Trojan qui revient tous le temps

Résolu/Fermé
bebedouxreve - 29 févr. 2008 à 22:30
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 - 4 juil. 2008 à 12:23
Bonjour,
j'ai un trojan sur mon pc que j'ai eu sur msn .
d'ailleurs j'ai la photo du cinglé qui a infecté mon pc celui qui la souhaite peut l'avoir
pensant que ma nièce avait mis un lien vers ses photos de vacance et j'ai cliqué depuis c'est galère .
pouvez vous m'aider ?
A voir également:

19 réponses

g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
1 mars 2008 à 00:22
salut bebedouxreve,

Téléchargez MSNFix.zip (de !aur3n7) sur votre bureau:
http://sosvirus.changelog.fr/MSNFix.zip
Décompressez-le (clic droit >> Extraire ici) et double cliquer sur le fichier MSNFix.bat.
- Exécutez l'option R.
-- Si l'infection est détectée, un message l'indiquera et il suffira de presser une touche pour lancer le nettoyage

Note :
Si une erreur de suppression est détectée un message s'affichera demandant de redémarrer l'ordinateur afin de terminer les opérations. Dans ce cas il suffit de redémarrer l'ordinateur en mode normal

- Le rapport sera enregistré dans le même dossier que MSNFix sous forme date_heure.txt

Tuto :

https://www.malekal.com/supprimer-virus-desinfecter-pc/

et

Télécharge HijackThis ici :

-> http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis

Tutoriel d´instalation : (Merci a Balltrap34 pour cette réalisation)

-> http://pageperso.aol.fr/balltrap34/Hijenr.gif

Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)

-> http://pageperso.aol.fr/balltrap34/demohijack.htm

Post le rapport généré ici stp...

@+
0
bebedouxreve
1 mars 2008 à 00:30
MSNFix 1.673

C:\Documents and Settings\maman\Bureau\MSNFix
Fix exécuté le 01/03/2008 - 0:25:21,70 By maman
mode normal

************************ Recherche les fichiers présents

... C:\WINDOWS\system32\real.txt
... C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
... C:\Documents and Settings\maman\??????.exe
... C:\Documents and Settings\maman\????????.exe

************************ Recherche les dossiers présents

Aucun dossier trouvé




************************ Suppression des fichiers

.. OK ... C:\WINDOWS\system32\real.txt
.. OK ... C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
.. OK ... C:\Documents and Settings\maman\??????.exe
.. OK ... C:\Documents and Settings\maman\????????.exe



************************ Nettoyage du registre



************************ Fichiers suspects

Aucun Fichier trouvé


Les fichiers et clés de registre supprimés ont été sauvegardés dans le fichier 01032008_ 0263064.zip



------------------------------------------------------------------------
Auteur : !aur3n7 Contact: https://www.ionos.fr/
------------------------------------------------------------------------

--------------------------------------------- END ---------------------------------------------
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
1 mars 2008 à 00:46
Re,
ok pour msnfix;-)
post le rapport hijack this maintenant.
@+
0
bebedouxreve Messages postés 3 Date d'inscription samedi 1 mars 2008 Statut Membre Dernière intervention 15 mars 2008
1 mars 2008 à 00:47
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:46:11, on 01/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\cisvc.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SWEETIE Class - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\PROGRA~1\MACROG~1\SWEETI~1\toolbar.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
1 mars 2008 à 01:11
Re,

a l´aide de hijack this coche et fix les lignes ci dessous

R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

meme si tu utilise firefox fais la mise a jour windows pour obtenir ie 7.0

https://support.microsoft.com/en-US/topic/internet-explorer-downloads-d49e1f0d-571c-9a7b-d97e-be248806ca70

puis

installes un par feu :

par feu : kerio

http://www.malekal.com/kerio_firewall.php#mozTocId721480

https://www.vulgarisation-informatique.com/kerio.php

https://kerio.probb.fr/f2-sunbelt-kerio-personal-firewall

Comodo 3 pro :

http://www.commentcamarche.net/telecharger/telecharger 34055041 comodo firewall pro

Online armor :

http://www.commentcamarche.net/telecharger/telecharger 34055356 online armor personal firewall

tuto : https://forum.pcastuces.com/sujet.asp?f=25&s=35606

ou zone alarm plus facil a configurer mais moins performant

https://www.malekal.com/tutoriel-zonealarm-firewall/

* Télécharge OTMoveIt2 (de Old_Timer) sur ton bureau : http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe
* Double-clique sur OTMoveIt.exe pour lancer le programme,
* Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste Custom List of Files/Folders to Move" :

C:\Program Files\Macrogaming

* Clique sur MoveIt! pour lancer la suppression,
* Le résultat appraraîtra dans le cadre Results.
* Clique sur Exit pour fermer le programme.
* Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
* Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.

as tu reessayé msn depuis?

@+
0
bebedouxreve
1 mars 2008 à 12:48
bonjour,
désolée mais j'ai été un peu longue , mais ce n'était pas évident pour moi.
voici le rapport hijack
j'espère que tout est fait correctement
merci pour tout
patricia
0
bebedouxreve > bebedouxreve
1 mars 2008 à 12:49
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:45:38, on 01/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Tall Emu\Online Armor\oasrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Trojan Remover\Trjscan.exe
C:\Program Files\Tall Emu\Online Armor\oaui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
1 mars 2008 à 17:43
Salut bebedouxreve,

Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
• Redémarre ton ordinateur
• Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
• A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
• Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
• Choisis ton compte.
Déroule la liste des instructions ci-dessous :
• Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
• Appuie sur Y pour commencer le processus de nettoyage.
• Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
• Appuie sur une touche pour redémarrer le PC.
• Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
• Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
• Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
• Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
• Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum,

puis

Télécharge combofix.exe (par sUBs) sur ton Bureau.

-> http://download.bleepingcomputer.com/sUBs/ComboFix.exe

-> Double clique combofix.exe.
-> Tape sur la touche 1 (Yes) pour démarrer le scan.
-> Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.

NOTE : Le rapport se trouve également ici : C:\Combofix.txt

Avant d'utiliser ComboFix :

-> Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.

-> Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent géner fortement la procédure de recherche et de nettoyage de l'outil.

Une fois fait, sur ton bureau double-clic sur Combofix.exe.

- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.

/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.

- En fin de scan il est possible que ComboFix ait besoin de redemarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.

- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\Combofix.txt)

-> Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.

-> Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message ainsi qu´un nouveau hijack this.

-> Tutoriel https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix

bon courrage ;-)

@+
0
bebedouxreve
2 mars 2008 à 00:38
ComboFix 08-03-01.3 - maman 2008-03-02 0:28:40.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.189 [GMT 1:00]
Endroit: C:\Documents and Settings\maman\Bureau\ComboFix.exe
* Création d'un nouveau point de restauration

[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\maman\Application Data\inst.exe

.
((((((((((((((((((((((((((((( Fichiers créés 2008-02-01 to 2008-03-01 ))))))))))))))))))))))))))))))))))))
.

2008-03-02 00:15 . 2008-03-02 00:15 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-01 10:18 . 2008-03-02 00:26 <REP> d-------- C:\Documents and Settings\maman\Application Data\OnlineArmor
2008-03-01 10:18 . 2008-03-01 10:18 <REP> d-------- C:\Documents and Settings\All Users\Application Data\OnlineArmor
2008-03-01 10:17 . 2007-11-08 06:37 68,608 --a------ C:\WINDOWS\system32\drivers\OADriver.sys
2008-03-01 10:17 . 2007-09-29 00:06 25,600 --a------ C:\WINDOWS\system32\drivers\OAmon.sys
2008-03-01 10:17 . 2007-09-29 00:06 18,944 --a------ C:\WINDOWS\system32\drivers\ndisrd.sys
2008-03-01 10:16 . 2008-03-01 10:17 <REP> d-------- C:\Program Files\Tall Emu
2008-03-01 09:53 . 2008-03-01 09:53 <REP> d-------- C:\OnlineArmor
2008-03-01 09:51 . 2008-03-01 09:51 <REP> d-------- C:\_OTMoveIt
2008-03-01 09:43 . 2008-03-01 09:43 14,771,744 --a------ C:\Program Files\IE7-WindowsXP-x86-fra.exe
2008-03-01 00:45 . 2008-03-01 00:45 <REP> d-------- C:\Program Files\Trend Micro
2008-03-01 00:45 . 2008-03-01 00:45 812,344 --a------ C:\Program Files\HJTInstall.exe
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Program Files\Trojan Remover
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\maman\Application Data\Simply Super Software
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Simply Super Software
2008-02-29 21:37 . 2006-05-25 14:52 162,304 --a------ C:\WINDOWS\system32\ztvunrar36.dll
2008-02-29 21:37 . 2003-02-02 19:06 153,088 --a------ C:\WINDOWS\system32\UNRAR3.dll
2008-02-29 21:37 . 2005-08-26 00:50 77,312 --a------ C:\WINDOWS\system32\ztvunace26.dll
2008-02-29 21:37 . 2002-03-06 00:00 75,264 --a------ C:\WINDOWS\system32\unacev2.dll
2008-02-29 21:37 . 2006-06-19 12:01 69,632 --a------ C:\WINDOWS\system32\ztvcabinet.dll
2008-02-29 21:36 . 2008-02-29 21:37 6,894,528 --a------ C:\Program Files\trsetup.exe
2008-02-29 21:22 . 2008-03-01 10:50 5,120 --ahs---- C:\WINDOWS\system32\Thumbs.db
2008-02-29 20:47 . 2008-02-29 20:47 <REP> d--hs---- C:\found.001
2008-02-29 20:10 . 2008-02-29 20:10 407,680 --a------ C:\Program Files\aswclnr.exe
2008-02-29 19:13 . 2008-02-29 19:13 1,308,216 --a------ C:\Program Files\HiJackThis_v2.exe
2008-02-29 18:51 . 2008-02-29 18:53 <REP> d-------- C:\Program Files\Panda Security
2008-02-29 16:03 . 2008-02-29 16:03 <REP> d-------- C:\Program Files\Activision
2008-02-29 14:31 . 2008-02-29 14:31 123 --a------ C:\WINDOWS\wininit.ini
2008-02-29 13:32 . 2008-02-29 13:32 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-02-29 13:32 . 2008-02-29 14:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-02-29 13:19 . 2008-02-29 13:19 7,467,056 --a------ C:\Program Files\spybotsd15.exe
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Program Files\Apple Software Update
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple
2008-02-25 21:52 . 2008-02-25 21:52 2,563 --a------ C:\WINDOWS\image.jpg
2008-02-24 21:31 . 2008-02-24 21:31 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-02-24 21:31 . 2008-02-24 21:31 1,409 --a------ C:\WINDOWS\QTFont.for
2008-02-24 19:00 . 2008-02-24 19:00 <REP> d-------- C:\My Shared Folder
2008-02-24 18:59 . 2008-02-24 18:59 <REP> d-------- C:\Documents and Settings\maman\Application Data\Kazaa Lite
2008-02-24 18:58 . 2008-02-24 18:58 2,803,665 --a------ C:\Program Files\klitekpp243f.exe
2008-02-24 18:55 . 2008-02-24 18:55 <REP> d-------- C:\Program Files\Kazaa
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Fichiers communs\FotoWire
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Documents and Settings\maman\Application Data\FotoWire
2008-02-24 17:49 . 2004-10-08 12:46 53,248 -ra------ C:\WINDOWS\system32\InstMed.exe
2008-02-24 17:48 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Logitech
2008-02-24 17:04 . 2008-02-24 17:04 2,402,832 --a------ C:\Program Files\WLinstaller.exe
2008-02-24 16:55 . 2008-02-29 13:01 <REP> d-------- C:\Documents and Settings\maman\Application Data\skypePM
2008-02-24 16:55 . 2008-02-24 16:55 32 --a------ C:\Documents and Settings\All Users\Application Data\ezsid.dat
2008-02-24 16:53 . 2008-02-29 13:30 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Skype
2008-02-24 16:48 . 2008-02-24 16:51 22,690,600 --a------ C:\Program Files\SkypeSetup.exe
2008-02-24 16:06 . 2008-02-24 17:38 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Logishrd
2008-02-24 16:05 . 2008-02-24 17:39 <REP> d-------- C:\Program Files\Fichiers communs\LogiShrd
2008-02-24 16:00 . 2008-02-24 16:03 32,227,136 --a------ C:\Program Files\logitech_logitech_quickcam_11.1.0.2016_whql_4219.exe
2008-02-24 13:38 . 2008-03-01 10:50 16,384 --ahs---- C:\WINDOWS\Thumbs.db
2008-02-24 13:19 . 2008-02-24 13:19 1,271,557 --a------ C:\Program Files\wrar371fr.exe
2008-02-23 18:32 . 2008-02-23 18:31 4,419,000 --a------ C:\Program Files\burn4free_burn4free_3.9.0.0_francais_14723.exe
2008-02-22 22:35 . 2008-02-22 22:35 306,432 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
2008-02-22 22:35 . 2007-12-20 10:41 29,440 --a------ C:\WINDOWS\system32\uxtuneup.dll
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2008-02-22 22:30 . 2008-02-22 22:31 14,174,464 --a------ C:\Program Files\TU2008TrialFR.exe
2008-02-22 22:17 . 2008-02-24 18:55 594,880 --a------ C:\Program Files\kazaa_setup.exe
2008-02-22 22:15 . 2008-02-22 22:15 5,265,101 --a------ C:\Program Files\Shareaza_2.3.1.0_Win32.exe
2008-02-22 21:50 . 2008-02-22 23:19 <REP> d-------- C:\Program Files\Yahoo!
2008-02-22 21:50 . 2008-02-22 21:50 <REP> d-------- C:\Program Files\CCleaner
2008-02-22 21:49 . 2008-02-22 21:50 2,733,928 --a------ C:\Program Files\ccsetup204.exe
2008-02-22 21:45 . 2008-02-22 21:44 2,467,439 --a------ C:\Program Files\winamp295_full.exe
2008-02-15 23:39 . 2008-02-15 23:39 <REP> d-------- C:\Documents and Settings\maman\Application Data\dvdcss
2008-02-14 22:14 . 2008-02-14 22:51 <REP> d-------- C:\Program Files\Photo Viewer 2.4
2008-02-13 16:43 . 2008-02-15 12:52 0 --a------ C:\WINDOWS\obmetmp.htm
2008-02-12 17:54 . 2008-02-24 17:39 780 --a------ C:\WINDOWS\_delis32.ini
2008-02-11 21:39 . 2006-11-12 11:39 483,328 --a------ C:\WINDOWS\system32\actskn45.ocx
2008-02-11 16:13 . 2008-02-11 16:13 <REP> d-------- C:\Program Files\Common Files
2008-02-11 00:22 . 2008-03-01 23:08 116 --a------ C:\WINDOWS\NeroDigital.ini
2008-02-10 13:41 . 2008-02-10 13:41 <REP> d-------- C:\Program Files\Fichiers communs\Ahead
2008-02-10 13:41 . 2004-07-26 16:16 1,568,768 --------- C:\WINDOWS\system32\ImagX7.dll
2008-02-10 13:41 . 2004-07-26 16:16 476,320 --------- C:\WINDOWS\system32\ImagXpr7.dll
2008-02-10 13:41 . 2004-07-26 16:16 471,040 --------- C:\WINDOWS\system32\ImagXRA7.dll
2008-02-10 13:41 . 2004-07-26 16:16 262,144 --------- C:\WINDOWS\system32\ImagXR7.dll
2008-02-10 13:41 . 2001-07-09 10:50 155,648 --a------ C:\WINDOWS\system32\NeroCheck.exe
2008-02-10 13:41 . 2004-03-02 16:37 125,184 --------- C:\WINDOWS\system32\drivers\imagesrv.sys
2008-02-10 13:41 . 2000-06-26 10:45 106,496 --a------ C:\WINDOWS\system32\TwnLib20.dll
2008-02-10 13:41 . 2004-03-02 16:37 5,504 --------- C:\WINDOWS\system32\drivers\imagedrv.sys
2008-02-10 13:39 . 2008-02-10 13:39 <REP> d-------- C:\Program Files\Nero 6 (+crack)
2008-02-09 23:26 . 2008-02-10 01:23 <REP> d-------- C:\Program Files\Sims2Pack Clean Installer
2008-02-09 23:25 . 2008-02-09 23:25 441,214 --a------ C:\Program Files\Sims2PackInstaller_v1514.exe
2008-02-09 23:07 . 2008-02-09 23:07 4,922,461 --a------ C:\Program Files\theme-de-bureau.exe
2008-02-09 20:41 . 2008-02-09 20:41 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WinZip
2008-02-09 18:16 . 2008-02-24 13:23 <REP> d-------- C:\Program Files\Maxis
2008-02-07 22:05 . 2006-11-02 17:12 348,416 --a------ C:\WINDOWS\system32\drivers\rt73.sys
2008-02-07 22:05 . 2006-06-20 22:53 319,488 --a------ C:\WINDOWS\system32\AegisI5.exe
2008-02-07 22:05 . 2006-06-17 12:29 295,018 --a------ C:\WINDOWS\system32\Install7x.dll
2008-02-07 22:05 . 2005-11-30 11:33 2,048 --a------ C:\WINDOWS\system32\drivers\rt73.bin
2008-02-07 22:05 . 2006-03-06 15:36 45 --a------ C:\WINDOWS\filespec7x
2008-02-07 22:04 . 2008-02-07 22:04 <REP> d-------- C:\Program Files\RALINK
2008-02-07 22:02 . 2008-02-07 22:02 <REP> d-------- C:\Documents and Settings\maman\Application Data\InstallShield
2008-02-06 21:04 . 2008-02-06 21:04 <REP> d-------- C:\WINDOWS\new mario62
2008-02-06 21:04 . 2008-02-06 21:04 171,520 --a------ C:\WINDOWS\system32\cncs32.dll
2008-02-06 21:04 . 2008-02-06 21:04 18 --a------ C:\WINDOWS\gfact.ini
2008-02-06 20:57 . 2008-02-06 21:50 <REP> d-------- C:\Program Files\Pcsx2
2008-02-06 10:19 . 2008-02-06 10:19 <REP> d--hs---- C:\found.000

