| Salut, telecharges Navilog1 sut ton bureau ici : http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe Double cliques sur le raccourci de ton bureau et lances l'installation... Une fois terminee, fermes tous les programmes et double clique sur Navilog1.exe... choisis la langue et valides avec entree... Double cliques sur Navilog1.bat ( possible qu'il n'apparaisse pas et que tu n'aies que Navilog1)... Une fenetre s'ouvre, appuie sur 1 touche pour passer aux etapes suivantes... Le menu du Fix s'ouvre alors, choisis l'option1 ( recherches) puie presses la touche " entree '.. Laisses le chercher.. un rapport sera genere, postes le stp.. ( le rapport fixnavi se trouve a la racine du disque dur.)
L'ombre du zebre, n'a pas de rayures ! Répondre à Feelgood1 | 2 valy61, le 19 déc 2008 à 12:17:20Merci à toi !!!!
je te poste le rapport !!!
Search Navipromo version 3.7.0 commencé le 19/12/2008 à 12:10:26,35
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!
Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 10.12.2008 à 21h00 par IL-MAFIOSO
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : valerie ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
C:\ (Local Disk) - NTFS - Total:35 Go (Free:12 Go)
D:\ (Local Disk) - NTFS - Total:35 Go (Free:26 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
Recherche executé en mode normal
*** Recherche Programmes installés ***
*** Recherche dossiers dans "C:\WINDOWS" ***
*** Recherche dossiers dans "C:\Program Files" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudÉ~1\progra~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudÉ~1" ***
*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\valerie\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\LOIC\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\LOIC~1.ACE\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\valerie\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\LOIC\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\LOIC~1.ACE\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\valerie\menud+~1\progra~1" ***
*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net
*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!
* Recherche dans "C:\WINDOWS\system32" *
* Recherche dans "C:\Documents and Settings\valerie\locals~1\applic~1" *
* Recherche dans "C:\DOCUME~1\LOIC\locals~1\applic~1" *
* Recherche dans "C:\DOCUME~1\LOIC~1.ACE\locals~1\applic~1" *
*** Recherche fichiers ***
*** Recherche clés spécifiques dans le Registre ***
!! Les clés trouvées ne sont pas forcément infectées !!
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche nouveaux fichiers Instant Access :
2)Recherche Heuristique :
* Dans "C:\WINDOWS\system32" :
* Dans "C:\Documents and Settings\valerie\locals~1\applic~1" :
* Dans "C:\DOCUME~1\LOIC\locals~1\applic~1" :
* Dans "C:\DOCUME~1\LOIC~1.ACE\locals~1\applic~1" :
3)Recherche Certificats :
Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !
4)Recherche autres dossiers et fichiers connus :
*** Analyse terminée le 19/12/2008 à 12:14:50,90 *** Répondre à valy61 | Ok, autant pour moi, c'est le " Edgesuite " qui m'a rouler ! infection LOP... Telecharges Lop SD sur ton bureau : http://eric.71.mespages.googlepages.com/LopSD.exe Double clique sur le raccourci de ton bureau Lopsd et lance le... Choisis la langue et valide avec Entree.... Choisis l'option1 ( reherche ) et patientes jusqu'a la fin... un rapport sera genere, postes le... le rapport Lopsd.txt se trouve a la racine du disque dur... Si a la fin du scan, ton bureau ne reapparait pas, presses :Ctrl+Alt+supp >> onglet fichier, nouvelles taches et tapes :explorer.exe et valides.....
L'ombre du zebre, n'a pas de rayures ! Répondre à Feelgood1 | 4 valy61, le 19 déc 2008 à 13:12:20Voilà le rapport !!!
--------------------\\ Lop S&D 4.2.4-9c XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : valerie ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
C:\ (Local Disk) - NTFS - Total:35 Go (Free:11 Go)
D:\ (Local Disk) - NTFS - Total:35 Go (Free:26 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\Lop SD" ( MAJ : 01-11-2008|16:30 )
Option : [1] ( 19/12/2008|13:05 )
--------------------\\ Listing des dossiers dans APPLIC~1
[18/12/2008|13:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Admin Inter 1 Mags
[01/12/2008|11:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[20/11/2007|15:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[21/12/2007|18:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[07/02/2008|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[16/04/2008|14:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[07/06/2007|11:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Broderbund Software
[15/08/2006|18:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[04/06/2008|08:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[01/10/2006|16:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb
[04/07/2008|20:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[28/07/2007|16:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[11/12/2008|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HiYo
[18/01/2008|13:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[17/08/2008|14:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[11/12/2006|20:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[18/12/2008|12:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[05/06/2007|15:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mozilla
[01/12/2008|12:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[24/11/2008|12:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[25/08/2008|16:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
[05/02/2008|15:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[14/10/2007|16:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TERMINAL Studio
[05/02/2008|15:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[05/05/2007|15:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[28/12/2006|15:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[21/09/2008|11:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[01/09/2006|10:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[07/10/2006|02:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[05/02/2008|15:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
[02/10/2008|10:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[23/10/2007|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo!
[27/09/2006|09:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom
[02/11/2005|15:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[09/12/2008|11:59] C:\DOCUME~1\LOCALS~1\APPLIC~1\agi
[02/11/2005|15:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[25/07/2007|15:19] C:\DOCUME~1\LOIC\APPLIC~1\Macromedia
[02/11/2005|15:47] C:\DOCUME~1\LOIC\APPLIC~1\Microsoft
[24/11/2008|20:20] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Adobe
[09/12/2008|12:54] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\agi
[15/11/2008|23:43] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\DivX
[02/07/2008|16:29] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\elefundesktops
[25/07/2007|19:56] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Google
[18/12/2008|14:42] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Greyidol
[11/12/2008|12:57] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\HiYo
[25/07/2007|19:56] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Macromedia
[18/08/2008|11:18] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Malwarebytes
[18/12/2008|12:22] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Microsoft
[29/07/2007|13:17] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Mozilla
[19/08/2007|15:49] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Sun
[29/07/2007|13:17] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Talkback
[04/08/2007|13:31] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\TuneUp Software
[18/06/2008|07:10] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Ulead Systems
[06/12/2007|20:17] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\vlc
[09/10/2007|11:23] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Windows Desktop Search
[02/11/2005|15:47] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[01/09/2006|15:53] C:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec
[02/11/2005|15:47] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft
[06/06/2007|16:11] C:\DOCUME~1\valerie\APPLIC~1\Absolutist.com
[27/11/2008|09:19] C:\DOCUME~1\valerie\APPLIC~1\Adobe
[05/02/2008|15:29] C:\DOCUME~1\valerie\APPLIC~1\Ahead
[22/12/2007|23:28] C:\DOCUME~1\valerie\APPLIC~1\Apple Computer
[04/02/2008|15:04] C:\DOCUME~1\valerie\APPLIC~1\AVS4YOU
[20/03/2007|10:52] C:\DOCUME~1\valerie\APPLIC~1\Azureus
[15/03/2007|21:39] C:\DOCUME~1\valerie\APPLIC~1\BitTorrent
[05/02/2008|15:29] C:\DOCUME~1\valerie\APPLIC~1\Briquolo
[05/02/2008|15:29] C:\DOCUME~1\valerie\APPLIC~1\CyberLink
[13/11/2006|22:50] C:\DOCUME~1\valerie\APPLIC~1\DivX
[30/06/2008|09:33] C:\DOCUME~1\valerie\APPLIC~1\elefundesktops
[07/01/2007|14:52] C:\DOCUME~1\valerie\APPLIC~1\Else plus
[22/07/2007|23:10] C:\DOCUME~1\valerie\APPLIC~1\EoRezo
[25/08/2006|21:35] C:\DOCUME~1\valerie\APPLIC~1\FaxCtr
[06/02/2008|18:13] C:\DOCUME~1\valerie\APPLIC~1\GlarySoft
[28/07/2008|15:30] C:\DOCUME~1\valerie\APPLIC~1\Google
[18/12/2008|13:45] C:\DOCUME~1\valerie\APPLIC~1\Greyidol
[04/10/2006|09:43] C:\DOCUME~1\valerie\APPLIC~1\Help
[11/12/2008|11:37] C:\DOCUME~1\valerie\APPLIC~1\HiYo
[14/11/2008|18:16] C:\DOCUME~1\valerie\APPLIC~1\Identities
[22/07/2007|23:39] C:\DOCUME~1\valerie\APPLIC~1\ItsLabel
[24/07/2007|12:52] C:\DOCUME~1\valerie\APPLIC~1\Leadertech
[27/11/2008|09:19] C:\DOCUME~1\valerie\APPLIC~1\Macromedia
[17/08/2008|14:58] C:\DOCUME~1\valerie\APPLIC~1\Malwarebytes
[18/12/2008|15:47] C:\DOCUME~1\valerie\APPLIC~1\Microsoft
[18/09/2006|16:16] C:\DOCUME~1\valerie\APPLIC~1\Mozilla
[31/08/2006|16:58] C:\DOCUME~1\valerie\APPLIC~1\MSNInstaller
[05/02/2008|15:29] C:\DOCUME~1\valerie\APPLIC~1\NCH Swift Sound
[03/05/2007|15:28] C:\DOCUME~1\valerie\APPLIC~1\Real
[03/10/2006|15:23] C:\DOCUME~1\valerie\APPLIC~1\Sun
[25/08/2008|16:09] C:\DOCUME~1\valerie\APPLIC~1\SUPERAntiSpyware.com
[02/11/2005|16:09] C:\DOCUME~1\valerie\APPLIC~1\Symantec
[05/06/2007|15:36] C:\DOCUME~1\valerie\APPLIC~1\Talkback
[23/05/2007|15:06] C:\DOCUME~1\valerie\APPLIC~1\TaoUSign
[05/05/2007|15:13] C:\DOCUME~1\valerie\APPLIC~1\TuneUp Software
[16/06/2008|11:36] C:\DOCUME~1\valerie\APPLIC~1\Ulead Systems
[15/03/2007|23:23] C:\DOCUME~1\valerie\APPLIC~1\utorrent
[30/06/2007|09:57] C:\DOCUME~1\valerie\APPLIC~1\vlc
[09/10/2007|10:35] C:\DOCUME~1\valerie\APPLIC~1\Windows Desktop Search
[20/02/2008|17:26] C:\DOCUME~1\valerie\APPLIC~1\WinRAR
[14/11/2008|18:16] C:\DOCUME~1\valerie\APPLIC~1\Zylom
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[10/11/2008 23:48][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[19/12/2008 11:15][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[19/12/2008 10:53][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 05:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[25/08/2006|20:20] C:\Program Files\Abbyy FineReader 6.0 Sprint
[06/06/2007|16:11] C:\Program Files\Absolutist.com
[01/12/2008|11:14] C:\Program Files\Adobe
[26/08/2008|14:52] C:\Program Files\Apple Software Update
[12/06/2007|23:46] C:\Program Files\AskPBar
[07/02/2008|18:14] C:\Program Files\Avira
[06/06/2007|16:27] C:\Program Files\BFG
[11/05/2008|17:06] C:\Program Files\Bonjour
[07/06/2007|11:22] C:\Program Files\Broderbund
[20/09/2007|15:02] C:\Program Files\CCleaner
[18/12/2008|13:43] C:\Program Files\Circle Developement
[02/10/2008|09:59] C:\Program Files\CleanUp!
