[b]SDFix: Version 1.240
/b
Run by Administrateur on 07/12/2008 at 18:07
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services
/b:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files
/b:
Trojan Files Found:
C:\WINDOWS\Config\csrss.exe - Deleted
C:\WINDOWS\system32\Rhost32.exe - Deleted
Removing Temp Files
[b]ADS Check
/b:
[b]Final Check
/b:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2008-12-07 18:36:54
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:92,e4,d0,19,67,00,20,32,8b,8d,2f,cf,8b,c6,3d,96,1e,8e,8d,18,9b,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,01,64,ee,ca,2f,0c,b4,e4,e9,01,0e,5c,5f,64,3e,fb,47,..
"khjeh"=hex:4f,ed,b3,89,d1,3c,9f,b4,55,a7,53,cb,bf,58,38,4c,cb,9d,c7,54,d6,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:6a,eb,65,b1,14,a0,5b,dc,5d,a4,ba,c0,22,37,3b,15,f7,3e,63,8d,bb,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s1"=dword:2df9c43f
"s2"=dword:110480d0
"h0"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:92,e4,d0,19,67,00,20,32,8b,8d,2f,cf,8b,c6,3d,96,1e,8e,8d,18,9b,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,01,64,ee,ca,2f,0c,b4,e4,e9,01,0e,5c,5f,64,3e,fb,47,..
"khjeh"=hex:4f,ed,b3,89,d1,3c,9f,b4,55,a7,53,cb,bf,58,38,4c,cb,9d,c7,54,d6,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:6a,eb,65,b1,14,a0,5b,dc,5d,a4,ba,c0,22,37,3b,15,f7,3e,63,8d,bb,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:92,e4,d0,19,67,00,20,32,8b,8d,2f,cf,8b,c6,3d,96,1e,8e,8d,18,9b,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,01,64,ee,ca,2f,0c,b4,e4,e9,01,0e,5c,5f,64,3e,fb,47,..
"khjeh"=hex:4f,ed,b3,89,d1,3c,9f,b4,55,a7,53,cb,bf,58,38,4c,cb,9d,c7,54,d6,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:6a,eb,65,b1,14,a0,5b,dc,5d,a4,ba,c0,22,37,3b,15,f7,3e,63,8d,bb,..
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services
/b:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\WINDOWS\\system32\\PnkBstrA.exe"="C:\\WINDOWS\\system32\\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\\WINDOWS\\system32\\PnkBstrB.exe"="C:\\WINDOWS\\system32\\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\WINDOWS\\system32\\usmt\\migwiz.exe"="C:\\WINDOWS\\system32\\usmt\\migwiz.exe:*:Enabled:Assistant Transfert de fichiers et de paramŠtres"
"C:\\Program Files\\Microsoft Games\\Age of Mythology\\aomx.exe"="C:\\Program Files\\Microsoft Games\\Age of Mythology\\aomx.exe:*:Enabled:Age of Mythology - The Titans Expansion"
"C:\\Program Files\\World of Warcraft\\BackgroundDownloader.exe"="C:\\Program Files\\World of Warcraft\\BackgroundDownloader.exe:*:Enabled:Blizzard Downloader"
"C:\\Program Files\\Xfire\\ua_lsp_inst.exe"="C:\\Program Files\\Xfire\\ua_lsp_inst.exe:*:Enabled:ua_lsp_inst"
"C:\\Program Files\\EA GAMES\\Medal of Honor Batailles du Pacifique(tm)\\mohpa.exe"="C:\\Program Files\\EA GAMES\\Medal of Honor Batailles du Pacifique(tm)\\mohpa.exe:*:Enabled:Medal of Honor Pacific Assault(tm)"
"C:\\Program Files\\EA SPORTS\\UEFA Champions League 2006-2007\\CL07.exe"="C:\\Program Files\\EA SPORTS\\UEFA Champions League 2006-2007\\CL07.exe:*:Enabled:CL07"
"C:\\Program Files\\Vietcong2\\vietcong2.exe"="C:\\Program Files\\Vietcong2\\vietcong2.exe:*:Enabled:vietcong2"
"C:\\Program Files\\Electronic Arts\\La Bataille pour la Terre du Milieu II\\game.dat"="C:\\Program Files\\Electronic Arts\\La Bataille pour la Terre du Milieu II\\game.dat:*:Enabled:La Bataille pour la Terre du Milieu T II"
"C:\\Program Files\\Electronic Arts\\L'AvŠnement du Roi-sorcier\\game.dat"="C:\\Program Files\\Electronic Arts\\L'AvŠnement du Roi-sorcier\\game.dat:*:Enabled:LSDA, L'AvŠnement du Roi-sorcierT"
