Pages de pub sans cesse
Résolu/Fermé
pipalopop
Messages postés
14
Date d'inscription
vendredi 4 janvier 2008
Statut
Membre
Dernière intervention
26 janvier 2008
-
5 janv. 2008 à 14:48
Utilisateur anonyme - 15 janv. 2008 à 23:12
Utilisateur anonyme - 15 janv. 2008 à 23:12
A voir également:
- Pages de pub sans cesse
- Bloqueur de pub youtube - Guide
- Youtube sans pub - Guide
- Netflix standard avec pub - Guide
- YT Siphon : une extension pour contourner la pub sur YouTube - Guide
- Supprimer des pages sur word - Guide
19 réponses
Blosters
Messages postés
19
Date d'inscription
dimanche 11 février 2007
Statut
Membre
Dernière intervention
11 avril 2008
5 janv. 2008 à 14:52
5 janv. 2008 à 14:52
va sur clubic.com ou sur telecharger.com pour elecharger un antipub indépendant de ton navigateur ..
ca devrai aller mieu
ca devrai aller mieu
Utilisateur anonyme
5 janv. 2008 à 14:53
5 janv. 2008 à 14:53
bonjour telecharge avg anti rootkis free fait un scan et tu suprime le resulta de sa recherche lien si joint cordialement daniel donne reponse merci
http://www.commentcamarche.net/telecharger/telecharger 34055015 avg anti rootkit
http://www.commentcamarche.net/telecharger/telecharger 34055015 avg anti rootkit
Salut daniel 1704,
Je teremercie pour ton aide mais le probleme persiste !!!!
AIDEZ MOI !!!!
Merci par avance.
Je teremercie pour ton aide mais le probleme persiste !!!!
AIDEZ MOI !!!!
Merci par avance.
Utilisateur anonyme
5 janv. 2008 à 15:27
5 janv. 2008 à 15:27
explique moi quel genre de pubs itempestive qui vienne s'afficher quand tu ouvre ton navigateur ?
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Salut,
Sinon tu peux utiliser mozilla firefox Firefox et installer adblock plus (https://addons.mozilla.org/fr/firefox/addon/adblock-plus/ qui est un puissant anti-pubs régulièrement mis à jour (https://addons.mozilla.org/fr/firefox/addon/1136).
Sinon tu peux utiliser mozilla firefox Firefox et installer adblock plus (https://addons.mozilla.org/fr/firefox/addon/adblock-plus/ qui est un puissant anti-pubs régulièrement mis à jour (https://addons.mozilla.org/fr/firefox/addon/1136).
jE VIENS DE TELECHARGER NAVIGLOG1
Le repport obtenu est celui-ci:
Search Navipromo version 3.3.8 commencé le 05/01/2008 à 15:29:00,18
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!
Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 11.12.2007 à 18h00 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 6.0.2900.2180
Système de fichiers : NTFS
Executé en mode normal
*** Recherche Programmes installés ***
WebMediaPlayer
*** Recherche dossiers dans C:\WINDOWS ***
*** Recherche dossiers dans C:\Program Files ***
C:\Program Files\WebMediaPlayer trouvé !
*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\APPLIC~1 ***
*** Recherche dossiers dans "C:\Documents and Settings\Pipop\application data" ***
*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1 ***
...\WebMediaPlayer trouvé !
*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net
Fichier(s) caché(s) :
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.dat
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.exe
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_nav.dat
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_navps.dat
*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!
* Recherche dans C:\WINDOWS\system32 *
* Recherche dans "C:\Documents and Settings\Pipop\local settings\application data" *
Fichiers trouvés :
cmfigqj.exe trouvé !
pgtswy.exe trouvé !
*** Recherche fichiers ***
C:\DOCUME~1\ALLUSE~1\Bureau\WebMediaPlayer.lnk trouvé !
C:\WINDOWS\system32\nvs2.inf trouvé !
C:\WINDOWS\prefetch\WEBMEDIAPLAYER.EXE-33B0F5F9.pf trouvé !
*** Recherche clés spécifiques dans le Registre ***
HKEY_CURRENT_USER\Software\Lanconfig trouvé !
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche nouveaux fichiers Instant Access :
2)Recherche Heuristique :
* Dans C:\WINDOWS\system32 :
* Dans "C:\Documents and Settings\Pipop\local settings\application data" :
pgtswy.dat trouvé !