[15/08/2006|17:50] C:\Program Files\Common Files
[02/11/2005|16:07] C:\Program Files\CyberLink
[24/11/2008|14:07] C:\Program Files\DivX
[28/12/2006|15:00] C:\Program Files\epson
[04/02/2008|17:43] C:\Program Files\eRightSoft
[07/07/2007|09:14] C:\Program Files\EZFace
[18/12/2008|12:04] C:\Program Files\Fichiers communs
[04/09/2006|16:54] C:\Program Files\Gadwin Systems
[04/07/2008|20:51] C:\Program Files\Google
[22/05/2007|20:59] C:\Program Files\Gore
[18/12/2008|13:43] C:\Program Files\Greyidol
[21/10/2007|14:00] C:\Program Files\Grisoft
[11/12/2008|11:36] C:\Program Files\HiYo
[07/03/2007|12:31] C:\Program Files\Incomplete
[21/09/2008|11:58] C:\Program Files\InstallShield Installation Information
[11/12/2008|09:58] C:\Program Files\Internet Explorer
[17/08/2008|14:30] C:\Program Files\Java
[15/11/2008|23:56] C:\Program Files\JkDefrag
[16/06/2008|11:22] C:\Program Files\JL2005C
[25/08/2006|20:20] C:\Program Files\Lexmark Toolbar
[25/08/2006|20:23] C:\Program Files\lx_cats
[05/12/2008|07:21] C:\Program Files\Malwarebytes' Anti-Malware
[04/02/2008|09:52] C:\Program Files\Mediafour
[27/08/2008|14:31] C:\Program Files\Messenger
[18/12/2008|13:43] C:\Program Files\Messenger Plus! Live
[09/06/2007|17:43] C:\Program Files\Mgutil
[18/12/2008|12:13] C:\Program Files\Microsoft
[09/05/2007|14:45] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[02/11/2005|15:53] C:\Program Files\microsoft frontpage
[28/11/2006|18:50] C:\Program Files\Microsoft LifeCam
[18/12/2008|12:19] C:\Program Files\Microsoft Silverlight
[08/10/2007|19:17] C:\Program Files\Microsoft SQL Server Compact Edition
[18/12/2008|12:18] C:\Program Files\Microsoft Sync Framework
[27/08/2008|14:23] C:\Program Files\Movie Maker
[18/12/2008|15:48] C:\Program Files\Mozilla Firefox
[24/01/2007|09:19] C:\Program Files\MP3 Player Utilities
[28/08/2007|12:17] C:\Program Files\MSBuild
[02/11/2005|15:51] C:\Program Files\MSN
[02/11/2005|15:51] C:\Program Files\MSN Gaming Zone
[12/11/2008|09:53] C:\Program Files\MSXML 4.0
[23/01/2008|20:10] C:\Program Files\MSXML 6.0
[19/12/2008|12:14] C:\Program Files\Navilog1
[17/11/2007|00:52] C:\Program Files\NCH Software
[27/08/2008|14:19] C:\Program Files\NetMeeting
[01/12/2008|12:56] C:\Program Files\NOS
[02/11/2005|15:51] C:\Program Files\Online Services
[27/08/2008|14:19] C:\Program Files\Outlook Express
[05/02/2008|15:29] C:\Program Files\Paint.NET
[15/08/2006|17:50] C:\Program Files\PC Camera
[01/09/2006|21:24] C:\Program Files\PhotoFiltre
[26/08/2008|14:55] C:\Program Files\QuickTime
[28/08/2007|12:06] C:\Program Files\Reference Assemblies
[25/08/2008|16:05] C:\Program Files\RegCleaner
[02/11/2005|15:52] C:\Program Files\Services en ligne
[15/08/2006|16:21] C:\Program Files\SiS VGA Utilities V3.68
[02/11/2005|16:00] C:\Program Files\sisagp
[15/08/2006|16:16] C:\Program Files\SiSLan
[03/08/2007|22:08] C:\Program Files\Sony
[24/11/2008|12:02] C:\Program Files\Spybot - Search & Destroy
[19/07/2008|10:47] C:\Program Files\Sun
[30/12/2007|12:22] C:\Program Files\Sunbelt Software
[24/11/2008|08:26] C:\Program Files\SUPERAntiSpyware
[08/11/2007|12:02] C:\Program Files\TechCity Solutions
[17/09/2006|17:24] C:\Program Files\Tiscali
[21/10/2007|12:17] C:\Program Files\ToniArts
[19/12/2008|11:18] C:\Program Files\Trend Micro
[02/11/2005|16:01] C:\Program Files\Uninstall Information
[20/04/2007|19:07] C:\Program Files\Unlocker
[08/10/2007|19:15] C:\Program Files\Windows Desktop Search
[18/12/2008|12:18] C:\Program Files\Windows Live
[09/02/2008|18:05] C:\Program Files\Windows Live Safety Center
[18/12/2008|12:12] C:\Program Files\Windows Live SkyDrive
[02/10/2008|10:28] C:\Program Files\Windows Live Toolbar
[16/06/2008|11:30] C:\Program Files\Windows Media Components
[24/11/2006|23:30] C:\Program Files\Windows Media Connect 2
[27/08/2008|14:19] C:\Program Files\Windows Media Player
[27/08/2008|14:19] C:\Program Files\Windows NT
[02/11/2005|15:52] C:\Program Files\WindowsUpdate
[03/10/2006|14:24] C:\Program Files\WinRAR
[02/11/2005|15:53] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[01/12/2008|11:16] C:\Program Files\Fichiers communs\Adobe
[16/04/2008|14:40] C:\Program Files\Fichiers communs\BOONTY Shared
[02/11/2005|16:00] C:\Program Files\Fichiers communs\InstallShield
[13/05/2008|19:32] C:\Program Files\Fichiers communs\Java
[18/12/2008|12:12] C:\Program Files\Fichiers communs\Microsoft Shared
[02/11/2005|15:52] C:\Program Files\Fichiers communs\MSSoap
[02/11/2005|16:07] C:\Program Files\Fichiers communs\muvee Technologies
[03/01/2007|17:54] C:\Program Files\Fichiers communs\Real
[02/11/2005|15:52] C:\Program Files\Fichiers communs\Services
[24/07/2007|12:25] C:\Program Files\Fichiers communs\Simple Star Shared
[02/11/2005|15:47] C:\Program Files\Fichiers communs\SpeechEngines
[26/11/2006|12:42] C:\Program Files\Fichiers communs\Symantec Shared
[26/11/2006|11:57] C:\Program Files\Fichiers communs\Symantec Shared(2)
[27/08/2008|14:19] C:\Program Files\Fichiers communs\System
[18/12/2008|12:04] C:\Program Files\Fichiers communs\Windows Live
[23/07/2008|17:20] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/08/2008|16:08] C:\Program Files\Fichiers communs\Wise Installation Wizard
[03/05/2007|15:47] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 57 Processes )
IEXPLORE.EXE ~ [PID:2948]
IEXPLORE.EXE ~ [PID:2412]
iexplore.exe ~ [PID:3380]
IEXPLORE.EXE ~ [PID:2336]
IEXPLORE.EXE ~ [PID:3720]
IEXPLORE.EXE ~ [PID:3912]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Admin Inter 1 Mags
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Admin Inter 1 Mags\Barb For.exe
C:\DOCUME~1\valerie\APPLIC~1\ELSE PLUS
C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\DOCUME~1\valerie\Cookies\valerie@banner.cotedazurpalace[2].txt
C:\DOCUME~1\valerie\Cookies\valerie@cotedazurpalace[2].txt
C:\DOCUME~1\valerie\Cookies\valerie@pacificpoker[1].txt
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"1 mags 16 more"="C:\\Documents and Settings\\All Users\\Application Data\\Admin Inter 1 Mags\\Barb For.exe"
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-19 13:08:03
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 1
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:10][D:6]-> C:\DOCUME~1\valerie\LOCALS~1\Temp
[F:110][D:0]-> C:\DOCUME~1\valerie\Cookies
[F:1076][D:6]-> C:\DOCUME~1\valerie\LOCALS~1\TEMPOR~1\content.IE5
[F:2][D:0]-> C:\Recycled
1 - "C:\Lop SD\LopR_1.txt" - 19/12/2008|13:09 - Option : [1]
--------------------\\ Fin du rapport a 13:09:15 Répondre à valy61 | Ok, relances vLopsd et choisis cette fois l'option2 (nettoyage) et valides...Le vmenu demarrer et les icones du bureau vont disparaitre, c'est normal.... un rapport sera generer, postes le accompagne d'un log Hijackthis...