"C:\\Program Files\\EA GAMES\\Need for Speed Underground 2\\SPEED2.EXE"="C:\\Program Files\\EA GAMES\\Need for Speed Underground 2\\SPEED2.EXE:*:Enabled:SPEED2"
"C:\\Program Files\\EA GAMES\\MOHDA\\MOHAA.exe"="C:\\Program Files\\EA GAMES\\MOHDA\\MOHAA.exe:*:Enabled:Medal of Honor Allied Assault(tm)"
"C:\\Program Files\\Java\\jre1.6.0_05\\bin\\javaw.exe"="C:\\Program Files\\Java\\jre1.6.0_05\\bin\\javaw.exe:*:Enabled:Java(TM) Platform SE binary"
"C:\\Program Files\\Pyro Studios\\Imperial Glory\\ImperialGlory.exe"="C:\\Program Files\\Pyro Studios\\Imperial Glory\\ImperialGlory.exe:*:Enabled:ImperialGlory"
"C:\\Program Files\\Participatory Culture Foundation\\Miro\\xulrunner\\python\\Miro_Downloader.exe"="C:\\Program Files\\Participatory Culture Foundation\\Miro\\xulrunner\\python\\Miro_Downloader.exe:*:Enabled:Miro_Downloader"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\Program Files\\Steam\\steamapps\\borntokill62\\counter-strike source\\hl2.exe"="C:\\Program Files\\Steam\\steamapps\\borntokill62\\counter-strike source\\hl2.exe:*:Enabled:hl2"
"C:\\Program Files\\Steam\\Steam.exe"="C:\\Program Files\\Steam\\Steam.exe:*:Enabled:Steam"
"C:\\WINDOWS\\system32\\dpvsetup.exe"="C:\\WINDOWS\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"C:\\WINDOWS\\system32\\rundll32.exe"="C:\\WINDOWS\\system32\\rundll32.exe:*:Enabled:Ex‚cuter une DLL en tant qu'application"
"C:\\Program Files\\Steam\\steamapps\\borntokill62\\day of defeat source\\hl2.exe"="C:\\Program Files\\Steam\\steamapps\\borntokill62\\day of defeat source\\hl2.exe:*:Enabled:hl2"
"C:\\Program Files\\EA SPORTS\\FIFA 08\\FIFA08.exe"="C:\\Program Files\\EA SPORTS\\FIFA 08\\FIFA08.exe:*:Enabled:FIFA08"
"C:\\Sierra\\Empereur\\Emperor.exe"="C:\\Sierra\\Empereur\\Emperor.exe:*:Enabled:Emperor"
"C:\\Program Files\\Codemasters\\Le Seigneur des anneaux Online\\lotroclient.exe"="C:\\Program Files\\Codemasters\\Le Seigneur des anneaux Online\\lotroclient.exe:*:Enabled:lotroclient"
"C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"="C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE:*:Enabled:Internet Explorer"
"C:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe"="C:\\Program Files\\Activision\\Call of Duty 2\\CoD2MP_s.exe:*:Enabled:CoD2MP_s"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Azureus\\Azureus.exe"="C:\\Program Files\\Azureus\\Azureus.exe:*:Enabled:Azureus"
"C:\\Program Files\\Ubisoft\\THE SETTLERS - Bƒtisseurs d'Empire\\Play Settlers 6.exe"="C:\\Program Files\\Ubisoft\\THE SETTLERS - Bƒtisseurs d'Empire\\Play Settlers 6.exe:*:Enabled:Jouer THE SETTLERS - Bƒtisseurs d'Empire"
"C:\\Program Files\\Anno 1701\\Anno1701.exe"="C:\\Program Files\\Anno 1701\\Anno1701.exe:*:Enabled:Anno 1701"
"C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"="C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) "
"C:\\Program Files\\Xfire\\xfire.exe"="C:\\Program Files\\Xfire\\xfire.exe:*:Enabled:Xfire"
"C:\\Program Files\\Microsoft Games\\Age of Empires III\\age3.exe"="C:\\Program Files\\Microsoft Games\\Age of Empires III\\age3.exe:*:Enabled:Age of Empires 3"
"C:\\Program Files\\Cyanide\\GameCenter\\GameCenter.exe"="C:\\Program Files\\Cyanide\\GameCenter\\GameCenter.exe:*:Enabled:GameCenter"
"C:\\Program Files\\Cyanide\\Pro Cycling Manager 2007\\PCM.exe"="C:\\Program Files\\Cyanide\\Pro Cycling Manager 2007\\PCM.exe:*:Enabled:Pro Cycling Manager 2007"
"C:\\Program Files\\Cyanide\\Pro Cycling Manager 2007\\Autorun\\Exe\\Autorun.exe"="C:\\Program Files\\Cyanide\\Pro Cycling Manager 2007\\Autorun\\Exe\\Autorun.exe:*:Enabled:Pro Cycling Manager 2007 - AutoRun"
"C:\\Program Files\\SpeedBit Video Accelerator\\VideoAccelerator.exe"="C:\\Program Files\\SpeedBit Video Accelerator\\VideoAccelerator.exe:*:Enabled:VideoAccelerator"
