Trojan qui revient tous le temps
Résolu/Fermé
bebedouxreve
-
29 févr. 2008 à 22:30
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 - 4 juil. 2008 à 12:23
g!rly Messages postés 18209 Date d'inscription vendredi 17 août 2007 Statut Contributeur Dernière intervention 30 novembre 2014 - 4 juil. 2008 à 12:23
A voir également:
- Trojan qui revient tous le temps
- Trojan remover - Télécharger - Antivirus & Antimalwares
- Blocage agriculteur carte en temps réel - Guide
- Renommer plusieurs fichiers en même temps - Guide
- Accélérer le temps minecraft - Forum Minecraft
- Trojan al11 ✓ - Forum Virus
19 réponses
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
1 mars 2008 à 00:22
1 mars 2008 à 00:22
salut bebedouxreve,
Téléchargez MSNFix.zip (de !aur3n7) sur votre bureau:
http://sosvirus.changelog.fr/MSNFix.zip
Décompressez-le (clic droit >> Extraire ici) et double cliquer sur le fichier MSNFix.bat.
- Exécutez l'option R.
-- Si l'infection est détectée, un message l'indiquera et il suffira de presser une touche pour lancer le nettoyage
Note :
Si une erreur de suppression est détectée un message s'affichera demandant de redémarrer l'ordinateur afin de terminer les opérations. Dans ce cas il suffit de redémarrer l'ordinateur en mode normal
- Le rapport sera enregistré dans le même dossier que MSNFix sous forme date_heure.txt
Tuto :
https://www.malekal.com/supprimer-virus-desinfecter-pc/
et
Télécharge HijackThis ici :
-> http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis
Tutoriel d´instalation : (Merci a Balltrap34 pour cette réalisation)
-> http://pageperso.aol.fr/balltrap34/Hijenr.gif
Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)
-> http://pageperso.aol.fr/balltrap34/demohijack.htm
Post le rapport généré ici stp...
@+
Téléchargez MSNFix.zip (de !aur3n7) sur votre bureau:
http://sosvirus.changelog.fr/MSNFix.zip
Décompressez-le (clic droit >> Extraire ici) et double cliquer sur le fichier MSNFix.bat.
- Exécutez l'option R.
-- Si l'infection est détectée, un message l'indiquera et il suffira de presser une touche pour lancer le nettoyage
Note :
Si une erreur de suppression est détectée un message s'affichera demandant de redémarrer l'ordinateur afin de terminer les opérations. Dans ce cas il suffit de redémarrer l'ordinateur en mode normal
- Le rapport sera enregistré dans le même dossier que MSNFix sous forme date_heure.txt
Tuto :
https://www.malekal.com/supprimer-virus-desinfecter-pc/
et
Télécharge HijackThis ici :
-> http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis
Tutoriel d´instalation : (Merci a Balltrap34 pour cette réalisation)
-> http://pageperso.aol.fr/balltrap34/Hijenr.gif
Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)
-> http://pageperso.aol.fr/balltrap34/demohijack.htm
Post le rapport généré ici stp...
@+
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
1 mars 2008 à 00:46
1 mars 2008 à 00:46
Re,
ok pour msnfix;-)
post le rapport hijack this maintenant.
@+
ok pour msnfix;-)
post le rapport hijack this maintenant.
@+
bebedouxreve
Messages postés
3
Date d'inscription
samedi 1 mars 2008
Statut
Membre
Dernière intervention
15 mars 2008
1 mars 2008 à 00:47
1 mars 2008 à 00:47
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:46:11, on 01/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\cisvc.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SWEETIE Class - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\PROGRA~1\MACROG~1\SWEETI~1\toolbar.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Scan saved at 00:46:11, on 01/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\cisvc.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\notepad.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SWEETIE Class - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\PROGRA~1\MACROG~1\SWEETI~1\toolbar.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
1 mars 2008 à 01:11
1 mars 2008 à 01:11
Re,
a l´aide de hijack this coche et fix les lignes ci dessous
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
meme si tu utilise firefox fais la mise a jour windows pour obtenir ie 7.0
https://support.microsoft.com/en-US/topic/internet-explorer-downloads-d49e1f0d-571c-9a7b-d97e-be248806ca70
puis
installes un par feu :
par feu : kerio
http://www.malekal.com/kerio_firewall.php#mozTocId721480
https://www.vulgarisation-informatique.com/kerio.php
https://kerio.probb.fr/f2-sunbelt-kerio-personal-firewall
Comodo 3 pro :
http://www.commentcamarche.net/telecharger/telecharger 34055041 comodo firewall pro
Online armor :
http://www.commentcamarche.net/telecharger/telecharger 34055356 online armor personal firewall
tuto : https://forum.pcastuces.com/sujet.asp?f=25&s=35606
ou zone alarm plus facil a configurer mais moins performant
https://www.malekal.com/tutoriel-zonealarm-firewall/
* Télécharge OTMoveIt2 (de Old_Timer) sur ton bureau : http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe
* Double-clique sur OTMoveIt.exe pour lancer le programme,
* Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste Custom List of Files/Folders to Move" :
C:\Program Files\Macrogaming
* Clique sur MoveIt! pour lancer la suppression,
* Le résultat appraraîtra dans le cadre Results.
* Clique sur Exit pour fermer le programme.
* Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
* Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
as tu reessayé msn depuis?
@+
a l´aide de hijack this coche et fix les lignes ci dessous
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
meme si tu utilise firefox fais la mise a jour windows pour obtenir ie 7.0
https://support.microsoft.com/en-US/topic/internet-explorer-downloads-d49e1f0d-571c-9a7b-d97e-be248806ca70
puis
installes un par feu :
par feu : kerio
http://www.malekal.com/kerio_firewall.php#mozTocId721480
https://www.vulgarisation-informatique.com/kerio.php
https://kerio.probb.fr/f2-sunbelt-kerio-personal-firewall
Comodo 3 pro :
http://www.commentcamarche.net/telecharger/telecharger 34055041 comodo firewall pro
Online armor :
http://www.commentcamarche.net/telecharger/telecharger 34055356 online armor personal firewall
tuto : https://forum.pcastuces.com/sujet.asp?f=25&s=35606
ou zone alarm plus facil a configurer mais moins performant
https://www.malekal.com/tutoriel-zonealarm-firewall/
* Télécharge OTMoveIt2 (de Old_Timer) sur ton bureau : http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe
* Double-clique sur OTMoveIt.exe pour lancer le programme,
* Copie la liste de fichiers ou de dossiers ci-dessous et colle-la dans la fenêtre du programme "Paste Custom List of Files/Folders to Move" :
C:\Program Files\Macrogaming
* Clique sur MoveIt! pour lancer la suppression,
* Le résultat appraraîtra dans le cadre Results.
* Clique sur Exit pour fermer le programme.
* Poste le rapport qui est situé ici : C:\\\_OTMoveIt\MovedFiles
* Il te sera peut-être demandé de redémarrer ton PC. Dans ce cas, clique sur Yes.
as tu reessayé msn depuis?
@+
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:45:38, on 01/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Tall Emu\Online Armor\oasrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Trojan Remover\Trjscan.exe
C:\Program Files\Tall Emu\Online Armor\oaui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Scan saved at 12:45:38, on 01/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Tall Emu\Online Armor\oasrv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Trojan Remover\Trjscan.exe
C:\Program Files\Tall Emu\Online Armor\oaui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
1 mars 2008 à 17:43
1 mars 2008 à 17:43
Salut bebedouxreve,
Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
• Redémarre ton ordinateur
• Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
• A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
• Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
• Choisis ton compte.
Déroule la liste des instructions ci-dessous :
• Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
• Appuie sur Y pour commencer le processus de nettoyage.
• Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
• Appuie sur une touche pour redémarrer le PC.
• Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
• Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
• Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
• Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
• Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum,
puis
Télécharge combofix.exe (par sUBs) sur ton Bureau.
-> http://download.bleepingcomputer.com/sUBs/ComboFix.exe
-> Double clique combofix.exe.
-> Tape sur la touche 1 (Yes) pour démarrer le scan.
-> Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.
NOTE : Le rapport se trouve également ici : C:\Combofix.txt
Avant d'utiliser ComboFix :
-> Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.
-> Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent géner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur Combofix.exe.
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redemarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\Combofix.txt)
-> Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.
-> Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message ainsi qu´un nouveau hijack this.
-> Tutoriel https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
bon courrage ;-)
@+
Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
• Redémarre ton ordinateur
• Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
• A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
• Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
• Choisis ton compte.
Déroule la liste des instructions ci-dessous :
• Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
• Appuie sur Y pour commencer le processus de nettoyage.
• Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
• Appuie sur une touche pour redémarrer le PC.
• Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
• Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
• Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
• Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
• Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum,
puis
Télécharge combofix.exe (par sUBs) sur ton Bureau.
-> http://download.bleepingcomputer.com/sUBs/ComboFix.exe
-> Double clique combofix.exe.
-> Tape sur la touche 1 (Yes) pour démarrer le scan.
-> Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.
NOTE : Le rapport se trouve également ici : C:\Combofix.txt
Avant d'utiliser ComboFix :
-> Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.
-> Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent géner fortement la procédure de recherche et de nettoyage de l'outil.
Une fois fait, sur ton bureau double-clic sur Combofix.exe.
- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.
/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.
- En fin de scan il est possible que ComboFix ait besoin de redemarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.
- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\Combofix.txt)
-> Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.
-> Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message ainsi qu´un nouveau hijack this.
-> Tutoriel https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
bon courrage ;-)
@+
ComboFix 08-03-01.3 - maman 2008-03-02 0:28:40.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.189 [GMT 1:00]
Endroit: C:\Documents and Settings\maman\Bureau\ComboFix.exe
* Création d'un nouveau point de restauration
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\maman\Application Data\inst.exe
.
((((((((((((((((((((((((((((( Fichiers créés 2008-02-01 to 2008-03-01 ))))))))))))))))))))))))))))))))))))
.
2008-03-02 00:15 . 2008-03-02 00:15 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-01 10:18 . 2008-03-02 00:26 <REP> d-------- C:\Documents and Settings\maman\Application Data\OnlineArmor
2008-03-01 10:18 . 2008-03-01 10:18 <REP> d-------- C:\Documents and Settings\All Users\Application Data\OnlineArmor
2008-03-01 10:17 . 2007-11-08 06:37 68,608 --a------ C:\WINDOWS\system32\drivers\OADriver.sys
2008-03-01 10:17 . 2007-09-29 00:06 25,600 --a------ C:\WINDOWS\system32\drivers\OAmon.sys
2008-03-01 10:17 . 2007-09-29 00:06 18,944 --a------ C:\WINDOWS\system32\drivers\ndisrd.sys
2008-03-01 10:16 . 2008-03-01 10:17 <REP> d-------- C:\Program Files\Tall Emu
2008-03-01 09:53 . 2008-03-01 09:53 <REP> d-------- C:\OnlineArmor
2008-03-01 09:51 . 2008-03-01 09:51 <REP> d-------- C:\_OTMoveIt
2008-03-01 09:43 . 2008-03-01 09:43 14,771,744 --a------ C:\Program Files\IE7-WindowsXP-x86-fra.exe
2008-03-01 00:45 . 2008-03-01 00:45 <REP> d-------- C:\Program Files\Trend Micro
2008-03-01 00:45 . 2008-03-01 00:45 812,344 --a------ C:\Program Files\HJTInstall.exe
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Program Files\Trojan Remover
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\maman\Application Data\Simply Super Software
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Simply Super Software
2008-02-29 21:37 . 2006-05-25 14:52 162,304 --a------ C:\WINDOWS\system32\ztvunrar36.dll
2008-02-29 21:37 . 2003-02-02 19:06 153,088 --a------ C:\WINDOWS\system32\UNRAR3.dll
2008-02-29 21:37 . 2005-08-26 00:50 77,312 --a------ C:\WINDOWS\system32\ztvunace26.dll
2008-02-29 21:37 . 2002-03-06 00:00 75,264 --a------ C:\WINDOWS\system32\unacev2.dll
2008-02-29 21:37 . 2006-06-19 12:01 69,632 --a------ C:\WINDOWS\system32\ztvcabinet.dll
2008-02-29 21:36 . 2008-02-29 21:37 6,894,528 --a------ C:\Program Files\trsetup.exe
2008-02-29 21:22 . 2008-03-01 10:50 5,120 --ahs---- C:\WINDOWS\system32\Thumbs.db
2008-02-29 20:47 . 2008-02-29 20:47 <REP> d--hs---- C:\found.001
2008-02-29 20:10 . 2008-02-29 20:10 407,680 --a------ C:\Program Files\aswclnr.exe
2008-02-29 19:13 . 2008-02-29 19:13 1,308,216 --a------ C:\Program Files\HiJackThis_v2.exe
2008-02-29 18:51 . 2008-02-29 18:53 <REP> d-------- C:\Program Files\Panda Security
2008-02-29 16:03 . 2008-02-29 16:03 <REP> d-------- C:\Program Files\Activision
2008-02-29 14:31 . 2008-02-29 14:31 123 --a------ C:\WINDOWS\wininit.ini
2008-02-29 13:32 . 2008-02-29 13:32 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-02-29 13:32 . 2008-02-29 14:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-02-29 13:19 . 2008-02-29 13:19 7,467,056 --a------ C:\Program Files\spybotsd15.exe
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Program Files\Apple Software Update
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple
2008-02-25 21:52 . 2008-02-25 21:52 2,563 --a------ C:\WINDOWS\image.jpg
2008-02-24 21:31 . 2008-02-24 21:31 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-02-24 21:31 . 2008-02-24 21:31 1,409 --a------ C:\WINDOWS\QTFont.for
2008-02-24 19:00 . 2008-02-24 19:00 <REP> d-------- C:\My Shared Folder
2008-02-24 18:59 . 2008-02-24 18:59 <REP> d-------- C:\Documents and Settings\maman\Application Data\Kazaa Lite
2008-02-24 18:58 . 2008-02-24 18:58 2,803,665 --a------ C:\Program Files\klitekpp243f.exe
2008-02-24 18:55 . 2008-02-24 18:55 <REP> d-------- C:\Program Files\Kazaa
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Fichiers communs\FotoWire
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Documents and Settings\maman\Application Data\FotoWire
2008-02-24 17:49 . 2004-10-08 12:46 53,248 -ra------ C:\WINDOWS\system32\InstMed.exe
2008-02-24 17:48 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Logitech
2008-02-24 17:04 . 2008-02-24 17:04 2,402,832 --a------ C:\Program Files\WLinstaller.exe
2008-02-24 16:55 . 2008-02-29 13:01 <REP> d-------- C:\Documents and Settings\maman\Application Data\skypePM
2008-02-24 16:55 . 2008-02-24 16:55 32 --a------ C:\Documents and Settings\All Users\Application Data\ezsid.dat
2008-02-24 16:53 . 2008-02-29 13:30 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Skype
2008-02-24 16:48 . 2008-02-24 16:51 22,690,600 --a------ C:\Program Files\SkypeSetup.exe
2008-02-24 16:06 . 2008-02-24 17:38 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Logishrd
2008-02-24 16:05 . 2008-02-24 17:39 <REP> d-------- C:\Program Files\Fichiers communs\LogiShrd
2008-02-24 16:00 . 2008-02-24 16:03 32,227,136 --a------ C:\Program Files\logitech_logitech_quickcam_11.1.0.2016_whql_4219.exe
2008-02-24 13:38 . 2008-03-01 10:50 16,384 --ahs---- C:\WINDOWS\Thumbs.db
2008-02-24 13:19 . 2008-02-24 13:19 1,271,557 --a------ C:\Program Files\wrar371fr.exe
2008-02-23 18:32 . 2008-02-23 18:31 4,419,000 --a------ C:\Program Files\burn4free_burn4free_3.9.0.0_francais_14723.exe
2008-02-22 22:35 . 2008-02-22 22:35 306,432 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
2008-02-22 22:35 . 2007-12-20 10:41 29,440 --a------ C:\WINDOWS\system32\uxtuneup.dll
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2008-02-22 22:30 . 2008-02-22 22:31 14,174,464 --a------ C:\Program Files\TU2008TrialFR.exe
2008-02-22 22:17 . 2008-02-24 18:55 594,880 --a------ C:\Program Files\kazaa_setup.exe
2008-02-22 22:15 . 2008-02-22 22:15 5,265,101 --a------ C:\Program Files\Shareaza_2.3.1.0_Win32.exe
2008-02-22 21:50 . 2008-02-22 23:19 <REP> d-------- C:\Program Files\Yahoo!