L'ombre du zebre, n'a pas de rayures ! Répondre à Feelgood1 | 6 valy61, le 19 déc 2008 à 13:38:52Bon , voici le rapport !!
--------------------\\ Lop S&D 4.2.4-9c XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : valerie ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
C:\ (Local Disk) - NTFS - Total:35 Go (Free:11 Go)
D:\ (Local Disk) - NTFS - Total:35 Go (Free:26 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\Lop SD" ( MAJ : 01-11-2008|16:30 )
Option : [2] ( 19/12/2008|13:33 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Admin Inter 1 Mags\Barb For.exe
Supprime! - C:\Program Files\Circle Developement\Uninstall.exe
Supprime! - C:\DOCUME~1\valerie\Cookies\valerie@banner.cotedazurpalace[2].txt
Supprime! - C:\DOCUME~1\valerie\Cookies\valerie@cotedazurpalace[2].txt
Supprime! - C:\DOCUME~1\valerie\Cookies\valerie@pacificpoker[1].txt
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Admin Inter 1 Mags
Supprime! - C:\DOCUME~1\valerie\APPLIC~1\ELSE PLUS
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb
Supprime! - C:\Program Files\Circle Developement
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[01/12/2008|11:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[20/11/2007|15:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[21/12/2007|18:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[07/02/2008|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[16/04/2008|14:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[07/06/2007|11:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Broderbund Software
[15/08/2006|18:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[04/06/2008|08:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[04/07/2008|20:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[28/07/2007|16:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[11/12/2008|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HiYo
[18/01/2008|13:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[17/08/2008|14:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[11/12/2006|20:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[18/12/2008|12:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[05/06/2007|15:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mozilla
[01/12/2008|12:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[24/11/2008|12:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[25/08/2008|16:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
[05/02/2008|15:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[14/10/2007|16:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TERMINAL Studio
[05/02/2008|15:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[05/05/2007|15:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[28/12/2006|15:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[21/09/2008|11:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[01/09/2006|10:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[07/10/2006|02:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[05/02/2008|15:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
[02/10/2008|10:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[23/10/2007|11:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo!
[27/09/2006|09:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom
[02/11/2005|15:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[09/12/2008|11:59] C:\DOCUME~1\LOCALS~1\APPLIC~1\agi
[02/11/2005|15:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[25/07/2007|15:19] C:\DOCUME~1\LOIC\APPLIC~1\Macromedia
[02/11/2005|15:47] C:\DOCUME~1\LOIC\APPLIC~1\Microsoft
[24/11/2008|20:20] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Adobe
[09/12/2008|12:54] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\agi
[15/11/2008|23:43] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\DivX
[02/07/2008|16:29] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\elefundesktops
[25/07/2007|19:56] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Google
[18/12/2008|14:42] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Greyidol
[11/12/2008|12:57] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\HiYo
[25/07/2007|19:56] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Macromedia
[18/08/2008|11:18] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Malwarebytes
[18/12/2008|12:22] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Microsoft
[29/07/2007|13:17] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Mozilla
[19/08/2007|15:49] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Sun
[29/07/2007|13:17] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Talkback
[04/08/2007|13:31] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\TuneUp Software
[18/06/2008|07:10] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Ulead Systems
[06/12/2007|20:17] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\vlc
[09/10/2007|11:23] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Windows Desktop Search
[02/11/2005|15:47] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[01/09/2006|15:53] C:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec
[02/11/2005|15:47] C:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft
[06/06/2007|16:11] C:\DOCUME~1\valerie\APPLIC~1\Absolutist.com
[27/11/2008|09:19] C:\DOCUME~1\valerie\APPLIC~1\Adobe
[05/02/2008|15:29] C:\DOCUME~1\valerie\APPLIC~1\Ahead
[22/12/2007|23:28] C:\DOCUME~1\valerie\APPLIC~1\Apple Computer
[04/02/2008|15:04] C:\DOCUME~1\valerie\APPLIC~1\AVS4YOU
[20/03/2007|10:52] C:\DOCUME~1\valerie\APPLIC~1\Azureus
[15/03/2007|21:39] C:\DOCUME~1\valerie\APPLIC~1\BitTorrent
[05/02/2008|15:29] C:\DOCUME~1\valerie\APPLIC~1\Briquolo
[05/02/2008|15:29] C:\DOCUME~1\valerie\APPLIC~1\CyberLink
[13/11/2006|22:50] C:\DOCUME~1\valerie\APPLIC~1\DivX
[30/06/2008|09:33] C:\DOCUME~1\valerie\APPLIC~1\elefundesktops
[22/07/2007|23:10] C:\DOCUME~1\valerie\APPLIC~1\EoRezo
[25/08/2006|21:35] C:\DOCUME~1\valerie\APPLIC~1\FaxCtr
[06/02/2008|18:13] C:\DOCUME~1\valerie\APPLIC~1\GlarySoft
[28/07/2008|15:30] C:\DOCUME~1\valerie\APPLIC~1\Google
[18/12/2008|13:45] C:\DOCUME~1\valerie\APPLIC~1\Greyidol
[04/10/2006|09:43] C:\DOCUME~1\valerie\APPLIC~1\Help
[11/12/2008|11:37] C:\DOCUME~1\valerie\APPLIC~1\HiYo
[14/11/2008|18:16] C:\DOCUME~1\valerie\APPLIC~1\Identities
[22/07/2007|23:39] C:\DOCUME~1\valerie\APPLIC~1\ItsLabel
[24/07/2007|12:52] C:\DOCUME~1\valerie\APPLIC~1\Leadertech
[27/11/2008|09:19] C:\DOCUME~1\valerie\APPLIC~1\Macromedia
[17/08/2008|14:58] C:\DOCUME~1\valerie\APPLIC~1\Malwarebytes
[18/12/2008|15:47] C:\DOCUME~1\valerie\APPLIC~1\Microsoft
[18/09/2006|16:16] C:\DOCUME~1\valerie\APPLIC~1\Mozilla
[31/08/2006|16:58] C:\DOCUME~1\valerie\APPLIC~1\MSNInstaller
[05/02/2008|15:29] C:\DOCUME~1\valerie\APPLIC~1\NCH Swift Sound
[03/05/2007|15:28] C:\DOCUME~1\valerie\APPLIC~1\Real
[03/10/2006|15:23] C:\DOCUME~1\valerie\APPLIC~1\Sun
[25/08/2008|16:09] C:\DOCUME~1\valerie\APPLIC~1\SUPERAntiSpyware.com
[02/11/2005|16:09] C:\DOCUME~1\valerie\APPLIC~1\Symantec
[05/06/2007|15:36] C:\DOCUME~1\valerie\APPLIC~1\Talkback
[23/05/2007|15:06] C:\DOCUME~1\valerie\APPLIC~1\TaoUSign
[05/05/2007|15:13] C:\DOCUME~1\valerie\APPLIC~1\TuneUp Software
[16/06/2008|11:36] C:\DOCUME~1\valerie\APPLIC~1\Ulead Systems
[15/03/2007|23:23] C:\DOCUME~1\valerie\APPLIC~1\utorrent
[30/06/2007|09:57] C:\DOCUME~1\valerie\APPLIC~1\vlc
[09/10/2007|10:35] C:\DOCUME~1\valerie\APPLIC~1\Windows Desktop Search
[20/02/2008|17:26] C:\DOCUME~1\valerie\APPLIC~1\WinRAR
[14/11/2008|18:16] C:\DOCUME~1\valerie\APPLIC~1\Zylom
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[10/11/2008 23:48][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[19/12/2008 11:15][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[19/12/2008 10:53][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 05:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[25/08/2006|20:20] C:\Program Files\Abbyy FineReader 6.0 Sprint
[06/06/2007|16:11] C:\Program Files\Absolutist.com
[01/12/2008|11:14] C:\Program Files\Adobe
[26/08/2008|14:52] C:\Program Files\Apple Software Update
[12/06/2007|23:46] C:\Program Files\AskPBar
[07/02/2008|18:14] C:\Program Files\Avira
[06/06/2007|16:27] C:\Program Files\BFG
[11/05/2008|17:06] C:\Program Files\Bonjour
[07/06/2007|11:22] C:\Program Files\Broderbund
[20/09/2007|15:02] C:\Program Files\CCleaner
[02/10/2008|09:59] C:\Program Files\CleanUp!