"C:\\Program Files\\LucasArts\\Star Wars Jedi Knight Jedi Academy\\GameData\\jamp.exe"="C:\\Program Files\\LucasArts\\Star Wars Jedi Knight Jedi Academy\\GameData\\jamp.exe:*:Enabled:Jedi Academy MultiPlayer"
"C:\\WINDOWS\\system32\\Rhost32.exe"="C:\\WINDOWS\\system32\\Rhost32.exe:*:Enabled:Rhost32"
"C:\\Documents and Settings\\Administrateur\\Local Settings\\Temp\\Rar$EX00.719\\FR_1_0_0_to_1_2_0_JeuxVideo.com_12984.exe"="C:\\Documents and Settings\\Administrateur\\Local Settings\\Temp\\Rar$EX00.719\\FR_1_0_0_to_1_2_0_JeuxVideo.com_12984.exe:*:Enabled:TODO: <File description>"
"C:\\Documents and Settings\\Administrateur\\Local Settings\\Temp\\Rar$EX00.187\\FR_1_0_0_to_1_2_0_JeuxVideo.com_12984.exe"="C:\\Documents and Settings\\Administrateur\\Local Settings\\Temp\\Rar$EX00.187\\FR_1_0_0_to_1_2_0_JeuxVideo.com_12984.exe:*:Enabled:TODO: <File description>"
"C:\\Program Files\\THQ\\Company of Heroes\\RelicCOH.exe"="C:\\Program Files\\THQ\\Company of Heroes\\RelicCOH.exe:*:Enabled:RelicCOH"
"C:\\Program Files\\Electronic Arts\\EADM\\Core.exe"="C:\\Program Files\\Electronic Arts\\EADM\\Core.exe:*:Enabled:EA Download Manager"
"C:\\Program Files\\EA SPORTS\\FIFA 09\\FIFA09.exe"="C:\\Program Files\\EA SPORTS\\FIFA 09\\FIFA09.exe:*:Enabled:FIFA09"
"C:\\Program Files\\Mozilla Firefox\\firefox.exe"="C:\\Program Files\\Mozilla Firefox\\firefox.exe:*:Enabled:Firefox"
"C:\\Program Files\\Activision\\Call of Duty - World at War Beta\\CoDWaWbeta.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War Beta\\CoDWaWbeta.exe:*:Enabled:Call of Duty(R): World at War Multiplayer"
"C:\\Program Files\\ma-config.com\\maconfservice.exe"="C:\\Program Files\\ma-config.com\\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM) "
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM) "
"C:\\Program Files\\AVG\\AVG8\\avgemc.exe"="C:\\Program Files\\AVG\\AVG8\\avgemc.exe:*:Enabled:avgemc.exe"
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"="C:\\Program Files\\AVG\\AVG8\\avgupd.exe:*:Enabled:avgupd.exe"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[b]Remaining Files
/b:
File Backups: - C:\SDFix\backups\backups.zip
[b]Files with Hidden Attributes
/b:
Tue 24 Oct 2006 40,960 ..SHR --- "C:\Recycled\Recycled\ctfmon.exe"
Wed 3 May 2006 163,328 ..SHR --- "C:\WINDOWS\system32\flvDX.dll"
Wed 21 Feb 2007 31,232 ..SHR --- "C:\WINDOWS\system32\msfDX.dll"
Mon 17 Dec 2007 27,648 ..SH. --- "C:\WINDOWS\system32\Smab0.dll"
Wed 12 Mar 2008 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Sun 26 Jun 2005 616,448 ..SHR --- "C:\Program Files\eRightSoft\SUPER\cygwin1.dll"
Tue 21 Jun 2005 45,568 ..SHR --- "C:\Program Files\eRightSoft\SUPER\cygz.dll"
Thu 13 Mar 2008 13,824 A.SHR --- "C:\Program Files\eRightSoft\SUPER\DXdump.exe"
Mon 14 Apr 2008 72,704 ..SHR --- "C:\Program Files\eRightSoft\SUPER\Setup.exe"
Tue 2 Oct 2007 15,872 A.SHR --- "C:\Program Files\eRightSoft\SUPER\_Setup.dll"
Sun 28 Sep 2008 0 A..H. --- "C:\System Volume Information\_restore{23BA0447-5F2A-42C7-BE60-92D8443FF9F8}\RP135\A0045636.exe"
Sun 28 Sep 2008 0 A..H. --- "C:\System Volume Information\_restore{23BA0447-5F2A-42C7-BE60-92D8443FF9F8}\RP135\A0045637.exe"
Tue 4 Jun 2002 84,992 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\14_43260.dll"
Tue 4 Jun 2002 44,032 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\28_83260.dll"
Tue 10 Dec 2002 73,766 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\atrc3260.dll"
Tue 10 Dec 2002 65,575 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\cook3260.dll"
Sun 9 Jun 2002 36,864 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\ddnt3260.dll"