2008-02-22 21:50 . 2008-02-22 21:50 <REP> d-------- C:\Program Files\CCleaner
2008-02-22 21:49 . 2008-02-22 21:50 2,733,928 --a------ C:\Program Files\ccsetup204.exe
2008-02-22 21:45 . 2008-02-22 21:44 2,467,439 --a------ C:\Program Files\winamp295_full.exe
2008-02-15 23:39 . 2008-02-15 23:39 <REP> d-------- C:\Documents and Settings\maman\Application Data\dvdcss
2008-02-14 22:14 . 2008-02-14 22:51 <REP> d-------- C:\Program Files\Photo Viewer 2.4
2008-02-13 16:43 . 2008-02-15 12:52 0 --a------ C:\WINDOWS\obmetmp.htm
2008-02-12 17:54 . 2008-02-24 17:39 780 --a------ C:\WINDOWS\_delis32.ini
2008-02-11 21:39 . 2006-11-12 11:39 483,328 --a------ C:\WINDOWS\system32\actskn45.ocx
2008-02-11 16:13 . 2008-02-11 16:13 <REP> d-------- C:\Program Files\Common Files
2008-02-11 00:22 . 2008-03-01 23:08 116 --a------ C:\WINDOWS\NeroDigital.ini
2008-02-10 13:41 . 2008-02-10 13:41 <REP> d-------- C:\Program Files\Fichiers communs\Ahead
2008-02-10 13:41 . 2004-07-26 16:16 1,568,768 --------- C:\WINDOWS\system32\ImagX7.dll
2008-02-10 13:41 . 2004-07-26 16:16 476,320 --------- C:\WINDOWS\system32\ImagXpr7.dll
2008-02-10 13:41 . 2004-07-26 16:16 471,040 --------- C:\WINDOWS\system32\ImagXRA7.dll
2008-02-10 13:41 . 2004-07-26 16:16 262,144 --------- C:\WINDOWS\system32\ImagXR7.dll
2008-02-10 13:41 . 2001-07-09 10:50 155,648 --a------ C:\WINDOWS\system32\NeroCheck.exe
2008-02-10 13:41 . 2004-03-02 16:37 125,184 --------- C:\WINDOWS\system32\drivers\imagesrv.sys
2008-02-10 13:41 . 2000-06-26 10:45 106,496 --a------ C:\WINDOWS\system32\TwnLib20.dll
2008-02-10 13:41 . 2004-03-02 16:37 5,504 --------- C:\WINDOWS\system32\drivers\imagedrv.sys
2008-02-10 13:39 . 2008-02-10 13:39 <REP> d-------- C:\Program Files\Nero 6 (+crack)
2008-02-09 23:26 . 2008-02-10 01:23 <REP> d-------- C:\Program Files\Sims2Pack Clean Installer
2008-02-09 23:25 . 2008-02-09 23:25 441,214 --a------ C:\Program Files\Sims2PackInstaller_v1514.exe
2008-02-09 23:07 . 2008-02-09 23:07 4,922,461 --a------ C:\Program Files\theme-de-bureau.exe
2008-02-09 20:41 . 2008-02-09 20:41 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WinZip
2008-02-09 18:16 . 2008-02-24 13:23 <REP> d-------- C:\Program Files\Maxis
2008-02-07 22:05 . 2006-11-02 17:12 348,416 --a------ C:\WINDOWS\system32\drivers\rt73.sys
2008-02-07 22:05 . 2006-06-20 22:53 319,488 --a------ C:\WINDOWS\system32\AegisI5.exe
2008-02-07 22:05 . 2006-06-17 12:29 295,018 --a------ C:\WINDOWS\system32\Install7x.dll
2008-02-07 22:05 . 2005-11-30 11:33 2,048 --a------ C:\WINDOWS\system32\drivers\rt73.bin
2008-02-07 22:05 . 2006-03-06 15:36 45 --a------ C:\WINDOWS\filespec7x
2008-02-07 22:04 . 2008-02-07 22:04 <REP> d-------- C:\Program Files\RALINK
2008-02-07 22:02 . 2008-02-07 22:02 <REP> d-------- C:\Documents and Settings\maman\Application Data\InstallShield
2008-02-06 21:04 . 2008-02-06 21:04 <REP> d-------- C:\WINDOWS\new mario62
2008-02-06 21:04 . 2008-02-06 21:04 171,520 --a------ C:\WINDOWS\system32\cncs32.dll
2008-02-06 21:04 . 2008-02-06 21:04 18 --a------ C:\WINDOWS\gfact.ini
2008-02-06 20:57 . 2008-02-06 21:50 <REP> d-------- C:\Program Files\Pcsx2
2008-02-06 10:19 . 2008-02-06 10:19 <REP> d--hs---- C:\found.000
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-01 09:50 6,144 --sha-w C:\Program Files\Thumbs.db
2008-02-29 19:40 --------- d-----w C:\Program Files\Google
2008-02-29 19:31 10,563 ----a-w C:\Program Files\hijackthis.log
2008-02-29 19:30 5,534 ----a-w C:\Program Files\aswclnr.log
2008-02-29 12:29 --------- d-----w C:\Program Files\MaxiCompte
2008-02-28 12:20 --------- d-----w C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-02-28 10:06 --------- d-----w C:\Program Files\eMule
2008-02-24 16:48 81,920 ------r C:\WINDOWS\bwUnin-6.1.4.68-8876480L.exe
2008-02-24 16:48 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-24 16:48 --------- d-----w C:\Program Files\Fichiers communs\Logitech
2008-02-24 15:03 --------- d-----w C:\Program Files\EA GAMES
2008-02-24 14:48 --------- d-----w C:\Program Files\Winamp
2008-02-24 14:48 --------- d-----w C:\Program Files\RegCleaner
2008-02-24 14:48 --------- d-----w C:\Program Files\QuickTime
2008-02-24 14:48 --------- d-----w C:\Program Files\Help
2008-02-24 14:48 --------- d-----w C:\Program Files\FinePixViewer
2008-02-24 12:38 --------- d-----w C:\Program Files\Disney Pix 2.0
2008-02-22 21:33 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-02-22 21:15 --------- d-----w C:\Program Files\Shareaza
2008-02-22 20:40 --------- d-----w C:\Program Files\Java
2008-02-10 23:06 21 ----a-w C:\Program Files\Sims2Pack Clean Installer.ini
2008-02-10 17:03 47,360 ----a-w C:\Documents and Settings\maman\Application Data\pcouffin.sys
2008-02-10 17:03 --------- d-----w C:\Program Files\VSO
2008-02-10 17:03 --------- d-----w C:\Documents and Settings\maman\Application Data\Vso
2008-02-10 17:02 --------- d-----w C:\Program Files\Elaborate Bytes
2008-02-10 17:01 --------- d-----w C:\Program Files\SlySoft
2008-02-10 12:41 --------- d-----w C:\Program Files\Ahead
2008-02-09 20:57 299,465 ----a-w C:\Program Files\F_N_Roxy_Tim.zip.part
2008-02-09 19:40 6,703,104 ----a-w C:\Program Files\winzip111fr.msi
2008-02-06 13:11 163,644 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2008-01-28 20:44 --------- dcsh--w C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-01-20 14:04 --------- d-----w C:\Program Files\THQ
2008-01-20 13:13 3,861,320 ----a-w C:\Program Files\eMule0.48a-Installer2.exe
2008-01-19 20:57 --------- d-----w C:\Program Files\Ubisoft
2008-01-19 20:53 --------- d-----w C:\Program Files\D-Tools
2008-01-11 10:11 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-01-10 20:16 1,182,550 ----a-w C:\Program Files\img017.jpg
2008-01-10 20:16 1,118,010 ----a-w C:\Program Files\img016.jpg
2008-01-10 20:14 7,230 ----a-w C:\Program Files\nouveau-24.jpg
2008-01-09 22:53 --------- d-----w C:\Documents and Settings\maman\Application Data\CopyToDvd
2008-01-04 23:48 --------- d-----w C:\Documents and Settings\maman\Application Data\CDBurnerXPP
2008-01-04 23:26 24,265,736 ----a-w C:\Program Files\dotnetfx.exe
2008-01-04 23:16 --------- d-----w C:\Program Files\MSBuild
2008-01-04 23:06 --------- d-----w C:\Program Files\Reference Assemblies
2008-01-04 22:41 2,945,816 ----a-w C:\Program Files\dotnetfx3setup.exe
2008-01-04 22:11 177,522 ----a-w C:\Program Files\installez-emule-be.exe
2007-12-29 08:23 506,368 ----a-w C:\WINDOWS\system32\winlogon.exe
2007-12-10 16:25 7,792 ----a-w C:\Program Files\CurrentCfg.tpr
2007-12-10 16:25 5,188 ----a-w C:\Program Files\TMPGEnc.ini
2007-12-05 17:22 9 ----a-w C:\Documents and Settings\maman\Application Data\mdb.bin
2007-12-04 13:04 837,496 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-12-04 12:54 95,608 ----a-w C:\WINDOWS\system32\AvastSS.scr
2007-11-03 11:23 141,410 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_11_02_23_58_03_small.dmp.zip
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdremote.dll
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdicmdrv.dll
2007-05-19 15:25 5,120 ----a-w C:\Program Files\vdsvrlnk.dll
2007-05-19 15:25 16,384 ----a-w C:\Program Files\auxsetup.exe
2006-09-24 16:11 389,120 ----a-w C:\Program Files\lameACM.acm
2005-12-19 22:52 18,321 ----a-w C:\Program Files\copying
2002-04-07 10:17 414 ----a-w C:\Program Files\lame_acm.xml
2002-01-23 19:39 3,133 ----a-w C:\Program Files\LameACM.inf
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
"Shareaza"="C:\Program Files\Shareaza\Shareaza.exe" [2008-01-01 17:49 4739072]
"TuneUp MemOptimizer"="C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" [2008-01-16 13:28 197888]
"LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe" [2008-02-24 17:48 20480]
"LogitechSoftwareUpdate"="C:\Program Files\Logitech\Video\ManifestEngine.exe" [2005-01-18 17:07 196608]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46 1460560]
"ccleaner"="C:\Program Files\CCleaner\CCleaner.exe" [2008-01-17 10:40 816368]
"MsnMsgr"="~C:\Program Files\MSN Messenger\MsnMsgr.exe" [ ]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-28 23:43 8466432]
"nwiz"="nwiz.exe" [2007-06-28 23:43 1626112 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-06-28 23:43 81920]
"SoundMan"="SOUNDMAN.EXE" [2005-08-17 17:39 90112 C:\WINDOWS\SOUNDMAN.EXE]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 05:24 286720]
"SSBkgdUpdate"="C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-29 23:14 155648]
"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-03-21 12:19 69632]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
"REGSHAVE"="C:\Program Files\REGSHAVE\REGSHAVE.exe" [2002-02-04 22:32 53248]
"DAEMON Tools-1033"="C:\Program Files\D-Tools\daemon.exe" [2003-10-02 02:20 81920]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50 155648]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"WinampAgent"="C:\Program Files\Winamp\Winampa.exe" [2008-01-15 23:54 37376]
"LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [2004-10-08 11:52 221184]
"LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [2005-01-18 17:47 458752]
"LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [2005-01-18 17:37 217088]
"TrojanScanner"="C:\Program Files\Trojan Remover\Trjscan.exe" [2008-02-29 18:31 866384]
"OnlineArmor GUI"="C:\Program Files\Tall Emu\Online Armor\oaui.exe" [2007-11-16 07:51 5029952]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 12:55 5674352]
C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Exif Launcher.lnk - C:\Program Files\FinePixViewer\QuickDCF.exe [2002-01-09 21:53:14 200704]
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe [2008-02-24 17:48:09 450560]
Ralink Wireless Utility.lnk - C:\Program Files\RALINK\Common\RaUI.exe [2008-02-07 22:05:50 663552]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= C:\PROGRA~1\TALLEM~1\ONLINE~1\oaevent.dll [2007-11-16 07:50 633344]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Shareaza\\Shareaza.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\backWeb-8876480.exe"=
R0 pnpshark;pnpshark;C:\WINDOWS\system32\DRIVERS\pnpshark.sys [2003-10-02 03:16]
R0 st3shark;st3shark;C:\WINDOWS\system32\DRIVERS\st3shark.sys [2003-09-27 14:37]
R1 NDISRD;NDISRD;C:\WINDOWS\system32\drivers\NDISRD.sys [2007-09-29 00:06]
R1 OADevice;OADriver;C:\WINDOWS\system32\drivers\OADriver.sys [2007-11-08 06:37]
R1 OAmon;OAmon;C:\WINDOWS\system32\drivers\OAmon.sys [2007-09-29 00:06]
R2 EAPPkt;Realtek EAPPkt Protocol;C:\WINDOWS\system32\DRIVERS\EAPPkt.sys [2006-11-15 16:23]
R2 UxTuneUp;TuneUp Extension de thème;C:\WINDOWS\System32\svchost.exe [2004-08-19 15:10]
S2 SvcOnlineArmor;Online Armor;"C:\Program Files\Tall Emu\Online Armor\oasrv.exe" [2007-11-16 07:51]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-02-22 22:35]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-27 07:03:38 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-02-29 19:31:50 C:\WINDOWS\Tasks\Maintenance en 1 clic.job"
- C:\Program Files\TuneUp Utilities 2008\OneClick.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-02 00:30:53
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cachés ...
Balayage caché autostart entries ...
Balayage des fichiers cachés ...
Scan terminé avec succès
Les fichiers cachés: 0
**************************************************************************
.
Temps d'accomplissement: 2008-03-02 0:31:40
ComboFix-quarantined-files.txt 2008-03-01 23:31:25
.
2008-02-29 13:51:27 --- E O F ---
rapport hijack this
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:36:49, on 02/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\cidaemon.exe
C:\PROGRA~1\Mozilla Firefox\firefox.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.189 [GMT 1:00]
Endroit: C:\Documents and Settings\maman\Bureau\ComboFix.exe
* Création d'un nouveau point de restauration
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\Documents and Settings\maman\Application Data\inst.exe
.
((((((((((((((((((((((((((((( Fichiers créés 2008-02-01 to 2008-03-01 ))))))))))))))))))))))))))))))))))))
.
2008-03-02 00:15 . 2008-03-02 00:15 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-01 10:18 . 2008-03-02 00:26 <REP> d-------- C:\Documents and Settings\maman\Application Data\OnlineArmor
2008-03-01 10:18 . 2008-03-01 10:18 <REP> d-------- C:\Documents and Settings\All Users\Application Data\OnlineArmor
2008-03-01 10:17 . 2007-11-08 06:37 68,608 --a------ C:\WINDOWS\system32\drivers\OADriver.sys
2008-03-01 10:17 . 2007-09-29 00:06 25,600 --a------ C:\WINDOWS\system32\drivers\OAmon.sys
2008-03-01 10:17 . 2007-09-29 00:06 18,944 --a------ C:\WINDOWS\system32\drivers\ndisrd.sys
2008-03-01 10:16 . 2008-03-01 10:17 <REP> d-------- C:\Program Files\Tall Emu
2008-03-01 09:53 . 2008-03-01 09:53 <REP> d-------- C:\OnlineArmor
2008-03-01 09:51 . 2008-03-01 09:51 <REP> d-------- C:\_OTMoveIt
2008-03-01 09:43 . 2008-03-01 09:43 14,771,744 --a------ C:\Program Files\IE7-WindowsXP-x86-fra.exe
2008-03-01 00:45 . 2008-03-01 00:45 <REP> d-------- C:\Program Files\Trend Micro
2008-03-01 00:45 . 2008-03-01 00:45 812,344 --a------ C:\Program Files\HJTInstall.exe
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Program Files\Trojan Remover
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\maman\Application Data\Simply Super Software
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Simply Super Software
2008-02-29 21:37 . 2006-05-25 14:52 162,304 --a------ C:\WINDOWS\system32\ztvunrar36.dll
2008-02-29 21:37 . 2003-02-02 19:06 153,088 --a------ C:\WINDOWS\system32\UNRAR3.dll
2008-02-29 21:37 . 2005-08-26 00:50 77,312 --a------ C:\WINDOWS\system32\ztvunace26.dll
2008-02-29 21:37 . 2002-03-06 00:00 75,264 --a------ C:\WINDOWS\system32\unacev2.dll
2008-02-29 21:37 . 2006-06-19 12:01 69,632 --a------ C:\WINDOWS\system32\ztvcabinet.dll
2008-02-29 21:36 . 2008-02-29 21:37 6,894,528 --a------ C:\Program Files\trsetup.exe
2008-02-29 21:22 . 2008-03-01 10:50 5,120 --ahs---- C:\WINDOWS\system32\Thumbs.db
2008-02-29 20:47 . 2008-02-29 20:47 <REP> d--hs---- C:\found.001
2008-02-29 20:10 . 2008-02-29 20:10 407,680 --a------ C:\Program Files\aswclnr.exe
2008-02-29 19:13 . 2008-02-29 19:13 1,308,216 --a------ C:\Program Files\HiJackThis_v2.exe
2008-02-29 18:51 . 2008-02-29 18:53 <REP> d-------- C:\Program Files\Panda Security
2008-02-29 16:03 . 2008-02-29 16:03 <REP> d-------- C:\Program Files\Activision
2008-02-29 14:31 . 2008-02-29 14:31 123 --a------ C:\WINDOWS\wininit.ini
2008-02-29 13:32 . 2008-02-29 13:32 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-02-29 13:32 . 2008-02-29 14:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-02-29 13:19 . 2008-02-29 13:19 7,467,056 --a------ C:\Program Files\spybotsd15.exe
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Program Files\Apple Software Update
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple
2008-02-25 21:52 . 2008-02-25 21:52 2,563 --a------ C:\WINDOWS\image.jpg
2008-02-24 21:31 . 2008-02-24 21:31 54,156 --ah----- C:\WINDOWS\QTFont.qfn
2008-02-24 21:31 . 2008-02-24 21:31 1,409 --a------ C:\WINDOWS\QTFont.for
2008-02-24 19:00 . 2008-02-24 19:00 <REP> d-------- C:\My Shared Folder
2008-02-24 18:59 . 2008-02-24 18:59 <REP> d-------- C:\Documents and Settings\maman\Application Data\Kazaa Lite
2008-02-24 18:58 . 2008-02-24 18:58 2,803,665 --a------ C:\Program Files\klitekpp243f.exe
2008-02-24 18:55 . 2008-02-24 18:55 <REP> d-------- C:\Program Files\Kazaa
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Fichiers communs\FotoWire
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Documents and Settings\maman\Application Data\FotoWire
2008-02-24 17:49 . 2004-10-08 12:46 53,248 -ra------ C:\WINDOWS\system32\InstMed.exe
2008-02-24 17:48 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Logitech
2008-02-24 17:04 . 2008-02-24 17:04 2,402,832 --a------ C:\Program Files\WLinstaller.exe
2008-02-24 16:55 . 2008-02-29 13:01 <REP> d-------- C:\Documents and Settings\maman\Application Data\skypePM
2008-02-24 16:55 . 2008-02-24 16:55 32 --a------ C:\Documents and Settings\All Users\Application Data\ezsid.dat
2008-02-24 16:53 . 2008-02-29 13:30 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Skype
2008-02-24 16:48 . 2008-02-24 16:51 22,690,600 --a------ C:\Program Files\SkypeSetup.exe
2008-02-24 16:06 . 2008-02-24 17:38 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Logishrd
2008-02-24 16:05 . 2008-02-24 17:39 <REP> d-------- C:\Program Files\Fichiers communs\LogiShrd
2008-02-24 16:00 . 2008-02-24 16:03 32,227,136 --a------ C:\Program Files\logitech_logitech_quickcam_11.1.0.2016_whql_4219.exe
2008-02-24 13:38 . 2008-03-01 10:50 16,384 --ahs---- C:\WINDOWS\Thumbs.db
2008-02-24 13:19 . 2008-02-24 13:19 1,271,557 --a------ C:\Program Files\wrar371fr.exe
2008-02-23 18:32 . 2008-02-23 18:31 4,419,000 --a------ C:\Program Files\burn4free_burn4free_3.9.0.0_francais_14723.exe
2008-02-22 22:35 . 2008-02-22 22:35 306,432 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
2008-02-22 22:35 . 2007-12-20 10:41 29,440 --a------ C:\WINDOWS\system32\uxtuneup.dll
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2008-02-22 22:30 . 2008-02-22 22:31 14,174,464 --a------ C:\Program Files\TU2008TrialFR.exe
2008-02-22 22:17 . 2008-02-24 18:55 594,880 --a------ C:\Program Files\kazaa_setup.exe
2008-02-22 22:15 . 2008-02-22 22:15 5,265,101 --a------ C:\Program Files\Shareaza_2.3.1.0_Win32.exe
2008-02-22 21:50 . 2008-02-22 23:19 <REP> d-------- C:\Program Files\Yahoo!