[15/08/2006|17:50] C:\Program Files\Common Files
[02/11/2005|16:07] C:\Program Files\CyberLink
[24/11/2008|14:07] C:\Program Files\DivX
[28/12/2006|15:00] C:\Program Files\epson
[04/02/2008|17:43] C:\Program Files\eRightSoft
[07/07/2007|09:14] C:\Program Files\EZFace
[18/12/2008|12:04] C:\Program Files\Fichiers communs
[04/09/2006|16:54] C:\Program Files\Gadwin Systems
[04/07/2008|20:51] C:\Program Files\Google
[22/05/2007|20:59] C:\Program Files\Gore
[18/12/2008|13:43] C:\Program Files\Greyidol
[21/10/2007|14:00] C:\Program Files\Grisoft
[11/12/2008|11:36] C:\Program Files\HiYo
[07/03/2007|12:31] C:\Program Files\Incomplete
[21/09/2008|11:58] C:\Program Files\InstallShield Installation Information
[11/12/2008|09:58] C:\Program Files\Internet Explorer
[17/08/2008|14:30] C:\Program Files\Java
[15/11/2008|23:56] C:\Program Files\JkDefrag
[16/06/2008|11:22] C:\Program Files\JL2005C
[25/08/2006|20:20] C:\Program Files\Lexmark Toolbar
[25/08/2006|20:23] C:\Program Files\lx_cats
[05/12/2008|07:21] C:\Program Files\Malwarebytes' Anti-Malware
[04/02/2008|09:52] C:\Program Files\Mediafour
[27/08/2008|14:31] C:\Program Files\Messenger
[18/12/2008|13:43] C:\Program Files\Messenger Plus! Live
[09/06/2007|17:43] C:\Program Files\Mgutil
[18/12/2008|12:13] C:\Program Files\Microsoft
[09/05/2007|14:45] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[02/11/2005|15:53] C:\Program Files\microsoft frontpage
[28/11/2006|18:50] C:\Program Files\Microsoft LifeCam
[18/12/2008|12:19] C:\Program Files\Microsoft Silverlight
[08/10/2007|19:17] C:\Program Files\Microsoft SQL Server Compact Edition
[18/12/2008|12:18] C:\Program Files\Microsoft Sync Framework
[27/08/2008|14:23] C:\Program Files\Movie Maker
[18/12/2008|15:48] C:\Program Files\Mozilla Firefox
[24/01/2007|09:19] C:\Program Files\MP3 Player Utilities
[28/08/2007|12:17] C:\Program Files\MSBuild
[02/11/2005|15:51] C:\Program Files\MSN
[02/11/2005|15:51] C:\Program Files\MSN Gaming Zone
[12/11/2008|09:53] C:\Program Files\MSXML 4.0
[23/01/2008|20:10] C:\Program Files\MSXML 6.0
[19/12/2008|12:14] C:\Program Files\Navilog1
[17/11/2007|00:52] C:\Program Files\NCH Software
[27/08/2008|14:19] C:\Program Files\NetMeeting
[01/12/2008|12:56] C:\Program Files\NOS
[02/11/2005|15:51] C:\Program Files\Online Services
[27/08/2008|14:19] C:\Program Files\Outlook Express
[05/02/2008|15:29] C:\Program Files\Paint.NET
[15/08/2006|17:50] C:\Program Files\PC Camera
[01/09/2006|21:24] C:\Program Files\PhotoFiltre
[26/08/2008|14:55] C:\Program Files\QuickTime
[28/08/2007|12:06] C:\Program Files\Reference Assemblies
[25/08/2008|16:05] C:\Program Files\RegCleaner
[02/11/2005|15:52] C:\Program Files\Services en ligne
[15/08/2006|16:21] C:\Program Files\SiS VGA Utilities V3.68
[02/11/2005|16:00] C:\Program Files\sisagp
[15/08/2006|16:16] C:\Program Files\SiSLan
[03/08/2007|22:08] C:\Program Files\Sony
[24/11/2008|12:02] C:\Program Files\Spybot - Search & Destroy
[19/07/2008|10:47] C:\Program Files\Sun
[30/12/2007|12:22] C:\Program Files\Sunbelt Software
[24/11/2008|08:26] C:\Program Files\SUPERAntiSpyware
[08/11/2007|12:02] C:\Program Files\TechCity Solutions
[17/09/2006|17:24] C:\Program Files\Tiscali
[21/10/2007|12:17] C:\Program Files\ToniArts
[19/12/2008|11:18] C:\Program Files\Trend Micro
[02/11/2005|16:01] C:\Program Files\Uninstall Information
[20/04/2007|19:07] C:\Program Files\Unlocker
[08/10/2007|19:15] C:\Program Files\Windows Desktop Search
[18/12/2008|12:18] C:\Program Files\Windows Live
[09/02/2008|18:05] C:\Program Files\Windows Live Safety Center
[18/12/2008|12:12] C:\Program Files\Windows Live SkyDrive
[02/10/2008|10:28] C:\Program Files\Windows Live Toolbar
[16/06/2008|11:30] C:\Program Files\Windows Media Components
[24/11/2006|23:30] C:\Program Files\Windows Media Connect 2
[27/08/2008|14:19] C:\Program Files\Windows Media Player
[27/08/2008|14:19] C:\Program Files\Windows NT
[02/11/2005|15:52] C:\Program Files\WindowsUpdate
[03/10/2006|14:24] C:\Program Files\WinRAR
[02/11/2005|15:53] C:\Program Files\xerox
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[01/12/2008|11:16] C:\Program Files\Fichiers communs\Adobe
[16/04/2008|14:40] C:\Program Files\Fichiers communs\BOONTY Shared
[02/11/2005|16:00] C:\Program Files\Fichiers communs\InstallShield
[13/05/2008|19:32] C:\Program Files\Fichiers communs\Java
[18/12/2008|12:12] C:\Program Files\Fichiers communs\Microsoft Shared
[02/11/2005|15:52] C:\Program Files\Fichiers communs\MSSoap
[02/11/2005|16:07] C:\Program Files\Fichiers communs\muvee Technologies
[03/01/2007|17:54] C:\Program Files\Fichiers communs\Real
[02/11/2005|15:52] C:\Program Files\Fichiers communs\Services
[24/07/2007|12:25] C:\Program Files\Fichiers communs\Simple Star Shared
[02/11/2005|15:47] C:\Program Files\Fichiers communs\SpeechEngines
[26/11/2006|12:42] C:\Program Files\Fichiers communs\Symantec Shared
[26/11/2006|11:57] C:\Program Files\Fichiers communs\Symantec Shared(2)
[27/08/2008|14:19] C:\Program Files\Fichiers communs\System
[18/12/2008|12:04] C:\Program Files\Fichiers communs\Windows Live
[23/07/2008|17:20] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[25/08/2008|16:08] C:\Program Files\Fichiers communs\Wise Installation Wizard
[03/05/2007|15:47] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 50 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-19 13:35:24
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 1
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:9][D:6]-> C:\DOCUME~1\valerie\LOCALS~1\Temp
[F:111][D:0]-> C:\DOCUME~1\valerie\Cookies
[F:1191][D:6]-> C:\DOCUME~1\valerie\LOCALS~1\TEMPOR~1\content.IE5
[F:2][D:0]-> C:\Recycled
1 - "C:\Lop SD\LopR_1.txt" - 19/12/2008|13:09 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 19/12/2008|13:36 - Option : [2]
--------------------\\ Fin du rapport a 13:36:30
et maintenant le rapport hijackthis !!