3)Recherche Certificats :
Certificat Egroup trouvé !
4)Recherche fichiers connus :
*** Analyse terminée le 05/01/2008 à 15:39:12,71 ***
Le repport obtenu est celui-ci:
Search Navipromo version 3.3.8 commencé le 05/01/2008 à 15:29:00,18
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!
Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 11.12.2007 à 18h00 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 6.0.2900.2180
Système de fichiers : NTFS
Executé en mode normal
*** Recherche Programmes installés ***
WebMediaPlayer
*** Recherche dossiers dans C:\WINDOWS ***
*** Recherche dossiers dans C:\Program Files ***
C:\Program Files\WebMediaPlayer trouvé !
*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\APPLIC~1 ***
*** Recherche dossiers dans "C:\Documents and Settings\Pipop\application data" ***
*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1 ***
...\WebMediaPlayer trouvé !
*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net
Fichier(s) caché(s) :
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.dat
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.exe
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_nav.dat
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_navps.dat
*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!
* Recherche dans C:\WINDOWS\system32 *
* Recherche dans "C:\Documents and Settings\Pipop\local settings\application data" *
Fichiers trouvés :
cmfigqj.exe trouvé !
pgtswy.exe trouvé !
*** Recherche fichiers ***
C:\DOCUME~1\ALLUSE~1\Bureau\WebMediaPlayer.lnk trouvé !
C:\WINDOWS\system32\nvs2.inf trouvé !
C:\WINDOWS\prefetch\WEBMEDIAPLAYER.EXE-33B0F5F9.pf trouvé !
*** Recherche clés spécifiques dans le Registre ***
HKEY_CURRENT_USER\Software\Lanconfig trouvé !
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche nouveaux fichiers Instant Access :
2)Recherche Heuristique :
* Dans C:\WINDOWS\system32 :
* Dans "C:\Documents and Settings\Pipop\local settings\application data" :
pgtswy.dat trouvé !
3)Recherche Certificats :
Certificat Egroup trouvé !
4)Recherche fichiers connus :
*** Analyse terminée le 05/01/2008 à 15:39:12,71 ***
Ok ...
Passe à l'option 2 de Navilog1
-> poste le rapport une fois fini
**************************************
Télécharge Cleanup
Lance-le et choisi l'option ' cleanup! '
**************************************
Reposte un HJT aprés Navilog et cleanup fait
*************
A+
Passe à l'option 2 de Navilog1
-> poste le rapport une fois fini
**************************************
Télécharge Cleanup
Lance-le et choisi l'option ' cleanup! '
**************************************
Reposte un HJT aprés Navilog et cleanup fait
*************
A+
Utilisateur anonyme
5 janv. 2008 à 16:05
5 janv. 2008 à 16:05
quand tu a fait le scan avec avg anti rootkit a t'il trouvé quelque chose si oui a tu suprimer les lignes ? sinon telecharge hijackthis fait colle log que je regarde j'arrive mieux avec hijackhis le lien
http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis
http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis
Je viens de faire le scan avec hijackthis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:36:28, on 05/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\One-Touch\OneTouch.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ITE\TRAYICON\TRAYICON.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Orange\Deskboard\deskboard.exe
C:\Program Files\Orange\browser\browser.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.1.1/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [Display Settings] C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
O4 - HKLM\..\Run: [QT4HPOT] C:\Program Files\HPQ\One-Touch\OneTouch.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [TrayIconPath] C:\Program Files\ITE\TRAYICON\TRAYICON.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Easy PDF Creator] C:\Program Files\Easy PDF Creator\EasyPDFCreator.exe
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: https://www.orange.fr/portail
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:36:28, on 05/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\One-Touch\OneTouch.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ITE\TRAYICON\TRAYICON.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Orange\Deskboard\deskboard.exe
C:\Program Files\Orange\browser\browser.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.1.1/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [Display Settings] C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
O4 - HKLM\..\Run: [QT4HPOT] C:\Program Files\HPQ\One-Touch\OneTouch.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [TrayIconPath] C:\Program Files\ITE\TRAYICON\TRAYICON.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Easy PDF Creator] C:\Program Files\Easy PDF Creator\EasyPDFCreator.exe
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: https://www.orange.fr/portail
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
Utilisateur anonyme
5 janv. 2008 à 17:50
5 janv. 2008 à 17:50
tu refait un scan hisjacthis
juanpablo
Messages postés
142
Date d'inscription
mercredi 30 mai 2007
Statut
Membre
Dernière intervention
16 juin 2008
10
5 janv. 2008 à 18:47
5 janv. 2008 à 18:47
salut
il faudrait traiter l'infection detectée par navilog1 ...
il faudrait traiter l'infection detectée par navilog1 ...
pipalopop
Messages postés
14
Date d'inscription
vendredi 4 janvier 2008
Statut
Membre
Dernière intervention
26 janvier 2008
2
5 janv. 2008 à 18:24
5 janv. 2008 à 18:24
J'ai fait la manip que tu m'as demandé.