Tue 4 Jun 2002 20,480 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\dnet3260.dll"
Tue 10 Dec 2002 102,437 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv13260.dll"
Tue 10 Dec 2002 176,165 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv23260.dll"
Tue 10 Dec 2002 208,935 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv33260.dll"
Tue 10 Dec 2002 217,127 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv43260.dll"
Sun 9 Jun 2002 40,448 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\dspr3260.dll"
Sun 4 Nov 2001 225,280 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\ivvideo.dll"
Tue 10 Apr 2001 225,280 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\qtmlClient.dll"
Fri 20 Feb 2004 232,960 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\raac.dll"
Sun 9 Jun 2002 525,824 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rnco3260.dll"
Tue 10 Dec 2002 245,805 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rnlt3260.dll"
Tue 10 Dec 2002 45,093 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv103260.dll"
Tue 10 Dec 2002 98,341 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv203260.dll"
Tue 10 Dec 2002 94,247 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv303260.dll"
Tue 10 Dec 2002 90,151 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv403260.dll"
Tue 10 Dec 2002 102,439 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\sipr3260.dll"
Sun 9 Jun 2002 49,152 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\tokr3260.dll"
Thu 20 Mar 2008 5,632 ..SHR --- "C:\Program Files\eRightSoft\SUPER\spk\1stRun.exe"
Thu 30 Oct 2008 1,977 ...HR --- "C:\Documents and Settings\Administrateur\Application Data\SecuROM\UserData\securom_v7_01.bak"
Wed 12 Mar 2008 4,348 ...H. --- "C:\Documents and Settings\Administrateur\Mes documents\Ma musique\Sauvegarde de la licence\drmv1key.bak"
Sun 18 May 2008 20 A..H. --- "C:\Documents and Settings\Administrateur\Mes documents\Ma musique\Sauvegarde de la licence\drmv1lic.bak"
Wed 12 Mar 2008 312 A.SH. --- "C:\Documents and Settings\Administrateur\Mes documents\Ma musique\Sauvegarde de la licence\drmv2key.bak"
[b]Finished!
/b
--------------------\\ Lop S&D 4.2.4-9c XP/Vista
Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : AMD Athlon(tm) 64 X2 Dual Core Processor 4200+ )
BIOS : Default System BIOS
USER : Administrateur ( Administrator )
BOOT : Normal boot
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:76 Go (Free:19 Go)
D:\ (CD or DVD)
E:\ (CD or DVD)
F:\ (USB) - FAT - Total:242 Mo (Free:0 Go)
"C:\Lop SD" ( MAJ : 01-11-2008|16:30 )
Option : [1] ( 07/12/2008|16:17 )
--------------------\\ Listing des dossiers dans APPLIC~1
[28/04/2008|22:19] C:\DOCUME~1\ADMINI~1\APPLIC~1\AccurateRip
[06/03/2008|06:21] C:\DOCUME~1\ADMINI~1\APPLIC~1\Adobe
[08/10/2008|19:46] C:\DOCUME~1\ADMINI~1\APPLIC~1\AdobeUM
[04/07/2008|14:50] C:\DOCUME~1\ADMINI~1\APPLIC~1\Ascaron Entertainment
[05/03/2008|17:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\ATI
[07/12/2008|10:12] C:\DOCUME~1\ADMINI~1\APPLIC~1\AVGTOOLBAR
[09/07/2008|19:33] C:\DOCUME~1\ADMINI~1\APPLIC~1\Azureus
[19/10/2008|19:48] C:\DOCUME~1\ADMINI~1\APPLIC~1\Canneverbe_Limited
[13/09/2008|16:32] C:\DOCUME~1\ADMINI~1\APPLIC~1\DAEMON Tools
[06/12/2008|17:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\dvdcss
[03/06/2008|08:15] C:\DOCUME~1\ADMINI~1\APPLIC~1\Google
[30/04/2008|15:13] C:\DOCUME~1\ADMINI~1\APPLIC~1\Help
[05/03/2008|16:51] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[17/10/2008|16:59] C:\DOCUME~1\ADMINI~1\APPLIC~1\InstallShield
[05/03/2008|16:49] C:\DOCUME~1\ADMINI~1\APPLIC~1\Lavasoft
[23/10/2008|22:27] C:\DOCUME~1\ADMINI~1\APPLIC~1\Leadertech