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:38:30, on 19/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\vVX3000.exe
C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Acer\Empowering Technology\eRecovery\Monitor.exe
C:\Program Files\HiYo\bin\HiYo.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.msn.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://lo.st/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.msn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.aliceadsl.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [AliceSAV] C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Hiyo] C:\Program Files\HiYo\bin\HiYo.exe /RunFromStartup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [vga for] C:\DOCUME~1\valerie\APPLIC~1\Greyidol\Wma Third.exe
O4 - HKUS\S-1-5-20\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-4260010653-3200473413-4177974999-1020\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'LOIC')
O4 - HKUS\S-1-5-21-4260010653-3200473413-4177974999-1020\..\Run: [vga for] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Greyidol\Wma Third.exe (User 'LOIC')
O4 - HKUS\S-1-5-21-4260010653-3200473413-4177974999-1020\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\SHOCKW~1\SWHELP~1.EXE -Update -1100458 -Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; ImageShack Toolbar 4.0.2; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30; .NET CLR 3.0.04506.648; .NET CLR 1.1.4322; MSN Optimized;FR; MSN Optimized;FR) (User 'LOIC')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://toolbar.imageshack.us
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://s.tf1.fr/mmdia/static/rawflow/clients/5.3.1.0/Rawflow.cab
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net/...
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://bibounemonninibiboune.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
End of file - 10857 bytes Répondre à valy61 | Telecharges Smitfaudfix sur ton bureau : http://siri.urz.free.fr/Fix/SmitfraudFix.exe Double-cliques sur smitfraudfix pour lancer ... dans le menu, choisis l'option1 ( recherche) et valides...un rapport sera genere, postes le... ( desactives ton antivirus avant de le lancer et reactives le a la fin ) Telecharges Toolbar Sd sur ton bureau : http://eric.71.mespages.googlepages.com/ToolBarSD.exe fermes toutes les applications en cours et lances l'installation en executant le fichier telecharge... Selectionnes la langue et valide avec entree... choisis l'option1 ( recherche), atientes jusqu'a la fin du scan... un rapport sera genere, postes le aussi...
L'ombre du zebre, n'a pas de rayures ! Répondre à Feelgood1 | 8 valy61, le 19 déc 2008 à 14:05:28Ok !! voici le 1er rapport !!
SmitFraudFix v2.387
Rapport fait à 14:02:07,52, 19/12/2008
Executé à partir de C:\Documents and Settings\valerie\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» Process
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\vVX3000.exe
C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Acer\Empowering Technology\eRecovery\Monitor.exe
C:\Program Files\HiYo\bin\HiYo.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\valerie\Bureau\SmitfraudFix\Policies.exe
C:\WINDOWS\system32\cmd.exe
»»»»»»»»»»»»»»»»»»»»»»»» hosts
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
C:\WINDOWS\config.ini PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\valerie
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\valerie\LOCALS~1\Temp
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\valerie\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\valerie\Favoris
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
C:\Program Files\Google\googletoolbar1.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"
»»»»»»»»»»»»»»»»»»»»»»»» o4Patch
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
o4Patch
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» VACFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
"LoadAppInit_DLLs"=dword:00000001
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» RK
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Description: SiS 900-Based PCI Fast Ethernet Adapter - Miniport d'ordonnancement de paquets
DNS Server Search Order: 192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\..\{C444F62A-4090-4463-86EC-37781820CA55}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\..\{C444F62A-4090-4463-86EC-37781820CA55}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS2\Services\Tcpip\..\{C444F62A-4090-4463-86EC-37781820CA55}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin
je continue !!!! Répondre à valy61 |
| 9 valy61, le 19 déc 2008 à 14:10:272è rapport !!
-----------\\ ToolBar S&D 1.2.6 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : valerie ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
C:\ (Local Disk) - NTFS - Total:35 Go (Free:11 Go)
D:\ (Local Disk) - NTFS - Total:35 Go (Free:26 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\ToolBar SD" ( MAJ : 04-12-2008|20:40 )
Option : [1] ( 19/12/2008|14:06 )
-----------\\ Recherche de Fichiers / Dossiers ...
C:\Program Files\AskPBar
C:\Program Files\AskPBar\bar
C:\Program Files\AskPBar\bar\History
C:\Program Files\AskPBar\bar\History\search2
-----------\\ Extensions
(All Users) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
(valerie) - {19503e42-ca3c-4c27-b1e2-9cdb2170ee34} => flashgot
(valerie) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://lo.st/"
"Search Page"="http://www.google.com"
"SearchMigratedDefaultURL"="http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7"
"Default_Search_URL"="http://www.google.com/ie"
"Default_Page_URL"="http://fr.msn.com/"
"First Home Page"="http://www.aliceadsl.fr"
"Search Bar"="http://www.google.com/ie"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://fr.msn.com/"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://fr.msn.com/"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 19/12/2008|14:07 - Option : [1]
-----------\\ Fin du rapport a 14:07:55,78 Répondre à valy61 | Re, relances ToolbarSD tout d'abord, choisis cette fois l'option2 ( nettoyage ) un rapport sera genere, postes le... Redemarre apres ca ton pc en mode sans echec ( tu tapotes sur la touche F8 de ton clavier, jusqu'a l'apparition d'un ecran noir avec plusieurs options >> choisis mode sans echec et valides avec la touche entree... Relances Smitfraudfix et tu choisis l'option2 ( nettoyage ) un rapport sera genere, postes le stp.
L'ombre du zebre, n'a pas de rayures ! Répondre à Feelgood1 | Bon le 1er rapport en mode normal !!
-----------\\ ToolBar S&D 1.2.6 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : valerie ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
C:\ (Local Disk) - NTFS - Total:35 Go (Free:11 Go)
D:\ (Local Disk) - NTFS - Total:35 Go (Free:26 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\ToolBar SD" ( MAJ : 04-12-2008|20:40 )
Option : [2] ( 19/12/2008|14:28 )
-----------\\ SUPPRESSION
Supprime! - C:\Program Files\AskPBar\bar
Supprime! - C:\Program Files\AskPBar
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(All Users) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
(valerie) - {19503e42-ca3c-4c27-b1e2-9cdb2170ee34} => flashgot
(valerie) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://lo.st/"
"Search Page"="http://www.google.com"
"SearchMigratedDefaultURL"="http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7"
"Default_Search_URL"="http://www.google.com/ie"
"Default_Page_URL"="http://fr.msn.com/"
"First Home Page"="http://www.aliceadsl.fr"
"Search Bar"="http://www.google.com/ie"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://fr.msn.com/"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://www.msn.com/"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 19/12/2008|14:07 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 19/12/2008|14:29 - Option : [2]
-----------\\ Fin du rapport a 14:29:29,39 Répondre à valy61 |
| Le 2è rapport en mode sans échec !!!!
-----------\\ ToolBar S&D 1.2.6 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Celeron(R) CPU 2.80GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : valerie ( Administrator )
BOOT : Fail-safe boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
C:\ (Local Disk) - NTFS - Total:35 Go (Free:12 Go)
D:\ (Local Disk) - NTFS - Total:35 Go (Free:26 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\ToolBar SD" ( MAJ : 04-12-2008|20:40 )
Option : [2] ( 19/12/2008|14:34 )
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(All Users) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar
(valerie) - {19503e42-ca3c-4c27-b1e2-9cdb2170ee34} => flashgot
(valerie) - {635abd67-4fe9-1b23-4f01-e679fa7484c1} => ytoolbar
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://lo.st/"
"Search Page"="http://www.google.com"
"SearchMigratedDefaultURL"="http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7"
"Default_Search_URL"="http://www.google.com/ie"
"Default_Page_URL"="http://fr.msn.com/"
"First Home Page"="http://www.aliceadsl.fr"
"Search Bar"="http://www.google.com/ie"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://fr.msn.com/"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://www.msn.com/"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 19/12/2008|14:07 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 19/12/2008|14:29 - Option : [2]
3 - "C:\ToolBar SD\TB_3.txt" - 19/12/2008|14:36 - Option : [2]
-----------\\ Fin du rapport a 14:36:10,48 Répondre à valy61 | Non, relit bien, smitfraudfix en mode sans echec stp !
L'ombre du zebre, n'a pas de rayures ! Répondre à Feelgood1 |
| Désolée mais impossible en mode sans échec !!!!!!!!!!!!!!!!!!!
je clique dessus et là une fenêtre rouge apparait !!! je clique sur une lettre et la fenêtre s'éteint !! impossible !!!! j'ai essayé par 2 fois !!! Répondre à valy61 |
| OUFFFF !!! bon voilà le rapport en mode sans échec !!
SmitFraudFix v2.387
Rapport fait à 15:48:36,60, 19/12/2008
Executé à partir de C:\Documents and Settings\valerie\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode sans echec
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Avant SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus
»»»»»»»»»»»»»»»»»»»»»»»» hosts
127.0.0.1 localhost
»»»»»»»»»»»»»»»»»»»»»»»» VACFix
VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix
S!Ri's WS2Fix: LSP not Found.
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés
C:\WINDOWS\config.ini supprimé
C:\Program Files\Google\googletoolbar1.dll supprimé
»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Agent.OMZ.Fix
Agent.OMZ.Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» RK
»»»»»»»»»»»»»»»»»»»»»»»» DNS
HKLM\SYSTEM\CCS\Services\Tcpip\..\{C444F62A-4090-4463-86EC-37781820CA55}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\..\{C444F62A-4090-4463-86EC-37781820CA55}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS2\Services\Tcpip\..\{C444F62A-4090-4463-86EC-37781820CA55}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
»»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
Nettoyage terminé.