Mais malheuresement le prolème persiste!
Mais malheuresement le prolème persiste!
pipalopop
Messages postés
14
Date d'inscription
vendredi 4 janvier 2008
Statut
Membre
Dernière intervention
26 janvier 2008
2
5 janv. 2008 à 18:29
5 janv. 2008 à 18:29
J'ai fait un nouveau scann voici le résultat:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:27:02, on 05/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\One-Touch\OneTouch.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ITE\TRAYICON\TRAYICON.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\systray\systrayapp.exe
C:\Program Files\Orange\Deskboard\deskboard.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Orange\browser\browser.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.1.1/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [Display Settings] C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
O4 - HKLM\..\Run: [QT4HPOT] C:\Program Files\HPQ\One-Touch\OneTouch.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [TrayIconPath] C:\Program Files\ITE\TRAYICON\TRAYICON.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: https://www.orange.fr/portail
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:27:02, on 05/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\One-Touch\OneTouch.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ITE\TRAYICON\TRAYICON.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\systray\systrayapp.exe
C:\Program Files\Orange\Deskboard\deskboard.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Orange\browser\browser.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.1.1/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [Display Settings] C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
O4 - HKLM\..\Run: [QT4HPOT] C:\Program Files\HPQ\One-Touch\OneTouch.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [TrayIconPath] C:\Program Files\ITE\TRAYICON\TRAYICON.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: https://www.orange.fr/portail
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
pipalopop
Messages postés
14
Date d'inscription
vendredi 4 janvier 2008
Statut
Membre
Dernière intervention
26 janvier 2008
2
5 janv. 2008 à 18:34
5 janv. 2008 à 18:34
La page de pub revenant le plus souvant est:
fp.pc-on-internet.com
fp.pc-on-internet.com
stefdu34
Messages postés
82
Date d'inscription
vendredi 4 janvier 2008
Statut
Membre
Dernière intervention
6 mai 2008
5
5 janv. 2008 à 18:57
5 janv. 2008 à 18:57
Daniel, ces 4 lignes :
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [Easy PDF Creator] C:\Program Files\Easy
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
n'ont strictement rien à voir avec le pb de pipalopop...
De plus Hijackthis tout seul ne suffit pas.
Donc Pipa...commence par ça déjà :
1 ) récupère Spybot, installe le, met le à jour, vaccine ton système
récupère ad aware, installe le, met le à jour
2 ) désactive la restauration système de windows
3 ) redémarre en mode sans échec
4 ) lance les scans et les nettoyages les uns aprés les autres de :
spybot, ad aware, avg, ccleaner ( nettoyage + registre )
5 ) une fois finis, redémarre normallement, remet ta restauration système et dis nous si c'est ok ou pas.
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O4 - HKLM\..\Run: [Easy PDF Creator] C:\Program Files\Easy
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
n'ont strictement rien à voir avec le pb de pipalopop...
De plus Hijackthis tout seul ne suffit pas.
Donc Pipa...commence par ça déjà :
1 ) récupère Spybot, installe le, met le à jour, vaccine ton système
récupère ad aware, installe le, met le à jour
2 ) désactive la restauration système de windows
3 ) redémarre en mode sans échec
4 ) lance les scans et les nettoyages les uns aprés les autres de :
spybot, ad aware, avg, ccleaner ( nettoyage + registre )
5 ) une fois finis, redémarre normallement, remet ta restauration système et dis nous si c'est ok ou pas.
^^Marie^^
Messages postés
113929
Date d'inscription
mardi 6 septembre 2005
Statut
Membre
Dernière intervention
28 août 2020
3 274
5 janv. 2008 à 20:55
5 janv. 2008 à 20:55
Bonsoir
2 ) désactive la restauration système de windows
IMPORTANT :
Ne pas désactiver la restauration système, tant que le pc n'est pas propre. Merci
Une fois désinfecté le pc, on peut alors désactiver la restauration système pour la purger de ses m.....et repartir sur un point sain.