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-01 09:50 6,144 --sha-w C:\Program Files\Thumbs.db
2008-02-29 19:40 --------- d-----w C:\Program Files\Google
2008-02-29 19:31 10,563 ----a-w C:\Program Files\hijackthis.log
2008-02-29 19:30 5,534 ----a-w C:\Program Files\aswclnr.log
2008-02-29 12:29 --------- d-----w C:\Program Files\MaxiCompte
2008-02-28 12:20 --------- d-----w C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-02-28 10:06 --------- d-----w C:\Program Files\eMule
2008-02-24 16:48 81,920 ------r C:\WINDOWS\bwUnin-6.1.4.68-8876480L.exe
2008-02-24 16:48 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-24 16:48 --------- d-----w C:\Program Files\Fichiers communs\Logitech
2008-02-24 15:03 --------- d-----w C:\Program Files\EA GAMES
2008-02-24 14:48 --------- d-----w C:\Program Files\Winamp
2008-02-24 14:48 --------- d-----w C:\Program Files\RegCleaner
2008-02-24 14:48 --------- d-----w C:\Program Files\QuickTime
2008-02-24 14:48 --------- d-----w C:\Program Files\Help
2008-02-24 14:48 --------- d-----w C:\Program Files\FinePixViewer
2008-02-24 12:38 --------- d-----w C:\Program Files\Disney Pix 2.0
2008-02-22 21:33 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-02-22 21:15 --------- d-----w C:\Program Files\Shareaza
2008-02-22 20:40 --------- d-----w C:\Program Files\Java
2008-02-10 23:06 21 ----a-w C:\Program Files\Sims2Pack Clean Installer.ini
2008-02-10 17:03 47,360 ----a-w C:\Documents and Settings\maman\Application Data\pcouffin.sys
2008-02-10 17:03 --------- d-----w C:\Program Files\VSO
2008-02-10 17:03 --------- d-----w C:\Documents and Settings\maman\Application Data\Vso
2008-02-10 17:02 --------- d-----w C:\Program Files\Elaborate Bytes
2008-02-10 17:01 --------- d-----w C:\Program Files\SlySoft
2008-02-10 12:41 --------- d-----w C:\Program Files\Ahead
2008-02-09 20:57 299,465 ----a-w C:\Program Files\F_N_Roxy_Tim.zip.part
2008-02-09 19:40 6,703,104 ----a-w C:\Program Files\winzip111fr.msi
2008-02-06 13:11 163,644 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2008-01-28 20:44 --------- dcsh--w C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-01-20 14:04 --------- d-----w C:\Program Files\THQ
2008-01-20 13:13 3,861,320 ----a-w C:\Program Files\eMule0.48a-Installer2.exe
2008-01-19 20:57 --------- d-----w C:\Program Files\Ubisoft
2008-01-19 20:53 --------- d-----w C:\Program Files\D-Tools
2008-01-11 10:11 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-01-10 20:16 1,182,550 ----a-w C:\Program Files\img017.jpg
2008-01-10 20:16 1,118,010 ----a-w C:\Program Files\img016.jpg
2008-01-10 20:14 7,230 ----a-w C:\Program Files\nouveau-24.jpg
2008-01-09 22:53 --------- d-----w C:\Documents and Settings\maman\Application Data\CopyToDvd
2008-01-04 23:48 --------- d-----w C:\Documents and Settings\maman\Application Data\CDBurnerXPP
2008-01-04 23:26 24,265,736 ----a-w C:\Program Files\dotnetfx.exe
2008-01-04 23:16 --------- d-----w C:\Program Files\MSBuild
2008-01-04 23:06 --------- d-----w C:\Program Files\Reference Assemblies
2008-01-04 22:41 2,945,816 ----a-w C:\Program Files\dotnetfx3setup.exe
2008-01-04 22:11 177,522 ----a-w C:\Program Files\installez-emule-be.exe
2007-12-29 08:23 506,368 ----a-w C:\WINDOWS\system32\winlogon.exe
2007-12-10 16:25 7,792 ----a-w C:\Program Files\CurrentCfg.tpr
2007-12-10 16:25 5,188 ----a-w C:\Program Files\TMPGEnc.ini
2007-12-05 17:22 9 ----a-w C:\Documents and Settings\maman\Application Data\mdb.bin
2007-12-04 13:04 837,496 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-12-04 12:54 95,608 ----a-w C:\WINDOWS\system32\AvastSS.scr
2007-11-03 11:23 141,410 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_11_02_23_58_03_small.dmp.zip
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdremote.dll
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdicmdrv.dll
2007-05-19 15:25 5,120 ----a-w C:\Program Files\vdsvrlnk.dll
2007-05-19 15:25 16,384 ----a-w C:\Program Files\auxsetup.exe
2006-09-24 16:11 389,120 ----a-w C:\Program Files\lameACM.acm
2005-12-19 22:52 18,321 ----a-w C:\Program Files\copying
2002-04-07 10:17 414 ----a-w C:\Program Files\lame_acm.xml
2002-01-23 19:39 3,133 ----a-w C:\Program Files\LameACM.inf
.

((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
"Shareaza"="C:\Program Files\Shareaza\Shareaza.exe" [2008-01-01 17:49 4739072]
"TuneUp MemOptimizer"="C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" [2008-01-16 13:28 197888]
"LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe" [2008-02-24 17:48 20480]
"LogitechSoftwareUpdate"="C:\Program Files\Logitech\Video\ManifestEngine.exe" [2005-01-18 17:07 196608]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46 1460560]
"ccleaner"="C:\Program Files\CCleaner\CCleaner.exe" [2008-01-17 10:40 816368]
"MsnMsgr"="~C:\Program Files\MSN Messenger\MsnMsgr.exe" [ ]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-28 23:43 8466432]
"nwiz"="nwiz.exe" [2007-06-28 23:43 1626112 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-06-28 23:43 81920]
"SoundMan"="SOUNDMAN.EXE" [2005-08-17 17:39 90112 C:\WINDOWS\SOUNDMAN.EXE]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 05:24 286720]
"SSBkgdUpdate"="C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-29 23:14 155648]
"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-03-21 12:19 69632]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
"REGSHAVE"="C:\Program Files\REGSHAVE\REGSHAVE.exe" [2002-02-04 22:32 53248]
"DAEMON Tools-1033"="C:\Program Files\D-Tools\daemon.exe" [2003-10-02 02:20 81920]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50 155648]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"WinampAgent"="C:\Program Files\Winamp\Winampa.exe" [2008-01-15 23:54 37376]
"LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [2004-10-08 11:52 221184]
"LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [2005-01-18 17:47 458752]
"LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [2005-01-18 17:37 217088]
"TrojanScanner"="C:\Program Files\Trojan Remover\Trjscan.exe" [2008-02-29 18:31 866384]
"OnlineArmor GUI"="C:\Program Files\Tall Emu\Online Armor\oaui.exe" [2007-11-16 07:51 5029952]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 12:55 5674352]

C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Exif Launcher.lnk - C:\Program Files\FinePixViewer\QuickDCF.exe [2002-01-09 21:53:14 200704]
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe [2008-02-24 17:48:09 450560]
Ralink Wireless Utility.lnk - C:\Program Files\RALINK\Common\RaUI.exe [2008-02-07 22:05:50 663552]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= C:\PROGRA~1\TALLEM~1\ONLINE~1\oaevent.dll [2007-11-16 07:50 633344]

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Shareaza\\Shareaza.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\backWeb-8876480.exe"=

R0 pnpshark;pnpshark;C:\WINDOWS\system32\DRIVERS\pnpshark.sys [2003-10-02 03:16]
R0 st3shark;st3shark;C:\WINDOWS\system32\DRIVERS\st3shark.sys [2003-09-27 14:37]
R1 NDISRD;NDISRD;C:\WINDOWS\system32\drivers\NDISRD.sys [2007-09-29 00:06]
R1 OADevice;OADriver;C:\WINDOWS\system32\drivers\OADriver.sys [2007-11-08 06:37]
R1 OAmon;OAmon;C:\WINDOWS\system32\drivers\OAmon.sys [2007-09-29 00:06]
R2 EAPPkt;Realtek EAPPkt Protocol;C:\WINDOWS\system32\DRIVERS\EAPPkt.sys [2006-11-15 16:23]
R2 UxTuneUp;TuneUp Extension de thème;C:\WINDOWS\System32\svchost.exe [2004-08-19 15:10]
S2 SvcOnlineArmor;Online Armor;"C:\Program Files\Tall Emu\Online Armor\oasrv.exe" [2007-11-16 07:51]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-02-22 22:35]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp

.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-27 07:03:38 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-02-29 19:31:50 C:\WINDOWS\Tasks\Maintenance en 1 clic.job"
- C:\Program Files\TuneUp Utilities 2008\OneClick.exe
.
**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-02 00:30:53
Windows 5.1.2600 Service Pack 2 NTFS

Balayage processus cachés ...