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Après SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin Répondre à valy61 |
| Comme tu dis, Ouf ! Pourrais tu stp m'envoyer un nouveau rapport hijackthis... Ensuite, pour bounty games si tu es d'accord : telecharges Ad remover : http://sd-1.archive-host.com/membres/up/16506160323759868/AD-R.exe Deconnectes-toi et fermes toutes les applications en cours, meme celle-ci /!\ Double cliques sur le programme d'installation, installes le dans son emplacement par defaut >> C:/Program.file.. Double cliques ensuite sur l'icone AD-Remover sur ton bureau . Au menu, choisis l'option " A "... Un rapport sera genere, postes le stp...
L'ombre du zebre, n'a pas de rayures ! Répondre à Feelgood1 |
| Bon voici le rapport hijackthis !!!
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:16:06, on 19/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Acer\Empowering Technology\eRecovery\Monitor.exe
C:\WINDOWS\vVX3000.exe
C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\HiYo\bin\HiYo.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\winlogon.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.aliceadsl.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [LaunchApp] Alaunch
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [AliceSAV] C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Hiyo] C:\Program Files\HiYo\bin\HiYo.exe /RunFromStartup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [vga for] C:\DOCUME~1\valerie\APPLIC~1\Greyidol\Wma Third.exe
O4 - HKUS\S-1-5-20\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-4260010653-3200473413-4177974999-1020\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'LOIC')
O4 - HKUS\S-1-5-21-4260010653-3200473413-4177974999-1020\..\Run: [vga for] C:\DOCUME~1\LOIC~1.ACE\APPLIC~1\Greyidol\Wma Third.exe (User 'LOIC')
O4 - HKUS\S-1-5-21-4260010653-3200473413-4177974999-1020\..\RunOnce: [Shockwave Updater] C:\WINDOWS\system32\Adobe\SHOCKW~1\SWHELP~1.EXE -Update -1100458 -Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; ImageShack Toolbar 4.0.2; .NET CLR 2.0.50727; .NET CLR 3.0.04506.30; .NET CLR 3.0.04506.648; .NET CLR 1.1.4322; MSN Optimized;FR; MSN Optimized;FR) (User 'LOIC')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O15 - Trusted Zone: http://toolbar.imageshack.us
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://s.tf1.fr/mmdia/static/rawflow/clients/5.3.1.0/Rawflow.cab
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net/...
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://bibounemonninibiboune.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
End of file - 10178 bytes
ok pour boonty !! je le fais de suite !!
MERCI !!!! Répondre à valy61 |
| Le 2è rapport !!
--------- Logfile of AD-Remover 1.0.7.8 by C_XX ---------
# START at: 16:18:42 | Ven 19/12/2008 | Microsoft® Windows XP™ SP3 (v5.1.2600)
# BOOT MODE: Normal
# OPTION: Scan | EXECUTED FROM: C:\Program Files\Ad-remover\AD-Remover.bat
# PC: ACER-FE8B363750 | USER: valerie ( Current user is an administrator)
# DRIVE(S):
- C:\ (File System: NTFS)
- D:\ (File System: NTFS)
# Internet Explorer v7.0.5730.11
--------- [ RUNNING PROCESSES: 48 ] ---------
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Acer\Empowering Technology\eRecovery\Monitor.exe
C:\WINDOWS\vVX3000.exe
C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\HiYo\bin\HiYo.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\WINDOWS\Explorer.EXE
C:\Acer\Empowering Technology\eRecovery\Monitor.exe
C:\WINDOWS\vVX3000.exe
C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\HiYo\bin\HiYo.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\WINDOWS\system32\ntvdm.exe
-----------------------------------
+-----------------------| Boonty/Boonty Games Elements found :
"Boonty Games" (service)
.
"HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Boonty Games"
"HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_BOONTY_GAMES"
"HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Boonty Games"
"HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Boonty Games"
.
[16/04/2008 14:40|d--------] C:\PROGRA~1\FICHIE~1\BOONTY~1
[16/04/2008 14:40|d--------] C:\PROGRA~1\FICHIE~1\BOONTY~1\Service
[16/04/2008 14:40|--a------] C:\PROGRA~1\FICHIE~1\BOONTY~1\Service\Boonty.exe
[16/04/2008 14:41|d--------] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[07/05/2008 13:08|d--------] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY\Licenses
[07/05/2008 13:22|-r-------] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY\Licenses\B389E000.dat
[07/05/2008 13:01|-ra------] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY\Licenses\B38B9000.dat
[16/04/2008 15:08|-ra------] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY\Licenses\B5852000.dat
[04/05/2008 12:17|-ra------] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY\Licenses\B5CFC000.dat
+-----------------------| Eorezo Elements found :
"HKEY_CURRENT_USER\SOFTWARE\EoRezo"
"HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{64F56FC1-1272-44CD-BA6E-39723696E350}"
"HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo"
.
[22/07/2007 23:10|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\cmhost.cyp
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\CONFME~1.CYP
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\db
[23/07/2007 10:09|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoClock.cfg
[22/07/2007 23:18|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOCLOC~1.CFG
[23/07/2007 10:02|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOCLOC~2.CFG
[22/07/2007 23:51|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOCOMP~1.CFG
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EODESK~1
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoNet.cfg
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto.cfg
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss
[30/03/2007 09:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss.cfg
[23/07/2007 10:03|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\eoStats
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\host.cyp
[23/07/2007 11:25|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\user.cyp
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\db\cat.cyp
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EODESK~1\config.xml
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EODESK~1\EODESK~1.HTM
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EODESK~1\USERCO~1.XML
[06/11/2006 16:33|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\EOPHOT~1.PNG
[06/11/2006 16:33|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\EOPHOT~2.PNG
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1
[10/07/2006 12:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\aide.png
[10/07/2006 12:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\AIDEPR~1.PNG
[09/10/2006 11:59|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\back.png
[06/11/2006 15:42|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\BACKGR~1.PNG
[09/10/2006 12:00|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\BACKPR~1.PNG
[06/11/2006 15:43|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\CADRE_~1.PNG
[09/10/2006 12:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\ecran.png
[09/10/2006 12:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\ECRANP~1.PNG
[23/10/2006 11:47|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\EOPHOT~1.PNG
[10/07/2006 12:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\fermer.png
[10/07/2006 12:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\FERMER~1.PNG
[10/07/2006 12:24|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\minimise.png
[10/07/2006 12:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\MINIMI~1.PNG
[28/09/2006 14:10|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\next.png
[28/09/2006 14:10|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\NEXTPR~1.PNG
[28/09/2006 14:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\pause.png
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\PAUSEP~1.PNG
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\play.png
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\PLAYPR~1.PNG
[06/11/2006 17:59|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~2\Thumbs.db
[28/09/2006 13:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\back.png
[28/09/2006 13:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\BACKPR~1.PNG
[10/07/2006 11:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\FERMER~1.PNG
[28/09/2006 14:10|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\next.png
[28/09/2006 14:10|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\NEXTPR~1.PNG
[28/09/2006 14:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\pause.png
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\PAUSEP~1.PNG
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\play.png
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\PLAYPR~1.PNG
[06/11/2006 18:00|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~4\Thumbs.db
[10/07/2006 12:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\aide.png
[10/07/2006 12:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\AIDEPR~1.PNG
[09/10/2006 11:59|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\back.png
[09/10/2006 12:00|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\BACKPR~1.PNG
[06/11/2006 15:43|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\CADRE_~1.PNG
[09/10/2006 12:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\ecran.png
[09/10/2006 12:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\ECRANP~1.PNG
[23/10/2006 11:47|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\EOPHOT~1.PNG
[10/07/2006 12:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\fermer.png
[10/07/2006 12:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\FERMER~1.PNG
[10/07/2006 12:24|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\minimise.png
[10/07/2006 12:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\MINIMI~1.PNG
[28/09/2006 14:10|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\next.png
[28/09/2006 14:10|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\NEXTPR~1.PNG
[28/09/2006 14:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\pause.png
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\PAUSEP~1.PNG
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\play.png
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\PLAYPR~1.PNG
[06/11/2006 18:02|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~3\Thumbs.db
[10/07/2006 12:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\aide.png
[10/07/2006 12:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\AIDEPR~1.PNG
[09/10/2006 11:59|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\back.png
[28/09/2006 14:07|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\BACKGR~1.PNG
[09/10/2006 12:00|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\BACKPR~1.PNG
[09/10/2006 12:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\ecran.png
[09/10/2006 12:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\ECRANP~1.PNG
[23/10/2006 11:47|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\EOPHOT~1.PNG
[10/07/2006 12:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\fermer.png
[10/07/2006 12:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\FERMER~1.PNG
[10/07/2006 12:24|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\minimise.png
[10/07/2006 12:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\MINIMI~1.PNG
[28/09/2006 14:10|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\next.png
[28/09/2006 14:10|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\NEXTPR~1.PNG
[28/09/2006 14:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\pause.png
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\PAUSEP~1.PNG
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\play.png
[28/09/2006 14:13|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\PLAYPR~1.PNG
[06/11/2006 18:03|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoPhoto\IMAGES~1\Thumbs.db
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EoRss.cfg
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EORSSS~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO79F1~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO990A~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOAAED~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO0A62~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO88A7~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO6115~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO812D~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO7A7B~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO8AAB~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOC34F~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EORSS_~2.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOB679~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOAACC~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOBAD4~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOFD4F~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO14DC~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO240D~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO4262~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO627A~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOF4AB~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOFB93~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO7A6F~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO8A9F~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO7901~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EORSS_~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO4080~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOA8AB~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOB8DB~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO4304~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO4BE6~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO5BFE~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOB78E~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOC7BE~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOF62D~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO075D~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO45BB~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO7042~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO9BDD~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOAB0E~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO9DDD~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOAD0E~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO6E0A~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO7E12~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EoRss_ft.cfg