2008-02-22 21:50 . 2008-02-22 21:50 <REP> d-------- C:\Program Files\CCleaner
2008-02-22 21:49 . 2008-02-22 21:50 2,733,928 --a------ C:\Program Files\ccsetup204.exe
2008-02-22 21:45 . 2008-02-22 21:44 2,467,439 --a------ C:\Program Files\winamp295_full.exe
2008-02-15 23:39 . 2008-02-15 23:39 <REP> d-------- C:\Documents and Settings\maman\Application Data\dvdcss
2008-02-14 22:14 . 2008-02-14 22:51 <REP> d-------- C:\Program Files\Photo Viewer 2.4
2008-02-13 16:43 . 2008-02-15 12:52 0 --a------ C:\WINDOWS\obmetmp.htm
2008-02-12 17:54 . 2008-02-24 17:39 780 --a------ C:\WINDOWS\_delis32.ini
2008-02-11 21:39 . 2006-11-12 11:39 483,328 --a------ C:\WINDOWS\system32\actskn45.ocx
2008-02-11 16:13 . 2008-02-11 16:13 <REP> d-------- C:\Program Files\Common Files
2008-02-11 00:22 . 2008-03-01 23:08 116 --a------ C:\WINDOWS\NeroDigital.ini
2008-02-10 13:41 . 2008-02-10 13:41 <REP> d-------- C:\Program Files\Fichiers communs\Ahead
2008-02-10 13:41 . 2004-07-26 16:16 1,568,768 --------- C:\WINDOWS\system32\ImagX7.dll
2008-02-10 13:41 . 2004-07-26 16:16 476,320 --------- C:\WINDOWS\system32\ImagXpr7.dll
2008-02-10 13:41 . 2004-07-26 16:16 471,040 --------- C:\WINDOWS\system32\ImagXRA7.dll
2008-02-10 13:41 . 2004-07-26 16:16 262,144 --------- C:\WINDOWS\system32\ImagXR7.dll
2008-02-10 13:41 . 2001-07-09 10:50 155,648 --a------ C:\WINDOWS\system32\NeroCheck.exe
2008-02-10 13:41 . 2004-03-02 16:37 125,184 --------- C:\WINDOWS\system32\drivers\imagesrv.sys
2008-02-10 13:41 . 2000-06-26 10:45 106,496 --a------ C:\WINDOWS\system32\TwnLib20.dll
2008-02-10 13:41 . 2004-03-02 16:37 5,504 --------- C:\WINDOWS\system32\drivers\imagedrv.sys
2008-02-10 13:39 . 2008-02-10 13:39 <REP> d-------- C:\Program Files\Nero 6 (+crack)
2008-02-09 23:26 . 2008-02-10 01:23 <REP> d-------- C:\Program Files\Sims2Pack Clean Installer
2008-02-09 23:25 . 2008-02-09 23:25 441,214 --a------ C:\Program Files\Sims2PackInstaller_v1514.exe
2008-02-09 23:07 . 2008-02-09 23:07 4,922,461 --a------ C:\Program Files\theme-de-bureau.exe
2008-02-09 20:41 . 2008-02-09 20:41 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WinZip
2008-02-09 18:16 . 2008-02-24 13:23 <REP> d-------- C:\Program Files\Maxis
2008-02-07 22:05 . 2006-11-02 17:12 348,416 --a------ C:\WINDOWS\system32\drivers\rt73.sys
2008-02-07 22:05 . 2006-06-20 22:53 319,488 --a------ C:\WINDOWS\system32\AegisI5.exe
2008-02-07 22:05 . 2006-06-17 12:29 295,018 --a------ C:\WINDOWS\system32\Install7x.dll
2008-02-07 22:05 . 2005-11-30 11:33 2,048 --a------ C:\WINDOWS\system32\drivers\rt73.bin
2008-02-07 22:05 . 2006-03-06 15:36 45 --a------ C:\WINDOWS\filespec7x
2008-02-07 22:04 . 2008-02-07 22:04 <REP> d-------- C:\Program Files\RALINK
2008-02-07 22:02 . 2008-02-07 22:02 <REP> d-------- C:\Documents and Settings\maman\Application Data\InstallShield
2008-02-06 21:04 . 2008-02-06 21:04 <REP> d-------- C:\WINDOWS\new mario62
2008-02-06 21:04 . 2008-02-06 21:04 171,520 --a------ C:\WINDOWS\system32\cncs32.dll
2008-02-06 21:04 . 2008-02-06 21:04 18 --a------ C:\WINDOWS\gfact.ini
2008-02-06 20:57 . 2008-02-06 21:50 <REP> d-------- C:\Program Files\Pcsx2
2008-02-06 10:19 . 2008-02-06 10:19 <REP> d--hs---- C:\found.000
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-01 09:50 6,144 --sha-w C:\Program Files\Thumbs.db
2008-02-29 19:40 --------- d-----w C:\Program Files\Google
2008-02-29 19:31 10,563 ----a-w C:\Program Files\hijackthis.log
2008-02-29 19:30 5,534 ----a-w C:\Program Files\aswclnr.log
2008-02-29 12:29 --------- d-----w C:\Program Files\MaxiCompte
2008-02-28 12:20 --------- d-----w C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-02-28 10:06 --------- d-----w C:\Program Files\eMule
2008-02-24 16:48 81,920 ------r C:\WINDOWS\bwUnin-6.1.4.68-8876480L.exe
2008-02-24 16:48 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-24 16:48 --------- d-----w C:\Program Files\Fichiers communs\Logitech
2008-02-24 15:03 --------- d-----w C:\Program Files\EA GAMES
2008-02-24 14:48 --------- d-----w C:\Program Files\Winamp
2008-02-24 14:48 --------- d-----w C:\Program Files\RegCleaner
2008-02-24 14:48 --------- d-----w C:\Program Files\QuickTime
2008-02-24 14:48 --------- d-----w C:\Program Files\Help
2008-02-24 14:48 --------- d-----w C:\Program Files\FinePixViewer
2008-02-24 12:38 --------- d-----w C:\Program Files\Disney Pix 2.0
2008-02-22 21:33 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-02-22 21:15 --------- d-----w C:\Program Files\Shareaza
2008-02-22 20:40 --------- d-----w C:\Program Files\Java
2008-02-10 23:06 21 ----a-w C:\Program Files\Sims2Pack Clean Installer.ini
2008-02-10 17:03 47,360 ----a-w C:\Documents and Settings\maman\Application Data\pcouffin.sys
2008-02-10 17:03 --------- d-----w C:\Program Files\VSO
2008-02-10 17:03 --------- d-----w C:\Documents and Settings\maman\Application Data\Vso
2008-02-10 17:02 --------- d-----w C:\Program Files\Elaborate Bytes
2008-02-10 17:01 --------- d-----w C:\Program Files\SlySoft
2008-02-10 12:41 --------- d-----w C:\Program Files\Ahead
2008-02-09 20:57 299,465 ----a-w C:\Program Files\F_N_Roxy_Tim.zip.part
2008-02-09 19:40 6,703,104 ----a-w C:\Program Files\winzip111fr.msi
2008-02-06 13:11 163,644 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2008-01-28 20:44 --------- dcsh--w C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-01-20 14:04 --------- d-----w C:\Program Files\THQ
2008-01-20 13:13 3,861,320 ----a-w C:\Program Files\eMule0.48a-Installer2.exe
2008-01-19 20:57 --------- d-----w C:\Program Files\Ubisoft
2008-01-19 20:53 --------- d-----w C:\Program Files\D-Tools
2008-01-11 10:11 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-01-10 20:16 1,182,550 ----a-w C:\Program Files\img017.jpg
2008-01-10 20:16 1,118,010 ----a-w C:\Program Files\img016.jpg
2008-01-10 20:14 7,230 ----a-w C:\Program Files\nouveau-24.jpg
2008-01-09 22:53 --------- d-----w C:\Documents and Settings\maman\Application Data\CopyToDvd
2008-01-04 23:48 --------- d-----w C:\Documents and Settings\maman\Application Data\CDBurnerXPP
2008-01-04 23:26 24,265,736 ----a-w C:\Program Files\dotnetfx.exe
2008-01-04 23:16 --------- d-----w C:\Program Files\MSBuild
2008-01-04 23:06 --------- d-----w C:\Program Files\Reference Assemblies
2008-01-04 22:41 2,945,816 ----a-w C:\Program Files\dotnetfx3setup.exe
2008-01-04 22:11 177,522 ----a-w C:\Program Files\installez-emule-be.exe
2007-12-29 08:23 506,368 ----a-w C:\WINDOWS\system32\winlogon.exe
2007-12-10 16:25 7,792 ----a-w C:\Program Files\CurrentCfg.tpr
2007-12-10 16:25 5,188 ----a-w C:\Program Files\TMPGEnc.ini
2007-12-05 17:22 9 ----a-w C:\Documents and Settings\maman\Application Data\mdb.bin
2007-12-04 13:04 837,496 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-12-04 12:54 95,608 ----a-w C:\WINDOWS\system32\AvastSS.scr
2007-11-03 11:23 141,410 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_11_02_23_58_03_small.dmp.zip
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdremote.dll
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdicmdrv.dll
2007-05-19 15:25 5,120 ----a-w C:\Program Files\vdsvrlnk.dll
2007-05-19 15:25 16,384 ----a-w C:\Program Files\auxsetup.exe
2006-09-24 16:11 389,120 ----a-w C:\Program Files\lameACM.acm
2005-12-19 22:52 18,321 ----a-w C:\Program Files\copying
2002-04-07 10:17 414 ----a-w C:\Program Files\lame_acm.xml
2002-01-23 19:39 3,133 ----a-w C:\Program Files\LameACM.inf
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
"Shareaza"="C:\Program Files\Shareaza\Shareaza.exe" [2008-01-01 17:49 4739072]
"TuneUp MemOptimizer"="C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" [2008-01-16 13:28 197888]
"LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe" [2008-02-24 17:48 20480]
"LogitechSoftwareUpdate"="C:\Program Files\Logitech\Video\ManifestEngine.exe" [2005-01-18 17:07 196608]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46 1460560]
"ccleaner"="C:\Program Files\CCleaner\CCleaner.exe" [2008-01-17 10:40 816368]
"MsnMsgr"="~C:\Program Files\MSN Messenger\MsnMsgr.exe" [ ]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-28 23:43 8466432]
"nwiz"="nwiz.exe" [2007-06-28 23:43 1626112 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-06-28 23:43 81920]
"SoundMan"="SOUNDMAN.EXE" [2005-08-17 17:39 90112 C:\WINDOWS\SOUNDMAN.EXE]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 05:24 286720]
"SSBkgdUpdate"="C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-29 23:14 155648]
"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-03-21 12:19 69632]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
"REGSHAVE"="C:\Program Files\REGSHAVE\REGSHAVE.exe" [2002-02-04 22:32 53248]
"DAEMON Tools-1033"="C:\Program Files\D-Tools\daemon.exe" [2003-10-02 02:20 81920]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50 155648]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"WinampAgent"="C:\Program Files\Winamp\Winampa.exe" [2008-01-15 23:54 37376]
"LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [2004-10-08 11:52 221184]
"LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [2005-01-18 17:47 458752]
"LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [2005-01-18 17:37 217088]
"TrojanScanner"="C:\Program Files\Trojan Remover\Trjscan.exe" [2008-02-29 18:31 866384]
"OnlineArmor GUI"="C:\Program Files\Tall Emu\Online Armor\oaui.exe" [2007-11-16 07:51 5029952]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 12:55 5674352]
C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Exif Launcher.lnk - C:\Program Files\FinePixViewer\QuickDCF.exe [2002-01-09 21:53:14 200704]
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe [2008-02-24 17:48:09 450560]
Ralink Wireless Utility.lnk - C:\Program Files\RALINK\Common\RaUI.exe [2008-02-07 22:05:50 663552]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= C:\PROGRA~1\TALLEM~1\ONLINE~1\oaevent.dll [2007-11-16 07:50 633344]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Shareaza\\Shareaza.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\backWeb-8876480.exe"=
R0 pnpshark;pnpshark;C:\WINDOWS\system32\DRIVERS\pnpshark.sys [2003-10-02 03:16]
R0 st3shark;st3shark;C:\WINDOWS\system32\DRIVERS\st3shark.sys [2003-09-27 14:37]
R1 NDISRD;NDISRD;C:\WINDOWS\system32\drivers\NDISRD.sys [2007-09-29 00:06]
R1 OADevice;OADriver;C:\WINDOWS\system32\drivers\OADriver.sys [2007-11-08 06:37]
R1 OAmon;OAmon;C:\WINDOWS\system32\drivers\OAmon.sys [2007-09-29 00:06]
R2 EAPPkt;Realtek EAPPkt Protocol;C:\WINDOWS\system32\DRIVERS\EAPPkt.sys [2006-11-15 16:23]
R2 UxTuneUp;TuneUp Extension de thème;C:\WINDOWS\System32\svchost.exe [2004-08-19 15:10]
S2 SvcOnlineArmor;Online Armor;"C:\Program Files\Tall Emu\Online Armor\oasrv.exe" [2007-11-16 07:51]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-02-22 22:35]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-27 07:03:38 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-02-29 19:31:50 C:\WINDOWS\Tasks\Maintenance en 1 clic.job"
- C:\Program Files\TuneUp Utilities 2008\OneClick.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-02 00:30:53
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cachés ...
Balayage caché autostart entries ...
Balayage des fichiers cachés ...
Scan terminé avec succès
Les fichiers cachés: 0
**************************************************************************
.
Temps d'accomplissement: 2008-03-02 0:31:40
ComboFix-quarantined-files.txt 2008-03-01 23:31:25
.
2008-02-29 13:51:27 --- E O F ---
rapport hijack this
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:36:49, on 02/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\D-Tools\daemon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\cidaemon.exe
C:\PROGRA~1\Mozilla Firefox\firefox.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe
O4 - HKLM\..\Run: [OnlineArmor GUI] "C:\Program Files\Tall Emu\Online Armor\oaui.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SweetIM] C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Online Armor (SvcOnlineArmor) - Tall Emu - C:\Program Files\Tall Emu\Online Armor\oasrv.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
3 mars 2008 à 09:22
3 mars 2008 à 09:22
bonjour bededouxreve,
fais ceci :
Copie le texte ci-dessous :
Folder::
C:\Program Files\img017.jpg
C:\Program Files\img016.jpg
C:\Program Files\nouveau-24.jpg
C:\Program Files\Thumbs.db
C:\Program Files\Macrogaming
Registry::
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
Ouvre le Bloc-Notes puis colle le texte copié.
(Démarrer\Tous les programmes\Accessoires\Bloc notes.)
Sauvegarde ce fichier sous le nom de CFScript.txt.
Glisse maintenant le fichier CFScript.txt dans Combofix.exe comme ci-dessous :
http://serveur1.archive-host.com/membres/up/1366464061/CFScript.gif
Cela va relancer Combofix,
Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.
Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!
Ne touche à rien tant que le scan n'est pas terminé.
Après redémarrage, poste le contenu du rapport Combofix.txt accompagné d'un rapport Hijackthis.
S'il n'y a pas de rédémarrage, poste quand même les rapports.
puis
regarde ceci concernant avast :
antivir vs avast :
-> http://forum.malekal.com/ftopic3528.php
alors je te conseille de le desinstaller et d´installer antivir a la place
Telecharge et instales l'antivirus Antivir Personal Edition Classic :
->https://www.malekal.com/avira-free-security-antivirus-gratuit/
https://www.avira.com/en/prime
http://mickael.barroux.free.fr/securite/antivir.php
http://speedweb1.free.fr/frames2.php?page=tuto5
<- tutoriel configuration du scanner...
une fois antivir ouvert click surconfiguration et coche la case "expert mode" puis sur l´onglet scanner dans la fenetre du dessous tu va voir : rootkit search click sur le petit + pour deployer et coche la case a coté de ton disk dur
puis click sur configuration en haut a droite; dans la nouvelle fenetre a gauche >scanner > coche "scan all files" et en dessous >scanner priority = High
coche : allow stopping the scanner, comme cela tu peux faire une pause pendant le scan si tu le desir.
puis sur la droite coche les case suivantes :
scan boot sectors of selected drives
scan master boot sectors
scan memory
search foe rootkit before scan
decoche :
ignore off line files
toujours a gauche > scan > deploie > heuristique > macrovirus heuristic = coché et en dessous > win32 heuristic la case coché et high detection level
Je te dis tous ca car j´aimerais que tu performes un scan entier de ta machine a l´aide d´antivir avec les reglages stipulés ci dessus et que tu post le rapport généré ici stp
donc post les trois rapports stp
@+
fais ceci :
Copie le texte ci-dessous :
Folder::
C:\Program Files\img017.jpg
C:\Program Files\img016.jpg
C:\Program Files\nouveau-24.jpg
C:\Program Files\Thumbs.db
C:\Program Files\Macrogaming
Registry::
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
Ouvre le Bloc-Notes puis colle le texte copié.
(Démarrer\Tous les programmes\Accessoires\Bloc notes.)
Sauvegarde ce fichier sous le nom de CFScript.txt.
Glisse maintenant le fichier CFScript.txt dans Combofix.exe comme ci-dessous :
http://serveur1.archive-host.com/membres/up/1366464061/CFScript.gif
Cela va relancer Combofix,
Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.
Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!
Ne touche à rien tant que le scan n'est pas terminé.
Après redémarrage, poste le contenu du rapport Combofix.txt accompagné d'un rapport Hijackthis.
S'il n'y a pas de rédémarrage, poste quand même les rapports.
puis
regarde ceci concernant avast :
antivir vs avast :
-> http://forum.malekal.com/ftopic3528.php
alors je te conseille de le desinstaller et d´installer antivir a la place
Telecharge et instales l'antivirus Antivir Personal Edition Classic :
->https://www.malekal.com/avira-free-security-antivirus-gratuit/
https://www.avira.com/en/prime
http://mickael.barroux.free.fr/securite/antivir.php
http://speedweb1.free.fr/frames2.php?page=tuto5
<- tutoriel configuration du scanner...
une fois antivir ouvert click surconfiguration et coche la case "expert mode" puis sur l´onglet scanner dans la fenetre du dessous tu va voir : rootkit search click sur le petit + pour deployer et coche la case a coté de ton disk dur
puis click sur configuration en haut a droite; dans la nouvelle fenetre a gauche >scanner > coche "scan all files" et en dessous >scanner priority = High
coche : allow stopping the scanner, comme cela tu peux faire une pause pendant le scan si tu le desir.
puis sur la droite coche les case suivantes :
scan boot sectors of selected drives
scan master boot sectors
scan memory
search foe rootkit before scan
decoche :
ignore off line files
toujours a gauche > scan > deploie > heuristique > macrovirus heuristic = coché et en dessous > win32 heuristic la case coché et high detection level
Je te dis tous ca car j´aimerais que tu performes un scan entier de ta machine a l´aide d´antivir avec les reglages stipulés ci dessus et que tu post le rapport généré ici stp
donc post les trois rapports stp
@+
ComboFix 08-03-03.17 - maman 2008-03-03 0:51:42.4 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.196 [GMT 1:00]
Endroit: C:\Documents and Settings\maman\Bureau\ComboFix.exe
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.
((((((((((((((((((((((((((((( Fichiers créés 2008-02-03 to 2008-03-03 ))))))))))))))))))))))))))))))))))))
.
2008-03-02 20:22 . 2008-03-02 20:22 <REP> d-------- C:\Program Files\Easy Video Splitter
2008-03-02 00:15 . 2008-03-02 00:15 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-01 10:16 . 2008-03-01 10:17 <REP> d-------- C:\Program Files\Tall Emu
2008-03-01 09:53 . 2008-03-01 09:53 <REP> d-------- C:\OnlineArmor
2008-03-01 09:51 . 2008-03-01 09:51 <REP> d-------- C:\_OTMoveIt
2008-03-01 09:43 . 2008-03-01 09:43 14,771,744 --a------ C:\Program Files\IE7-WindowsXP-x86-fra.exe
2008-03-01 00:45 . 2008-03-01 00:45 <REP> d-------- C:\Program Files\Trend Micro
2008-03-01 00:45 . 2008-03-01 00:45 812,344 --a------ C:\Program Files\HJTInstall.exe
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\maman\Application Data\Simply Super Software
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Simply Super Software
2008-02-29 21:36 . 2008-02-29 21:37 6,894,528 --a------ C:\Program Files\trsetup.exe
2008-02-29 21:22 . 2008-03-01 10:50 5,120 --ahs---- C:\WINDOWS\system32\Thumbs.db
2008-02-29 20:47 . 2008-02-29 20:47 <REP> d--hs---- C:\found.001
2008-02-29 20:10 . 2008-02-29 20:10 407,680 --a------ C:\Program Files\aswclnr.exe
2008-02-29 19:13 . 2008-02-29 19:13 1,308,216 --a------ C:\Program Files\HiJackThis_v2.exe
2008-02-29 18:51 . 2008-03-02 00:42 <REP> d-------- C:\Program Files\Panda Security
2008-02-29 16:03 . 2008-02-29 16:03 <REP> d-------- C:\Program Files\Activision
2008-02-29 14:31 . 2008-02-29 14:31 123 --a------ C:\WINDOWS\wininit.ini
2008-02-29 13:32 . 2008-02-29 13:32 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-02-29 13:32 . 2008-02-29 14:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-02-29 13:19 . 2008-02-29 13:19 7,467,056 --a------ C:\Program Files\spybotsd15.exe
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Program Files\Apple Software Update
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple
2008-02-25 21:52 . 2008-02-25 21:52 2,563 --a------ C:\WINDOWS\image.jpg
2008-02-24 19:00 . 2008-02-24 19:00 <REP> d-------- C:\My Shared Folder
2008-02-24 18:59 . 2008-02-24 18:59 <REP> d-------- C:\Documents and Settings\maman\Application Data\Kazaa Lite
2008-02-24 18:58 . 2008-02-24 18:58 2,803,665 --a------ C:\Program Files\klitekpp243f.exe
2008-02-24 18:55 . 2008-02-24 18:55 <REP> d-------- C:\Program Files\Kazaa
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Fichiers communs\FotoWire
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Documents and Settings\maman\Application Data\FotoWire
2008-02-24 17:49 . 2004-10-08 12:46 53,248 -ra------ C:\WINDOWS\system32\InstMed.exe
2008-02-24 17:48 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Logitech
2008-02-24 17:04 . 2008-02-24 17:04 2,402,832 --a------ C:\Program Files\WLinstaller.exe
2008-02-24 16:55 . 2008-02-29 13:01 <REP> d-------- C:\Documents and Settings\maman\Application Data\skypePM
2008-02-24 16:55 . 2008-02-24 16:55 32 --a------ C:\Documents and Settings\All Users\Application Data\ezsid.dat
2008-02-24 16:53 . 2008-02-29 13:30 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Skype
2008-02-24 16:48 . 2008-02-24 16:51 22,690,600 --a------ C:\Program Files\SkypeSetup.exe
2008-02-24 16:06 . 2008-02-24 17:38 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Logishrd
2008-02-24 16:05 . 2008-02-24 17:39 <REP> d-------- C:\Program Files\Fichiers communs\LogiShrd
2008-02-24 16:00 . 2008-02-24 16:03 32,227,136 --a------ C:\Program Files\logitech_logitech_quickcam_11.1.0.2016_whql_4219.exe
2008-02-24 13:38 . 2008-03-03 00:48 16,896 --ahs---- C:\WINDOWS\Thumbs.db
2008-02-24 13:19 . 2008-02-24 13:19 1,271,557 --a------ C:\Program Files\wrar371fr.exe
2008-02-23 18:32 . 2008-02-23 18:31 4,419,000 --a------ C:\Program Files\burn4free_burn4free_3.9.0.0_francais_14723.exe
2008-02-22 22:35 . 2008-02-22 22:35 306,432 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
2008-02-22 22:35 . 2007-12-20 10:41 29,440 --a------ C:\WINDOWS\system32\uxtuneup.dll
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2008-02-22 22:30 . 2008-02-22 22:31 14,174,464 --a------ C:\Program Files\TU2008TrialFR.exe
2008-02-22 22:17 . 2008-02-24 18:55 594,880 --a------ C:\Program Files\kazaa_setup.exe
2008-02-22 22:15 . 2008-02-22 22:15 5,265,101 --a------ C:\Program Files\Shareaza_2.3.1.0_Win32.exe
2008-02-22 21:50 . 2008-02-22 23:19 <REP> d-------- C:\Program Files\Yahoo!