Balayage caché autostart entries ...

Balayage des fichiers cachés ...

Scan terminé avec succès
Les fichiers cachés: 0

**************************************************************************
.
Temps d'accomplissement: 2008-03-02 0:31:40
ComboFix-quarantined-files.txt 2008-03-01 23:31:25
.
2008-02-29 13:51:27 --- E O F ---
rapport hijack this
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:36:49, on 02/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\cidaemon.exe
C:\PROGRA~1\Mozilla Firefox\firefox.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
3 mars 2008 à 09:22
bonjour bededouxreve,

fais ceci :

Copie le texte ci-dessous :

Folder::
C:\Program Files\img017.jpg
C:\Program Files\img016.jpg
C:\Program Files\nouveau-24.jpg
C:\Program Files\Thumbs.db
C:\Program Files\Macrogaming

Registry::
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-

Ouvre le Bloc-Notes puis colle le texte copié.
(Démarrer\Tous les programmes\Accessoires\Bloc notes.)
Sauvegarde ce fichier sous le nom de CFScript.txt.

Glisse maintenant le fichier CFScript.txt dans Combofix.exe comme ci-dessous :

http://serveur1.archive-host.com/membres/up/1366464061/CFScript.gif

Cela va relancer Combofix,

Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.

Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!

Ne touche à rien tant que le scan n'est pas terminé.

Après redémarrage, poste le contenu du rapport Combofix.txt accompagné d'un rapport Hijackthis.

S'il n'y a pas de rédémarrage, poste quand même les rapports.

puis

regarde ceci concernant avast :

antivir vs avast :

-> http://forum.malekal.com/ftopic3528.php

alors je te conseille de le desinstaller et d´installer antivir a la place

Telecharge et instales l'antivirus Antivir Personal Edition Classic :

->https://www.malekal.com/avira-free-security-antivirus-gratuit/

https://www.avira.com/en/prime

http://mickael.barroux.free.fr/securite/antivir.php
http://speedweb1.free.fr/frames2.php?page=tuto5
<- tutoriel configuration du scanner...

une fois antivir ouvert click surconfiguration et coche la case "expert mode" puis sur l´onglet scanner dans la fenetre du dessous tu va voir : rootkit search click sur le petit + pour deployer et coche la case a coté de ton disk dur
puis click sur configuration en haut a droite; dans la nouvelle fenetre a gauche >scanner > coche "scan all files" et en dessous >scanner priority = High
coche : allow stopping the scanner, comme cela tu peux faire une pause pendant le scan si tu le desir.
puis sur la droite coche les case suivantes :
scan boot sectors of selected drives
scan master boot sectors
scan memory
search foe rootkit before scan
decoche :
ignore off line files
toujours a gauche > scan > deploie > heuristique > macrovirus heuristic = coché et en dessous > win32 heuristic la case coché et high detection level

Je te dis tous ca car j´aimerais que tu performes un scan entier de ta machine a l´aide d´antivir avec les reglages stipulés ci dessus et que tu post le rapport généré ici stp

donc post les trois rapports stp

@+
0
bebedouxreve
4 mars 2008 à 11:56
ComboFix 08-03-03.17 - maman 2008-03-03 0:51:42.4 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.196 [GMT 1:00]
Endroit: C:\Documents and Settings\maman\Bureau\ComboFix.exe

[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.

((((((((((((((((((((((((((((( Fichiers créés 2008-02-03 to 2008-03-03 ))))))))))))))))))))))))))))))))))))
.

2008-03-02 20:22 . 2008-03-02 20:22 <REP> d-------- C:\Program Files\Easy Video Splitter
2008-03-02 00:15 . 2008-03-02 00:15 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-01 10:16 . 2008-03-01 10:17 <REP> d-------- C:\Program Files\Tall Emu
2008-03-01 09:53 . 2008-03-01 09:53 <REP> d-------- C:\OnlineArmor
2008-03-01 09:51 . 2008-03-01 09:51 <REP> d-------- C:\_OTMoveIt
2008-03-01 09:43 . 2008-03-01 09:43 14,771,744 --a------ C:\Program Files\IE7-WindowsXP-x86-fra.exe
2008-03-01 00:45 . 2008-03-01 00:45 <REP> d-------- C:\Program Files\Trend Micro
2008-03-01 00:45 . 2008-03-01 00:45 812,344 --a------ C:\Program Files\HJTInstall.exe
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\maman\Application Data\Simply Super Software
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Simply Super Software
2008-02-29 21:36 . 2008-02-29 21:37 6,894,528 --a------ C:\Program Files\trsetup.exe
2008-02-29 21:22 . 2008-03-01 10:50 5,120 --ahs---- C:\WINDOWS\system32\Thumbs.db
2008-02-29 20:47 . 2008-02-29 20:47 <REP> d--hs---- C:\found.001
2008-02-29 20:10 . 2008-02-29 20:10 407,680 --a------ C:\Program Files\aswclnr.exe
2008-02-29 19:13 . 2008-02-29 19:13 1,308,216 --a------ C:\Program Files\HiJackThis_v2.exe
2008-02-29 18:51 . 2008-03-02 00:42 <REP> d-------- C:\Program Files\Panda Security
2008-02-29 16:03 . 2008-02-29 16:03 <REP> d-------- C:\Program Files\Activision
2008-02-29 14:31 . 2008-02-29 14:31 123 --a------ C:\WINDOWS\wininit.ini
2008-02-29 13:32 . 2008-02-29 13:32 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-02-29 13:32 . 2008-02-29 14:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-02-29 13:19 . 2008-02-29 13:19 7,467,056 --a------ C:\Program Files\spybotsd15.exe
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Program Files\Apple Software Update
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple
2008-02-25 21:52 . 2008-02-25 21:52 2,563 --a------ C:\WINDOWS\image.jpg
2008-02-24 19:00 . 2008-02-24 19:00 <REP> d-------- C:\My Shared Folder
2008-02-24 18:59 . 2008-02-24 18:59 <REP> d-------- C:\Documents and Settings\maman\Application Data\Kazaa Lite
2008-02-24 18:58 . 2008-02-24 18:58 2,803,665 --a------ C:\Program Files\klitekpp243f.exe
2008-02-24 18:55 . 2008-02-24 18:55 <REP> d-------- C:\Program Files\Kazaa
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Fichiers communs\FotoWire
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Documents and Settings\maman\Application Data\FotoWire
2008-02-24 17:49 . 2004-10-08 12:46 53,248 -ra------ C:\WINDOWS\system32\InstMed.exe
2008-02-24 17:48 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Logitech
2008-02-24 17:04 . 2008-02-24 17:04 2,402,832 --a------ C:\Program Files\WLinstaller.exe
2008-02-24 16:55 . 2008-02-29 13:01 <REP> d-------- C:\Documents and Settings\maman\Application Data\skypePM
2008-02-24 16:55 . 2008-02-24 16:55 32 --a------ C:\Documents and Settings\All Users\Application Data\ezsid.dat
2008-02-24 16:53 . 2008-02-29 13:30 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Skype
2008-02-24 16:48 . 2008-02-24 16:51 22,690,600 --a------ C:\Program Files\SkypeSetup.exe
2008-02-24 16:06 . 2008-02-24 17:38 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Logishrd
2008-02-24 16:05 . 2008-02-24 17:39 <REP> d-------- C:\Program Files\Fichiers communs\LogiShrd
2008-02-24 16:00 . 2008-02-24 16:03 32,227,136 --a------ C:\Program Files\logitech_logitech_quickcam_11.1.0.2016_whql_4219.exe
2008-02-24 13:38 . 2008-03-03 00:48 16,896 --ahs---- C:\WINDOWS\Thumbs.db
2008-02-24 13:19 . 2008-02-24 13:19 1,271,557 --a------ C:\Program Files\wrar371fr.exe
2008-02-23 18:32 . 2008-02-23 18:31 4,419,000 --a------ C:\Program Files\burn4free_burn4free_3.9.0.0_francais_14723.exe
2008-02-22 22:35 . 2008-02-22 22:35 306,432 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
2008-02-22 22:35 . 2007-12-20 10:41 29,440 --a------ C:\WINDOWS\system32\uxtuneup.dll
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2008-02-22 22:30 . 2008-02-22 22:31 14,174,464 --a------ C:\Program Files\TU2008TrialFR.exe
2008-02-22 22:17 . 2008-02-24 18:55 594,880 --a------ C:\Program Files\kazaa_setup.exe
2008-02-22 22:15 . 2008-02-22 22:15 5,265,101 --a------ C:\Program Files\Shareaza_2.3.1.0_Win32.exe
2008-02-22 21:50 . 2008-02-22 23:19 <REP> d-------- C:\Program Files\Yahoo!
2008-02-22 21:50 . 2008-02-22 21:50 <REP> d-------- C:\Program Files\CCleaner
2008-02-22 21:49 . 2008-02-22 21:50 2,733,928 --a------ C:\Program Files\ccsetup204.exe
2008-02-22 21:45 . 2008-02-22 21:44 2,467,439 --a------ C:\Program Files\winamp295_full.exe
2008-02-15 23:39 . 2008-02-15 23:39 <REP> d-------- C:\Documents and Settings\maman\Application Data\dvdcss
2008-02-14 22:14 . 2008-02-14 22:51 <REP> d-------- C:\Program Files\Photo Viewer 2.4
2008-02-13 16:43 . 2008-02-15 12:52 0 --a------ C:\WINDOWS\obmetmp.htm
2008-02-11 21:39 . 2006-11-12 11:39 483,328 --a------ C:\WINDOWS\system32\actskn45.ocx
2008-02-11 16:13 . 2008-02-11 16:13 <REP> d-------- C:\Program Files\Common Files
2008-02-11 00:22 . 2008-02-04 00:29 116 --a------ C:\WINDOWS\NeroDigital.ini
2008-02-10 13:41 . 2008-02-10 13:41 <REP> d-------- C:\Program Files\Fichiers communs\Ahead
2008-02-10 13:41 . 2004-07-26 16:16 1,568,768 --------- C:\WINDOWS\system32\ImagX7.dll
2008-02-10 13:41 . 2004-07-26 16:16 476,320 --------- C:\WINDOWS\system32\ImagXpr7.dll
2008-02-10 13:41 . 2004-07-26 16:16 471,040 --------- C:\WINDOWS\system32\ImagXRA7.dll
2008-02-10 13:41 . 2004-07-26 16:16 262,144 --------- C:\WINDOWS\system32\ImagXR7.dll
2008-02-10 13:41 . 2001-07-09 10:50 155,648 --a------ C:\WINDOWS\system32\NeroCheck.exe
2008-02-10 13:41 . 2004-03-02 16:37 125,184 --------- C:\WINDOWS\system32\drivers\imagesrv.sys
2008-02-10 13:41 . 2000-06-26 10:45 106,496 --a------ C:\WINDOWS\system32\TwnLib20.dll
2008-02-10 13:41 . 2004-03-02 16:37 5,504 --------- C:\WINDOWS\system32\drivers\imagedrv.sys
2008-02-10 13:39 . 2008-02-10 13:39 <REP> d-------- C:\Program Files\Nero 6 (+crack)
2008-02-09 23:26 . 2008-02-10 01:23 <REP> d-------- C:\Program Files\Sims2Pack Clean Installer
2008-02-09 23:25 . 2008-02-09 23:25 441,214 --a------ C:\Program Files\Sims2PackInstaller_v1514.exe
2008-02-09 23:07 . 2008-02-09 23:07 4,922,461 --a------ C:\Program Files\theme-de-bureau.exe
2008-02-09 20:41 . 2008-02-09 20:41 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WinZip
2008-02-09 18:16 . 2008-02-24 13:23 <REP> d-------- C:\Program Files\Maxis
2008-02-07 22:05 . 2006-11-02 17:12 348,416 --a------ C:\WINDOWS\system32\drivers\rt73.sys
2008-02-07 22:05 . 2006-06-20 22:53 319,488 --a------ C:\WINDOWS\system32\AegisI5.exe
2008-02-07 22:05 . 2006-06-17 12:29 295,018 --a------ C:\WINDOWS\system32\Install7x.dll
2008-02-07 22:05 . 2005-11-30 11:33 2,048 --a------ C:\WINDOWS\system32\drivers\rt73.bin
2008-02-07 22:05 . 2006-03-06 15:36 45 --a------ C:\WINDOWS\filespec7x
2008-02-07 22:04 . 2008-02-07 22:04 <REP> d-------- C:\Program Files\RALINK
2008-02-07 22:02 . 2008-02-07 22:02 <REP> d-------- C:\Documents and Settings\maman\Application Data\InstallShield
2008-02-06 21:04 . 2008-02-06 21:04 <REP> d-------- C:\WINDOWS\new mario62
2008-02-06 21:04 . 2008-02-06 21:04 171,520 --a------ C:\WINDOWS\system32\cncs32.dll
2008-02-06 21:04 . 2008-02-06 21:04 18 --a------ C:\WINDOWS\gfact.ini
2008-02-06 20:57 . 2008-02-06 21:50 <REP> d-------- C:\Program Files\Pcsx2
2008-02-06 10:19 . 2008-02-06 10:19 <REP> d--hs---- C:\found.000
2008-02-03 19:09 . 2008-02-03 19:13 <REP> d-------- C:\Program Files\Canon
2008-02-03 18:06 . 2008-02-03 18:06 <REP> d-------- C:\Program Files\ArcSoft