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EoRss_ft.gif
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOE377~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOAC11~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOCC29~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOF06F~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO48F1~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO680A~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO9457~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOA487~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOBBB0~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOCBE0~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOF483~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO05B3~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EORSS_~3.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO3EB1~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO29B1~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOC2E5~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOD216~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOB242~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOC272~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOB1F6~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOC127~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO5983~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO799B~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO816E~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO919E~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO0F7A~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO1F82~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EORSS_~2.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO0D13~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO1EAE~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO2EDE~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOE1F1~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO9DF1~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO4D6C~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOA1DE~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO340E~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO443E~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO55BC~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO23FC~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO3382~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOF71C~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO084C~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EORSS_~4.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOCF37~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO754D~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO076D~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOEFD1~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO6F31~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOA4FB~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOB42C~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO52E8~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOE583~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOF5B3~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO2F42~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO3F72~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO06B2~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO5F57~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EORSS_~3.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO5856~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO6886~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO00B4~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EORSS_~4.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO2A3F~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOE474~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO83E1~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO454F~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO557F~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EODBE2~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOFBFA~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EORSS_~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOCBA3~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOC2AC~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOD2DC~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOD9E1~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOE912~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO0636~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO264E~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOD5B1~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOF5C9~1.GIF
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO2F10~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EOD5FF~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO6B80~1.CFG
[23/07/2007 11:22|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoRss\EO8B98~1.GIF
[23/07/2007 10:04|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\eoStats\eoStats.txt
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3
[10/07/2006 11:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\aide.png
[10/07/2006 11:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\AIDEPR~1.PNG
[12/07/2006 15:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\AUTOVE~1.PNG
[12/07/2006 15:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\AUTOVE~2.PNG
[10/07/2006 16:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\back.png
[30/08/2006 14:35|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\BACKGR~1.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\BACKPR~1.PNG
[12/07/2006 11:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\BLANK2~1.PNG
[31/05/2006 11:25|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\blank25.png
[12/07/2006 14:42|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\CORREC~1.PNG
[19/07/2006 17:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\CORREC~2.PNG
[28/06/2006 17:58|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\ecran.png
[28/06/2006 18:00|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\ECRANR~1.PNG
[10/07/2006 11:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\fermer.png
[10/07/2006 11:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\FERMER~1.PNG
[01/06/2006 14:03|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\grey25.png
[12/07/2006 11:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\ILUMIN~1.PNG
[19/07/2006 17:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\ILUMIN~2.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\ILUMIN~3.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\ILUMIN~4.PNG
[19/07/2006 17:51|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\INCORR~1.PNG
[10/07/2006 11:30|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\keypad.png
[10/07/2006 11:33|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\KEYPAD~1.PNG
[10/07/2006 16:52|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\masquer.png
[10/07/2006 16:52|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\MASQUE~1.PNG
[10/07/2006 11:24|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\minimise.png
[10/07/2006 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\MINIMI~1.PNG
[10/07/2006 16:51|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\new.png
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\NEWPRE~1.PNG
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\next.png
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\NEXTPR~1.PNG
[02/06/2006 11:35|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\print.png
[10/07/2006 16:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\save.png
[10/07/2006 16:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\SAVEPR~1.PNG
[30/08/2006 14:40|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\Thumbs.db
[12/07/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\VERIFI~1.PNG
[12/07/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~2\VERIFI~2.PNG
[10/07/2006 11:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\aide.png
[10/07/2006 11:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\AIDEPR~1.PNG
[12/07/2006 15:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\AUTOVE~1.PNG
[12/07/2006 15:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\AUTOVE~2.PNG
[10/07/2006 16:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\back.png
[10/07/2006 11:46|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\BACKGR~1.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\BACKPR~1.PNG
[12/07/2006 11:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\BLANK2~1.PNG
[31/05/2006 11:25|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\blank25.png
[12/07/2006 14:42|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\CORREC~1.PNG
[19/07/2006 17:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\CORREC~2.PNG
[28/06/2006 17:58|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\ecran.png
[28/06/2006 18:00|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\ECRANR~1.PNG
[10/07/2006 11:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\fermer.png
[10/07/2006 11:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\FERMER~1.PNG
[01/06/2006 14:03|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\grey25.png
[12/07/2006 11:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\ILUMIN~1.PNG
[19/07/2006 17:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\ILUMIN~2.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\ILUMIN~3.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\ILUMIN~4.PNG
[19/07/2006 17:51|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\INCORR~1.PNG
[10/07/2006 11:30|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\keypad.png
[10/07/2006 11:33|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\KEYPAD~1.PNG
[10/07/2006 16:52|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\masquer.png
[10/07/2006 16:52|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\MASQUE~1.PNG
[10/07/2006 11:24|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\minimise.png
[10/07/2006 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\MINIMI~1.PNG
[10/07/2006 16:51|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\new.png
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\NEWPRE~1.PNG
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\next.png
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\NEXTPR~1.PNG
[02/06/2006 11:35|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\print.png
[10/07/2006 16:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\save.png
[10/07/2006 16:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\SAVEPR~1.PNG
[29/08/2006 11:21|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\Thumbs.db
[12/07/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\VERIFI~1.PNG
[12/07/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~1\VERIFI~2.PNG
[10/07/2006 11:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\aide.png
[10/07/2006 11:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\AIDEPR~1.PNG
[12/07/2006 15:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\AUTOVE~1.PNG
[12/07/2006 15:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\AUTOVE~2.PNG
[10/07/2006 16:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\back.png
[30/08/2006 14:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\BACKGR~1.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\BACKPR~1.PNG
[12/07/2006 11:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\BLANK2~1.PNG
[31/05/2006 11:25|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\blank25.png
[12/07/2006 14:42|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\CORREC~1.PNG
[19/07/2006 17:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\CORREC~2.PNG
[28/06/2006 17:58|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\ecran.png
[28/06/2006 18:00|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\ECRANR~1.PNG
[10/07/2006 11:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\fermer.png
[10/07/2006 11:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\FERMER~1.PNG
[01/06/2006 14:03|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\grey25.png
[12/07/2006 11:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\ILUMIN~1.PNG
[19/07/2006 17:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\ILUMIN~2.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\ILUMIN~3.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\ILUMIN~4.PNG
[19/07/2006 17:51|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\INCORR~1.PNG
[10/07/2006 11:30|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\keypad.png
[10/07/2006 11:33|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\KEYPAD~1.PNG
[10/07/2006 16:52|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\masquer.png
[10/07/2006 16:52|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\MASQUE~1.PNG
[10/07/2006 11:24|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\minimise.png
[10/07/2006 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\MINIMI~1.PNG