[06/12/2008|16:46] C:\DOCUME~1\ADMINI~1\APPLIC~1\LimeWire
[07/12/2008|15:49] C:\DOCUME~1\ADMINI~1\APPLIC~1\m
[27/09/2008|11:11] C:\DOCUME~1\ADMINI~1\APPLIC~1\ma-config.com
[05/03/2008|19:55] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[07/12/2008|10:11] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[27/08/2008|13:58] C:\DOCUME~1\ADMINI~1\APPLIC~1\Mozilla
[26/10/2008|20:46] C:\DOCUME~1\ADMINI~1\APPLIC~1\Mumble
[30/04/2008|14:35] C:\DOCUME~1\ADMINI~1\APPLIC~1\Participatory Culture Foundation
[07/12/2008|09:39] C:\DOCUME~1\ADMINI~1\APPLIC~1\PC Tools
[21/11/2008|21:05] C:\DOCUME~1\ADMINI~1\APPLIC~1\PCF-VLC
[27/07/2008|19:41] C:\DOCUME~1\ADMINI~1\APPLIC~1\Pro Cycling Manager 2007
[09/03/2008|11:53] C:\DOCUME~1\ADMINI~1\APPLIC~1\SecuROM
[26/07/2008|00:19] C:\DOCUME~1\ADMINI~1\APPLIC~1\Shareaza
[28/04/2008|22:37] C:\DOCUME~1\ADMINI~1\APPLIC~1\Softplicity
[19/03/2008|07:50] C:\DOCUME~1\ADMINI~1\APPLIC~1\Sun
[29/10/2008|18:21] C:\DOCUME~1\ADMINI~1\APPLIC~1\teamspeak2
[03/06/2008|13:51] C:\DOCUME~1\ADMINI~1\APPLIC~1\Turbine
[24/07/2008|20:45] C:\DOCUME~1\ADMINI~1\APPLIC~1\U3
[07/05/2008|16:35] C:\DOCUME~1\ADMINI~1\APPLIC~1\uTorrent
[25/07/2008|00:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\vlc
[24/07/2008|20:39] C:\DOCUME~1\ADMINI~1\APPLIC~1\Vso
[24/07/2008|20:33] C:\DOCUME~1\ADMINI~1\APPLIC~1\VSO_HWE
[07/12/2008|12:14] C:\DOCUME~1\ADMINI~1\APPLIC~1\Xfire
[08/10/2008|19:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[15/07/2008|20:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Age of Empires 3
[13/05/2008|18:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[05/07/2008|20:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Azureus
[15/10/2008|15:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Blizzard
[14/09/2008|13:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[03/12/2008|20:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[07/12/2008|11:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[11/11/2008|09:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[26/08/2008|14:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[15/07/2008|17:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PC Tools
[12/07/2008|18:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Tages
[07/12/2008|15:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[05/03/2008|20:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[05/03/2008|20:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[24/06/2008|19:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom
[05/03/2008|16:49] C:\DOCUME~1\Boomscud\APPLIC~1\Microsoft
[05/03/2008|16:49] C:\DOCUME~1\Boomscud\APPLIC~1\Sun
[05/03/2008|16:42] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[07/12/2008|10:11] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[15/07/2008|15:49] C:\DOCUME~1\LOCALS~1\APPLIC~1\Xfire
[07/12/2008|10:11] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[14/07/2008|15:35] C:\DOCUME~1\NETWOR~1\APPLIC~1\Xfire
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[07/12/2008 15:44][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[07/12/2008 12:13][--ah-----] C:\WINDOWS\tasks\SA.DAT
[24/08/2001 15:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[14/11/2008|19:42] C:\Program Files\Activision
[03/11/2008|19:10] C:\Program Files\Adobe
[15/11/2008|10:36] C:\Program Files\AGEIA Technologies
[07/12/2008|10:43] C:\Program Files\Alwil Software
[28/09/2008|09:04] C:\Program Files\AMD
[28/09/2008|17:52] C:\Program Files\ATI
[24/07/2008|18:07] C:\Program Files\AviSynth 2.5
[15/07/2008|15:12] C:\Program Files\CCleaner
[19/10/2008|19:48] C:\Program Files\CDBurnerXP
[06/12/2008|16:03] C:\Program Files\DAEMON Tools Lite