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-29 19:40 --------- d-----w C:\Program Files\Google
2008-02-29 19:31 10,563 ----a-w C:\Program Files\hijackthis.log
2008-02-29 19:30 5,534 ----a-w C:\Program Files\aswclnr.log
2008-02-29 12:29 --------- d-----w C:\Program Files\MaxiCompte
2008-02-28 12:20 --------- d-----w C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-02-24 16:48 81,920 ------r C:\WINDOWS\bwUnin-6.1.4.68-8876480L.exe
2008-02-24 16:48 --------- d-----w C:\Program Files\Fichiers communs\Logitech
2008-02-24 15:03 --------- d-----w C:\Program Files\EA GAMES
2008-02-24 14:48 --------- d-----w C:\Program Files\Winamp
2008-02-24 14:48 --------- d-----w C:\Program Files\RegCleaner
2008-02-24 14:48 --------- d-----w C:\Program Files\QuickTime
2008-02-24 14:48 --------- d-----w C:\Program Files\Help
2008-02-24 14:48 --------- d-----w C:\Program Files\FinePixViewer
2008-02-24 12:38 --------- d-----w C:\Program Files\Disney Pix 2.0
2008-02-22 21:33 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-02-22 21:15 --------- d-----w C:\Program Files\Shareaza
2008-02-22 20:40 --------- d-----w C:\Program Files\Java
2008-02-10 23:06 21 ----a-w C:\Program Files\Sims2Pack Clean Installer.ini
2008-02-10 17:03 47,360 ----a-w C:\Documents and Settings\maman\Application Data\pcouffin.sys
2008-02-10 17:03 --------- d-----w C:\Program Files\VSO
2008-02-10 17:03 --------- d-----w C:\Documents and Settings\maman\Application Data\Vso
2008-02-10 17:02 --------- d-----w C:\Program Files\Elaborate Bytes
2008-02-10 17:01 --------- d-----w C:\Program Files\SlySoft
2008-02-10 12:41 --------- d-----w C:\Program Files\Ahead
2008-02-09 20:57 299,465 ----a-w C:\Program Files\F_N_Roxy_Tim.zip.part
2008-02-09 19:40 6,703,104 ----a-w C:\Program Files\winzip111fr.msi
2008-02-06 13:11 163,644 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2008-02-03 23:36 --------- d-----w C:\Program Files\eMule
2008-02-03 23:22 6,144 --sha-w C:\Program Files\Thumbs.db
2008-02-03 17:06 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-03 17:00 --------- d-----w C:\Documents and Settings\maman\Application Data\Canon
2008-01-28 20:44 --------- dcsh--w C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-01-20 14:04 --------- d-----w C:\Program Files\THQ
2008-01-20 13:13 3,861,320 ----a-w C:\Program Files\eMule0.48a-Installer2.exe
2008-01-19 20:57 --------- d-----w C:\Program Files\Ubisoft
2008-01-19 20:53 --------- d-----w C:\Program Files\D-Tools
2008-01-11 10:11 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-01-10 20:16 1,182,550 ----a-w C:\Program Files\img017.jpg
2008-01-10 20:16 1,118,010 ----a-w C:\Program Files\img016.jpg
2008-01-10 20:14 7,230 ----a-w C:\Program Files\nouveau-24.jpg
2008-01-09 22:53 --------- d-----w C:\Documents and Settings\maman\Application Data\CopyToDvd
2008-01-04 23:48 --------- d-----w C:\Documents and Settings\maman\Application Data\CDBurnerXPP
2008-01-04 23:26 24,265,736 ----a-w C:\Program Files\dotnetfx.exe
2008-01-04 23:16 --------- d-----w C:\Program Files\MSBuild
2008-01-04 23:06 --------- d-----w C:\Program Files\Reference Assemblies
2008-01-04 22:41 2,945,816 ----a-w C:\Program Files\dotnetfx3setup.exe
2008-01-04 22:11 177,522 ----a-w C:\Program Files\installez-emule-be.exe
2007-12-29 08:23 506,368 ----a-w C:\WINDOWS\system32\winlogon.exe
2007-12-10 16:25 7,792 ----a-w C:\Program Files\CurrentCfg.tpr
2007-12-10 16:25 5,188 ----a-w C:\Program Files\TMPGEnc.ini
2007-12-05 17:22 9 ----a-w C:\Documents and Settings\maman\Application Data\mdb.bin
2007-12-04 13:04 837,496 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-12-04 12:54 95,608 ----a-w C:\WINDOWS\system32\AvastSS.scr
2007-11-03 11:23 141,410 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_11_02_23_58_03_small.dmp.zip
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdremote.dll
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdicmdrv.dll
2007-05-19 15:25 5,120 ----a-w C:\Program Files\vdsvrlnk.dll
2007-05-19 15:25 16,384 ----a-w C:\Program Files\auxsetup.exe
2006-09-24 16:11 389,120 ----a-w C:\Program Files\lameACM.acm
2005-12-19 22:52 18,321 ----a-w C:\Program Files\copying
2002-04-07 10:17 414 ----a-w C:\Program Files\lame_acm.xml
2002-01-23 19:39 3,133 ----a-w C:\Program Files\LameACM.inf
.

((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"Shareaza"="C:\Program Files\Shareaza\Shareaza.exe" [2008-01-01 17:49 4739072]
"TuneUp MemOptimizer"="C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" [2008-01-16 13:28 197888]
"LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe" [2008-02-24 17:48 20480]
"LogitechSoftwareUpdate"="C:\Program Files\Logitech\Video\ManifestEngine.exe" [2005-01-18 17:07 196608]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46 1460560]
"ccleaner"="C:\Program Files\CCleaner\CCleaner.exe" [2008-01-17 10:40 816368]
"MsnMsgr"="~C:\Program Files\MSN Messenger\MsnMsgr.exe" [ ]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-28 23:43 8466432]
"nwiz"="nwiz.exe" [2007-06-28 23:43 1626112 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-06-28 23:43 81920]
"SoundMan"="SOUNDMAN.EXE" [2005-08-17 17:39 90112 C:\WINDOWS\SOUNDMAN.EXE]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 05:24 286720]
"SSBkgdUpdate"="C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-29 23:14 155648]
"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-03-21 12:19 69632]
"REGSHAVE"="C:\Program Files\REGSHAVE\REGSHAVE.exe" [2002-02-04 22:32 53248]
"DAEMON Tools-1033"="C:\Program Files\D-Tools\daemon.exe" [2003-10-02 02:20 81920]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50 155648]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"WinampAgent"="C:\Program Files\Winamp\Winampa.exe" [2008-01-15 23:54 37376]
"LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [2004-10-08 11:52 221184]
"LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [2005-01-18 17:47 458752]
"LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [2005-01-18 17:37 217088]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 12:55 5674352]

C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Exif Launcher.lnk - C:\Program Files\FinePixViewer\QuickDCF.exe [2002-01-09 21:53:14 200704]
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe [2008-02-24 17:48:09 450560]
Ralink Wireless Utility.lnk - C:\Program Files\RALINK\Common\RaUI.exe [2008-02-07 22:05:50 663552]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= C:\PROGRA~1\TALLEM~1\ONLINE~1\oaevent.dll [ ]

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Shareaza\\Shareaza.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\backWeb-8876480.exe"=
"C:\\Program Files\\eMule\\emule.exe"=

R0 pnpshark;pnpshark;C:\WINDOWS\system32\DRIVERS\pnpshark.sys [2003-10-02 03:16]
R0 st3shark;st3shark;C:\WINDOWS\system32\DRIVERS\st3shark.sys [2003-09-27 14:37]
R2 EAPPkt;Realtek EAPPkt Protocol;C:\WINDOWS\system32\DRIVERS\EAPPkt.sys [2006-11-15 16:23]
R2 UxTuneUp;TuneUp Extension de thème;C:\WINDOWS\System32\svchost.exe [2004-08-19 15:10]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-02-22 22:35]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp

.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-27 07:03:38 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-02-29 19:31:50 C:\WINDOWS\Tasks\Maintenance en 1 clic.job"
- C:\Program Files\TuneUp Utilities 2008\OneClick.exe
.
**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-03 00:52:53
Windows 5.1.2600 Service Pack 2 NTFS

Balayage processus cachés ...

Balayage caché autostart entries ...

Balayage des fichiers cachés ...

Scan terminé avec succès
Les fichiers cachés: 0

**************************************************************************
.
Temps d'accomplissement: 2008-03-03 0:53:41
ComboFix-quarantined-files.txt 2008-03-02 23:53:31
ComboFix2.txt 2008-03-02 23:47:41
ComboFix3.txt 2008-03-01 23:31:41
.
2008-03-03 02:00:40 --- E O F ---


AntiVir PersonalEdition Classic
Report file date: lundi 3 mars 2008 11:40

Scanning for 1131710 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: maman
Computer name: DEMARTEA-N2BXL5

Version information:
BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15
ANTIVIR1.VDF : 7.0.1.95 3367424 Bytes 14/12/2007 06:52:47
ANTIVIR2.VDF : 7.0.2.181 1993728 Bytes 24/02/2008 06:52:47
ANTIVIR3.VDF : 7.0.2.225 154112 Bytes 03/03/2008 06:52:47
AVEWIN32.DLL : 7.6.0.73 3334656 Bytes 03/03/2008 06:52:47
AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24
AVPACK32.DLL : 7.6.0.3 360488 Bytes 03/03/2008 06:52:48
AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

Configuration settings for the scan:
Jobname..........................: Rootkit search
Configuration file...............: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\rootkit.avp
Logging..........................: high
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Scan memory......................: off
Process scan.....................: off
Scan registry....................: off
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: high
Expanded search settings.........: 0x00300922

Start of the scan: lundi 3 mars 2008 11:40

Starting search for hidden objects.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32\cd042efbbd7f7af1647644e76e06692b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32\bca643cdc5c2726b20d2ecedcc62c59b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32\2c81e34222e8052573023a60d06dd016
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32\2582ae41fb52324423be06337561aa48
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32\caaeda5fd7a9ed7697d9686d4b818472
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32\a4a1bcf2cc2b8bc3716b74b2b4522f5d
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32\4d370831d2c43cd13623e232fed27b7b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32\1d68fe701cdea33e477eb204b76f993d
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32\1fac81b91d8e3c5aa4b0a51804d844a3
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32\f5f62a6129303efb32fbe080bb27835b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32\fd4e2e1a3940b94dceb5a6a021f2e3c6
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32\8a8aec57dd6508a385616fbc86791ec2
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\friendlyname
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\friendlyname
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04cb&Pid_0118\Y-411^^^^^020912XFPX0009004364\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04cb&Pid_0118\Y-411^^^^^020912XFPX0009004364\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04cb&Pid_0118\Y-411^^^^^020912XFPX0009004364\locationinformation
[NOTE] The registry entry is invisible.
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
5 mars 2008 à 01:23
salut bebedouxreve,

il va faloir que tu te debarrasse de kazaa.

regarde ceci pour info :

http://assiste.com.free.fr/p/parasites/kazaa_spyware.php

fais ceci :

Copie le texte ci-dessous :

File::
C:\WINDOWS\image.jpg

Folder::
C:\Program Files\img017.jpg
C:\Program Files\img016.jpg
C:\Program Files\nouveau-24.jpg
C:\Program Files\Kazaa
C:\Program Files\kazaa_setup.exe
C:\Program Files\Macrogaming

Registry::
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-

Ouvre le Bloc-Notes puis colle le texte copié.
(Démarrer\Tous les programmes\Accessoires\Bloc notes.)
Sauvegarde ce fichier sous le nom de CFScript.txt.