[10/07/2006 16:51|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\new.png
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\NEWPRE~1.PNG
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\next.png
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\NEXTPR~1.PNG
[02/06/2006 11:35|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\print.png
[10/07/2006 16:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\save.png
[10/07/2006 16:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\SAVEPR~1.PNG
[30/08/2006 14:38|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\Thumbs.db
[12/07/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\VERIFI~1.PNG
[12/07/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~4\VERIFI~2.PNG
[28/08/2006 13:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\aide.png
[28/08/2006 13:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\AIDEPR~1.PNG
[12/07/2006 15:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\AUTOVE~1.PNG
[12/07/2006 15:11|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\AUTOVE~2.PNG
[10/07/2006 16:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\back.png
[28/08/2006 12:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\BACKGR~1.PNG
[28/08/2006 16:14|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\BACKGR~2.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\BACKPR~1.PNG
[12/07/2006 11:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\BLANK2~1.PNG
[31/05/2006 11:25|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\blank25.png
[12/07/2006 14:42|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\CORREC~1.PNG
[19/07/2006 17:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\CORREC~2.PNG
[28/06/2006 17:58|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\ecran.png
[28/06/2006 18:00|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\ECRANR~1.PNG
[28/08/2006 13:17|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\fermer.png
[28/08/2006 13:17|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\FERMER~1.PNG
[01/06/2006 14:03|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\grey25.png
[12/07/2006 11:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\ILUMIN~1.PNG
[19/07/2006 17:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\ILUMIN~2.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\ILUMIN~3.PNG
[10/07/2006 16:53|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\ILUMIN~4.PNG
[19/07/2006 17:51|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\INCORR~1.PNG
[28/08/2006 12:57|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\keypad.png
[10/07/2006 11:33|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\KEYPAD~1.PNG
[10/07/2006 16:52|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\masquer.png
[10/07/2006 16:52|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\MASQUE~1.PNG
[28/08/2006 13:15|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\minimise.png
[28/08/2006 13:08|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\MINIMI~1.PNG
[10/07/2006 16:51|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\new.png
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\NEWPRE~1.PNG
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\next.png
[10/07/2006 16:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\NEXTPR~1.PNG
[10/07/2006 16:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\save.png
[10/07/2006 16:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\SAVEPR~1.PNG
[28/08/2006 17:48|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\Thumbs.db
[12/07/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\VERIFI~1.PNG
[12/07/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EoSudoku\IMAGES~3\VERIFI~2.PNG
[10/10/2006 16:39|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\EOWEAT~1.CFG
[23/07/2007 11:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\EOWEAT~2.CFG
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2
[22/07/2007 23:18|d--------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1
[30/06/2005 14:40|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\67_day.png
[30/06/2005 14:40|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\67_night.png
[21/08/2006 13:07|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\69_day.png
[21/08/2006 13:07|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\69_night.png
[13/07/2005 16:04|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\70_day.png
[13/07/2005 16:04|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\70_night.png
[30/06/2005 14:40|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\78_day.png
[30/06/2005 14:40|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\78_night.png
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\82_day.png
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\82_night.png
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\83_day.png
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\83_night.png
[30/06/2005 14:40|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\84_day.png
[30/06/2005 14:40|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\84_night.png
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\85_day.png
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\85_night.png
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\89_day.png
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\89_night.png
[30/10/2006 11:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\back.png
[30/10/2006 12:31|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\BA24E2~1.PNG
[30/10/2006 11:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\BACKGR~4.PNG
[24/10/2006 10:58|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\BACKGR~3.PNG
[27/09/2006 14:55|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\BACKGR~1.PNG
[27/09/2006 14:57|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\BACKGR~2.PNG
[30/10/2006 11:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\BACKPR~1.PNG
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\band.png
[30/06/2005 10:14|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\BAND_S~1.PNG
[10/07/2006 12:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\close.png
[10/07/2006 12:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\CLOSEP~1.PNG
[23/10/2006 11:32|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\DAYPRE~2.PNG
[23/10/2006 11:33|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\DAYPRE~1.PNG
[25/10/2006 11:59|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\earth.png
[04/10/2006 11:21|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\FONDS_~1.PNG
[10/07/2006 12:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\help.png
[10/07/2006 12:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\HELPPR~1.PNG
[10/07/2006 12:24|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\minimise.png
[10/07/2006 12:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\MINIMI~1.PNG
[30/10/2006 11:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\next.png
[30/10/2006 11:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\NEXTPR~1.PNG
[31/10/2006 12:45|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\option.png
[31/10/2006 12:45|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\OPTION~1.PNG
[02/10/2006 18:36|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\REFLET~1.PNG
[18/05/2006 14:20|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\SMALL_~1.PNG
[06/11/2006 11:05|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~2\Thumbs.db
[30/10/2006 13:05|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\67_day.png
[30/10/2006 13:05|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\67_night.png
[02/10/2006 17:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\69_day.png
[02/10/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\69_night.png
[06/11/2006 16:18|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\70_day.png
[06/11/2006 16:19|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\70_night.png
[02/10/2006 17:00|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\78_day.png
[02/10/2006 17:00|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\78_night.png
[02/10/2006 16:59|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\82_day.png
[02/10/2006 16:59|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\82_night.png
[02/10/2006 16:58|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\83_day.png
[02/10/2006 16:57|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\83_night.png
[02/10/2006 16:54|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\84_day.png
[02/10/2006 16:56|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\84_night.png
[02/10/2006 14:59|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\85_day.png
[02/10/2006 15:12|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\85_night.png
[02/10/2006 16:56|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\89_day.png
[02/10/2006 16:56|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\89_night.png
[10/01/2007 11:33|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\about.png
[30/10/2006 11:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\back.png
[06/11/2006 13:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\BACKGR~4.PNG
[06/11/2006 13:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\BADB1B~1.PNG
[24/10/2006 10:58|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\BACKGR~3.PNG
[27/09/2006 14:55|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\BACKGR~1.PNG
[27/09/2006 14:57|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\BACKGR~2.PNG
[30/10/2006 11:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\BACKPR~1.PNG
[10/07/2006 12:38|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\close.png
[10/07/2006 12:37|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\CLOSEP~1.PNG
[23/10/2006 11:32|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\DAYPRE~2.PNG
[23/10/2006 11:33|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\DAYPRE~1.PNG
[25/10/2006 11:59|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\earth.png
[04/10/2006 11:21|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\FONDS_~1.PNG
[10/07/2006 12:50|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\help.png
[10/07/2006 12:49|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\HELPPR~1.PNG
[10/07/2006 12:24|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\minimise.png
[10/07/2006 12:23|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\MINIMI~1.PNG
[30/10/2006 11:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\next.png
[30/10/2006 11:01|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\NEXTPR~1.PNG
[06/11/2006 13:46|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\option.png
[31/10/2006 12:45|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\OPTION~1.PNG
[02/10/2006 18:36|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\REFLET~1.PNG
[10/01/2007 11:33|--ahs----] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\Thumbs.db
[12/07/2005 14:55|--a------] C:\DOCUME~1\valerie\APPLIC~1\EoRezo\EOWEAT~1\IMAGES~1\TXT_14~1.PNG
+-----------------------| Everest Poker Elements found :
.
+-----------------------| FunWebProducts/MyWay/MyWebSearch/MyGlobalSearch Elements found :
.
+-----------------------| It's TV Elements found :
"HKEY_LOCAL_MACHINE\SOFTWARE\ItsLabel"
"HKEY_USERS\S-1-5-21-4260010653-3200473413-4177974999-1006\Software\ItsLabel"
.
[22/07/2007 23:39|d--------] C:\DOCUME~1\valerie\APPLIC~1\ItsLabel
[22/07/2007 23:39|d--------] C:\DOCUME~1\valerie\APPLIC~1\ItsLabel\ItsTV2D
[22/07/2007 23:40|--a------] C:\DOCUME~1\valerie\APPLIC~1\ItsLabel\ItsTV2D\ItsTV2D.xml
+-----------------------| Sweetim Elements found :
.
+-----------------------| ADDED SCAN :
+---------- Scanning prefs.js ... ( # Mozilla User Preferences )
...\m19zcb39.default\prefs.js :
~~~~ Mozilla FireFox version 2.0.0.17 ~~~~
Start Page : "http://www.msn.fr/"
+----------+
+---------------------------------------------------------------------------+
+--[HKEY_CURRENT_USER\..\Run]
EleFunAnimatedWallpaper REG_SZ
ctfmon.exe REG_SZ C:\WINDOWS\system32\ctfmon.exe
msnmsgr REG_SZ "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
swg REG_SZ C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
vga for REG_SZ C:\DOCUME~1\valerie\APPLIC~1\Greyidol\Wma Third.exe
+--[HKEY_LOCAL_MACHINE\..\Run]
LaunchApp REG_SZ Alaunch
SiSPower REG_SZ Rundll32.exe SiSPower.dll,ModeAgent
eRecoveryService REG_SZ C:\Acer\Empowering Technology\eRecovery\Monitor.exe
VX3000 REG_SZ C:\WINDOWS\vVX3000.exe
LifeCam REG_SZ "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
AliceSAV REG_SZ C:\Program Files\TechCity Solutions\AliceSAV\AliceAgent.exe
avgnt REG_SZ "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
Amazing3DAquariumWallpaper REG_SZ
EleFunAnimatedWallpaper REG_SZ
SunJavaUpdateSched REG_SZ "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
QuickTime Task REG_SZ "C:\Program Files\QuickTime\qttask.exe" -atboottime
Adobe Reader Speed Launcher REG_SZ "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
Hiyo REG_SZ C:\Program Files\HiYo\bin\HiYo.exe /RunFromStartup
+--[HKEY_USERS\.DEFAULT\..\Run]
DWQueuedReporting REG_SZ "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t
+--[HKEY_CURRENT_USER\..\Internet Explorer\MAIN]
Start Page : hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
+--[HKEY_LOCAL_MACHINE\..\Internet Explorer\MAIN]
Start Page : hxxp://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
Start Page : hxxp://www.live.com/\0\0
+---------------------------------------------------------------------------+
- "C:\AD-report-Scan-19.12.2008.log" (~49693 bytes)
# END at: 16:19:17 | 19/12/2008 - Time elapsed: 35.4 seconds
+---------------------------------------------------------------------------+
+------------------------------- [ E.O.F - 601 lines ]
+---------------------------------------------------------------------------+ Répondre à valy61 |
|
|
|
|
|
|
|
|
|
|