[07/12/2008|09:32] C:\Program Files\eMule
[30/04/2008|13:22] C:\Program Files\eRightSoft
[06/11/2008|13:42] C:\Program Files\EXPERTool
[06/11/2008|13:44] C:\Program Files\Fichiers communs
[06/12/2008|16:15] C:\Program Files\Free Easy Burner
[14/09/2008|13:48] C:\Program Files\Google
[14/11/2008|19:18] C:\Program Files\Hercules
[14/11/2008|19:53] C:\Program Files\InstallShield Installation Information
[27/08/2008|14:38] C:\Program Files\Internet Explorer
[19/08/2008|17:01] C:\Program Files\iWizz
[19/07/2008|11:06] C:\Program Files\Java
[12/11/2008|10:36] C:\Program Files\LimeWire
[11/11/2008|09:50] C:\Program Files\ma-config.com
[03/10/2008|21:01] C:\Program Files\MediaCoder
[05/03/2008|16:43] C:\Program Files\microsoft frontpage
[05/03/2008|17:31] C:\Program Files\MODIFS
[10/06/2008|19:29] C:\Program Files\movie maker
[07/12/2008|12:38] C:\Program Files\Mozilla Firefox
[06/03/2008|06:41] C:\Program Files\MSBuild
[27/09/2008|11:36] C:\Program Files\MSECACHE
[05/03/2008|16:43] C:\Program Files\msn gaming zone
[19/07/2008|11:10] C:\Program Files\MSXML 4.0
[26/10/2008|20:46] C:\Program Files\Mumble
[10/06/2008|19:29] C:\Program Files\NetMeeting
[07/12/2008|12:12] C:\Program Files\Nouveau dossier
[05/03/2008|16:40] C:\Program Files\Outlook Express
[07/12/2008|11:08] C:\Program Files\Panda Security
[30/04/2008|14:34] C:\Program Files\Participatory Culture Foundation
[02/05/2008|22:31] C:\Program Files\QuickTime
[05/03/2008|17:48] C:\Program Files\Realtek
[06/03/2008|06:38] C:\Program Files\Reference Assemblies
[07/12/2008|11:50] C:\Program Files\Spyware Doctor
[07/12/2008|15:04] C:\Program Files\Steam
[20/04/2008|21:05] C:\Program Files\Teamspeak2_RC2
[05/10/2008|11:08] C:\Program Files\TeamSpeak3
[28/04/2008|22:50] C:\Program Files\TotalAudioConverter
[07/12/2008|11:48] C:\Program Files\TweakRAM
[05/03/2008|16:51] C:\Program Files\Uninstall Information
[25/07/2008|00:09] C:\Program Files\VideoLAN
[27/09/2008|11:36] C:\Program Files\Windows Installer Clean Up
[05/03/2008|20:51] C:\Program Files\Windows Live
[01/07/2008|19:04] C:\Program Files\Windows Live Toolbar
[12/03/2008|14:29] C:\Program Files\Windows Media Player
[05/03/2008|16:43] C:\Program Files\Windows NT
[05/03/2008|16:41] C:\Program Files\WindowsUpdate
[30/04/2008|15:13] C:\Program Files\WinRAR
[09/07/2008|16:57] C:\Program Files\Wireless LAN Utility
[25/11/2008|20:51] C:\Program Files\World of Warcraft
[28/09/2008|10:20] C:\Program Files\WowCartographe
[05/03/2008|16:43] C:\Program Files\xerox
[04/12/2008|19:16] C:\Program Files\Xfire
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[05/03/2008|22:06] C:\Program Files\Fichiers communs\Adobe
[13/09/2008|12:00] C:\Program Files\Fichiers communs\Blizzard Entertainment
[07/04/2008|13:26] C:\Program Files\Fichiers communs\DirectX
[05/03/2008|17:06] C:\Program Files\Fichiers communs\InstallShield
[05/03/2008|16:50] C:\Program Files\Fichiers communs\Java
[19/07/2008|11:10] C:\Program Files\Fichiers communs\Microsoft Shared
[05/03/2008|16:40] C:\Program Files\Fichiers communs\MSSoap
[05/03/2008|17:35] C:\Program Files\Fichiers communs\ODBC
[10/11/2008|17:02] C:\Program Files\Fichiers communs\PC Tools
[05/03/2008|16:41] C:\Program Files\Fichiers communs\Services
[05/03/2008|17:35] C:\Program Files\Fichiers communs\SpeechEngines
[05/03/2008|16:40] C:\Program Files\Fichiers communs\System
[05/03/2008|20:51] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[15/11/2008|10:36] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 35 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-07 16:18:39
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
? [1992]
? [3720]
? [3920]
scanning hidden files ...