2008-02-22 21:50 . 2008-02-22 21:50 <REP> d-------- C:\Program Files\CCleaner
2008-02-22 21:49 . 2008-02-22 21:50 2,733,928 --a------ C:\Program Files\ccsetup204.exe
2008-02-22 21:45 . 2008-02-22 21:44 2,467,439 --a------ C:\Program Files\winamp295_full.exe
2008-02-15 23:39 . 2008-02-15 23:39 <REP> d-------- C:\Documents and Settings\maman\Application Data\dvdcss
2008-02-14 22:14 . 2008-02-14 22:51 <REP> d-------- C:\Program Files\Photo Viewer 2.4
2008-02-13 16:43 . 2008-02-15 12:52 0 --a------ C:\WINDOWS\obmetmp.htm
2008-02-11 21:39 . 2006-11-12 11:39 483,328 --a------ C:\WINDOWS\system32\actskn45.ocx
2008-02-11 16:13 . 2008-02-11 16:13 <REP> d-------- C:\Program Files\Common Files
2008-02-11 00:22 . 2008-02-04 00:29 116 --a------ C:\WINDOWS\NeroDigital.ini
2008-02-10 13:41 . 2008-02-10 13:41 <REP> d-------- C:\Program Files\Fichiers communs\Ahead
2008-02-10 13:41 . 2004-07-26 16:16 1,568,768 --------- C:\WINDOWS\system32\ImagX7.dll
2008-02-10 13:41 . 2004-07-26 16:16 476,320 --------- C:\WINDOWS\system32\ImagXpr7.dll
2008-02-10 13:41 . 2004-07-26 16:16 471,040 --------- C:\WINDOWS\system32\ImagXRA7.dll
2008-02-10 13:41 . 2004-07-26 16:16 262,144 --------- C:\WINDOWS\system32\ImagXR7.dll
2008-02-10 13:41 . 2001-07-09 10:50 155,648 --a------ C:\WINDOWS\system32\NeroCheck.exe
2008-02-10 13:41 . 2004-03-02 16:37 125,184 --------- C:\WINDOWS\system32\drivers\imagesrv.sys
2008-02-10 13:41 . 2000-06-26 10:45 106,496 --a------ C:\WINDOWS\system32\TwnLib20.dll
2008-02-10 13:41 . 2004-03-02 16:37 5,504 --------- C:\WINDOWS\system32\drivers\imagedrv.sys
2008-02-10 13:39 . 2008-02-10 13:39 <REP> d-------- C:\Program Files\Nero 6 (+crack)
2008-02-09 23:26 . 2008-02-10 01:23 <REP> d-------- C:\Program Files\Sims2Pack Clean Installer
2008-02-09 23:25 . 2008-02-09 23:25 441,214 --a------ C:\Program Files\Sims2PackInstaller_v1514.exe
2008-02-09 23:07 . 2008-02-09 23:07 4,922,461 --a------ C:\Program Files\theme-de-bureau.exe
2008-02-09 20:41 . 2008-02-09 20:41 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WinZip
2008-02-09 18:16 . 2008-02-24 13:23 <REP> d-------- C:\Program Files\Maxis
2008-02-07 22:05 . 2006-11-02 17:12 348,416 --a------ C:\WINDOWS\system32\drivers\rt73.sys
2008-02-07 22:05 . 2006-06-20 22:53 319,488 --a------ C:\WINDOWS\system32\AegisI5.exe
2008-02-07 22:05 . 2006-06-17 12:29 295,018 --a------ C:\WINDOWS\system32\Install7x.dll
2008-02-07 22:05 . 2005-11-30 11:33 2,048 --a------ C:\WINDOWS\system32\drivers\rt73.bin
2008-02-07 22:05 . 2006-03-06 15:36 45 --a------ C:\WINDOWS\filespec7x
2008-02-07 22:04 . 2008-02-07 22:04 <REP> d-------- C:\Program Files\RALINK
2008-02-07 22:02 . 2008-02-07 22:02 <REP> d-------- C:\Documents and Settings\maman\Application Data\InstallShield
2008-02-06 21:04 . 2008-02-06 21:04 <REP> d-------- C:\WINDOWS\new mario62
2008-02-06 21:04 . 2008-02-06 21:04 171,520 --a------ C:\WINDOWS\system32\cncs32.dll
2008-02-06 21:04 . 2008-02-06 21:04 18 --a------ C:\WINDOWS\gfact.ini
2008-02-06 20:57 . 2008-02-06 21:50 <REP> d-------- C:\Program Files\Pcsx2
2008-02-06 10:19 . 2008-02-06 10:19 <REP> d--hs---- C:\found.000
2008-02-03 19:09 . 2008-02-03 19:13 <REP> d-------- C:\Program Files\Canon
2008-02-03 18:06 . 2008-02-03 18:06 <REP> d-------- C:\Program Files\ArcSoft
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-29 19:40 --------- d-----w C:\Program Files\Google
2008-02-29 19:31 10,563 ----a-w C:\Program Files\hijackthis.log
2008-02-29 19:30 5,534 ----a-w C:\Program Files\aswclnr.log
2008-02-29 12:29 --------- d-----w C:\Program Files\MaxiCompte
2008-02-28 12:20 --------- d-----w C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-02-24 16:48 81,920 ------r C:\WINDOWS\bwUnin-6.1.4.68-8876480L.exe
2008-02-24 16:48 --------- d-----w C:\Program Files\Fichiers communs\Logitech
2008-02-24 15:03 --------- d-----w C:\Program Files\EA GAMES
2008-02-24 14:48 --------- d-----w C:\Program Files\Winamp
2008-02-24 14:48 --------- d-----w C:\Program Files\RegCleaner
2008-02-24 14:48 --------- d-----w C:\Program Files\QuickTime
2008-02-24 14:48 --------- d-----w C:\Program Files\Help
2008-02-24 14:48 --------- d-----w C:\Program Files\FinePixViewer
2008-02-24 12:38 --------- d-----w C:\Program Files\Disney Pix 2.0
2008-02-22 21:33 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-02-22 21:15 --------- d-----w C:\Program Files\Shareaza
2008-02-22 20:40 --------- d-----w C:\Program Files\Java
2008-02-10 23:06 21 ----a-w C:\Program Files\Sims2Pack Clean Installer.ini
2008-02-10 17:03 47,360 ----a-w C:\Documents and Settings\maman\Application Data\pcouffin.sys
2008-02-10 17:03 --------- d-----w C:\Program Files\VSO
2008-02-10 17:03 --------- d-----w C:\Documents and Settings\maman\Application Data\Vso
2008-02-10 17:02 --------- d-----w C:\Program Files\Elaborate Bytes
2008-02-10 17:01 --------- d-----w C:\Program Files\SlySoft
2008-02-10 12:41 --------- d-----w C:\Program Files\Ahead
2008-02-09 20:57 299,465 ----a-w C:\Program Files\F_N_Roxy_Tim.zip.part
2008-02-09 19:40 6,703,104 ----a-w C:\Program Files\winzip111fr.msi
2008-02-06 13:11 163,644 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2008-02-03 23:36 --------- d-----w C:\Program Files\eMule
2008-02-03 23:22 6,144 --sha-w C:\Program Files\Thumbs.db
2008-02-03 17:06 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-03 17:00 --------- d-----w C:\Documents and Settings\maman\Application Data\Canon
2008-01-28 20:44 --------- dcsh--w C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-01-20 14:04 --------- d-----w C:\Program Files\THQ
2008-01-20 13:13 3,861,320 ----a-w C:\Program Files\eMule0.48a-Installer2.exe
2008-01-19 20:57 --------- d-----w C:\Program Files\Ubisoft
2008-01-19 20:53 --------- d-----w C:\Program Files\D-Tools
2008-01-11 10:11 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-01-10 20:16 1,182,550 ----a-w C:\Program Files\img017.jpg
2008-01-10 20:16 1,118,010 ----a-w C:\Program Files\img016.jpg
2008-01-10 20:14 7,230 ----a-w C:\Program Files\nouveau-24.jpg
2008-01-09 22:53 --------- d-----w C:\Documents and Settings\maman\Application Data\CopyToDvd
2008-01-04 23:48 --------- d-----w C:\Documents and Settings\maman\Application Data\CDBurnerXPP
2008-01-04 23:26 24,265,736 ----a-w C:\Program Files\dotnetfx.exe
2008-01-04 23:16 --------- d-----w C:\Program Files\MSBuild
2008-01-04 23:06 --------- d-----w C:\Program Files\Reference Assemblies
2008-01-04 22:41 2,945,816 ----a-w C:\Program Files\dotnetfx3setup.exe
2008-01-04 22:11 177,522 ----a-w C:\Program Files\installez-emule-be.exe
2007-12-29 08:23 506,368 ----a-w C:\WINDOWS\system32\winlogon.exe
2007-12-10 16:25 7,792 ----a-w C:\Program Files\CurrentCfg.tpr
2007-12-10 16:25 5,188 ----a-w C:\Program Files\TMPGEnc.ini
2007-12-05 17:22 9 ----a-w C:\Documents and Settings\maman\Application Data\mdb.bin
2007-12-04 13:04 837,496 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-12-04 12:54 95,608 ----a-w C:\WINDOWS\system32\AvastSS.scr
2007-11-03 11:23 141,410 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_11_02_23_58_03_small.dmp.zip
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdremote.dll
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdicmdrv.dll
2007-05-19 15:25 5,120 ----a-w C:\Program Files\vdsvrlnk.dll
2007-05-19 15:25 16,384 ----a-w C:\Program Files\auxsetup.exe
2006-09-24 16:11 389,120 ----a-w C:\Program Files\lameACM.acm
2005-12-19 22:52 18,321 ----a-w C:\Program Files\copying
2002-04-07 10:17 414 ----a-w C:\Program Files\lame_acm.xml
2002-01-23 19:39 3,133 ----a-w C:\Program Files\LameACM.inf
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"Shareaza"="C:\Program Files\Shareaza\Shareaza.exe" [2008-01-01 17:49 4739072]
"TuneUp MemOptimizer"="C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" [2008-01-16 13:28 197888]
"LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe" [2008-02-24 17:48 20480]
"LogitechSoftwareUpdate"="C:\Program Files\Logitech\Video\ManifestEngine.exe" [2005-01-18 17:07 196608]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46 1460560]
"ccleaner"="C:\Program Files\CCleaner\CCleaner.exe" [2008-01-17 10:40 816368]
"MsnMsgr"="~C:\Program Files\MSN Messenger\MsnMsgr.exe" [ ]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-28 23:43 8466432]
"nwiz"="nwiz.exe" [2007-06-28 23:43 1626112 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-06-28 23:43 81920]
"SoundMan"="SOUNDMAN.EXE" [2005-08-17 17:39 90112 C:\WINDOWS\SOUNDMAN.EXE]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 05:24 286720]
"SSBkgdUpdate"="C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-29 23:14 155648]
"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-03-21 12:19 69632]
"REGSHAVE"="C:\Program Files\REGSHAVE\REGSHAVE.exe" [2002-02-04 22:32 53248]
"DAEMON Tools-1033"="C:\Program Files\D-Tools\daemon.exe" [2003-10-02 02:20 81920]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50 155648]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"WinampAgent"="C:\Program Files\Winamp\Winampa.exe" [2008-01-15 23:54 37376]
"LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [2004-10-08 11:52 221184]
"LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [2005-01-18 17:47 458752]
"LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [2005-01-18 17:37 217088]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 12:55 5674352]
C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Exif Launcher.lnk - C:\Program Files\FinePixViewer\QuickDCF.exe [2002-01-09 21:53:14 200704]
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe [2008-02-24 17:48:09 450560]
Ralink Wireless Utility.lnk - C:\Program Files\RALINK\Common\RaUI.exe [2008-02-07 22:05:50 663552]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= C:\PROGRA~1\TALLEM~1\ONLINE~1\oaevent.dll [ ]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Shareaza\\Shareaza.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\backWeb-8876480.exe"=
"C:\\Program Files\\eMule\\emule.exe"=
R0 pnpshark;pnpshark;C:\WINDOWS\system32\DRIVERS\pnpshark.sys [2003-10-02 03:16]
R0 st3shark;st3shark;C:\WINDOWS\system32\DRIVERS\st3shark.sys [2003-09-27 14:37]
R2 EAPPkt;Realtek EAPPkt Protocol;C:\WINDOWS\system32\DRIVERS\EAPPkt.sys [2006-11-15 16:23]
R2 UxTuneUp;TuneUp Extension de thème;C:\WINDOWS\System32\svchost.exe [2004-08-19 15:10]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-02-22 22:35]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-27 07:03:38 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-02-29 19:31:50 C:\WINDOWS\Tasks\Maintenance en 1 clic.job"
- C:\Program Files\TuneUp Utilities 2008\OneClick.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-03 00:52:53
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cachés ...
Balayage caché autostart entries ...
Balayage des fichiers cachés ...
Scan terminé avec succès
Les fichiers cachés: 0
**************************************************************************
.
Temps d'accomplissement: 2008-03-03 0:53:41
ComboFix-quarantined-files.txt 2008-03-02 23:53:31
ComboFix2.txt 2008-03-02 23:47:41
ComboFix3.txt 2008-03-01 23:31:41
.
2008-03-03 02:00:40 --- E O F ---
AntiVir PersonalEdition Classic
Report file date: lundi 3 mars 2008 11:40
Scanning for 1131710 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: maman
Computer name: DEMARTEA-N2BXL5
Version information:
BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15
ANTIVIR1.VDF : 7.0.1.95 3367424 Bytes 14/12/2007 06:52:47
ANTIVIR2.VDF : 7.0.2.181 1993728 Bytes 24/02/2008 06:52:47
ANTIVIR3.VDF : 7.0.2.225 154112 Bytes 03/03/2008 06:52:47
AVEWIN32.DLL : 7.6.0.73 3334656 Bytes 03/03/2008 06:52:47
AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24
AVPACK32.DLL : 7.6.0.3 360488 Bytes 03/03/2008 06:52:48
AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21
Configuration settings for the scan:
Jobname..........................: Rootkit search
Configuration file...............: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\rootkit.avp
Logging..........................: high
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Scan memory......................: off
Process scan.....................: off
Scan registry....................: off
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: high
Expanded search settings.........: 0x00300922
Start of the scan: lundi 3 mars 2008 11:40
Starting search for hidden objects.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32\cd042efbbd7f7af1647644e76e06692b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32\bca643cdc5c2726b20d2ecedcc62c59b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32\2c81e34222e8052573023a60d06dd016
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32\2582ae41fb52324423be06337561aa48
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32\caaeda5fd7a9ed7697d9686d4b818472
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32\a4a1bcf2cc2b8bc3716b74b2b4522f5d
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32\4d370831d2c43cd13623e232fed27b7b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32\1d68fe701cdea33e477eb204b76f993d
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32\1fac81b91d8e3c5aa4b0a51804d844a3
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32\f5f62a6129303efb32fbe080bb27835b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32\fd4e2e1a3940b94dceb5a6a021f2e3c6
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32\8a8aec57dd6508a385616fbc86791ec2
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\friendlyname
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\friendlyname
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04cb&Pid_0118\Y-411^^^^^020912XFPX0009004364\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04cb&Pid_0118\Y-411^^^^^020912XFPX0009004364\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04cb&Pid_0118\Y-411^^^^^020912XFPX0009004364\locationinformation
[NOTE] The registry entry is invisible.
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.196 [GMT 1:00]
Endroit: C:\Documents and Settings\maman\Bureau\ComboFix.exe
[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.
((((((((((((((((((((((((((((( Fichiers créés 2008-02-03 to 2008-03-03 ))))))))))))))))))))))))))))))))))))
.
2008-03-02 20:22 . 2008-03-02 20:22 <REP> d-------- C:\Program Files\Easy Video Splitter
2008-03-02 00:15 . 2008-03-02 00:15 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-01 10:16 . 2008-03-01 10:17 <REP> d-------- C:\Program Files\Tall Emu
2008-03-01 09:53 . 2008-03-01 09:53 <REP> d-------- C:\OnlineArmor
2008-03-01 09:51 . 2008-03-01 09:51 <REP> d-------- C:\_OTMoveIt
2008-03-01 09:43 . 2008-03-01 09:43 14,771,744 --a------ C:\Program Files\IE7-WindowsXP-x86-fra.exe
2008-03-01 00:45 . 2008-03-01 00:45 <REP> d-------- C:\Program Files\Trend Micro
2008-03-01 00:45 . 2008-03-01 00:45 812,344 --a------ C:\Program Files\HJTInstall.exe
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\maman\Application Data\Simply Super Software
2008-02-29 21:37 . 2008-02-29 21:37 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Simply Super Software
2008-02-29 21:36 . 2008-02-29 21:37 6,894,528 --a------ C:\Program Files\trsetup.exe
2008-02-29 21:22 . 2008-03-01 10:50 5,120 --ahs---- C:\WINDOWS\system32\Thumbs.db
2008-02-29 20:47 . 2008-02-29 20:47 <REP> d--hs---- C:\found.001
2008-02-29 20:10 . 2008-02-29 20:10 407,680 --a------ C:\Program Files\aswclnr.exe
2008-02-29 19:13 . 2008-02-29 19:13 1,308,216 --a------ C:\Program Files\HiJackThis_v2.exe
2008-02-29 18:51 . 2008-03-02 00:42 <REP> d-------- C:\Program Files\Panda Security
2008-02-29 16:03 . 2008-02-29 16:03 <REP> d-------- C:\Program Files\Activision
2008-02-29 14:31 . 2008-02-29 14:31 123 --a------ C:\WINDOWS\wininit.ini
2008-02-29 13:32 . 2008-02-29 13:32 <REP> d-------- C:\Program Files\Spybot - Search & Destroy
2008-02-29 13:32 . 2008-02-29 14:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-02-29 13:19 . 2008-02-29 13:19 7,467,056 --a------ C:\Program Files\spybotsd15.exe
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Program Files\Apple Software Update
2008-02-27 08:03 . 2008-02-27 08:03 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Apple
2008-02-25 21:52 . 2008-02-25 21:52 2,563 --a------ C:\WINDOWS\image.jpg
2008-02-24 19:00 . 2008-02-24 19:00 <REP> d-------- C:\My Shared Folder
2008-02-24 18:59 . 2008-02-24 18:59 <REP> d-------- C:\Documents and Settings\maman\Application Data\Kazaa Lite
2008-02-24 18:58 . 2008-02-24 18:58 2,803,665 --a------ C:\Program Files\klitekpp243f.exe
2008-02-24 18:55 . 2008-02-24 18:55 <REP> d-------- C:\Program Files\Kazaa
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Fichiers communs\FotoWire
2008-02-24 17:50 . 2008-02-24 17:50 <REP> d-------- C:\Documents and Settings\maman\Application Data\FotoWire
2008-02-24 17:49 . 2004-10-08 12:46 53,248 -ra------ C:\WINDOWS\system32\InstMed.exe
2008-02-24 17:48 . 2008-02-24 17:50 <REP> d-------- C:\Program Files\Logitech
2008-02-24 17:04 . 2008-02-24 17:04 2,402,832 --a------ C:\Program Files\WLinstaller.exe
2008-02-24 16:55 . 2008-02-29 13:01 <REP> d-------- C:\Documents and Settings\maman\Application Data\skypePM
2008-02-24 16:55 . 2008-02-24 16:55 32 --a------ C:\Documents and Settings\All Users\Application Data\ezsid.dat
2008-02-24 16:53 . 2008-02-29 13:30 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Skype
2008-02-24 16:48 . 2008-02-24 16:51 22,690,600 --a------ C:\Program Files\SkypeSetup.exe
2008-02-24 16:06 . 2008-02-24 17:38 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Logishrd
2008-02-24 16:05 . 2008-02-24 17:39 <REP> d-------- C:\Program Files\Fichiers communs\LogiShrd
2008-02-24 16:00 . 2008-02-24 16:03 32,227,136 --a------ C:\Program Files\logitech_logitech_quickcam_11.1.0.2016_whql_4219.exe
2008-02-24 13:38 . 2008-03-03 00:48 16,896 --ahs---- C:\WINDOWS\Thumbs.db
2008-02-24 13:19 . 2008-02-24 13:19 1,271,557 --a------ C:\Program Files\wrar371fr.exe
2008-02-23 18:32 . 2008-02-23 18:31 4,419,000 --a------ C:\Program Files\burn4free_burn4free_3.9.0.0_francais_14723.exe
2008-02-22 22:35 . 2008-02-22 22:35 306,432 --a------ C:\WINDOWS\system32\TuneUpDefragService.exe
2008-02-22 22:35 . 2007-12-20 10:41 29,440 --a------ C:\WINDOWS\system32\uxtuneup.dll
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Program Files\TuneUp Utilities 2008
2008-02-22 22:34 . 2008-02-22 22:34 <REP> d-------- C:\Documents and Settings\All Users\Application Data\TuneUp Software
2008-02-22 22:30 . 2008-02-22 22:31 14,174,464 --a------ C:\Program Files\TU2008TrialFR.exe
2008-02-22 22:17 . 2008-02-24 18:55 594,880 --a------ C:\Program Files\kazaa_setup.exe
2008-02-22 22:15 . 2008-02-22 22:15 5,265,101 --a------ C:\Program Files\Shareaza_2.3.1.0_Win32.exe
2008-02-22 21:50 . 2008-02-22 23:19 <REP> d-------- C:\Program Files\Yahoo!