A++
2 ) désactive la restauration système de windows
IMPORTANT :
Ne pas désactiver la restauration système, tant que le pc n'est pas propre. Merci
Une fois désinfecté le pc, on peut alors désactiver la restauration système pour la purger de ses m.....et repartir sur un point sain.
A++
pipalopop
Messages postés
14
Date d'inscription
vendredi 4 janvier 2008
Statut
Membre
Dernière intervention
26 janvier 2008
2
5 janv. 2008 à 19:13
5 janv. 2008 à 19:13
voici le resultat apres l'étape2 de navilog1:
Clean Navipromo version 3.3.8 commencé le 05/01/2008 à 18:58:16,73
Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 11.12.2007 à 18h00 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 6.0.2900.2180
Système de fichiers : NTFS
Mode suppression automatique
*** Creation backups fichiers trouvés par Catchme ***
Copie vers "C:\Program Files\navilog1\Backupnavi"
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.dat réalisée avec succès !
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.exe réalisée avec succès !
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_nav.dat réalisée avec succès !
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_navps.dat réalisée avec succès !
*** Suppression des fichiers trouvés avec Catchme ***
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.dat supprimé !
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.exe supprimé !
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_nav.dat supprimé !
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_navps.dat supprimé !
** 2ème passage avec résultats Catchme **
* Dans C:\WINDOWS\system32 *
C:\WINDOWS\prefetch\pgtswy*.pf trouvé !
Copie C:\WINDOWS\prefetch\pgtswy*.pf réalisée avec succès !
C:\WINDOWS\prefetch\pgtswy*.pf supprimé !
* Dans "C:\Documents and Settings\Pipop\local settings\application data" *
*** Suppression avec sauvegardes résultats GenericNaviSearch ***
* Suppression dans C:\WINDOWS\System32 *
* Suppression dans "C:\Documents and Settings\Pipop\local settings\application data" *
cmfigqj.exe trouvé !
Copie cmfigqj.exe réalisée avec succès !
cmfigqj.exe supprimé !
*** Suppression dossiers dans C:\WINDOWS ***
*** Suppression dossiers dans C:\Program Files ***
C:\Program Files\WebMediaPlayer ...suppression...
C:\Program Files\WebMediaPlayer supprimé !
*** Suppression dossiers dans C:\DOCUME~1\ALLUSE~1\APPLIC~1 ***
*** Suppression dossiers dans "C:\Documents and Settings\Pipop\application data" ***
*** Suppression dossiers dans C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1 ***
...\WebMediaPlayer ...suppression...
...\WebMediaPlayer supprimé !
*** Suppression fichiers ***
C:\DOCUME~1\ALLUSE~1\Bureau\WebMediaPlayer.lnk supprimé !
C:\WINDOWS\system32\nvs2.inf supprimé !
C:\WINDOWS\prefetch\WEBMEDIAPLAYER.EXE-33B0F5F9.pf supprimé !
*** Suppression fichiers temporaires ***
Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\Pipop\local settings\Temp effectué !
*** Traitement Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Suppression avec sauvegardes nouveaux fichiers Instant Access :
2)Recherche, création sauvegardes et suppression Heuristique :
* Dans C:\WINDOWS\system32 *
* Dans "C:\Documents and Settings\Pipop\local settings\application data" *
*** Sauvegarde du Registre vers dossier Backupnavi ***
sauvegarde du Registre réalisée avec succès !
*** Nettoyage Registre ***
Nettoyage Registre Ok
*** Certificats ***
Certificat Egroup supprimé !
*** Nettoyage terminé le 05/01/2008 à 19:08:02,60 ***
Clean Navipromo version 3.3.8 commencé le 05/01/2008 à 18:58:16,73
Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 11.12.2007 à 18h00 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 6.0.2900.2180
Système de fichiers : NTFS
Mode suppression automatique
*** Creation backups fichiers trouvés par Catchme ***
Copie vers "C:\Program Files\navilog1\Backupnavi"
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.dat réalisée avec succès !
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.exe réalisée avec succès !
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_nav.dat réalisée avec succès !
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_navps.dat réalisée avec succès !
*** Suppression des fichiers trouvés avec Catchme ***
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.dat supprimé !
