe
                                      C:\Windows\system32\drivers\down\370161718.exe
                                      C:\Windows\system32\drivers\down\370166031.exe
                                      C:\Windows\system32\drivers\down\375750.exe
                                      C:\Windows\system32\drivers\down\376765.exe
                                      C:\Windows\system32\drivers\down\382109.exe
                                      C:\Windows\system32\drivers\down\384296.exe
                                      C:\Windows\system32\drivers\down\384583125.exe
                                      C:\Windows\system32\drivers\down\384600656.exe
                                      C:\Windows\system32\drivers\down\384603921.exe
                                      C:\Windows\system32\drivers\down\384617171.exe
                                      C:\Windows\system32\drivers\down\384619609.exe
                                      C:\Windows\system32\drivers\down\384619765.exe
                                      C:\Windows\system32\drivers\down\384622656.exe
                                      C:\Windows\system32\drivers\down\384624921.exe
                                      C:\Windows\system32\drivers\down\384627250.exe
                                      C:\Windows\system32\drivers\down\384628156.exe
                                      C:\Windows\system32\drivers\down\384631703.exe
                                      C:\Windows\system32\drivers\down\384635468.exe
                                      C:\Windows\system32\drivers\down\384637203.exe
                                      C:\Windows\system32\drivers\down\384639968.exe
                                      C:\Windows\system32\drivers\down\384641000.exe
                                      C:\Windows\system32\drivers\down\384641234.exe
                                      C:\Windows\system32\drivers\down\384641875.exe
                                      C:\Windows\system32\drivers\down\384643203.exe
                                      C:\Windows\system32\drivers\down\384647593.exe
                                      C:\Windows\system32\drivers\down\384673718.exe
                                      C:\Windows\
                                      • 1
                                      • 2