2008-02-22 21:50 . 2008-02-22 21:50 <REP> d-------- C:\Program Files\CCleaner
2008-02-22 21:49 . 2008-02-22 21:50 2,733,928 --a------ C:\Program Files\ccsetup204.exe
2008-02-22 21:45 . 2008-02-22 21:44 2,467,439 --a------ C:\Program Files\winamp295_full.exe
2008-02-15 23:39 . 2008-02-15 23:39 <REP> d-------- C:\Documents and Settings\maman\Application Data\dvdcss
2008-02-14 22:14 . 2008-02-14 22:51 <REP> d-------- C:\Program Files\Photo Viewer 2.4
2008-02-13 16:43 . 2008-02-15 12:52 0 --a------ C:\WINDOWS\obmetmp.htm
2008-02-11 21:39 . 2006-11-12 11:39 483,328 --a------ C:\WINDOWS\system32\actskn45.ocx
2008-02-11 16:13 . 2008-02-11 16:13 <REP> d-------- C:\Program Files\Common Files
2008-02-11 00:22 . 2008-02-04 00:29 116 --a------ C:\WINDOWS\NeroDigital.ini
2008-02-10 13:41 . 2008-02-10 13:41 <REP> d-------- C:\Program Files\Fichiers communs\Ahead
2008-02-10 13:41 . 2004-07-26 16:16 1,568,768 --------- C:\WINDOWS\system32\ImagX7.dll
2008-02-10 13:41 . 2004-07-26 16:16 476,320 --------- C:\WINDOWS\system32\ImagXpr7.dll
2008-02-10 13:41 . 2004-07-26 16:16 471,040 --------- C:\WINDOWS\system32\ImagXRA7.dll
2008-02-10 13:41 . 2004-07-26 16:16 262,144 --------- C:\WINDOWS\system32\ImagXR7.dll
2008-02-10 13:41 . 2001-07-09 10:50 155,648 --a------ C:\WINDOWS\system32\NeroCheck.exe
2008-02-10 13:41 . 2004-03-02 16:37 125,184 --------- C:\WINDOWS\system32\drivers\imagesrv.sys
2008-02-10 13:41 . 2000-06-26 10:45 106,496 --a------ C:\WINDOWS\system32\TwnLib20.dll
2008-02-10 13:41 . 2004-03-02 16:37 5,504 --------- C:\WINDOWS\system32\drivers\imagedrv.sys
2008-02-10 13:39 . 2008-02-10 13:39 <REP> d-------- C:\Program Files\Nero 6 (+crack)
2008-02-09 23:26 . 2008-02-10 01:23 <REP> d-------- C:\Program Files\Sims2Pack Clean Installer
2008-02-09 23:25 . 2008-02-09 23:25 441,214 --a------ C:\Program Files\Sims2PackInstaller_v1514.exe
2008-02-09 23:07 . 2008-02-09 23:07 4,922,461 --a------ C:\Program Files\theme-de-bureau.exe
2008-02-09 20:41 . 2008-02-09 20:41 <REP> d-------- C:\Documents and Settings\All Users\Application Data\WinZip
2008-02-09 18:16 . 2008-02-24 13:23 <REP> d-------- C:\Program Files\Maxis
2008-02-07 22:05 . 2006-11-02 17:12 348,416 --a------ C:\WINDOWS\system32\drivers\rt73.sys
2008-02-07 22:05 . 2006-06-20 22:53 319,488 --a------ C:\WINDOWS\system32\AegisI5.exe
2008-02-07 22:05 . 2006-06-17 12:29 295,018 --a------ C:\WINDOWS\system32\Install7x.dll
2008-02-07 22:05 . 2005-11-30 11:33 2,048 --a------ C:\WINDOWS\system32\drivers\rt73.bin
2008-02-07 22:05 . 2006-03-06 15:36 45 --a------ C:\WINDOWS\filespec7x
2008-02-07 22:04 . 2008-02-07 22:04 <REP> d-------- C:\Program Files\RALINK
2008-02-07 22:02 . 2008-02-07 22:02 <REP> d-------- C:\Documents and Settings\maman\Application Data\InstallShield
2008-02-06 21:04 . 2008-02-06 21:04 <REP> d-------- C:\WINDOWS\new mario62
2008-02-06 21:04 . 2008-02-06 21:04 171,520 --a------ C:\WINDOWS\system32\cncs32.dll
2008-02-06 21:04 . 2008-02-06 21:04 18 --a------ C:\WINDOWS\gfact.ini
2008-02-06 20:57 . 2008-02-06 21:50 <REP> d-------- C:\Program Files\Pcsx2
2008-02-06 10:19 . 2008-02-06 10:19 <REP> d--hs---- C:\found.000
2008-02-03 19:09 . 2008-02-03 19:13 <REP> d-------- C:\Program Files\Canon
2008-02-03 18:06 . 2008-02-03 18:06 <REP> d-------- C:\Program Files\ArcSoft
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-02-29 19:40 --------- d-----w C:\Program Files\Google
2008-02-29 19:31 10,563 ----a-w C:\Program Files\hijackthis.log
2008-02-29 19:30 5,534 ----a-w C:\Program Files\aswclnr.log
2008-02-29 12:29 --------- d-----w C:\Program Files\MaxiCompte
2008-02-28 12:20 --------- d-----w C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-02-24 16:48 81,920 ------r C:\WINDOWS\bwUnin-6.1.4.68-8876480L.exe
2008-02-24 16:48 --------- d-----w C:\Program Files\Fichiers communs\Logitech
2008-02-24 15:03 --------- d-----w C:\Program Files\EA GAMES
2008-02-24 14:48 --------- d-----w C:\Program Files\Winamp
2008-02-24 14:48 --------- d-----w C:\Program Files\RegCleaner
2008-02-24 14:48 --------- d-----w C:\Program Files\QuickTime
2008-02-24 14:48 --------- d-----w C:\Program Files\Help
2008-02-24 14:48 --------- d-----w C:\Program Files\FinePixViewer
2008-02-24 12:38 --------- d-----w C:\Program Files\Disney Pix 2.0
2008-02-22 21:33 --------- d-----w C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-02-22 21:15 --------- d-----w C:\Program Files\Shareaza
2008-02-22 20:40 --------- d-----w C:\Program Files\Java
2008-02-10 23:06 21 ----a-w C:\Program Files\Sims2Pack Clean Installer.ini
2008-02-10 17:03 47,360 ----a-w C:\Documents and Settings\maman\Application Data\pcouffin.sys
2008-02-10 17:03 --------- d-----w C:\Program Files\VSO
2008-02-10 17:03 --------- d-----w C:\Documents and Settings\maman\Application Data\Vso
2008-02-10 17:02 --------- d-----w C:\Program Files\Elaborate Bytes
2008-02-10 17:01 --------- d-----w C:\Program Files\SlySoft
2008-02-10 12:41 --------- d-----w C:\Program Files\Ahead
2008-02-09 20:57 299,465 ----a-w C:\Program Files\F_N_Roxy_Tim.zip.part
2008-02-09 19:40 6,703,104 ----a-w C:\Program Files\winzip111fr.msi
2008-02-06 13:11 163,644 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
2008-02-03 23:36 --------- d-----w C:\Program Files\eMule
2008-02-03 23:22 6,144 --sha-w C:\Program Files\Thumbs.db
2008-02-03 17:06 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-02-03 17:00 --------- d-----w C:\Documents and Settings\maman\Application Data\Canon
2008-01-28 20:44 --------- dcsh--w C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-01-20 14:04 --------- d-----w C:\Program Files\THQ
2008-01-20 13:13 3,861,320 ----a-w C:\Program Files\eMule0.48a-Installer2.exe
2008-01-19 20:57 --------- d-----w C:\Program Files\Ubisoft
2008-01-19 20:53 --------- d-----w C:\Program Files\D-Tools
2008-01-11 10:11 --------- d-----w C:\Program Files\Fichiers communs\InstallShield
2008-01-10 20:16 1,182,550 ----a-w C:\Program Files\img017.jpg
2008-01-10 20:16 1,118,010 ----a-w C:\Program Files\img016.jpg
2008-01-10 20:14 7,230 ----a-w C:\Program Files\nouveau-24.jpg
2008-01-09 22:53 --------- d-----w C:\Documents and Settings\maman\Application Data\CopyToDvd
2008-01-04 23:48 --------- d-----w C:\Documents and Settings\maman\Application Data\CDBurnerXPP
2008-01-04 23:26 24,265,736 ----a-w C:\Program Files\dotnetfx.exe
2008-01-04 23:16 --------- d-----w C:\Program Files\MSBuild
2008-01-04 23:06 --------- d-----w C:\Program Files\Reference Assemblies
2008-01-04 22:41 2,945,816 ----a-w C:\Program Files\dotnetfx3setup.exe
2008-01-04 22:11 177,522 ----a-w C:\Program Files\installez-emule-be.exe
2007-12-29 08:23 506,368 ----a-w C:\WINDOWS\system32\winlogon.exe
2007-12-10 16:25 7,792 ----a-w C:\Program Files\CurrentCfg.tpr
2007-12-10 16:25 5,188 ----a-w C:\Program Files\TMPGEnc.ini
2007-12-05 17:22 9 ----a-w C:\Documents and Settings\maman\Application Data\mdb.bin
2007-12-04 13:04 837,496 ----a-w C:\WINDOWS\system32\aswBoot.exe
2007-12-04 12:54 95,608 ----a-w C:\WINDOWS\system32\AvastSS.scr
2007-11-03 11:23 141,410 ----a-w C:\WINDOWS\Internet Logs\vsmon_2nd_2007_11_02_23_58_03_small.dmp.zip
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdremote.dll
2007-05-19 15:25 7,168 ----a-w C:\Program Files\vdicmdrv.dll
2007-05-19 15:25 5,120 ----a-w C:\Program Files\vdsvrlnk.dll
2007-05-19 15:25 16,384 ----a-w C:\Program Files\auxsetup.exe
2006-09-24 16:11 389,120 ----a-w C:\Program Files\lameACM.acm
2005-12-19 22:52 18,321 ----a-w C:\Program Files\copying
2002-04-07 10:17 414 ----a-w C:\Program Files\lame_acm.xml
2002-01-23 19:39 3,133 ----a-w C:\Program Files\LameACM.inf
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"Shareaza"="C:\Program Files\Shareaza\Shareaza.exe" [2008-01-01 17:49 4739072]
"TuneUp MemOptimizer"="C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" [2008-01-16 13:28 197888]
"LDM"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe" [2008-02-24 17:48 20480]
"LogitechSoftwareUpdate"="C:\Program Files\Logitech\Video\ManifestEngine.exe" [2005-01-18 17:07 196608]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2007-08-31 16:46 1460560]
"ccleaner"="C:\Program Files\CCleaner\CCleaner.exe" [2008-01-17 10:40 816368]
"MsnMsgr"="~C:\Program Files\MSN Messenger\MsnMsgr.exe" [ ]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2007-06-28 23:43 8466432]
"nwiz"="nwiz.exe" [2007-06-28 23:43 1626112 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [2007-06-28 23:43 81920]
"SoundMan"="SOUNDMAN.EXE" [2005-08-17 17:39 90112 C:\WINDOWS\SOUNDMAN.EXE]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2007-06-29 05:24 286720]
"SSBkgdUpdate"="C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-09-29 23:14 155648]
"OpwareSE4"="C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe" [2006-03-21 12:19 69632]
"REGSHAVE"="C:\Program Files\REGSHAVE\REGSHAVE.exe" [2002-02-04 22:32 53248]
"DAEMON Tools-1033"="C:\Program Files\D-Tools\daemon.exe" [2003-10-02 02:20 81920]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"NeroFilterCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 10:50 155648]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"WinampAgent"="C:\Program Files\Winamp\Winampa.exe" [2008-01-15 23:54 37376]
"LVCOMSX"="C:\WINDOWS\system32\LVCOMSX.EXE" [2004-10-08 11:52 221184]
"LogitechVideoRepair"="C:\Program Files\Logitech\Video\ISStart.exe" [2005-01-18 17:47 458752]
"LogitechVideoTray"="C:\Program Files\Logitech\Video\LogiTray.exe" [2005-01-18 17:37 217088]
"SweetIM"="C:\Program Files\Macrogaming\SweetIM\SweetIM.exe" [ ]
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-19 15:09 15360]
"Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-10-23 22:18 443968]
"msnmsgr"="C:\Program Files\MSN Messenger\msnmsgr.exe" [2007-01-19 12:55 5674352]
C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Exif Launcher.lnk - C:\Program Files\FinePixViewer\QuickDCF.exe [2002-01-09 21:53:14 200704]
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe [2008-02-24 17:48:09 450560]
Ralink Wireless Utility.lnk - C:\Program Files\RALINK\Common\RaUI.exe [2008-02-07 22:05:50 663552]
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{4F07DA45-8170-4859-9B5F-037EF2970034}"= C:\PROGRA~1\TALLEM~1\ONLINE~1\oaevent.dll [ ]
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"=
"C:\\Program Files\\MSN Messenger\\livecall.exe"=
"C:\\Program Files\\Shareaza\\Shareaza.exe"=
"C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\backWeb-8876480.exe"=
"C:\\Program Files\\eMule\\emule.exe"=
R0 pnpshark;pnpshark;C:\WINDOWS\system32\DRIVERS\pnpshark.sys [2003-10-02 03:16]
R0 st3shark;st3shark;C:\WINDOWS\system32\DRIVERS\st3shark.sys [2003-09-27 14:37]
R2 EAPPkt;Realtek EAPPkt Protocol;C:\WINDOWS\system32\DRIVERS\EAPPkt.sys [2006-11-15 16:23]
R2 UxTuneUp;TuneUp Extension de thème;C:\WINDOWS\System32\svchost.exe [2004-08-19 15:10]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service;C:\WINDOWS\System32\TuneUpDefragService.exe [2008-02-22 22:35]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
UxTuneUp
.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-27 07:03:38 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-02-29 19:31:50 C:\WINDOWS\Tasks\Maintenance en 1 clic.job"
- C:\Program Files\TuneUp Utilities 2008\OneClick.exe
.
**************************************************************************
catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-03 00:52:53
Windows 5.1.2600 Service Pack 2 NTFS
Balayage processus cachés ...
Balayage caché autostart entries ...
Balayage des fichiers cachés ...
Scan terminé avec succès
Les fichiers cachés: 0
**************************************************************************
.
Temps d'accomplissement: 2008-03-03 0:53:41
ComboFix-quarantined-files.txt 2008-03-02 23:53:31
ComboFix2.txt 2008-03-02 23:47:41
ComboFix3.txt 2008-03-01 23:31:41
.
2008-03-03 02:00:40 --- E O F ---
AntiVir PersonalEdition Classic
Report file date: lundi 3 mars 2008 11:40
Scanning for 1131710 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Username: maman
Computer name: DEMARTEA-N2BXL5
Version information:
BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00
AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29
AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51
LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47
LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15
ANTIVIR1.VDF : 7.0.1.95 3367424 Bytes 14/12/2007 06:52:47
ANTIVIR2.VDF : 7.0.2.181 1993728 Bytes 24/02/2008 06:52:47
ANTIVIR3.VDF : 7.0.2.225 154112 Bytes 03/03/2008 06:52:47
AVEWIN32.DLL : 7.6.0.73 3334656 Bytes 03/03/2008 06:52:47
AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26
AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24
AVPACK32.DLL : 7.6.0.3 360488 Bytes 03/03/2008 06:52:48
AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06
AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33
AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18
NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42
RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13
RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37
SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21
Configuration settings for the scan:
Jobname..........................: Rootkit search
Configuration file...............: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\rootkit.avp
Logging..........................: high
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Scan memory......................: off
Process scan.....................: off
Scan registry....................: off
Search for rootkits..............: on
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: high
Expanded search settings.........: 0x00300922
Start of the scan: lundi 3 mars 2008 11:40
Starting search for hidden objects.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{47629D4B-2AD3-4e50-B716-A66C15C63153}\InprocServer32\cd042efbbd7f7af1647644e76e06692b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{604BB98A-A94F-4a5c-A67C-D8D3582C741C}\InprocServer32\bca643cdc5c2726b20d2ecedcc62c59b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{684373FB-9CD8-4e47-B990-5A4466C16034}\InprocServer32\2c81e34222e8052573023a60d06dd016
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{74554CCD-F60F-4708-AD98-D0152D08C8B9}\InprocServer32\2582ae41fb52324423be06337561aa48
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{7EB537F9-A916-4339-B91B-DED8E83632C0}\InprocServer32\caaeda5fd7a9ed7697d9686d4b818472
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{948395E8-7A56-4fb1-843B-3E52D94DB145}\InprocServer32\a4a1bcf2cc2b8bc3716b74b2b4522f5d
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{AC3ED30B-6F1A-4bfc-A4F6-2EBDCCD34C19}\InprocServer32\4d370831d2c43cd13623e232fed27b7b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{DE5654CA-EB84-4df9-915B-37E957082D6D}\InprocServer32\1d68fe701cdea33e477eb204b76f993d
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{E39C35E8-7488-4926-92B2-2F94619AC1A5}\InprocServer32\1fac81b91d8e3c5aa4b0a51804d844a3
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{EACAFCE5-B0E2-4288-8073-C02FF9619B6F}\InprocServer32\f5f62a6129303efb32fbe080bb27835b
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{F8F02ADD-7366-4186-9488-C21CB8B3DCEC}\InprocServer32\fd4e2e1a3940b94dceb5a6a021f2e3c6
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32\threadingmodel
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{FEE45DE2-A467-4bf9-BF2D-1411304BCD84}\InprocServer32\8a8aec57dd6508a385616fbc86791ec2
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&1ee3d36f&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&319d8414&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&350b3c2c&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB\4&c2a22ca&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\ROOT_HUB20\4&205a5c46&0\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_03eb&Pid_3301\5&3302c37f&0&2\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3302c37f&0&1\friendlyname
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_092c\5&3379506f&0&1\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&2eff1ceb&0&1\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3302c37f&0&1\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\5&3379506f&0&2\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&2\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&3\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_046d&Pid_c016\6&24e1efa2&0&4\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714\703C33\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_00\7&4e5101e&0&0000\friendlyname
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04a9&Pid_1714&MI_01\7&4e5101e&0&0001\parentidprefix
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\locationinformation
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\capabilities
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\uinumber
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\hardwareid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\compatibleids
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\classguid
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\class
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\driver
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\mfg
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\service
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04b0&Pid_0205\4617757\configflags
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04cb&Pid_0118\Y-411^^^^^020912XFPX0009004364\device parameters
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04cb&Pid_0118\Y-411^^^^^020912XFPX0009004364\devicedesc
[NOTE] The registry entry is invisible.
HKEY_LOCAL_MACHINE\System\ControlSet001\Enum\USB\Vid_04cb&Pid_0118\Y-411^^^^^020912XFPX0009004364\locationinformation
[NOTE] The registry entry is invisible.
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
5 mars 2008 à 01:23
5 mars 2008 à 01:23
salut bebedouxreve,
il va faloir que tu te debarrasse de kazaa.
regarde ceci pour info :
http://assiste.com.free.fr/p/parasites/kazaa_spyware.php
fais ceci :
Copie le texte ci-dessous :
File::
C:\WINDOWS\image.jpg
Folder::
C:\Program Files\img017.jpg
C:\Program Files\img016.jpg
C:\Program Files\nouveau-24.jpg
C:\Program Files\Kazaa
C:\Program Files\kazaa_setup.exe
C:\Program Files\Macrogaming
Registry::
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
Ouvre le Bloc-Notes puis colle le texte copié.