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.exe supprimé !
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_nav.dat supprimé !
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_navps.dat supprimé !
** 2ème passage avec résultats Catchme **
* Dans C:\WINDOWS\system32 *
C:\WINDOWS\prefetch\pgtswy*.pf trouvé !
Copie C:\WINDOWS\prefetch\pgtswy*.pf réalisée avec succès !
C:\WINDOWS\prefetch\pgtswy*.pf supprimé !
* Dans "C:\Documents and Settings\Pipop\local settings\application data" *
*** Suppression avec sauvegardes résultats GenericNaviSearch ***
* Suppression dans C:\WINDOWS\System32 *
* Suppression dans "C:\Documents and Settings\Pipop\local settings\application data" *
cmfigqj.exe trouvé !
Copie cmfigqj.exe réalisée avec succès !
cmfigqj.exe supprimé !
*** Suppression dossiers dans C:\WINDOWS ***
*** Suppression dossiers dans C:\Program Files ***
C:\Program Files\WebMediaPlayer ...suppression...
C:\Program Files\WebMediaPlayer supprimé !
*** Suppression dossiers dans C:\DOCUME~1\ALLUSE~1\APPLIC~1 ***
*** Suppression dossiers dans "C:\Documents and Settings\Pipop\application data" ***
*** Suppression dossiers dans C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1 ***
...\WebMediaPlayer ...suppression...
...\WebMediaPlayer supprimé !
*** Suppression fichiers ***
C:\DOCUME~1\ALLUSE~1\Bureau\WebMediaPlayer.lnk supprimé !
C:\WINDOWS\system32\nvs2.inf supprimé !
C:\WINDOWS\prefetch\WEBMEDIAPLAYER.EXE-33B0F5F9.pf supprimé !
*** Suppression fichiers temporaires ***
Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\Pipop\local settings\Temp effectué !
*** Traitement Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Suppression avec sauvegardes nouveaux fichiers Instant Access :
2)Recherche, création sauvegardes et suppression Heuristique :
* Dans C:\WINDOWS\system32 *
* Dans "C:\Documents and Settings\Pipop\local settings\application data" *
*** Sauvegarde du Registre vers dossier Backupnavi ***
sauvegarde du Registre réalisée avec succès !
*** Nettoyage Registre ***
Nettoyage Registre Ok
*** Certificats ***
Certificat Egroup supprimé !
*** Nettoyage terminé le 05/01/2008 à 19:08:02,60 ***
pipalopop
Messages postés
14
Date d'inscription
vendredi 4 janvier 2008
Statut
Membre
Dernière intervention
26 janvier 2008
2
5 janv. 2008 à 19:17
5 janv. 2008 à 19:17
Rapport de cleanup:
CleanUp! started on 01/05/08 19:15:52.
...
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\528992t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\66801t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\;var1=;var2=1;var3=56100;var4=;sz=1x1;ord=8554101511500767[2] - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\actions_03[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\actions_07[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\action_03[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\addressbook200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\anim_crea_bal[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\anim_mobilite[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\Antispam200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\arrow[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\b4[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_actions[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_actions[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_bdb[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_cnx[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_num[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_suite01[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_suite02[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_titre[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_titre[2].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bnt_search[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\boutonLeft[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\btnSearch[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\btn_decnx[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bt_combo_int[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bullet_off[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bullet_on_orange[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\CAA6TZIN.htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\cm_writeSMS[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\combo200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\contextMenu200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\degradeSearch[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\discusplus[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\disc_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\download[2].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\exalead[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\flashDown[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\FlashTag200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\fleche2[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\fonc_04[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\forum[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\frame[1].html - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\hit[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\hit[2].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_02[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_sms[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_write[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\logo[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\navig_next10_off[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ongletLeft[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\o[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_exclam[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_letter[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_print[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_search[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_03[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_04[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_ecrir[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_forum_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_interv[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_prefs[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_stats[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\radio[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\redirectfilter200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sendConfirmationReading_frame[1].htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sep[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sep_02_1[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sep_right[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\shadow[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\shadow[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\signatures200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\troisPts[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\wousdat[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\248t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\264t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\actions_02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\action_02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\action_05[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\arrow-down[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\arrow[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\autocompletion200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\b1[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_bdb[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_input[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_shortcuts[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_suite01[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_suite02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_suite02[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_titre[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_titre[4].