Glisse maintenant le fichier CFScript.txt dans Combofix.exe comme ci-dessous :

http://serveur1.archive-host.com/membres/up/1366464061/CFScript.gif

Cela va relancer Combofix,

Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.

Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!

Ne touche à rien tant que le scan n'est pas terminé.

Après redémarrage, poste le contenu du rapport Combofix.txt3 accompagné d'un rapport Hijackthis.

S'il n'y a pas de rédémarrage, poste quand même les rapports.

puis telecharge et passe ces deux anti spyware :

*Ad-Aware (gratuit)
Téléchargement :
http://www.commentcamarche.net/telecharger/telecharger 83 ad aware 2007 free
Tuto :
http://perso.orange.fr/entraide-hijackthis/AdAware/AdAware.htm

*Spybot : tu l´as deja alors contente toi de le passer
voir demo d utilisation (merci Balltrap)
http://perso.orange.fr/rginformatique/section%20virus/demo%20spybot.htm

@+
0
bebedouxreve
5 mars 2008 à 16:22
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:16:29, on 04/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
0
bebedouxreve
5 mars 2008 à 17:39
voici le resultat du scan de ad aware Scan Results
Ad-Aware 2007 Free Edition
Log File Created on:2008-03-0417:05:58
Using Definitions File:C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware 2007\core.aawdef
Computer name:DEMARTEA-N2BXL5
Name of user performing scan:SYSTEM
Name of user ordering scan:maman
Scan completed successfully

System Information
File Version Information
Ad-Aware 2007 Settings
Extended Ad-Aware 2007 Settings
Database Information
Scan Statistics
Scan Detailed Statistics
Infections Found
Listing of running processes
System Information
Number of processors:1
Processor type:AMD Athlon(tm) XP 1800+
Memory Available:26%
Total Physical Memory:536330240 Bytes
Available Physical Memory:134115328 Bytes
Total Page File Size:1310613504 Bytes
Available On Page File:691126272 Bytes
Total Virtual Memory:2147352576 Bytes
Available Virtual Memory:1987649536 Bytes
OS:Microsoft Windows XP 5.1 (Build 2600)
[to top]
File Verion Information
File Version
CEAPI.dll 7,0,2,6
aawservice.exe 7,0,2,6
Ad-Aware2007.exe 7.0.2.6
[to top]
Ad-Aware 2007 Settings
Skipping files larger than:1048576 Bytes
Ignoring infections with lower TAI than:3
Safe Mode:False
[to top]
Extended Ad-Aware 2007 Settings
Unload malicious processes and modules
Unload Modules
Let Windows remove files at Start-Up
Deactivate Ad-Watch
Re-analyze Scan Result
Delete Restored Items
Write Protect System Files
Create Log file
Include basic settings
Include advanced settings
Include user and computer name
Environment information
Running processes
Running processes and modules
Include info about ignored objects in log file
Consider definitions File Outdated after x days
Proxy URL
Proxy Port
[to top]
Database Info
Version number:43
Build Number:0
Build Date and Time:2008/01/0709:45:44
[to top]
Scan Statistics
Method:Full

Items Scanned:222265
Infections Detected:4
Infections Removed:0
Infections Quarantined:0
Infections Ignored:0
[to top]
Scan Detailed Statistics
Type Critical Total
Process Scan 0 0
Registry Scan 0 0
Registry PE Scan 0 0
Hosts Scan 0 0
File Scan 0 0
Folder Scan 0 0
LSP Scan 0 0
ADS Scan 0 0
Cookie Scan 4 4
File Hash Scan 0 0
[to top]
Infections Found
Family Id Name Category TAI
725 Tracking Cookie DataMiner 3
[600000144] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt doubleclick.net id /
[600000262] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt metriweb.be MetriWeb /
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com c1 /belgacom/
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com s1 /belgacom/skynet/


Quarantined Objects
Family Id Name Category TAI

Removed Objects
Family Id Name Category TAI
725 Tracking Cookie DataMiner 3
[600000144] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt doubleclick.net id /
[600000262] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt metriweb.be MetriWeb /
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com c1 /belgacom/
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com s1 /belgacom/skynet/