(Démarrer\Tous les programmes\Accessoires\Bloc notes.)
Sauvegarde ce fichier sous le nom de CFScript.txt.
Glisse maintenant le fichier CFScript.txt dans Combofix.exe comme ci-dessous :
http://serveur1.archive-host.com/membres/up/1366464061/CFScript.gif
Cela va relancer Combofix,
Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.
Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!
Ne touche à rien tant que le scan n'est pas terminé.
Après redémarrage, poste le contenu du rapport Combofix.txt3 accompagné d'un rapport Hijackthis.
S'il n'y a pas de rédémarrage, poste quand même les rapports.
puis telecharge et passe ces deux anti spyware :
*Ad-Aware (gratuit)
Téléchargement :
http://www.commentcamarche.net/telecharger/telecharger 83 ad aware 2007 free
Tuto :
http://perso.orange.fr/entraide-hijackthis/AdAware/AdAware.htm
*Spybot : tu l´as deja alors contente toi de le passer
voir demo d utilisation (merci Balltrap)
http://perso.orange.fr/rginformatique/section%20virus/demo%20spybot.htm
@+
il va faloir que tu te debarrasse de kazaa.
regarde ceci pour info :
http://assiste.com.free.fr/p/parasites/kazaa_spyware.php
fais ceci :
Copie le texte ci-dessous :
File::
C:\WINDOWS\image.jpg
Folder::
C:\Program Files\img017.jpg
C:\Program Files\img016.jpg
C:\Program Files\nouveau-24.jpg
C:\Program Files\Kazaa
C:\Program Files\kazaa_setup.exe
C:\Program Files\Macrogaming
Registry::
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SweetIM"=-
Ouvre le Bloc-Notes puis colle le texte copié.
(Démarrer\Tous les programmes\Accessoires\Bloc notes.)
Sauvegarde ce fichier sous le nom de CFScript.txt.
Glisse maintenant le fichier CFScript.txt dans Combofix.exe comme ci-dessous :
http://serveur1.archive-host.com/membres/up/1366464061/CFScript.gif
Cela va relancer Combofix,
Une fenêtre bleue va apparaître: au message qui apparaît ( Type 1 to continue, or 2 to abort) , tape 1 puis valide.
Patiente le temps du scan.Le bureau va disparaître à plusieurs reprises: c'est normal!
Ne touche à rien tant que le scan n'est pas terminé.
Après redémarrage, poste le contenu du rapport Combofix.txt3 accompagné d'un rapport Hijackthis.
S'il n'y a pas de rédémarrage, poste quand même les rapports.
puis telecharge et passe ces deux anti spyware :
*Ad-Aware (gratuit)
Téléchargement :
http://www.commentcamarche.net/telecharger/telecharger 83 ad aware 2007 free
Tuto :
http://perso.orange.fr/entraide-hijackthis/AdAware/AdAware.htm
*Spybot : tu l´as deja alors contente toi de le passer
voir demo d utilisation (merci Balltrap)
http://perso.orange.fr/rginformatique/section%20virus/demo%20spybot.htm
@+
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:16:29, on 04/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Scan saved at 16:16:29, on 04/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
voici le resultat du scan de ad aware Scan Results
Ad-Aware 2007 Free Edition
Log File Created on:2008-03-0417:05:58
Using Definitions File:C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware 2007\core.aawdef
Computer name:DEMARTEA-N2BXL5
Name of user performing scan:SYSTEM
Name of user ordering scan:maman
Scan completed successfully
System Information
File Version Information
Ad-Aware 2007 Settings
Extended Ad-Aware 2007 Settings
Database Information
Scan Statistics
Scan Detailed Statistics
Infections Found
Listing of running processes
System Information
Number of processors:1
Processor type:AMD Athlon(tm) XP 1800+
Memory Available:26%
Total Physical Memory:536330240 Bytes
Available Physical Memory:134115328 Bytes
Total Page File Size:1310613504 Bytes
Available On Page File:691126272 Bytes
Total Virtual Memory:2147352576 Bytes
Available Virtual Memory:1987649536 Bytes
OS:Microsoft Windows XP 5.1 (Build 2600)
[to top]
File Verion Information
File Version
CEAPI.dll 7,0,2,6
aawservice.exe 7,0,2,6
Ad-Aware2007.exe 7.0.2.6
[to top]
Ad-Aware 2007 Settings
Skipping files larger than:1048576 Bytes
Ignoring infections with lower TAI than:3
Safe Mode:False
[to top]
Extended Ad-Aware 2007 Settings
Unload malicious processes and modules
Unload Modules
Let Windows remove files at Start-Up
Deactivate Ad-Watch
Re-analyze Scan Result
Delete Restored Items
Write Protect System Files
Create Log file
Include basic settings
Include advanced settings
Include user and computer name
Environment information
Running processes
Running processes and modules
Include info about ignored objects in log file
Consider definitions File Outdated after x days
Proxy URL
Proxy Port
[to top]
Database Info
Version number:43
Build Number:0
Build Date and Time:2008/01/0709:45:44
[to top]
Scan Statistics
Method:Full
Items Scanned:222265
Infections Detected:4
Infections Removed:0
Infections Quarantined:0
Infections Ignored:0
[to top]
Scan Detailed Statistics
Type Critical Total
Process Scan 0 0
Registry Scan 0 0
Registry PE Scan 0 0
Hosts Scan 0 0
File Scan 0 0
Folder Scan 0 0
LSP Scan 0 0
ADS Scan 0 0
Cookie Scan 4 4
File Hash Scan 0 0
[to top]
Infections Found
Family Id Name Category TAI
725 Tracking Cookie DataMiner 3
[600000144] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt doubleclick.net id /
[600000262] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt metriweb.be MetriWeb /
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com c1 /belgacom/
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com s1 /belgacom/skynet/
Quarantined Objects
Family Id Name Category TAI
Removed Objects
Family Id Name Category TAI
725 Tracking Cookie DataMiner 3
[600000144] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt doubleclick.net id /
[600000262] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt metriweb.be MetriWeb /
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com c1 /belgacom/
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com s1 /belgacom/skynet/
[to top]
Listing of Running Processes
C:\WINDOWS\SYSTEM32\SMSS.EXE
c:\windows\system32\smss.exe
c:\windows\system32\ntdll.dll
C:\WINDOWS\SYSTEM32\CSRSS.EXE
c:\windows\system32\csrss.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\csrsrv.dll
c:\windows\system32\basesrv.dll
c:\windows\system32\winsrv.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\sxs.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\version.dll
C:\WINDOWS\SYSTEM32\WINLOGON.EXE
c:\windows\system32\winlogon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\authz.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\nddeapi.dll
c:\windows\system32\profmap.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\psapi.dll
c:\windows\system32\regapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\version.dll
c:\windows\system32\winsta.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msgina.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\odbc32.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\odbcint.dll
c:\windows\system32\shsvcs.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\ole32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\sxs.dll
c:\windows\system32\winscard.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\winmm.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\wlnotify.dll
c:\windows\system32\winspool.drv
c:\windows\system32\mpr.dll
c:\windows\system32\samlib.dll
c:\windows\system32\cscui.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\wdmaud.drv
c:\windows\system32\msacm32.drv
c:\windows\system32\msacm32.dll
c:\windows\system32\midimap.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbem\wbemcomn.dll
c:\windows\system32\wbem\wbemsvc.dll
C:\WINDOWS\SYSTEM32\SERVICES.EXE
c:\windows\system32\services.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\scesrv.dll
c:\windows\system32\authz.dll
c:\windows\system32\umpnpmgr.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ncobjapi.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\eventlog.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
C:\WINDOWS\SYSTEM32\LSASS.EXE
c:\windows\system32\lsass.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\lsasrv.dll
c:\windows\system32\mpr.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\samsrv.dll
c:\windows\system32\cryptdll.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msprivs.dll
c:\windows\system32\kerberos.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\netlogon.dll
c:\windows\system32\w32time.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\schannel.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\wdigest.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\scecli.dll
c:\windows\system32\ipsecsvc.dll
c:\windows\system32\authz.dll
c:\windows\system32\oakley.dll
c:\windows\system32\winipsec.dll
c:\windows\system32\pstorsvc.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\psbase.dll
c:\windows\system32\dssenh.dll
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\rpcss.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\termsrv.dll
c:\windows\system32\icaapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\authz.dll
c:\windows\system32\mstlsapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\atl.dll
c:\windows\system32\regapi.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\rpcss.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\shsvcs.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\uxtuneup.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\wzcsvc.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\wmi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\esent.dll
c:\windows\system32\atl.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\rastls.dll
c:\windows\system32\cryptui.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\mprapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\schannel.dll
c:\windows\system32\winscard.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\wzcsapi.dll
c:\windows\system32\raschap.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\schedsvc.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\msidle.dll
c:\windows\system32\audiosrv.dll
c:\windows\system32\wkssvc.dll
c:\windows\system32\qmgr.dll
c:\windows\system32\mpr.dll
c:\windows\system32\shfolder.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\srsvc.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\seclogon.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\netman.dll
c:\windows\system32\netshell.dll
c:\windows\system32\credui.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\srvsvc.dll
c:\windows\pchealth\helpctr\binaries\pchsvc.dll
c:\windows\system32\es.dll
c:\windows\system32\ersvc.dll
c:\windows\system32\dmserver.dll
c:\windows\system32\cryptsvc.dll
c:\windows\system32\certcli.dll
c:\windows\system32\trkwks.dll
c:\windows\system32\w32time.dll
c:\windows\system32\sens.dll
c:\windows\system32\browser.dll
c:\windows\system32\wuauserv.dll
c:\windows\system32\wbem\wmisvc.dll
c:\windows\system32\vssapi.dll
c:\windows\system32\wuaueng.dll
c:\windows\system32\winspool.drv
c:\windows\system32\cabinet.dll
c:\windows\system32\mspatcha.dll
c:\windows\system32\ipnathlp.dll
c:\windows\system32\authz.dll
c:\windows\system32\wscsvc.dll
c:\windows\system32\msi.dll
c:\windows\system32\wbem\wbemcomn.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\sxs.dll
c:\windows\system32\wbem\wbemcore.dll
c:\windows\system32\wbem\esscli.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\comsvcs.dll
c:\windows\system32\colbact.dll
c:\windows\system32\mtxclu.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\clusapi.dll
c:\windows\system32\resutils.dll
c:\windows\system32\wbem\wmiutils.dll
c:\windows\system32\wbem\repdrvfs.dll
c:\windows\system32\wbem\wmiprvsd.dll
c:\windows\system32\ncobjapi.dll
c:\windows\system32\wbem\wbemess.dll
c:\windows\system32\tapisrv.dll
c:\windows\system32\psapi.dll
c:\windows\system32\rasmans.dll
c:\windows\system32\winipsec.dll
c:\windows\system32\netcfgx.dll
c:\windows\system32\upnp.dll
c:\windows\system32\ssdpapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\rastapi.dll
c:\windows\system32\unimdm.tsp
c:\windows\system32\uniplat.dll
c:\windows\system32\kmddsp.tsp
c:\windows\system32\ndptsp.tsp
c:\windows\system32\ipconf.tsp
c:\windows\system32\h323.tsp
c:\windows\system32\wbem\ncprov.dll
c:\windows\system32\hidphone.tsp
c:\windows\system32\hid.dll
c:\windows\system32\rasppp.dll
c:\windows\system32\ntlsapi.dll
c:\windows\system32\kerberos.dll
c:\windows\system32\cryptdll.dll
c:\windows\system32\rasdlg.dll
c:\windows\system32\msxml3.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\wups2.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\advpack.dll
c:\windows\system32\catsrvut.dll
c:\windows\system32\catsrv.dll
c:\windows\system32\mfcsubs.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\dssenh.dll
c:\windows\system32\wbem\wbemcons.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\mlang.dll
c:\windows\system32\xmlprovi.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\dnsrslvr.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lmhsvc.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\webclnt.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\alrsvc.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ssdpsrv.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\upnphost.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\ssdpapi.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\httpapi.dll
C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
c:\windows\system32\spoolsv.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\spoolss.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\localspl.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\winspool.drv
c:\windows\system32\netapi32.dll
c:\windows\system32\cnbjmon.dll
c:\windows\system32\cnmlm83.dll
c:\windows\system32\psapi.dll
c:\windows\system32\pjlmon.dll
c:\windows\system32\tcpmon.dll
c:\windows\system32\usbmon.dll
c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\win32spl.dll
c:\windows\system32\netrap.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\inetpp.dll
c:\windows\system32\xpsp2res.dll
C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\AVGUARD.EXE
c:\program files\avira\antivir personaledition classic\avguard.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\version.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\program files\avira\antivir personaledition classic\avgio.dll
c:\program files\avira\antivir personaledition classic\avevtlog.dll
c:\program files\avira\antivir personaledition classic\guardmsg.dll
c:\program files\avira\antivir personaledition classic\sqlite3.dll
c:\program files\avira\antivir personaledition classic\msvcr71.dll
c:\program files\avira\antivir personaledition classic\avpref.dll
c:\program files\avira\antivir personaledition classic\smtplib.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\program files\avira\antivir personaledition classic\avpack32.dll
c:\program files\avira\antivir personaledition classic\unacev2.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\program files\avira\antivir personaledition classic\avipc.dll
c:\windows\system32\fltlib.dll
c:\program files\avira\antivir personaledition classic\avewin32.dll
C:\WINDOWS\SOUNDMAN.EXE
c:\windows\soundman.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\winmm.dll
c:\windows\system32\hid.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\ole32.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\oleaut32.dll
C:\PROGRAM FILES\SCANSOFT\OMNIPAGESE4.0\OPWARESE4.EXE
c:\program files\scansoft\omnipagese4.0\opwarese4.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctf.dll
C:\PROGRAM FILES\D-TOOLS\DAEMON.EXE
c:\program files\d-tools\daemon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\daemon.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\samlib.dll
c:\program files\d-tools\pfctoc.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\winspool.drv
c:\program files\d-tools\plugins\images\ccdmount.dll
c:\program files\d-tools\plugins\images\mdsmount.dll
c:\program files\d-tools\plugins\images\nrgmount.dll
c:\program files\d-tools\plugins\images\pdimount.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\dsound.dll
c:\windows\system32\winmm.dll
C:\PROGRAM FILES\JAVA\JRE1.6.0_03\BIN\JUSCHED.EXE
c:\program files\java\jre1.6.0_03\bin\jusched.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\wininet.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ole32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
C:\PROGRAM FILES\WINAMP\WINAMPA.EXE
c:\program files\winamp\winampa.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\program files\winamp\nscrt.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\msctf.dll
C:\WINDOWS\SYSTEM32\LVCOMSX.EXE
c:\windows\system32\lvcomsx.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\version.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lvmaenum.dll
c:\windows\system32\hid.dll
c:\windows\system32\msvcp71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\lvcomcx.dll
C:\PROGRAM FILES\LOGITECH\VIDEO\LOGITRAY.EXE
c:\program files\logitech\video\logitray.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\program files\logitech\video\qcui2.dll
c:\windows\system32\avifil32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\msvfw32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msimg32.dll
c:\program files\logitech\video\ltwvc12n.dll
c:\windows\system32\mfc71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp71.dll
c:\program files\logitech\video\ltfil12n.dll
c:\program files\logitech\video\ltkrn12n.dll
c:\windows\system32\version.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\mfc71fra.dll
c:\program files\logitech\video\lqcui2.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\program files\logitech\video\llogtray.dll
c:\windows\system32\msctfime.ime
c:\program files\logitech\video\ltdis12n.dll
c:\program files\logitech\video\ltimg12n.dll
c:\program files\logitech\video\ltefx12n.dll
c:\program files\logitech\video\lffax12n.dll
c:\program files\logitech\video\lfcmp12n.dll
c:\program files\logitech\video\lftif12n.dll
c:\program files\logitech\video\lfbmp12n.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lvmaenum.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\lvcomcx.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\program files\logitech\video\fxsvrps.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\AVGNT.EXE
c:\program files\avira\antivir personaledition classic\avgnt.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\version.dll
c:\program files\avira\antivir personaledition classic\mfc71u.dll
c:\program files\avira\antivir personaledition classic\msvcr71.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\ole32.dll
c:\program files\avira\antivir personaledition classic\cclib.dll
c:\program files\avira\antivir personaledition classic\msvcp71.dll
c:\windows\system32\imm32.dll
c:\windows\system32\mfc71fra.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\program files\avira\antivir personaledition classic\ccgen.dll
c:\program files\avira\antivir personaledition classic\ccgenrc.dll
c:\program files\avira\antivir personaledition classic\ccguard.dll
c:\program files\avira\antivir personaledition classic\ccgrdrc.dll
c:\program files\avira\antivir personaledition classic\avipc.dll
c:\program files\avira\antivir personaledition classic\ccupdate.dll
c:\program files\avira\antivir personaledition classic\ccupdrc.dll
c:\program files\avira\antivir personaledition classic\cclic.dll
c:\program files\avira\antivir personaledition classic\cclicrc.dll
c:\program files\avira\antivir personaledition classic\ccmsg.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
C:\WINDOWS\SYSTEM32\CTFMON.EXE
c:\windows\system32\ctfmon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\msutb.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\docume~1\maman\locals~1\temp\iadhide4.dll
C:\PROGRAM FILES\PICASA2\PICASAMEDIADETECTOR.EXE
c:\program files\picasa2\picasamediadetector.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\sti.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
C:\PROGRAM FILES\SHAREAZA\SHAREAZA.EXE
c:\program files\shareaza\shareaza.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\msi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\winspool.drv
c:\windows\system32\imm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shfolder.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\powrprof.dll
c:\program files\shareaza\geoip.dll
c:\windows\system32\msvcr71.dll
c:\program files\shareaza\libgfl280.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\msctfime.ime
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\program files\shareaza\plugins\imageviewer.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\userenv.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\sensapi.dll
c:\program files\shareaza\plugins\mediaimageservices.dll
c:\program files\shareaza\plugins\gflimageservices.dll
c:\program files\shareaza\plugins\medialibrarybuilder.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msdmo.dll
c:\windows\system32\ddraw.dll
c:\windows\system32\dciman32.dll
c:\windows\system32\wsock32.dll
c:\program files\fichiers communs\ahead\lib\advrcntr.dll
c:\program files\pinnacle\shared files\pixie\pixie.dll
c:\windows\system32\rsaenh.dll
C:\PROGRAM FILES\TUNEUP UTILITIES 2008\MEMOPTIMIZER.EXE
c:\program files\tuneup utilities 2008\memoptimizer.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\program files\tuneup utilities 2008\rtl100.bpl
c:\windows\system32\oleaut32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\version.dll
c:\windows\system32\mpr.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\msvcp60.dll
c:\program files\tuneup utilities 2008\vcl100.bpl
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\shell32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\comdlg32.dll
c:\windows\system32\oledlg.dll
c:\program files\tuneup utilities 2008\maincontrols.bpl
c:\program files\tuneup utilities 2008\gr32_d6.bpl
c:\program files\tuneup utilities 2008\vcljpg100.bpl
c:\windows\system32\winmm.dll
c:\program files\tuneup utilities 2008\regexp.bpl
c:\program files\tuneup utilities 2008\dec.bpl
c:\program files\tuneup utilities 2008\tubase.bpl
c:\program files\tuneup utilities 2008\tucompression.bpl
c:\program files\tuneup utilities 2008\vclx100.bpl
c:\program files\tuneup utilities 2008\html.bpl
c:\program files\tuneup utilities 2008\smallunits.bpl
c:\program files\tuneup utilities 2008\ntrtl60.bpl
c:\program files\tuneup utilities 2008\appinitialization.bpl
c:\program files\tuneup utilities 2008\internet.bpl
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\program files\tuneup utilities 2008\icsdel60.bpl
c:\program files\tuneup utilities 2008\traces.bpl
c:\program files\tuneup utilities 2008\tushredder.bpl
c:\program files\tuneup utilities 2008\viscontrols.bpl
c:\program files\tuneup utilities 2008\thememanager.bpl
c:\program files\tuneup utilities 2008\tukernel.bpl
c:\program files\tuneup utilities 2008\tubasic.bpl
c:\program files\tuneup utilities 2008\tushell.bpl
c:\program files\tuneup utilities 2008\tuicoengineerdirtree.bpl
c:\program files\tuneup utilities 2008\syscontrols.bpl
c:\program files\tuneup utilities 2008\indicators.bpl
c:\program files\tuneup utilities 2008\sysinfo.bpl
c:\program files\tuneup utilities 2008\msi_d6.bpl
c:\windows\system32\netapi32.dll
c:\program files\tuneup utilities 2008\xmlcomponents.bpl