C:\WINDOWS\System32\drivers\winfilse.exe 933896 bytes executable
C:\WINDOWS\System32\drivers\downld
C:\WINDOWS\System32\drivers\downld\146375.exe 73266 bytes executable
C:\WINDOWS\System32\drivers\downld\196484.exe 73266 bytes executable
C:\WINDOWS\System32\drivers\downld\1032812.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\1034781.exe 73308 bytes executable
C:\WINDOWS\System32\drivers\downld\103875.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\1041421.exe 6901 bytes
C:\WINDOWS\System32\drivers\downld\104171.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\1042281.exe 5721 bytes
C:\WINDOWS\System32\drivers\downld\105328.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\106859.exe 12606 bytes
C:\WINDOWS\System32\drivers\downld\1069218.exe 69184 bytes executable
C:\WINDOWS\System32\drivers\downld\1082968.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\108500.exe 863748 bytes executable
C:\WINDOWS\System32\drivers\downld\1099296.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\112046.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\113843.exe 6901 bytes
C:\WINDOWS\System32\drivers\downld\114687.exe 6386 bytes
C:\WINDOWS\System32\drivers\downld\117062.exe 863748 bytes executable
C:\WINDOWS\System32\drivers\downld\124734.exe 6900 bytes
C:\WINDOWS\System32\drivers\downld\125468.exe 4612 bytes
C:\WINDOWS\System32\drivers\downld\128640.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\129828.exe 6901 bytes
C:\WINDOWS\System32\drivers\downld\130984.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\132343.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\134250.exe 67697 bytes executable
C:\WINDOWS\System32\drivers\downld\136109.exe 6901 bytes
C:\WINDOWS\System32\drivers\downld\137062.exe 5713 bytes
C:\WINDOWS\System32\drivers\downld\137796.exe 4784 bytes
C:\WINDOWS\System32\drivers\downld\138140.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\138921.exe 6901 bytes
C:\WINDOWS\System32\drivers\downld\139187.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\140171.exe 4784 bytes
C:\WINDOWS\System32\drivers\downld\141781.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\145859.exe 6901 bytes
C:\WINDOWS\System32\drivers\downld\146843.exe 6386 bytes
C:\WINDOWS\System32\drivers\downld\147000.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\147390.exe 69184 bytes executable
C:\WINDOWS\System32\drivers\downld\148203.exe 68349 bytes executable
C:\WINDOWS\System32\drivers\downld\148984.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\150625.exe 863748 bytes executable
C:\WINDOWS\System32\drivers\downld\153718.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\158250.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\158421.exe 6900 bytes
C:\WINDOWS\System32\drivers\downld\159421.exe 4784 bytes
C:\WINDOWS\System32\drivers\downld\163125.exe 317 bytes
C:\WINDOWS\System32\drivers\downld\166062.exe 67697 bytes executable
C:\WINDOWS\System32\drivers\downld\167125.exe 863748 bytes executable
C:\WINDOWS\System32\drivers\downld\168812.exe 67697 bytes executable
C:\WINDOWS\System32\drivers\downld\169859.exe 3904 bytes
C:\WINDOWS\System32\drivers\downld\171234.exe 73308 bytes executable
C:\WINDOWS\System32\drivers\downld\171328.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\173312.exe 863748 bytes executable
C:\WINDOWS\System32\drivers\downld\173968.exe 67678 bytes executable
C:\WINDOWS\System32\drivers\downld\174296.exe 73266 bytes executable
C:\WINDOWS\System32\drivers\downld\175015.exe 67678 bytes executable
C:\WINDOWS\System32\drivers\downld\176093.exe 6900 bytes
C:\WINDOWS\System32\drivers\downld\176781.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\178859.exe 5736 bytes
C:\WINDOWS\System32\drivers\downld\181359.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\183750.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\186656.exe 6901 bytes
C:\WINDOWS\System32\drivers\downld\187796.exe 4784 bytes
C:\WINDOWS\System32\drivers\downld\188859.exe 6901 bytes
C:\WINDOWS\System32\drivers\downld\190015.exe 6386 bytes
C:\WINDOWS\System32\drivers\downld\191796.exe 9452 bytes
C:\WINDOWS\System32\drivers\downld\194812.exe 73266 bytes executable
C:\WINDOWS\System32\drivers\downld\197640.exe 67678 bytes executable
C:\WINDOWS\System32\drivers\downld\198234.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\199765.exe 68349 bytes executable