[to top]
Listing of Running Processes
C:\WINDOWS\SYSTEM32\SMSS.EXE
c:\windows\system32\smss.exe
c:\windows\system32\ntdll.dll
C:\WINDOWS\SYSTEM32\CSRSS.EXE
c:\windows\system32\csrss.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\csrsrv.dll
c:\windows\system32\basesrv.dll
c:\windows\system32\winsrv.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\sxs.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\version.dll
C:\WINDOWS\SYSTEM32\WINLOGON.EXE
c:\windows\system32\winlogon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\authz.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\nddeapi.dll
c:\windows\system32\profmap.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\psapi.dll
c:\windows\system32\regapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\version.dll
c:\windows\system32\winsta.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msgina.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\odbc32.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\odbcint.dll
c:\windows\system32\shsvcs.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\ole32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\sxs.dll
c:\windows\system32\winscard.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\winmm.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\wlnotify.dll
c:\windows\system32\winspool.drv
c:\windows\system32\mpr.dll
c:\windows\system32\samlib.dll
c:\windows\system32\cscui.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\wdmaud.drv
c:\windows\system32\msacm32.drv
c:\windows\system32\msacm32.dll
c:\windows\system32\midimap.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbem\wbemcomn.dll
c:\windows\system32\wbem\wbemsvc.dll
C:\WINDOWS\SYSTEM32\SERVICES.EXE
c:\windows\system32\services.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\scesrv.dll
c:\windows\system32\authz.dll
c:\windows\system32\umpnpmgr.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ncobjapi.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\eventlog.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
C:\WINDOWS\SYSTEM32\LSASS.EXE
c:\windows\system32\lsass.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\lsasrv.dll
c:\windows\system32\mpr.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\samsrv.dll
c:\windows\system32\cryptdll.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msprivs.dll
c:\windows\system32\kerberos.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\netlogon.dll
c:\windows\system32\w32time.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\schannel.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\wdigest.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\scecli.dll
c:\windows\system32\ipsecsvc.dll
c:\windows\system32\authz.dll
c:\windows\system32\oakley.dll
c:\windows\system32\winipsec.dll
c:\windows\system32\pstorsvc.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\psbase.dll
c:\windows\system32\dssenh.dll
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\rpcss.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\termsrv.dll
c:\windows\system32\icaapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\authz.dll
c:\windows\system32\mstlsapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\atl.dll
c:\windows\system32\regapi.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\rpcss.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\shsvcs.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\uxtuneup.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\wzcsvc.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\wmi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\esent.dll
c:\windows\system32\atl.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\rastls.dll
c:\windows\system32\cryptui.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\mprapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\schannel.dll
c:\windows\system32\winscard.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\wzcsapi.dll
c:\windows\system32\raschap.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\schedsvc.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\msidle.dll
c:\windows\system32\audiosrv.dll
c:\windows\system32\wkssvc.dll
c:\windows\system32\qmgr.dll
c:\windows\system32\mpr.dll
c:\windows\system32\shfolder.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\srsvc.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\seclogon.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\netman.dll
c:\windows\system32\netshell.dll
c:\windows\system32\credui.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\srvsvc.dll
c:\windows\pchealth\helpctr\binaries\pchsvc.dll
c:\windows\system32\es.dll
c:\windows\system32\ersvc.dll
c:\windows\system32\dmserver.dll
c:\windows\system32\cryptsvc.dll
c:\windows\system32\certcli.dll
c:\windows\system32\trkwks.dll
c:\windows\system32\w32time.dll
c:\windows\system32\sens.dll
c:\windows\system32\browser.dll
c:\windows\system32\wuauserv.dll
c:\windows\system32\wbem\wmisvc.dll
c:\windows\system32\vssapi.dll
c:\windows\system32\wuaueng.dll
c:\windows\system32\winspool.drv
c:\windows\system32\cabinet.dll
c:\windows\system32\mspatcha.dll
c:\windows\system32\ipnathlp.dll
c:\windows\system32\authz.dll
c:\windows\system32\wscsvc.dll
c:\windows\system32\msi.dll
c:\windows\system32\wbem\wbemcomn.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\sxs.dll
c:\windows\system32\wbem\wbemcore.dll
c:\windows\system32\wbem\esscli.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\comsvcs.dll
c:\windows\system32\colbact.dll
c:\windows\system32\mtxclu.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\clusapi.dll
c:\windows\system32\resutils.dll
c:\windows\system32\wbem\wmiutils.dll
c:\windows\system32\wbem\repdrvfs.dll
c:\windows\system32\wbem\wmiprvsd.dll
c:\windows\system32\ncobjapi.dll
c:\windows\system32\wbem\wbemess.dll
c:\windows\system32\tapisrv.dll
c:\windows\system32\psapi.dll
c:\windows\system32\rasmans.dll
c:\windows\system32\winipsec.dll
c:\windows\system32\netcfgx.dll
c:\windows\system32\upnp.dll
c:\windows\system32\ssdpapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\rastapi.dll
c:\windows\system32\unimdm.tsp
c:\windows\system32\uniplat.dll
c:\windows\system32\kmddsp.tsp
c:\windows\system32\ndptsp.tsp
c:\windows\system32\ipconf.tsp
c:\windows\system32\h323.tsp
c:\windows\system32\wbem\ncprov.dll
c:\windows\system32\hidphone.tsp
c:\windows\system32\hid.dll
c:\windows\system32\rasppp.dll
c:\windows\system32\ntlsapi.dll
c:\windows\system32\kerberos.dll
c:\windows\system32\cryptdll.dll
c:\windows\system32\rasdlg.dll
c:\windows\system32\msxml3.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\wups2.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\advpack.dll
c:\windows\system32\catsrvut.dll
c:\windows\system32\catsrv.dll
c:\windows\system32\mfcsubs.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\dssenh.dll
c:\windows\system32\wbem\wbemcons.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\mlang.dll
c:\windows\system32\xmlprovi.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\dnsrslvr.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lmhsvc.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\webclnt.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\alrsvc.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ssdpsrv.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\upnphost.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\ssdpapi.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\httpapi.dll
C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
c:\windows\system32\spoolsv.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\spoolss.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\localspl.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\winspool.drv
c:\windows\system32\netapi32.dll
c:\windows\system32\cnbjmon.dll
c:\windows\system32\cnmlm83.dll
c:\windows\system32\psapi.dll
c:\windows\system32\pjlmon.dll
c:\windows\system32\tcpmon.dll
c:\windows\system32\usbmon.dll
c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\win32spl.dll
c:\windows\system32\netrap.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\inetpp.dll
c:\windows\system32\xpsp2res.dll
C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\AVGUARD.EXE
c:\program files\avira\antivir personaledition classic\avguard.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\version.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\program files\avira\antivir personaledition classic\avgio.dll
c:\program files\avira\antivir personaledition classic\avevtlog.dll
c:\program files\avira\antivir personaledition classic\guardmsg.dll
c:\program files\avira\antivir personaledition classic\sqlite3.dll
c:\program files\avira\antivir personaledition classic\msvcr71.dll
c:\program files\avira\antivir personaledition classic\avpref.dll
c:\program files\avira\antivir personaledition classic\smtplib.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\program files\avira\antivir personaledition classic\avpack32.dll
c:\program files\avira\antivir personaledition classic\unacev2.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\program files\avira\antivir personaledition classic\avipc.dll
c:\windows\system32\fltlib.dll
c:\program files\avira\antivir personaledition classic\avewin32.dll
C:\WINDOWS\SOUNDMAN.EXE
c:\windows\soundman.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\winmm.dll
c:\windows\system32\hid.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\ole32.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\oleaut32.dll
C:\PROGRAM FILES\SCANSOFT\OMNIPAGESE4.0\OPWARESE4.EXE
c:\program files\scansoft\omnipagese4.0\opwarese4.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctf.dll
C:\PROGRAM FILES\D-TOOLS\DAEMON.EXE
c:\program files\d-tools\daemon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\daemon.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\samlib.dll
c:\program files\d-tools\pfctoc.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\winspool.drv
c:\program files\d-tools\plugins\images\ccdmount.dll
c:\program files\d-tools\plugins\images\mdsmount.dll
c:\program files\d-tools\plugins\images\nrgmount.dll
c:\program files\d-tools\plugins\images\pdimount.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\dsound.dll
c:\windows\system32\winmm.dll
C:\PROGRAM FILES\JAVA\JRE1.6.0_03\BIN\JUSCHED.EXE
c:\program files\java\jre1.6.0_03\bin\jusched.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\wininet.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ole32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
C:\PROGRAM FILES\WINAMP\WINAMPA.EXE
c:\program files\winamp\winampa.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\program files\winamp\nscrt.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\msctf.dll
C:\WINDOWS\SYSTEM32\LVCOMSX.EXE
c:\windows\system32\lvcomsx.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\version.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lvmaenum.dll
c:\windows\system32\hid.dll
c:\windows\system32\msvcp71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\lvcomcx.dll
C:\PROGRAM FILES\LOGITECH\VIDEO\LOGITRAY.EXE
c:\program files\logitech\video\logitray.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\program files\logitech\video\qcui2.dll
c:\windows\system32\avifil32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\msvfw32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msimg32.dll
c:\program files\logitech\video\ltwvc12n.dll
c:\windows\system32\mfc71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp71.dll
c:\program files\logitech\video\ltfil12n.dll
c:\program files\logitech\video\ltkrn12n.dll
c:\windows\system32\version.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\mfc71fra.dll
c:\program files\logitech\video\lqcui2.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\program files\logitech\video\llogtray.dll
c:\windows\system32\msctfime.ime
c:\program files\logitech\video\ltdis12n.dll
c:\program files\logitech\video\ltimg12n.dll
c:\program files\logitech\video\ltefx12n.dll
c:\program files\logitech\video\lffax12n.dll
c:\program files\logitech\video\lfcmp12n.dll
c:\program files\logitech\video\lftif12n.dll
c:\program files\logitech\video\lfbmp12n.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lvmaenum.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\lvcomcx.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\program files\logitech\video\fxsvrps.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\AVGNT.EXE
c:\program files\avira\antivir personaledition classic\avgnt.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\version.dll
c:\program files\avira\antivir personaledition classic\mfc71u.dll
c:\program files\avira\antivir personaledition classic\msvcr71.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\ole32.dll
c:\program files\avira\antivir personaledition classic\cclib.dll
c:\program files\avira\antivir personaledition classic\msvcp71.dll
c:\windows\system32\imm32.dll
c:\windows\system32\mfc71fra.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\program files\avira\antivir personaledition classic\ccgen.dll
c:\program files\avira\antivir personaledition classic\ccgenrc.dll
c:\program files\avira\antivir personaledition classic\ccguard.dll
c:\program files\avira\antivir personaledition classic\ccgrdrc.dll
c:\program files\avira\antivir personaledition classic\avipc.dll
c:\program files\avira\antivir personaledition classic\ccupdate.dll
c:\program files\avira\antivir personaledition classic\ccupdrc.dll
c:\program files\avira\antivir personaledition classic\cclic.dll
c:\program files\avira\antivir personaledition classic\cclicrc.dll
c:\program files\avira\antivir personaledition classic\ccmsg.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
C:\WINDOWS\SYSTEM32\CTFMON.EXE
c:\windows\system32\ctfmon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\msutb.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\docume~1\maman\locals~1\temp\iadhide4.dll
C:\PROGRAM FILES\PICASA2\PICASAMEDIADETECTOR.EXE
c:\program files\picasa2\picasamediadetector.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\sti.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
C:\PROGRAM FILES\SHAREAZA\SHAREAZA.EXE
c:\program files\shareaza\shareaza.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\msi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\winspool.drv
c:\windows\system32\imm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shfolder.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\powrprof.dll
c:\program files\shareaza\geoip.dll
c:\windows\system32\msvcr71.dll
c:\program files\shareaza\libgfl280.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\msctfime.ime
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\program files\shareaza\plugins\imageviewer.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\userenv.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\sensapi.dll
c:\program files\shareaza\plugins\mediaimageservices.dll
c:\program files\shareaza\plugins\gflimageservices.dll
c:\program files\shareaza\plugins\medialibrarybuilder.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msdmo.dll
c:\windows\system32\ddraw.dll
c:\windows\system32\dciman32.dll
c:\windows\system32\wsock32.dll
c:\program files\fichiers communs\ahead\lib\advrcntr.dll
c:\program files\pinnacle\shared files\pixie\pixie.dll
c:\windows\system32\rsaenh.dll
C:\PROGRAM FILES\TUNEUP UTILITIES 2008\MEMOPTIMIZER.EXE
c:\program files\tuneup utilities 2008\memoptimizer.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\program files\tuneup utilities 2008\rtl100.bpl
c:\windows\system32\oleaut32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\version.dll
c:\windows\system32\mpr.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\msvcp60.dll
c:\program files\tuneup utilities 2008\vcl100.bpl
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\shell32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\comdlg32.dll
c:\windows\system32\oledlg.dll
c:\program files\tuneup utilities 2008\maincontrols.bpl
c:\program files\tuneup utilities 2008\gr32_d6.bpl
c:\program files\tuneup utilities 2008\vcljpg100.bpl
c:\windows\system32\winmm.dll
c:\program files\tuneup utilities 2008\regexp.bpl
c:\program files\tuneup utilities 2008\dec.bpl
c:\program files\tuneup utilities 2008\tubase.bpl
c:\program files\tuneup utilities 2008\tucompression.bpl
c:\program files\tuneup utilities 2008\vclx100.bpl
c:\program files\tuneup utilities 2008\html.bpl
c:\program files\tuneup utilities 2008\smallunits.bpl
c:\program files\tuneup utilities 2008\ntrtl60.bpl
c:\program files\tuneup utilities 2008\appinitialization.bpl
c:\program files\tuneup utilities 2008\internet.bpl
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\program files\tuneup utilities 2008\icsdel60.bpl
c:\program files\tuneup utilities 2008\traces.bpl
c:\program files\tuneup utilities 2008\tushredder.bpl
c:\program files\tuneup utilities 2008\viscontrols.bpl
c:\program files\tuneup utilities 2008\thememanager.bpl
c:\program files\tuneup utilities 2008\tukernel.bpl
c:\program files\tuneup utilities 2008\tubasic.bpl
c:\program files\tuneup utilities 2008\tushell.bpl
c:\program files\tuneup utilities 2008\tuicoengineerdirtree.bpl
c:\program files\tuneup utilities 2008\syscontrols.bpl
c:\program files\tuneup utilities 2008\indicators.bpl
c:\program files\tuneup utilities 2008\sysinfo.bpl
c:\program files\tuneup utilities 2008\msi_d6.bpl
c:\windows\system32\netapi32.dll
c:\program files\tuneup utilities 2008\xmlcomponents.bpl
c:\windows\system32\msi.dll
c:\windows\system32\iphlpapi.dll
c:\program files\tuneup utilities 2008\ehs_d6.bpl
c:\program files\tuneup utilities 2008\commonforms.bpl
c:\windows\system32\imm32.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\hhctrl.ocx
c:\windows\system32\mui\000c\hhctrlui.dll
C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BACKWEB-8876480.EXE
c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\imm32.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\backweb.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\clntutil.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\bwsec.dll
c:\windows\system32\snmpapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\winmm.dll
c:\windows\system32\version.dll
c:\windows\system32\wininet.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\mfc42.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\wsock32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\mfc42loc.dll
c:\windows\system32\comctl32.dll
c:\progra~1\logitech\deskto~1\8876480\614~1.68-\program\en\clientrc.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\program files\logitech\desktop messenger\8876480\program\bwfiles-8876480.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\bwfiles.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\xpsp2res.dll
c:\program files\logitech\desktop messenger\8876480\program\bwscriptext-8876480.dll
c:\windows\system32\inetmib1.dll
c:\windows\system32\iphlpapi.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\bwscriptext.dll
c:\windows\system32\mprapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\atl.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\samlib.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\vbscript.dll
c:\windows\system32\sxs.dll
c:\program files\logitech\desktop messenger\8876480\program\syncext.dll
c:\windows\system32\msi.dll
c:\windows\system32\wdmaud.drv
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msacm32.drv
c:\windows\system32\msacm32.dll
c:\windows\system32\midimap.dll
C:\PROGRAM FILES\EMULE\EMULE.EXE
c:\program files\emule\emule.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\winmm.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\winspool.drv
c:\windows\system32\imm32.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\riched20.dll
c:\program files\emule\lang\fr_fr.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\icmp.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\asycfilt.dll
c:\windows\system32\browseui.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\userenv.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\shdocvw.dll
c:\windows\system32\cryptui.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\psapi.dll
C:\PROGRAM FILES\FINEPIXVIEWER\QUICKDCF.EXE
c:\program files\finepixviewer\quickdcf.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\msvcrt.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctfime.ime
C:\PROGRAM FILES\RALINK\COMMON\RAUI.EXE
c:\program files\ralink\common\raui.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\program files\ralink\common\acauth.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\version.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\oledlg.dll
c:\windows\system32\olepro32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
C:\PROGRAM FILES\LOGITECH\VIDEO\FXSVR2.EXE
c:\program files\logitech\video\fxsvr2.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\windows\system32\mfc71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp71.dll
c:\windows\system32\imm32.dll
c:\windows\system32\mfc71fra.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lvmaenum.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\lvcomcx.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\program files\logitech\video\fxsvrps.dll
C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\SCHED.EXE
c:\program files\avira\antivir personaledition classic\sched.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\secur32.dll
c:\windows\system32\version.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\program files\avira\antivir personaledition classic\msvcr71.dll
c:\program files\avira\antivir personaledition classic\msvcp71.dll
c:\windows\system32\imm32.dll
c:\program files\avira\antivir personaledition classic\schedr.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\program files\avira\antivir personaledition classic\avevtlog.dll
c:\program files\avira\antivir personaledition classic\sqlite3.dll
c:\windows\system32\comctl32.dll
c:\program files\avira\antivir personaledition classic\avipc.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\apphelp.dll
C:\WINDOWS\SYSTEM32\NVSVC32.EXE
c:\windows\system32\nvsvc32.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\imm32.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\nvapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\version.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
C:\WINDOWS\SYSTEM32\SPUPDSVC.EXE
c:\windows\system32\spupdsvc.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\cabinet.dll
c:\windows\system32\ole32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\version.dll
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\wiaservc.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\mscms.dll
c:\windows\system32\winspool.drv
c:\windows\system32\winsta.dll
c:\windows\system32\netapi3
0
bebedouxreve
5 mars 2008 à 18:54
29/02/2008 14:33:18 Autorisé(e) (based on user decision) value "SpybotDeletingB2431" (new data: "command /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup user entry!
29/02/2008 14:33:23 Autorisé(e) (based on user decision) value "SpybotDeletingD2540" (new data: "cmd /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup user entry!
29/02/2008 14:33:24 Autorisé(e) (based on user decision) value "SpybotDeletingA801" (new data: "command /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup global entry!
29/02/2008 14:33:25 Autorisé(e) (based on user decision) value "SpybotDeletingC9389" (new data: "cmd /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup global entry!
29/02/2008 15:49:03 Autorisé(e) (based on user decision) value "ccleaner" (new data: ""C:\Program Files\CCleaner\CCleaner.exe" /AUTO") ajouté(e) in System Startup user entry!
29/02/2008 16:12:52 Autorisé(e) (based on user decision) value "SpybotDeletingB2431" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 16:12:57 Autorisé(e) (based on user decision) value "SpybotDeletingD2540" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 16:13:00 Autorisé(e) (based on user decision) value "SpybotDeletingA801" (new data: "") supprimé(e) in System Startup global entry!
29/02/2008 16:13:03 Autorisé(e) (based on user decision) value "SpybotDeletingC9389" (new data: "") supprimé(e) in System Startup global entry!
29/02/2008 17:16:42 Refusé(e) (based on user decision) value "MsnMsgr" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 21:38:27 Autorisé(e) (based on user decision) value "TrojanScanner" (new data: "C:\Program Files\Trojan Remover\Trjscan.exe") ajouté(e) in System Startup global entry!
29/02/2008 21:39:41 Autorisé(e) (based on user decision) value "Streams Drivers" (new data: "") supprimé(e) in System Startup global entry!
29/02/2008 21:41:55 Refusé(e) (based on user decision) value "Trojan Remover" (new data: ""C:\Program Files\Trojan Remover\RMVTRJAN.EXE" /restart") ajouté(e) in System Startup global entry!
01/03/2008 00:27:00 Autorisé(e) (based on user decision) value "MSMSGS" (new data: "") supprimé(e) in System Startup user entry!
01/03/2008 00:27:04 Autorisé(e) (based on user decision) value "{7E853D72-626A-48EC-A868-BA8D5E23E045}" (new data: "") supprimé(e) in Browser Helper Object!
01/03/2008 00:27:05 Autorisé(e) (based on user decision) value "load" (new data: "") supprimé(e) in NT startup!
01/03/2008 09:35:09 Autorisé(e) (based on user decision) value "KernelFaultCheck" (new data: "") supprimé(e) in System Startup global entry!
01/03/2008 09:42:09 Autorisé(e) (based on user decision) value "{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" (new data: "") ajouté(e) in Internet Explorer searches!
01/03/2008 09:42:11 Autorisé(e) (based on user decision) value "{BC4FFE41-DE9F-46fa-B455-AAD49B9F9938}" (new data: "") supprimé(e) in Internet Explorer searches!
01/03/2008 09:42:16 Autorisé(e) (based on user decision) value "{EF99BD32-C1FB-11D2-892F-0090271D4F88}" (new data: "") supprimé(e) in Global browser toolbar!
01/03/2008 09:42:17 Autorisé(e) (based on user decision) value "{02478D38-C3F9-4EFB-9B51-7695ECA05670}" (new data: "") supprimé(e) in Browser Helper Object!
01/03/2008 09:49:13 Autorisé(e) (based on user decision) value "Search Page" (new data: "https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF") modifié(e) in Browser page!
01/03/2008 09:49:14 Autorisé(e) (based on user decision) value "Start Page" (new data: "https://www.msn.com/fr-fr/?ocid=iehp") modifié(e) in Browser page!
01/03/2008 09:49:16 Autorisé(e) (based on user decision) value "Default_Page_URL" (new data: "https://www.msn.com/fr-fr/?ocid=iehp") modifié(e) in Browser page!
01/03/2008 09:49:18 Autorisé(e) (based on user decision) value "Default_Search_URL" (new data: "https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF") modifié(e) in Browser page!
01/03/2008 11:12:06 Autorisé(e) (based on user decision) value "OnlineArmor GUI" (new data: ""C:\Program Files\Tall Emu\Online Armor\oaui.exe"") ajouté(e) in System Startup global entry!
01/03/2008 11:13:29 Autorisé(e) (based on user decision) value "Local Page" (new data: "C:\WINDOWS\system32\blank.htm") ajouté(e) in Browser page!
01/03/2008 11:57:08 Autorisé(e) (based on user decision) value "{BC4FFE41-DE9F-46FA-B455-AAD49B9F9938}" (new data: "") supprimé(e) in User-specific browser toolbar!
01/03/2008 11:57:10 Autorisé(e) (based on user decision) value "{1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A}" (new data: "") supprimé(e) in Browser Helper Object!
02/03/2008 00:27:06 Autorisé(e) (based on user decision) value "load" (new data: "") ajouté(e) in NT startup!
02/03/2008 00:32:30 Refusé(e) (based on user decision) value "Search Page" (new data: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch") modifié(e) in Browser page!
02/03/2008 00:32:36 Autorisé(e) (based on user decision) value "Search Bar" (new data: "") supprimé(e) in Browser page!
02/03/2008 00:32:40 Autorisé(e) (based on user decision) value "AutoRun" (new data: "") supprimé(e) in Command processor!
02/03/2008 00:32:42 Autorisé(e) (based on user decision) value "load" (new data: "") supprimé(e) in NT startup!
02/03/2008 00:32:52 Autorisé(e) (based on user decision) value "UserInit" (new data: "C:\WINDOWS\system32\userinit.exe,") modifié(e) in Winlogon!
02/03/2008 00:32:54 Autorisé(e) (based on user decision) value "scrnsave.exe" (new data: "") supprimé(e) in Desktop settings!
02/03/2008 00:42:03 Autorisé(e) (based on user decision) value "OnlineArmor GUI" (new data: "") supprimé(e) in System Startup global entry!
02/03/2008 00:42:55 Autorisé(e) (based on user decision) value "TrojanScanner" (new data: "") supprimé(e) in System Startup global entry!
03/02/2008 17:45:54 Autorisé(e) (based on user decision) value "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}" (new data: "Easy-WebPrint") ajouté(e) in Global browser toolbar!
03/02/2008 17:45:56 Autorisé(e) (based on user decision) value "{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}" (new data: "") ajouté(e) in Browser Helper Object!
03/02/2008 17:45:57 Autorisé(e) (based on user decision) value "Easy-WebPrint Ajouter à la liste d'impressions" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:45:58 Autorisé(e) (based on user decision) value "Easy-WebPrint Impression rapide" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:45:59 Autorisé(e) (based on user decision) value "Easy-WebPrint Imprimer" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:46:00 Autorisé(e) (based on user decision) value "Easy-WebPrint Prévisualiser" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:49:35 Autorisé(e) (based on user decision) value "RunCanonMsetUp" (new data: "C:\DOCUME~1\maman\LOCALS~1\Temp\MasterReboot\CANON_IJ\MCDCheck.exe") ajouté(e) in System Startup user entry!
03/02/2008 18:00:54 Autorisé(e) (based on user decision) value "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}" (new data: "") supprimé(e) in Global browser toolbar!
03/02/2008 18:00:55 Autorisé(e) (based on user decision) value "{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}" (new data: "") supprimé(e) in Browser Helper Object!
03/02/2008 18:00:56 Autorisé(e) (based on user decision) value "Easy-WebPrint Ajouter à la liste d'impressions" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:00:56 Autorisé(e) (based on user decision) value "Easy-WebPrint Impression rapide" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:00:57 Autorisé(e) (based on user decision) value "Easy-WebPrint Imprimer" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:00:58 Autorisé(e) (based on user decision) value "Easy-WebPrint Prévisualiser" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:04:31 Autorisé(e) (based on user decision) value "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}" (new data: "Easy-WebPrint") ajouté(e) in Global browser toolbar!
03/02/2008 18:04:32 Autorisé(e) (based on user decision) value "{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}" (new data: "") ajouté(e) in Browser Helper Object!
03/02/2008 18:04:33 Autorisé(e) (based on user decision) value "Easy-WebPrint Ajouter à la liste d'impressions" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 18:04:34 Autorisé(e) (based on user decision) value "Easy-WebPrint Impression rapide" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 18:04:34 Autorisé(e) (based on user decision) value "Easy-WebPrint Imprimer" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 18:04:35 Autorisé(e) (based on user decision) value "Easy-WebPrint Prévisualiser" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 19:03:38 Autorisé(e) (based on user decision) value "RunCanonMsetUp" (new data: "") supprimé(e) in System Startup user entry!
03/03/2008 00:48:11 Refusé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup user entry!
03/03/2008 00:48:11 Refusé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup global entry!
03/03/2008 00:48:11 Refusé(e) (based on user decision) value "Search Page" (new data: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch") modifié(e) in Browser page!
03/03/2008 01:05:27 Autorisé(e) (based on user decision) value "Search Page" (new data: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch") modifié(e) in Browser page!
03/03/2008 07:47:58 Autorisé(e) (based on user decision) value "avast!" (new data: "") supprimé(e) in System Startup global entry!
03/03/2008 07:51:06 Autorisé(e) (based on user decision) value "avgnt" (new data: ""C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min") ajouté(e) in System Startup global entry!
03/03/2008 19:57:11 Autorisé(e) (based on user decision) value "eMuleAutoStart" (new data: "C:\Program Files\eMule\emule.exe -AutoStart") ajouté(e) in System Startup user entry!
04/03/2008 16:14:57 Autorisé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup user entry!
04/03/2008 16:14:59 Autorisé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup global entry!
04/03/2008 16:26:11 Autorisé(e) (based on user decision) value "BootExecute" (new data: "autocheck autochk *
lsdelete
") modifié(e) in Session manager!
04/03/2008 18:53:12 Refusé(e) (based on user decision) value "SpybotSD TeaTimer" (new data: "") supprimé(e) in System Startup user entry!
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
6 mars 2008 à 00:01
bonsoir bebedouxreve,