c:\windows\system32\msi.dll
c:\windows\system32\iphlpapi.dll
c:\program files\tuneup utilities 2008\ehs_d6.bpl
c:\program files\tuneup utilities 2008\commonforms.bpl
c:\windows\system32\imm32.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\hhctrl.ocx
c:\windows\system32\mui\000c\hhctrlui.dll
C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BACKWEB-8876480.EXE
c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\imm32.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\backweb.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\clntutil.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\bwsec.dll
c:\windows\system32\snmpapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\winmm.dll
c:\windows\system32\version.dll
c:\windows\system32\wininet.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\mfc42.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\wsock32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\mfc42loc.dll
c:\windows\system32\comctl32.dll
c:\progra~1\logitech\deskto~1\8876480\614~1.68-\program\en\clientrc.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\program files\logitech\desktop messenger\8876480\program\bwfiles-8876480.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\bwfiles.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\xpsp2res.dll
c:\program files\logitech\desktop messenger\8876480\program\bwscriptext-8876480.dll
c:\windows\system32\inetmib1.dll
c:\windows\system32\iphlpapi.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\bwscriptext.dll
c:\windows\system32\mprapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\atl.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\samlib.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\vbscript.dll
c:\windows\system32\sxs.dll
c:\program files\logitech\desktop messenger\8876480\program\syncext.dll
c:\windows\system32\msi.dll
c:\windows\system32\wdmaud.drv
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msacm32.drv
c:\windows\system32\msacm32.dll
c:\windows\system32\midimap.dll
C:\PROGRAM FILES\EMULE\EMULE.EXE
c:\program files\emule\emule.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\winmm.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\winspool.drv
c:\windows\system32\imm32.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\riched20.dll
c:\program files\emule\lang\fr_fr.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\icmp.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\asycfilt.dll
c:\windows\system32\browseui.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\userenv.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\shdocvw.dll
c:\windows\system32\cryptui.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\psapi.dll
C:\PROGRAM FILES\FINEPIXVIEWER\QUICKDCF.EXE
c:\program files\finepixviewer\quickdcf.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\msvcrt.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctfime.ime
C:\PROGRAM FILES\RALINK\COMMON\RAUI.EXE
c:\program files\ralink\common\raui.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\program files\ralink\common\acauth.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\version.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\oledlg.dll
c:\windows\system32\olepro32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
C:\PROGRAM FILES\LOGITECH\VIDEO\FXSVR2.EXE
c:\program files\logitech\video\fxsvr2.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\windows\system32\mfc71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp71.dll
c:\windows\system32\imm32.dll
c:\windows\system32\mfc71fra.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lvmaenum.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\lvcomcx.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\program files\logitech\video\fxsvrps.dll
C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\SCHED.EXE
c:\program files\avira\antivir personaledition classic\sched.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\secur32.dll
c:\windows\system32\version.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\program files\avira\antivir personaledition classic\msvcr71.dll
c:\program files\avira\antivir personaledition classic\msvcp71.dll
c:\windows\system32\imm32.dll
c:\program files\avira\antivir personaledition classic\schedr.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\program files\avira\antivir personaledition classic\avevtlog.dll
c:\program files\avira\antivir personaledition classic\sqlite3.dll
c:\windows\system32\comctl32.dll
c:\program files\avira\antivir personaledition classic\avipc.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\apphelp.dll
C:\WINDOWS\SYSTEM32\NVSVC32.EXE
c:\windows\system32\nvsvc32.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\imm32.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\nvapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\version.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
C:\WINDOWS\SYSTEM32\SPUPDSVC.EXE
c:\windows\system32\spupdsvc.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\cabinet.dll
c:\windows\system32\ole32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\version.dll
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\wiaservc.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\mscms.dll
c:\windows\system32\winspool.drv
c:\windows\system32\winsta.dll
c:\windows\system32\netapi3
Ad-Aware 2007 Free Edition
Log File Created on:2008-03-0417:05:58
Using Definitions File:C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware 2007\core.aawdef
Computer name:DEMARTEA-N2BXL5
Name of user performing scan:SYSTEM
Name of user ordering scan:maman
Scan completed successfully
System Information
File Version Information
Ad-Aware 2007 Settings
Extended Ad-Aware 2007 Settings
Database Information
Scan Statistics
Scan Detailed Statistics
Infections Found
Listing of running processes
System Information
Number of processors:1
Processor type:AMD Athlon(tm) XP 1800+
Memory Available:26%
Total Physical Memory:536330240 Bytes
Available Physical Memory:134115328 Bytes
Total Page File Size:1310613504 Bytes
Available On Page File:691126272 Bytes
Total Virtual Memory:2147352576 Bytes
Available Virtual Memory:1987649536 Bytes
OS:Microsoft Windows XP 5.1 (Build 2600)
[to top]
File Verion Information
File Version
CEAPI.dll 7,0,2,6
aawservice.exe 7,0,2,6
Ad-Aware2007.exe 7.0.2.6
[to top]
Ad-Aware 2007 Settings
Skipping files larger than:1048576 Bytes
Ignoring infections with lower TAI than:3
Safe Mode:False
[to top]
Extended Ad-Aware 2007 Settings
Unload malicious processes and modules
Unload Modules
Let Windows remove files at Start-Up
Deactivate Ad-Watch
Re-analyze Scan Result
Delete Restored Items
Write Protect System Files
Create Log file
Include basic settings
Include advanced settings
Include user and computer name
Environment information
Running processes
Running processes and modules
Include info about ignored objects in log file
Consider definitions File Outdated after x days
Proxy URL
Proxy Port
[to top]
Database Info
Version number:43
Build Number:0
Build Date and Time:2008/01/0709:45:44
[to top]
Scan Statistics
Method:Full
Items Scanned:222265
Infections Detected:4
Infections Removed:0
Infections Quarantined:0
Infections Ignored:0
[to top]
Scan Detailed Statistics
Type Critical Total
Process Scan 0 0
Registry Scan 0 0
Registry PE Scan 0 0
Hosts Scan 0 0
File Scan 0 0
Folder Scan 0 0
LSP Scan 0 0
ADS Scan 0 0
Cookie Scan 4 4
File Hash Scan 0 0
[to top]
Infections Found
Family Id Name Category TAI
725 Tracking Cookie DataMiner 3
[600000144] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt doubleclick.net id /
[600000262] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt metriweb.be MetriWeb /
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com c1 /belgacom/
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com s1 /belgacom/skynet/
Quarantined Objects
Family Id Name Category TAI
Removed Objects
Family Id Name Category TAI
725 Tracking Cookie DataMiner 3
[600000144] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt doubleclick.net id /
[600000262] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt metriweb.be MetriWeb /
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com c1 /belgacom/
[600000142] Browser: Firefox Cookie: C:\Documents and Settings\maman\Application Data\Mozilla\Firefox\Profiles/1zah4bla.default\cookies.txt be.sitestat.com s1 /belgacom/skynet/
[to top]
Listing of Running Processes
C:\WINDOWS\SYSTEM32\SMSS.EXE
c:\windows\system32\smss.exe
c:\windows\system32\ntdll.dll
C:\WINDOWS\SYSTEM32\CSRSS.EXE
c:\windows\system32\csrss.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\csrsrv.dll
c:\windows\system32\basesrv.dll
c:\windows\system32\winsrv.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\sxs.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\version.dll
C:\WINDOWS\SYSTEM32\WINLOGON.EXE
c:\windows\system32\winlogon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\authz.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\nddeapi.dll
c:\windows\system32\profmap.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\psapi.dll
c:\windows\system32\regapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\version.dll
c:\windows\system32\winsta.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msgina.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\odbc32.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\odbcint.dll
c:\windows\system32\shsvcs.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\ole32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\sxs.dll
c:\windows\system32\winscard.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\winmm.dll
c:\windows\system32\cscdll.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\wlnotify.dll
c:\windows\system32\winspool.drv
c:\windows\system32\mpr.dll
c:\windows\system32\samlib.dll
c:\windows\system32\cscui.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\wdmaud.drv
c:\windows\system32\msacm32.drv
c:\windows\system32\msacm32.dll
c:\windows\system32\midimap.dll
c:\windows\system32\wbem\wbemprox.dll
c:\windows\system32\wbem\wbemcomn.dll
c:\windows\system32\wbem\wbemsvc.dll
C:\WINDOWS\SYSTEM32\SERVICES.EXE
c:\windows\system32\services.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\scesrv.dll
c:\windows\system32\authz.dll
c:\windows\system32\umpnpmgr.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ncobjapi.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\eventlog.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\psapi.dll
c:\windows\system32\wtsapi32.dll
C:\WINDOWS\SYSTEM32\LSASS.EXE
c:\windows\system32\lsass.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\lsasrv.dll
c:\windows\system32\mpr.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\samsrv.dll
c:\windows\system32\cryptdll.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msprivs.dll
c:\windows\system32\kerberos.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\netlogon.dll
c:\windows\system32\w32time.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\schannel.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\wdigest.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\scecli.dll
c:\windows\system32\ipsecsvc.dll
c:\windows\system32\authz.dll
c:\windows\system32\oakley.dll
c:\windows\system32\winipsec.dll
c:\windows\system32\pstorsvc.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\psbase.dll
c:\windows\system32\dssenh.dll
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\rpcss.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\termsrv.dll
c:\windows\system32\icaapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\authz.dll
c:\windows\system32\mstlsapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\atl.dll
c:\windows\system32\regapi.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\rpcss.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\shsvcs.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\uxtuneup.dll
c:\windows\system32\dbghelp.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\dhcpcsvc.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\wzcsvc.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\wmi.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\esent.dll
c:\windows\system32\atl.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\rastls.dll
c:\windows\system32\cryptui.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\mprapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\schannel.dll
c:\windows\system32\winscard.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\wzcsapi.dll
c:\windows\system32\raschap.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\schedsvc.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\msidle.dll
c:\windows\system32\audiosrv.dll
c:\windows\system32\wkssvc.dll
c:\windows\system32\qmgr.dll
c:\windows\system32\mpr.dll
c:\windows\system32\shfolder.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\srsvc.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\seclogon.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\netman.dll
c:\windows\system32\netshell.dll
c:\windows\system32\credui.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\srvsvc.dll
c:\windows\pchealth\helpctr\binaries\pchsvc.dll
c:\windows\system32\es.dll
c:\windows\system32\ersvc.dll
c:\windows\system32\dmserver.dll
c:\windows\system32\cryptsvc.dll
c:\windows\system32\certcli.dll
c:\windows\system32\trkwks.dll
c:\windows\system32\w32time.dll
c:\windows\system32\sens.dll
c:\windows\system32\browser.dll
c:\windows\system32\wuauserv.dll
c:\windows\system32\wbem\wmisvc.dll
c:\windows\system32\vssapi.dll
c:\windows\system32\wuaueng.dll
c:\windows\system32\winspool.drv
c:\windows\system32\cabinet.dll
c:\windows\system32\mspatcha.dll
c:\windows\system32\ipnathlp.dll
c:\windows\system32\authz.dll
c:\windows\system32\wscsvc.dll
c:\windows\system32\msi.dll
c:\windows\system32\wbem\wbemcomn.dll
c:\windows\system32\sfc.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\sxs.dll
c:\windows\system32\wbem\wbemcore.dll
c:\windows\system32\wbem\esscli.dll
c:\windows\system32\wbem\fastprox.dll
c:\windows\system32\comsvcs.dll
c:\windows\system32\colbact.dll
c:\windows\system32\mtxclu.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\clusapi.dll
c:\windows\system32\resutils.dll
c:\windows\system32\wbem\wmiutils.dll
c:\windows\system32\wbem\repdrvfs.dll
c:\windows\system32\wbem\wmiprvsd.dll
c:\windows\system32\ncobjapi.dll
c:\windows\system32\wbem\wbemess.dll
c:\windows\system32\tapisrv.dll
c:\windows\system32\psapi.dll
c:\windows\system32\rasmans.dll
c:\windows\system32\winipsec.dll
c:\windows\system32\netcfgx.dll
c:\windows\system32\upnp.dll
c:\windows\system32\ssdpapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\rastapi.dll
c:\windows\system32\unimdm.tsp
c:\windows\system32\uniplat.dll
c:\windows\system32\kmddsp.tsp
c:\windows\system32\ndptsp.tsp
c:\windows\system32\ipconf.tsp
c:\windows\system32\h323.tsp
c:\windows\system32\wbem\ncprov.dll
c:\windows\system32\hidphone.tsp
c:\windows\system32\hid.dll
c:\windows\system32\rasppp.dll
c:\windows\system32\ntlsapi.dll
c:\windows\system32\kerberos.dll
c:\windows\system32\cryptdll.dll
c:\windows\system32\rasdlg.dll
c:\windows\system32\msxml3.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\wups2.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\advpack.dll
c:\windows\system32\catsrvut.dll
c:\windows\system32\catsrv.dll
c:\windows\system32\mfcsubs.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\dssenh.dll
c:\windows\system32\wbem\wbemcons.dll
c:\windows\system32\wbem\wbemsvc.dll
c:\windows\system32\mlang.dll
c:\windows\system32\xmlprovi.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\dnsrslvr.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lmhsvc.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\webclnt.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\alrsvc.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\ssdpsrv.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\upnphost.dll
c:\windows\system32\winhttp.dll
c:\windows\system32\ssdpapi.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\httpapi.dll
C:\WINDOWS\SYSTEM32\SPOOLSV.EXE
c:\windows\system32\spoolsv.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\spoolss.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\localspl.dll
c:\windows\system32\sfc_os.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\winspool.drv
c:\windows\system32\netapi32.dll
c:\windows\system32\cnbjmon.dll
c:\windows\system32\cnmlm83.dll
c:\windows\system32\psapi.dll
c:\windows\system32\pjlmon.dll
c:\windows\system32\tcpmon.dll
c:\windows\system32\usbmon.dll
c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\win32spl.dll
c:\windows\system32\netrap.dll
c:\windows\system32\ntdsapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\inetpp.dll
c:\windows\system32\xpsp2res.dll
C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\AVGUARD.EXE
c:\program files\avira\antivir personaledition classic\avguard.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\version.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\program files\avira\antivir personaledition classic\avgio.dll
c:\program files\avira\antivir personaledition classic\avevtlog.dll
c:\program files\avira\antivir personaledition classic\guardmsg.dll
c:\program files\avira\antivir personaledition classic\sqlite3.dll
c:\program files\avira\antivir personaledition classic\msvcr71.dll
c:\program files\avira\antivir personaledition classic\avpref.dll
c:\program files\avira\antivir personaledition classic\smtplib.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\program files\avira\antivir personaledition classic\avpack32.dll
c:\program files\avira\antivir personaledition classic\unacev2.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\program files\avira\antivir personaledition classic\avipc.dll
c:\windows\system32\fltlib.dll
c:\program files\avira\antivir personaledition classic\avewin32.dll
C:\WINDOWS\SOUNDMAN.EXE
c:\windows\soundman.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\winmm.dll
c:\windows\system32\hid.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\ole32.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\oleaut32.dll
C:\PROGRAM FILES\SCANSOFT\OMNIPAGESE4.0\OPWARESE4.EXE
c:\program files\scansoft\omnipagese4.0\opwarese4.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctf.dll
C:\PROGRAM FILES\D-TOOLS\DAEMON.EXE
c:\program files\d-tools\daemon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\daemon.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\samlib.dll
c:\program files\d-tools\pfctoc.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\winspool.drv
c:\program files\d-tools\plugins\images\ccdmount.dll
c:\program files\d-tools\plugins\images\mdsmount.dll
c:\program files\d-tools\plugins\images\nrgmount.dll
c:\program files\d-tools\plugins\images\pdimount.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\dsound.dll
c:\windows\system32\winmm.dll
C:\PROGRAM FILES\JAVA\JRE1.6.0_03\BIN\JUSCHED.EXE
c:\program files\java\jre1.6.0_03\bin\jusched.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\wininet.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\ole32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
C:\PROGRAM FILES\WINAMP\WINAMPA.EXE
c:\program files\winamp\winampa.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\program files\winamp\nscrt.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\msctf.dll
C:\WINDOWS\SYSTEM32\LVCOMSX.EXE
c:\windows\system32\lvcomsx.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\version.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lvmaenum.dll
c:\windows\system32\hid.dll
c:\windows\system32\msvcp71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\lvcomcx.dll
C:\PROGRAM FILES\LOGITECH\VIDEO\LOGITRAY.EXE
c:\program files\logitech\video\logitray.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\program files\logitech\video\qcui2.dll
c:\windows\system32\avifil32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\msvfw32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\msimg32.dll
c:\program files\logitech\video\ltwvc12n.dll
c:\windows\system32\mfc71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp71.dll
c:\program files\logitech\video\ltfil12n.dll
c:\program files\logitech\video\ltkrn12n.dll
c:\windows\system32\version.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\mfc71fra.dll
c:\program files\logitech\video\lqcui2.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\program files\logitech\video\llogtray.dll
c:\windows\system32\msctfime.ime
c:\program files\logitech\video\ltdis12n.dll
c:\program files\logitech\video\ltimg12n.dll
c:\program files\logitech\video\ltefx12n.dll
c:\program files\logitech\video\lffax12n.dll
c:\program files\logitech\video\lfcmp12n.dll
c:\program files\logitech\video\lftif12n.dll
c:\program files\logitech\video\lfbmp12n.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lvmaenum.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\lvcomcx.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\program files\logitech\video\fxsvrps.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\AVGNT.EXE
c:\program files\avira\antivir personaledition classic\avgnt.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\version.dll
c:\program files\avira\antivir personaledition classic\mfc71u.dll
c:\program files\avira\antivir personaledition classic\msvcr71.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shell32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\ole32.dll
c:\program files\avira\antivir personaledition classic\cclib.dll
c:\program files\avira\antivir personaledition classic\msvcp71.dll
c:\windows\system32\imm32.dll
c:\windows\system32\mfc71fra.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\program files\avira\antivir personaledition classic\ccgen.dll
c:\program files\avira\antivir personaledition classic\ccgenrc.dll
c:\program files\avira\antivir personaledition classic\ccguard.dll
c:\program files\avira\antivir personaledition classic\ccgrdrc.dll
c:\program files\avira\antivir personaledition classic\avipc.dll
c:\program files\avira\antivir personaledition classic\ccupdate.dll
c:\program files\avira\antivir personaledition classic\ccupdrc.dll
c:\program files\avira\antivir personaledition classic\cclic.dll
c:\program files\avira\antivir personaledition classic\cclicrc.dll
c:\program files\avira\antivir personaledition classic\ccmsg.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
C:\WINDOWS\SYSTEM32\CTFMON.EXE
c:\windows\system32\ctfmon.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msctf.dll
c:\windows\system32\msutb.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\docume~1\maman\locals~1\temp\iadhide4.dll
C:\PROGRAM FILES\PICASA2\PICASAMEDIADETECTOR.EXE
c:\program files\picasa2\picasamediadetector.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\sti.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
C:\PROGRAM FILES\SHAREAZA\SHAREAZA.EXE
c:\program files\shareaza\shareaza.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\msi.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\winspool.drv
c:\windows\system32\imm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shfolder.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\powrprof.dll
c:\program files\shareaza\geoip.dll