C:\WINDOWS\System32\drivers\downld\200406.exe 12386 bytes
C:\WINDOWS\System32\drivers\downld\204203.exe 1 bytes
C:\WINDOWS\System32\drivers\downld\204531.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\206343.exe 67678 bytes executable
C:\WINDOWS\System32\drivers\downld\210718.exe 68349 bytes executable
C:\WINDOWS\System32\drivers\downld\215562.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\217562.exe 95247 bytes executable
C:\WINDOWS\System32\drivers\downld\221546.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\225796.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\230437.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\233046.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\235671.exe 5470 bytes
C:\WINDOWS\System32\drivers\downld\235953.exe 35398 bytes
C:\WINDOWS\System32\drivers\downld\243578.exe 12386 bytes
C:\WINDOWS\System32\drivers\downld\247546.exe 12386 bytes
C:\WINDOWS\System32\drivers\downld\248468.exe 1 bytes
C:\WINDOWS\System32\drivers\downld\259781.exe 1 bytes
C:\WINDOWS\System32\drivers\downld\270343.exe 95027 bytes executable
C:\WINDOWS\System32\drivers\downld\272500.exe 15695 bytes executable
C:\WINDOWS\System32\drivers\downld\273421.exe 12386 bytes
C:\WINDOWS\System32\drivers\downld\274937.exe 35398 bytes
C:\WINDOWS\System32\drivers\downld\278359.exe 1 bytes
C:\WINDOWS\System32\drivers\downld\300093.exe 35398 bytes
C:\WINDOWS\System32\drivers\downld\306828.exe 12386 bytes
C:\WINDOWS\System32\drivers\downld\310750.exe 35398 bytes
C:\WINDOWS\System32\drivers\downld\311234.exe 1 bytes
C:\WINDOWS\System32\drivers\downld\313781.exe 35398 bytes
C:\WINDOWS\System32\drivers\downld\327562.exe 35398 bytes
C:\WINDOWS\System32\drivers\downld\346968.exe 35398 bytes
C:\WINDOWS\System32\drivers\downld\364750.exe 35398 bytes
C:\WINDOWS\System32\drivers\downld\411218.exe 12386 bytes
C:\WINDOWS\System32\drivers\downld\417671.exe 1 bytes
C:\WINDOWS\System32\drivers\downld\459796.exe 35398 bytes
C:\WINDOWS\System32\drivers\downld\480156.exe 35398 bytes
C:\WINDOWS\System32\drivers\srosa.sys 117836 bytes executable
C:\WINDOWS\System32\mdelk.exe 67697 bytes executable
C:\WINDOWS\System32\wintems.exe 67697 bytes executable
scan completed successfully
hidden processes: 3
hidden files: 125
--------------------\\ Recherche d'autres infections
C:\WINDOWS\System32\nvs2.inf
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\uwysmos.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\uwysmos_nav.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\uwysmos_navps.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\yyeic.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\yyeic_nav.dat
C:\DOCUME~1\ADMINI~1\LOCALS~1\APPLIC~1\yyeic_navps.dat
[b]==> EGDACCESS <==/b
--------------------\\ ROOTKIT !!
Rootkit Bagle ! .. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA]
Rootkit Bagle ! .. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_SROSA]
Rootkit Bagle ! .. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Enum\Root\LEGACY_SROSA]
Rootkit Bagle ! .. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA]
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\ADMINI~1\Application Data\Azureus\torrents\Settlers.VI.Rise.Of.An.Empire.CRACK-WBB.rar.torrent
C:\DOCUME~1\ADMINI~1\Application Data\Azureus\torrents\Star_Wars_Battlefront2_Crack.3404670.TPB.torrent
C:\DOCUME~1\ADMINI~1\Application Data\Azureus\torrents\The_Settlers_Rise_of_an_Empire1.0_Crack_[mininova].torrent
C:\DOCUME~1\ADMINI~1\Application Data\Azureus\torrents\_The_Settlers_Rise_of_an_Empire1.0_Crack_[mininova].torrent
C:\DOCUME~1\ADMINI~1\Application Data\LimeWire\.AppSpecialShare\Microsoft.Office.2007.Enterprise.Keygen.Only-MiCROSOFT.torrent.bak
C:\DOCUME~1\ADMINI~1\Mes documents\LimeWire\Incomplete\Z4XJ27GRIB2PEJKIKTTPKKDIIKYJPUMU\AGE OF EMPIRES 3\Crack
C:\DOCUME~1\ADMINI~1\Mes documents\LimeWire\Incomplete\Z4XJ27GRIB2PEJKIKTTPKKDIIKYJPUMU\AGE OF EMPIRES 3\Crack\age3.exe
C:\DOCUME~1\ADMINI~1\Mes documents\Mes vid‚os\AVS Video Converter 4.3.1.371 Fr 2005 + WinAVI Video Converter 7.1.1 Fr & KeyGen + VSO ConvertXtoDVD
[F:5][D:0]-> C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp
[F:27][D:0]-> C:\DOCUME~1\ADMINI~1\Cookies
[F:361][D:4]-> C:\DOCUME~1\ADMINI~1\LOCALS~1\TEMPOR~1\content.IE5
[F:3][D:1]-> C:\Recycled
1 - "C:\Lop SD\LopR_1.txt" - 07/12/2008|16:19 - Option : [1]
--------------------\\ Fin du rapport a 16:19:36