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_titre[5].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\c2c_call[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\CA6PU7S5.swf - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ccm[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\centre[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\checkbox200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\cm_call[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\cm_writeMMS[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\coche[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\coinFooterD[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\default[2].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\discusplusr[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\discus[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\disc_sans[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\droite[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\Exception200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\filters200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\flashobject200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\fonc_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\fonc_03[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\fondJauge[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\forum[2].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\frame[1].htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\hit[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ico_msg[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ico_oLink[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\listMails200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ongletRight[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\orange[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\o[1].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto1[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_attach[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_bList[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_inbox[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_junk[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_manage[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_02[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_06[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_disc[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_disc_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_member[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_rss[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\radio_off[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\read[1].htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\richText200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep_01_2[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep_02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep_left[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\shadow[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\shadow[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_01a[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_02a[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_04a[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_06a[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\show_ads[2].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sms200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\titreWebMail[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\track[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\xiti[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\xms_notification200712051808[1].js - deleted
C:\Documents and Settings\NetworkService\Cookies\index.dat - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\061-3452.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\061-3638.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\index-windows-1[1].sucatalog - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\iTunesSetupAdmin[1].exe - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\G5U3CXIF\061-3395.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\G5U3CXIF\061-4066.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\G5U3CXIF\AppleMobileDeviceSupport[1].msi - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\061-2802.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\061-3872.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\AppleSoftwareUpdate[1].msi - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\iTunes[1].msi - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WP6V0TQJ\061-3637.English[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WP6V0TQJ\061-4121.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WP6V0TQJ\QuickTime[1].msi - deleted
C:\Documents and Settings\NetworkService\Cookies\index.dat - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\061-3452.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\061-3638.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\index-windows-1[1].sucatalog - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\iTunesSetupAdmin[1].exe - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\G5U3CXIF\061-3395.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\G5U3CXIF\061-4066.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\G5U3CXIF\AppleMobileDeviceSupport[1].msi - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\061-2802.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\061-3872.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\AppleSoftwareUpdate[1].msi - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\iTunes[1].msi - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WP6V0TQJ\061-3637.English[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WP6V0TQJ\061-4121.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WP6V0TQJ\QuickTime[1].msi - deleted
C:\Documents and Settings\LocalService\Cookies\index.dat - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\AWLTS894\ - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\C06PGAT7\ - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\L113USPC\ - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\WAEFJVRP\ - deleted
C:\Documents and Settings\LocalService\Cookies\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temp\Historique\History.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\Documents and Settings\Default User\Cookies\index.dat - deleted
C:\Documents and Settings\Default User\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\Default User\Cookies\index.dat - deleted
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
'Run MRU' list - removed from the registry.
'Doc Find Spec MRU' list - removed from the registry.
'FindComputerMRU' list - removed from the registry.
'ComputerNameMRU' list - removed from the registry.
'ContainingTextMRU' list - removed from the registry.
'FilesNamedMRU' list - removed from the registry.
Search Assistant MRU list - removed from the registry.
Explorer Open/Save MRU list - removed from the registry.
Explorer Last Visited MRU list - removed from the registry.
Paint Recent File List - removed from the registry.
WordPad Recent File List - removed from the registry.
Telnet's MRU list - removed from the registry.
Windows Media Player Recent File List - removed from the registry.
WinZip Extract MRU list - removed from the registry.
WinZip File MRU list - removed from the registry.
CleanUp! 4.5.2 recovered 143.3 MB of disk space from 2354 files.
CleanUp! finished on 01/05/08 19:16:00.
CleanUp! started on 01/05/08 19:15:52.
...