ok pour les rapports.

tu as bien supprimé tout ce qu´adaware et spybot on trouvé ?

Repost un nouveau hijack this stp

Precises tes soucis.

@+
0
bebedouxreve
6 mars 2008 à 10:53
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:32:52, on 05/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
6 mars 2008 à 12:21
bonjour bebedouxreve,

a l´aide de hijack this coche et fix les ligners ci dessous :

R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

instales un par feu :

par feu : kerio

http://www.malekal.com/kerio_firewall.php#mozTocId721480

https://www.vulgarisation-informatique.com/kerio.php

https://kerio.probb.fr/f2-sunbelt-kerio-personal-firewall

Comodo 3 pro :

http://www.commentcamarche.net/telecharger/telecharger 34055041 comodo firewall pro

Online armor :

http://www.commentcamarche.net/telecharger/telecharger 34055356 online armor personal firewall

tuto : https://forum.pcastuces.com/sujet.asp?f=25&s=35606

ou zone alarm plus facil a configurer mais moins performant

https://www.malekal.com/tutoriel-zonealarm-firewall/

puis passe ceci :

Télécharge FixWareout d'un de ces deux sites sur le bureau:
http://downloads.subratam.org/Fixwareout.exe
http://swandog46.geekstogo.com/Fixwareout.exe

Lance le fix: clique sur Next, puis Install, puis assure toi que "Run fixit" est activé puis clique sur Finish.
Le fix va commencer, suis les messages à l'écran. Il te sera demandé de redémarrer ton ordinateur, fais le. Ton système mettra un peu plus de temps au démarrage, c'est normal.

*Poste (Copie/colle) le contenu du rapport qui va s'afficher à l'écran (report.txt) avec un nouveau rapport HijackThis! dans ta prochaine réponse.

@+
0
bebedouxreve
6 mars 2008 à 23:31
Username "maman" - 05/03/2008 20:45:46 [Fixwareout edited 9/01/2007]

~~~~~ Prerun check

Cache de résolution DNS vidé.


System was rebooted successfully.

~~~~~ Postrun check
HKLM\SOFTWARE\~\Winlogon\ "System"=""
....
....
~~~~~ Misc files.
....
~~~~~ Checking for older varients.
....

~~~~~ Current runs (hklm hkcu "run" Keys Only)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
"SoundMan"="SOUNDMAN.EXE"
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\""
"SSBkgdUpdate"="\"C:\\Program Files\\Fichiers communs\\Scansoft Shared\\SSBkgdUpdate\\SSBkgdupdate.exe\" -Embedding -boot"
"OpwareSE4"="\"C:\\Program Files\\ScanSoft\\OmniPageSE4.0\\OpwareSE4.exe\""
"REGSHAVE"="C:\\Program Files\\REGSHAVE\\REGSHAVE.EXE /AUTORUN"
"DAEMON Tools-1033"="\"C:\\Program Files\\D-Tools\\daemon.exe\" -lang 1033"
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_03\\bin\\jusched.exe\""
"WinampAgent"="\"C:\\Program Files\\Winamp\\Winampa.exe\""
"LVCOMSX"="C:\\WINDOWS\\system32\\LVCOMSX.EXE"
"LogitechVideoRepair"="C:\\Program Files\\Logitech\\Video\\ISStart.exe "
"LogitechVideoTray"="C:\\Program Files\\Logitech\\Video\\LogiTray.exe"
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir PersonalEdition Classic\\avgnt.exe\" /min"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"Picasa Media Detector"="C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe"
"Shareaza"="\"C:\\Program Files\\Shareaza\\Shareaza.exe\" -tray"
"TuneUp MemOptimizer"="\"C:\\Program Files\\TuneUp Utilities 2008\\MemOptimizer.exe\" autostart"
"LDM"="C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\BackWeb-8876480.exe"
"LogitechSoftwareUpdate"="\"C:\\Program Files\\Logitech\\Video\\ManifestEngine.exe\" boot"
"ccleaner"="\"C:\\Program Files\\CCleaner\\CCleaner.exe\" /AUTO"
"MsnMsgr"="~\"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe\" /background"
"SpybotSD TeaTimer"="C:\\Program Files\\Spybot - Search & Destroy\\TeaTimer.exe"
"eMuleAutoStart"="C:\\Program Files\\eMule\\emule.exe -AutoStart"
....
Hosts file was reset, If you use a custom hosts file please replace it...
~~~~~ End report ~~~~~
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:23:33, on 05/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
0
bebedouxreve > bebedouxreve
7 mars 2008 à 00:06
voici le résultat du scan antivir