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\528992t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\66801t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\;var1=;var2=1;var3=56100;var4=;sz=1x1;ord=8554101511500767[2] - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\actions_03[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\actions_07[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\action_03[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\addressbook200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\anim_crea_bal[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\anim_mobilite[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\Antispam200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\arrow[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\b4[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_actions[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_actions[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_bdb[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_cnx[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_num[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_suite01[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_suite02[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_titre[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_titre[2].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bnt_search[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\boutonLeft[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\btnSearch[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\btn_decnx[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bt_combo_int[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bullet_off[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bullet_on_orange[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\CAA6TZIN.htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\cm_writeSMS[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\combo200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\contextMenu200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\degradeSearch[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\discusplus[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\disc_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\download[2].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\exalead[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\flashDown[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\FlashTag200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\fleche2[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\fonc_04[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\forum[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\frame[1].html - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\hit[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\hit[2].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_02[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_sms[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_write[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\logo[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\navig_next10_off[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ongletLeft[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\o[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_exclam[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_letter[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_print[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_search[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_03[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_04[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_ecrir[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_forum_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_interv[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_prefs[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_stats[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\radio[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\redirectfilter200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sendConfirmationReading_frame[1].htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sep[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sep_02_1[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sep_right[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\shadow[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\shadow[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\signatures200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\troisPts[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\wousdat[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\248t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\264t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\actions_02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\action_02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\action_05[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\arrow-down[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\arrow[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\autocompletion200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\b1[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_bdb[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_input[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_shortcuts[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_suite01[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_suite02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_suite02[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_titre[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_titre[4].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_titre[5].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\c2c_call[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\CA6PU7S5.swf - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ccm[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\centre[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\checkbox200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\cm_call[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\cm_writeMMS[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\coche[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\coinFooterD[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\default[2].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\discusplusr[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\discus[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\disc_sans[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\droite[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\Exception200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\filters200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\flashobject200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\fonc_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\fonc_03[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\fondJauge[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\forum[2].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\frame[1].htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\hit[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ico_msg[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ico_oLink[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\listMails200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ongletRight[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\orange[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\o[1].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto1[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_attach[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_bList[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_inbox[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_junk[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_manage[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_02[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_06[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_disc[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_disc_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_member[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_rss[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\radio_off[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\read[1].htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\richText200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep_01_2[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep_02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep_left[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\shadow[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\shadow[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_01a[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_02a[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_04a[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_06a[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\show_ads[2].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sms200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\titreWebMail[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\track[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\xiti[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\xms_notification200712051808[1].js - deleted
C:\Documents and Settings\NetworkService\Cookies\index.dat - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\061-3452.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\061-3638.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\index-windows-1[1].sucatalog - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\iTunesSetupAdmin[1].exe - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\G5U3CXIF\061-3395.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\G5U3CXIF\061-4066.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\G5U3CXIF\AppleMobileDeviceSupport[1].msi - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\061-2802.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\061-3872.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\AppleSoftwareUpdate[1].msi - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\iTunes[1].msi - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WP6V0TQJ\061-3637.English[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WP6V0TQJ\061-4121.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WP6V0TQJ\QuickTime[1].msi - deleted
C:\Documents and Settings\NetworkService\Cookies\index.dat - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\061-3452.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\061-3638.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\index-windows-1[1].sucatalog - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\iTunesSetupAdmin[1].exe - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\G5U3CXIF\061-3395.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\G5U3CXIF\061-4066.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\G5U3CXIF\AppleMobileDeviceSupport[1].msi - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\061-2802.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\061-3872.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\AppleSoftwareUpdate[1].msi - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\iTunes[1].msi - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WP6V0TQJ\061-3637.English[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WP6V0TQJ\061-4121.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WP6V0TQJ\QuickTime[1].msi - deleted
C:\Documents and Settings\LocalService\Cookies\index.dat - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\AWLTS894\ - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\C06PGAT7\ - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\L113USPC\ - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\WAEFJVRP\ - deleted
C:\Documents and Settings\LocalService\Cookies\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temp\Historique\History.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\Documents and Settings\Default User\Cookies\index.dat - deleted
C:\Documents and Settings\Default User\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\Default User\Cookies\index.dat - deleted
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
'Run MRU' list - removed from the registry.
'Doc Find Spec MRU' list - removed from the registry.
'FindComputerMRU' list - removed from the registry.
'ComputerNameMRU' list - removed from the registry.
'ContainingTextMRU' list - removed from the registry.
'FilesNamedMRU' list - removed from the registry.
Search Assistant MRU list - removed from the registry.
Explorer Open/Save MRU list - removed from the registry.
Explorer Last Visited MRU list - removed from the registry.
Paint Recent File List - removed from the registry.
WordPad Recent File List - removed from the registry.
Telnet's MRU list - removed from the registry.
Windows Media Player Recent File List - removed from the registry.
WinZip Extract MRU list - removed from the registry.
WinZip File MRU list - removed from the registry.
CleanUp! 4.5.2 recovered 143.3 MB of disk space from 2354 files.
CleanUp! finished on 01/05/08 19:16:00.