03/03/2008,07:51:09 ---------------------------------------------------------
03/03/2008,07:51:13 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
03/03/2008,07:51:13 AntiVir Guard version: 7.00.00.81,engine version 7.6.0.15,VDF version: 7.0.0.2
03/03/2008,07:51:14 Start Filter Device.
03/03/2008,07:51:14 Avira AntiVir PersonalEdition Classic has been started successfully!
03/03/2008,07:51:14 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SPL .SWF .SYS .TLB .TMP .TSP .TTF
.URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,07:52:43 Avira AntiVir PersonalEdition Classic service has been stopped!
03/03/2008,07:52:49 ---------------------------------------------------------
03/03/2008,07:52:54 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
03/03/2008,07:52:54 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.225
03/03/2008,07:52:55 Start Filter Device.
03/03/2008,07:52:55 Avira AntiVir PersonalEdition Classic has been started successfully!
03/03/2008,07:52:55 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,07:52:57 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,11:35:57 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,11:39:28 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,15:42:45 Avira AntiVir PersonalEdition Classic service has been stopped!
03/03/2008,16:21:52 ---------------------------------------------------------
03/03/2008,16:22:15 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
03/03/2008,16:22:15 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.225
03/03/2008,16:22:18 Start Filter Device.
03/03/2008,16:22:18 Avira AntiVir PersonalEdition Classic has been started successfully!
03/03/2008,16:22:18 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,01:03:11 Avira AntiVir PersonalEdition Classic service has been stopped!
04/03/2008,07:47:35 ---------------------------------------------------------
04/03/2008,07:48:06 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
04/03/2008,07:48:06 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.225
04/03/2008,07:48:09 Start Filter Device.
04/03/2008,07:48:10 Avira AntiVir PersonalEdition Classic has been started successfully!
04/03/2008,07:48:10 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,07:52:11 Update process started!
04/03/2008,07:52:16 Current Engine Version: 7.6.0.73
04/03/2008,07:52:16 Current Pattern File: 7.0.2.231 from 04/03/2008, 16:22
04/03/2008,07:52:16 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,16:32:18 [WARNING] Suspicious file: Contains suspicious code HEUR/Crypted!
C:\Documents and Settings\maman\Mes documents\Downloads\Crack.exe
[INFO] The file will be moved to quarantine.
04/03/2008,16:38:45 [WARNING] Is the Trojan horse TR/Crypt.XPACK.Gen!
C:\Documents and Settings\maman\Mes documents\photo diverse\patriciademarteau-photo12.com
04/03/2008,16:53:46 [WARNING] Is the Trojan horse TR/Agent.bux.1!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP2\A0000068.dll
04/03/2008,16:58:47 [WARNING] Contains detection pattern of the batch virus BAT/Small.515!
C:\WINDOWS\Drivers\Microsoft\install.bat
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:08 [WARNING] Is the Trojan horse TR/Zapchast.GF.2!
C:\WINDOWS\Drivers\Microsoft\restart.bat
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:12 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\WINDOWS\Drivers\Microsoft\script.dll
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:15 [WARNING] Is the Trojan horse TR/PSW.Zapchast.GF.13!
C:\WINDOWS\Drivers\Microsoft\service.dll
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:20 [WARNING] Is the Trojan horse TR/IRC.Flood.BAT.J!
C:\WINDOWS\Drivers\Microsoft\telnet.bat
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:23 [WARNING] Contains detection pattern of the batch virus BAT/Small.653!
C:\WINDOWS\Drivers\Microsoft\unroot.bat
[INFO] The file will be moved to quarantine.
04/03/2008,20:23:45 ---------------------------------------------------------
04/03/2008,20:24:03 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
04/03/2008,20:24:03 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.231
04/03/2008,20:24:05 Start Filter Device.
04/03/2008,20:24:05 Avira AntiVir PersonalEdition Classic has been started successfully!
04/03/2008,20:24:05 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,23:55:30 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,06:55:12 ---------------------------------------------------------
05/03/2008,06:55:27 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,06:55:27 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.231
05/03/2008,06:55:29 Start Filter Device.
05/03/2008,06:55:29 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,06:55:29 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,07:22:19 [WARNING] Contains detection pattern of the batch virus BAT/Small.515!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002671.bat
[INFO] The file will be moved to quarantine.
05/03/2008,07:52:00 Update process started!
05/03/2008,07:52:05 Current Engine Version: 7.6.0.73
05/03/2008,07:52:06 Current Pattern File: 7.0.2.237 from 05/03/2008, 16:45
05/03/2008,07:52:06 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,07:57:39 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,09:55:45 ---------------------------------------------------------
05/03/2008,09:55:59 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,09:55:59 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,09:56:01 Start Filter Device.
05/03/2008,09:56:02 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,09:56:02 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,11:47:58 [WARNING] Is the Trojan horse TR/Zapchast.GF.2!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002672.bat
[INFO] The file will be moved to quarantine.
05/03/2008,13:02:02 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
05/03/2008,13:59:44 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
05/03/2008,15:59:44 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
05/03/2008,20:08:29 ---------------------------------------------------------
05/03/2008,20:08:43 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,20:08:43 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,20:08:46 Start Filter Device.
05/03/2008,20:08:46 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,20:08:46 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,20:19:58 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,20:21:15 ---------------------------------------------------------
05/03/2008,20:21:29 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,20:21:29 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,20:21:31 Start Filter Device.
05/03/2008,20:21:31 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,20:21:31 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,20:46:24 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,20:47:41 ---------------------------------------------------------
05/03/2008,20:47:45 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,20:47:45 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,20:47:46 Start Filter Device.
05/03/2008,20:47:46 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,20:47:46 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,21:19:42 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
6 mars 2008 à 23:57
bonsoir patricia,

ok pour kerio.

coche et fix les lignes suivantes a l´aide de hijack this :

O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254

comment fixer :

Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)

-> http://pageperso.aol.fr/balltrap34/demohijack.htm

as tu kazaa dans le panneau de configuration > ajoue et suppression de programme ?

repost un nouveau hijack this stp

@+
0
bebedouxreve
7 mars 2008 à 00:18
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:15:47, on 06/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
7 mars 2008 à 00:13
Re,

on dirait qu´il l n´y a plus rien de detecté apart la restauration system qui est touché...

fais ce que je t´ai indiqué au post 21

puis

Désactive ta restauration système:
pour cela :
Click droit sur poste de travail, dans l´arborescence sur propriétés;
dans la nouvelle fenettre click sur l´onglet restauration système;
coche la case désactiver la restauration systèm et applique.
puis redemarre le pc et click droit sur poste de travail, dans l´arborescence sur propriétés;
dans la nouvelle fenettre click sur l´onglet restauration systèm
décoche la case désactiver la restauration systèm et applique.

puis refais un scan mais en ligne cette fois ci

ici :

Scan en ligne bitdefender :

https://www.bitdefender.com/toolbox/

Clicker sur " I agree " et suivre les indications

A faire imperativement sous internet explorer, en acceptant l´activ x

tutoriel en image en image

http://pageperso.aol.fr/rginformatique/mapage/defender.htm

post le rapport ici stp

@+
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
7 mars 2008 à 00:26
ok patricia,

fais ce que je t´ai indiqué au post 23 maintenant...

@+
0
bebedouxreve
9 mars 2008 à 12:19
bonsoir g!rly, désolée de ne plus avoir posté mais je n'arrivais plus a me connecté a internet.
il m'a fallut le temps pour comprendre et j'y suis enfin arrivée .
voici le rapport de BitDefender :
BitDefender Online Scanner



Scan report generated at: Sat, Mar 08, 2008 - 00:16:39





Scan path: A:\;C:\;D:\;E:\;G:\;







Statistics

Time
01:38:32

Files
161409

Folders
5607

Boot Sectors
2

Archives
2366

Packed Files
11467




Results

Identified Viruses
1

Infected Files
2

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
2




Engines Info

Virus Definitions
986205

Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)

Scan plugins
16

Archive plugins
41

Unpack plugins
7

E-mail plugins
6

System plugins
5




Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes




Scanned File
Status

C:\WINDOWS\Drivers\Microsoft\service.exe
Infected with: Packer.Expressor.B

C:\WINDOWS\Drivers\Microsoft\service.exe
Disinfection failed

C:\WINDOWS\Drivers\Microsoft\service.exe
Deleted

C:\WINDOWS\Drivers\Microsoft\service32.exe
Infected with: Packer.Expressor.B

C:\WINDOWS\Drivers\Microsoft\service32.exe
Disinfection failed

C:\WINDOWS\Drivers\Microsoft\service32.exe
Deleted

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/nvcpl.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/nvcplARA.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/nvcplCHS.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/nvcplCHT.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/nvcplCSY.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/nvcplDAN.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/nvcplDEU.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/nvcplELL.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/nvcplENG.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/nvcplESM.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/nvcplESN.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/nvcplFIN.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/nvcplFRA.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/nvcplHEB.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/nvcplHUN.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/nvcplITA.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/nvcplJPN.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/nvcplKOR.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/nvcplNLD.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/nvcplNOR.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/image6.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/nvcplPLK.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/image5.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/about_this_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Define_Custom_Views.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Using_the_Profiles_Menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Getting_Help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Getting_Started.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Print_a_help_topic.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/To_get_technical_support.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/accessing_online_help.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NVIDIA_Control_Panel.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/System_Requirements.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/glossary.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/eHelp.xml
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/RoboHHRE.lng
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/nvcplPTB.brs
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/#BSSC
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/#BSSCMF
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/coua.css
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NOTE.GIF
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/page_header.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NVControlPanel_Vista.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/callouts.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NVControlPanel_XP.gif
Clean

C:\WINDOWS\Help\nvcpl\nvcplptg.chm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/#SYSTEM
Clean

C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/Get_information_about_your_program_and_computer.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/using_the_view_menu.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/About_the_Menu_Bar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/About_the_Toolbar.htm
Clean

C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/about_this_help.htm
Clean
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
10 mars 2008 à 00:49
bonsoir patricia,

comment se porte ton pc ?

post un nouveau hijack this

@+
0
bebedouxreve Messages postés 3 Date d'inscription samedi 1 mars 2008 Statut Membre Dernière intervention 15 mars 2008
12 mars 2008 à 16:58
bonsoir , et bien voilà je retrouve mon pc qui a du être formater .
plus rien ne fonctionnait ...
je vous remercie beaucoup pour votre aide et j'aimerais savoir si il y a moyen que cette personne qui continue a poser ses virus sur windows live messenger , il a encore essayé avec des amis qui était au manège et qui m'envoyait un lien par messenger.
j'ai le lien recopier dans le bloc note .
y a t'il quelque chose a faire ?
merci pour tout
patricia
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
12 mars 2008 à 17:40
patricia,
et bien quelle malheure...
tu as quoi comme protection maintenant ?
ces tes amis qui sont eux meme infectés, tu voie le truc; ils t´envoient le lien sans meme le savoir... il n´y a rien d´autre a faire que de leur dire qu´il sont infectés et qu´ils devraient se faire desinfecter ou de les enlever de tes contacts...
@+
0
bebedouxreve Messages postés 3 Date d'inscription samedi 1 mars 2008 Statut Membre Dernière intervention 15 mars 2008
15 mars 2008 à 09:47
bonjour, mon beau frère informaticien m'a mit KASPERSKY PRO , depuis j'ai eu deux essai d'intrusion éradiquée de suite .
j'aurais aimé ne pas en arriver a le formater .
suite a cette seconde intrusion, j'ai mis en surfixe sur windows live messenger le nom du lien qu'il utilise et ca marche plus d'intrus .
je vous le mets "http://isuisse.com/?photo="c'est votre nom qui'il met".
uw foto's worden gepubliceerd op deze site
ne jamais cliquer sur un tel lien non seulement il infecte tous le système mais en plus il peut prendre possession de votre machine .
le seul moyen d'en être quitte est de formater le pc et ne plus rester en contact avec les amis infectés .
en tous les cas merci a vous tous , vous êtes tous simplement super.
a bientot sur le forum
patricia
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
15 mars 2008 à 20:25
bon tres bien patricia ;-)

ou en sont tes soucis ?

@+
0
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 406
4 juil. 2008 à 12:23
--
mouvement de non entraide a suivre très prochainement...
0