c:\windows\system32\msvcr71.dll
c:\program files\shareaza\libgfl280.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\msctfime.ime
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\program files\shareaza\plugins\imageviewer.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\userenv.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\sensapi.dll
c:\program files\shareaza\plugins\mediaimageservices.dll
c:\program files\shareaza\plugins\gflimageservices.dll
c:\program files\shareaza\plugins\medialibrarybuilder.dll
c:\windows\system32\comdlg32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msdmo.dll
c:\windows\system32\ddraw.dll
c:\windows\system32\dciman32.dll
c:\windows\system32\wsock32.dll
c:\program files\fichiers communs\ahead\lib\advrcntr.dll
c:\program files\pinnacle\shared files\pixie\pixie.dll
c:\windows\system32\rsaenh.dll
C:\PROGRAM FILES\TUNEUP UTILITIES 2008\MEMOPTIMIZER.EXE
c:\program files\tuneup utilities 2008\memoptimizer.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\program files\tuneup utilities 2008\rtl100.bpl
c:\windows\system32\oleaut32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\version.dll
c:\windows\system32\mpr.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\wsock32.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\oleacc.dll
c:\windows\system32\msvcp60.dll
c:\program files\tuneup utilities 2008\vcl100.bpl
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\shell32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\comdlg32.dll
c:\windows\system32\oledlg.dll
c:\program files\tuneup utilities 2008\maincontrols.bpl
c:\program files\tuneup utilities 2008\gr32_d6.bpl
c:\program files\tuneup utilities 2008\vcljpg100.bpl
c:\windows\system32\winmm.dll
c:\program files\tuneup utilities 2008\regexp.bpl
c:\program files\tuneup utilities 2008\dec.bpl
c:\program files\tuneup utilities 2008\tubase.bpl
c:\program files\tuneup utilities 2008\tucompression.bpl
c:\program files\tuneup utilities 2008\vclx100.bpl
c:\program files\tuneup utilities 2008\html.bpl
c:\program files\tuneup utilities 2008\smallunits.bpl
c:\program files\tuneup utilities 2008\ntrtl60.bpl
c:\program files\tuneup utilities 2008\appinitialization.bpl
c:\program files\tuneup utilities 2008\internet.bpl
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\program files\tuneup utilities 2008\icsdel60.bpl
c:\program files\tuneup utilities 2008\traces.bpl
c:\program files\tuneup utilities 2008\tushredder.bpl
c:\program files\tuneup utilities 2008\viscontrols.bpl
c:\program files\tuneup utilities 2008\thememanager.bpl
c:\program files\tuneup utilities 2008\tukernel.bpl
c:\program files\tuneup utilities 2008\tubasic.bpl
c:\program files\tuneup utilities 2008\tushell.bpl
c:\program files\tuneup utilities 2008\tuicoengineerdirtree.bpl
c:\program files\tuneup utilities 2008\syscontrols.bpl
c:\program files\tuneup utilities 2008\indicators.bpl
c:\program files\tuneup utilities 2008\sysinfo.bpl
c:\program files\tuneup utilities 2008\msi_d6.bpl
c:\windows\system32\netapi32.dll
c:\program files\tuneup utilities 2008\xmlcomponents.bpl
c:\windows\system32\msi.dll
c:\windows\system32\iphlpapi.dll
c:\program files\tuneup utilities 2008\ehs_d6.bpl
c:\program files\tuneup utilities 2008\commonforms.bpl
c:\windows\system32\imm32.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\uxtheme.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\hhctrl.ocx
c:\windows\system32\mui\000c\hhctrlui.dll
C:\PROGRAM FILES\LOGITECH\DESKTOP MESSENGER\8876480\PROGRAM\BACKWEB-8876480.EXE
c:\program files\logitech\desktop messenger\8876480\program\backweb-8876480.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\imm32.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\backweb.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\clntutil.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\bwsec.dll
c:\windows\system32\snmpapi.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\winmm.dll
c:\windows\system32\version.dll
c:\windows\system32\wininet.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\mfc42.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcp60.dll
c:\windows\system32\wsock32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\mfc42loc.dll
c:\windows\system32\comctl32.dll
c:\progra~1\logitech\deskto~1\8876480\614~1.68-\program\en\clientrc.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\program files\logitech\desktop messenger\8876480\program\bwfiles-8876480.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\bwfiles.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\wshtcpip.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\xpsp2res.dll
c:\program files\logitech\desktop messenger\8876480\program\bwscriptext-8876480.dll
c:\windows\system32\inetmib1.dll
c:\windows\system32\iphlpapi.dll
c:\program files\logitech\desktop messenger\8876480\6.1.4.68-8876480l\program\bwscriptext.dll
c:\windows\system32\mprapi.dll
c:\windows\system32\activeds.dll
c:\windows\system32\adsldpc.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\atl.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\samlib.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\rasadhlp.dll
c:\windows\system32\vbscript.dll
c:\windows\system32\sxs.dll
c:\program files\logitech\desktop messenger\8876480\program\syncext.dll
c:\windows\system32\msi.dll
c:\windows\system32\wdmaud.drv
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msacm32.drv
c:\windows\system32\msacm32.dll
c:\windows\system32\midimap.dll
C:\PROGRAM FILES\EMULE\EMULE.EXE
c:\program files\emule\emule.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\winmm.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\urlmon.dll
c:\windows\system32\iertutil.dll
c:\windows\system32\wininet.dll
c:\windows\system32\normaliz.dll
c:\windows\system32\winspool.drv
c:\windows\system32\imm32.dll
c:\windows\system32\rsaenh.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\riched20.dll
c:\program files\emule\lang\fr_fr.dll
c:\windows\system32\msimg32.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\hnetcfg.dll
c:\windows\system32\mswsock.dll
c:\windows\system32\wshtcpip.dll
c:\windows\system32\icmp.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\dnsapi.dll
c:\windows\system32\winrnr.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\rasadhlp.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
c:\windows\system32\asycfilt.dll
c:\windows\system32\browseui.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\userenv.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\shdocvw.dll
c:\windows\system32\cryptui.dll
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\psapi.dll
C:\PROGRAM FILES\FINEPIXVIEWER\QUICKDCF.EXE
c:\program files\finepixviewer\quickdcf.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\msvcrt.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\version.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msctfime.ime
C:\PROGRAM FILES\RALINK\COMMON\RAUI.EXE
c:\program files\ralink\common\raui.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\msasn1.dll
c:\program files\ralink\common\acauth.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\version.dll
c:\windows\system32\comdlg32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\winspool.drv
c:\windows\system32\oledlg.dll
c:\windows\system32\olepro32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wintrust.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\docume~1\maman\locals~1\temp\iadhide4.dll
C:\PROGRAM FILES\LOGITECH\VIDEO\FXSVR2.EXE
c:\program files\logitech\video\fxsvr2.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\version.dll
c:\windows\system32\mfc71.dll
c:\windows\system32\msvcr71.dll
c:\windows\system32\ole32.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msvcp71.dll
c:\windows\system32\imm32.dll
c:\windows\system32\mfc71fra.dll
c:\windows\system32\msctf.dll
c:\program files\scansoft\omnipagese4.0\ophookse4.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\lvmaenum.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\hid.dll
c:\windows\system32\lvcomcx.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\program files\logitech\video\fxsvrps.dll
C:\PROGRAM FILES\AVIRA\ANTIVIR PERSONALEDITION CLASSIC\SCHED.EXE
c:\program files\avira\antivir personaledition classic\sched.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\secur32.dll
c:\windows\system32\version.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\program files\avira\antivir personaledition classic\msvcr71.dll
c:\program files\avira\antivir personaledition classic\msvcp71.dll
c:\windows\system32\imm32.dll
c:\program files\avira\antivir personaledition classic\schedr.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\rasapi32.dll
c:\windows\system32\rasman.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\tapi32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\rtutils.dll
c:\windows\system32\winmm.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\program files\avira\antivir personaledition classic\avevtlog.dll
c:\program files\avira\antivir personaledition classic\sqlite3.dll
c:\windows\system32\comctl32.dll
c:\program files\avira\antivir personaledition classic\avipc.dll
c:\windows\system32\xpsp2res.dll
c:\windows\system32\clbcatq.dll
c:\windows\system32\comres.dll
c:\windows\system32\apphelp.dll
C:\WINDOWS\SYSTEM32\NVSVC32.EXE
c:\windows\system32\nvsvc32.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\userenv.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\powrprof.dll
c:\windows\system32\imm32.dll
c:\windows\system32\wtsapi32.dll
c:\windows\system32\winsta.dll
c:\windows\system32\netapi32.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\ole32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\oleaut32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\nvapi.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msctfime.ime
c:\windows\system32\wintrust.dll
c:\windows\system32\crypt32.dll
c:\windows\system32\msasn1.dll
c:\windows\system32\imagehlp.dll
c:\windows\system32\msv1_0.dll
c:\windows\system32\ws2_32.dll
c:\windows\system32\ws2help.dll
c:\windows\system32\iphlpapi.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\version.dll
c:\windows\system32\ntmarta.dll
c:\windows\system32\wldap32.dll
c:\windows\system32\samlib.dll
C:\WINDOWS\SYSTEM32\SPUPDSVC.EXE
c:\windows\system32\spupdsvc.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\user32.dll
c:\windows\system32\imm32.dll
c:\windows\system32\cabinet.dll
c:\windows\system32\ole32.dll
c:\windows\system32\apphelp.dll
c:\windows\system32\version.dll
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
c:\windows\system32\svchost.exe
c:\windows\system32\ntdll.dll
c:\windows\system32\kernel32.dll
c:\windows\system32\advapi32.dll
c:\windows\system32\rpcrt4.dll
c:\windows\system32\secur32.dll
c:\windows\system32\shimeng.dll
c:\windows\apppatch\acgenral.dll
c:\windows\system32\user32.dll
c:\windows\system32\gdi32.dll
c:\windows\system32\winmm.dll
c:\windows\system32\ole32.dll
c:\windows\system32\msvcrt.dll
c:\windows\system32\oleaut32.dll
c:\windows\system32\msacm32.dll
c:\windows\system32\version.dll
c:\windows\system32\shell32.dll
c:\windows\system32\shlwapi.dll
c:\windows\system32\userenv.dll
c:\windows\system32\uxtheme.dll
c:\windows\system32\imm32.dll
c:\windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll
c:\windows\system32\comctl32.dll
c:\windows\system32\wiaservc.dll
c:\windows\system32\cfgmgr32.dll
c:\windows\system32\setupapi.dll
c:\windows\system32\mscms.dll
c:\windows\system32\winspool.drv
c:\windows\system32\winsta.dll
c:\windows\system32\netapi3
29/02/2008 14:33:18 Autorisé(e) (based on user decision) value "SpybotDeletingB2431" (new data: "command /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup user entry!
29/02/2008 14:33:23 Autorisé(e) (based on user decision) value "SpybotDeletingD2540" (new data: "cmd /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup user entry!
29/02/2008 14:33:24 Autorisé(e) (based on user decision) value "SpybotDeletingA801" (new data: "command /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup global entry!
29/02/2008 14:33:25 Autorisé(e) (based on user decision) value "SpybotDeletingC9389" (new data: "cmd /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup global entry!
29/02/2008 15:49:03 Autorisé(e) (based on user decision) value "ccleaner" (new data: ""C:\Program Files\CCleaner\CCleaner.exe" /AUTO") ajouté(e) in System Startup user entry!
29/02/2008 16:12:52 Autorisé(e) (based on user decision) value "SpybotDeletingB2431" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 16:12:57 Autorisé(e) (based on user decision) value "SpybotDeletingD2540" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 16:13:00 Autorisé(e) (based on user decision) value "SpybotDeletingA801" (new data: "") supprimé(e) in System Startup global entry!
29/02/2008 16:13:03 Autorisé(e) (based on user decision) value "SpybotDeletingC9389" (new data: "") supprimé(e) in System Startup global entry!
29/02/2008 17:16:42 Refusé(e) (based on user decision) value "MsnMsgr" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 21:38:27 Autorisé(e) (based on user decision) value "TrojanScanner" (new data: "C:\Program Files\Trojan Remover\Trjscan.exe") ajouté(e) in System Startup global entry!
29/02/2008 21:39:41 Autorisé(e) (based on user decision) value "Streams Drivers" (new data: "") supprimé(e) in System Startup global entry!
29/02/2008 21:41:55 Refusé(e) (based on user decision) value "Trojan Remover" (new data: ""C:\Program Files\Trojan Remover\RMVTRJAN.EXE" /restart") ajouté(e) in System Startup global entry!
01/03/2008 00:27:00 Autorisé(e) (based on user decision) value "MSMSGS" (new data: "") supprimé(e) in System Startup user entry!
01/03/2008 00:27:04 Autorisé(e) (based on user decision) value "{7E853D72-626A-48EC-A868-BA8D5E23E045}" (new data: "") supprimé(e) in Browser Helper Object!
01/03/2008 00:27:05 Autorisé(e) (based on user decision) value "load" (new data: "") supprimé(e) in NT startup!
01/03/2008 09:35:09 Autorisé(e) (based on user decision) value "KernelFaultCheck" (new data: "") supprimé(e) in System Startup global entry!
01/03/2008 09:42:09 Autorisé(e) (based on user decision) value "{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" (new data: "") ajouté(e) in Internet Explorer searches!
01/03/2008 09:42:11 Autorisé(e) (based on user decision) value "{BC4FFE41-DE9F-46fa-B455-AAD49B9F9938}" (new data: "") supprimé(e) in Internet Explorer searches!
01/03/2008 09:42:16 Autorisé(e) (based on user decision) value "{EF99BD32-C1FB-11D2-892F-0090271D4F88}" (new data: "") supprimé(e) in Global browser toolbar!
01/03/2008 09:42:17 Autorisé(e) (based on user decision) value "{02478D38-C3F9-4EFB-9B51-7695ECA05670}" (new data: "") supprimé(e) in Browser Helper Object!
01/03/2008 09:49:13 Autorisé(e) (based on user decision) value "Search Page" (new data: "https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF") modifié(e) in Browser page!
01/03/2008 09:49:14 Autorisé(e) (based on user decision) value "Start Page" (new data: "https://www.msn.com/fr-fr/?ocid=iehp") modifié(e) in Browser page!
01/03/2008 09:49:16 Autorisé(e) (based on user decision) value "Default_Page_URL" (new data: "https://www.msn.com/fr-fr/?ocid=iehp") modifié(e) in Browser page!
01/03/2008 09:49:18 Autorisé(e) (based on user decision) value "Default_Search_URL" (new data: "https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF") modifié(e) in Browser page!
01/03/2008 11:12:06 Autorisé(e) (based on user decision) value "OnlineArmor GUI" (new data: ""C:\Program Files\Tall Emu\Online Armor\oaui.exe"") ajouté(e) in System Startup global entry!
01/03/2008 11:13:29 Autorisé(e) (based on user decision) value "Local Page" (new data: "C:\WINDOWS\system32\blank.htm") ajouté(e) in Browser page!
01/03/2008 11:57:08 Autorisé(e) (based on user decision) value "{BC4FFE41-DE9F-46FA-B455-AAD49B9F9938}" (new data: "") supprimé(e) in User-specific browser toolbar!
01/03/2008 11:57:10 Autorisé(e) (based on user decision) value "{1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A}" (new data: "") supprimé(e) in Browser Helper Object!
02/03/2008 00:27:06 Autorisé(e) (based on user decision) value "load" (new data: "") ajouté(e) in NT startup!
02/03/2008 00:32:30 Refusé(e) (based on user decision) value "Search Page" (new data: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch") modifié(e) in Browser page!
02/03/2008 00:32:36 Autorisé(e) (based on user decision) value "Search Bar" (new data: "") supprimé(e) in Browser page!
02/03/2008 00:32:40 Autorisé(e) (based on user decision) value "AutoRun" (new data: "") supprimé(e) in Command processor!
02/03/2008 00:32:42 Autorisé(e) (based on user decision) value "load" (new data: "") supprimé(e) in NT startup!
02/03/2008 00:32:52 Autorisé(e) (based on user decision) value "UserInit" (new data: "C:\WINDOWS\system32\userinit.exe,") modifié(e) in Winlogon!
02/03/2008 00:32:54 Autorisé(e) (based on user decision) value "scrnsave.exe" (new data: "") supprimé(e) in Desktop settings!
02/03/2008 00:42:03 Autorisé(e) (based on user decision) value "OnlineArmor GUI" (new data: "") supprimé(e) in System Startup global entry!
02/03/2008 00:42:55 Autorisé(e) (based on user decision) value "TrojanScanner" (new data: "") supprimé(e) in System Startup global entry!
03/02/2008 17:45:54 Autorisé(e) (based on user decision) value "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}" (new data: "Easy-WebPrint") ajouté(e) in Global browser toolbar!
03/02/2008 17:45:56 Autorisé(e) (based on user decision) value "{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}" (new data: "") ajouté(e) in Browser Helper Object!
03/02/2008 17:45:57 Autorisé(e) (based on user decision) value "Easy-WebPrint Ajouter à la liste d'impressions" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:45:58 Autorisé(e) (based on user decision) value "Easy-WebPrint Impression rapide" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:45:59 Autorisé(e) (based on user decision) value "Easy-WebPrint Imprimer" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:46:00 Autorisé(e) (based on user decision) value "Easy-WebPrint Prévisualiser" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:49:35 Autorisé(e) (based on user decision) value "RunCanonMsetUp" (new data: "C:\DOCUME~1\maman\LOCALS~1\Temp\MasterReboot\CANON_IJ\MCDCheck.exe") ajouté(e) in System Startup user entry!
03/02/2008 18:00:54 Autorisé(e) (based on user decision) value "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}" (new data: "") supprimé(e) in Global browser toolbar!
03/02/2008 18:00:55 Autorisé(e) (based on user decision) value "{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}" (new data: "") supprimé(e) in Browser Helper Object!
03/02/2008 18:00:56 Autorisé(e) (based on user decision) value "Easy-WebPrint Ajouter à la liste d'impressions" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:00:56 Autorisé(e) (based on user decision) value "Easy-WebPrint Impression rapide" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:00:57 Autorisé(e) (based on user decision) value "Easy-WebPrint Imprimer" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:00:58 Autorisé(e) (based on user decision) value "Easy-WebPrint Prévisualiser" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:04:31 Autorisé(e) (based on user decision) value "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}" (new data: "Easy-WebPrint") ajouté(e) in Global browser toolbar!
03/02/2008 18:04:32 Autorisé(e) (based on user decision) value "{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}" (new data: "") ajouté(e) in Browser Helper Object!
03/02/2008 18:04:33 Autorisé(e) (based on user decision) value "Easy-WebPrint Ajouter à la liste d'impressions" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 18:04:34 Autorisé(e) (based on user decision) value "Easy-WebPrint Impression rapide" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 18:04:34 Autorisé(e) (based on user decision) value "Easy-WebPrint Imprimer" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 18:04:35 Autorisé(e) (based on user decision) value "Easy-WebPrint Prévisualiser" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 19:03:38 Autorisé(e) (based on user decision) value "RunCanonMsetUp" (new data: "") supprimé(e) in System Startup user entry!
03/03/2008 00:48:11 Refusé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup user entry!
03/03/2008 00:48:11 Refusé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup global entry!
03/03/2008 00:48:11 Refusé(e) (based on user decision) value "Search Page" (new data: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch") modifié(e) in Browser page!
03/03/2008 01:05:27 Autorisé(e) (based on user decision) value "Search Page" (new data: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch") modifié(e) in Browser page!
03/03/2008 07:47:58 Autorisé(e) (based on user decision) value "avast!" (new data: "") supprimé(e) in System Startup global entry!
03/03/2008 07:51:06 Autorisé(e) (based on user decision) value "avgnt" (new data: ""C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min") ajouté(e) in System Startup global entry!
03/03/2008 19:57:11 Autorisé(e) (based on user decision) value "eMuleAutoStart" (new data: "C:\Program Files\eMule\emule.exe -AutoStart") ajouté(e) in System Startup user entry!
04/03/2008 16:14:57 Autorisé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup user entry!
04/03/2008 16:14:59 Autorisé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup global entry!
04/03/2008 16:26:11 Autorisé(e) (based on user decision) value "BootExecute" (new data: "autocheck autochk *
lsdelete
") modifié(e) in Session manager!
04/03/2008 18:53:12 Refusé(e) (based on user decision) value "SpybotSD TeaTimer" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 14:33:23 Autorisé(e) (based on user decision) value "SpybotDeletingD2540" (new data: "cmd /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup user entry!
29/02/2008 14:33:24 Autorisé(e) (based on user decision) value "SpybotDeletingA801" (new data: "command /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup global entry!
29/02/2008 14:33:25 Autorisé(e) (based on user decision) value "SpybotDeletingC9389" (new data: "cmd /c del "C:\Documents and Settings\maman\Local Settings\temp\winlogon.exe"") ajouté(e) in System Startup global entry!
29/02/2008 15:49:03 Autorisé(e) (based on user decision) value "ccleaner" (new data: ""C:\Program Files\CCleaner\CCleaner.exe" /AUTO") ajouté(e) in System Startup user entry!
29/02/2008 16:12:52 Autorisé(e) (based on user decision) value "SpybotDeletingB2431" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 16:12:57 Autorisé(e) (based on user decision) value "SpybotDeletingD2540" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 16:13:00 Autorisé(e) (based on user decision) value "SpybotDeletingA801" (new data: "") supprimé(e) in System Startup global entry!
29/02/2008 16:13:03 Autorisé(e) (based on user decision) value "SpybotDeletingC9389" (new data: "") supprimé(e) in System Startup global entry!
29/02/2008 17:16:42 Refusé(e) (based on user decision) value "MsnMsgr" (new data: "") supprimé(e) in System Startup user entry!
29/02/2008 21:38:27 Autorisé(e) (based on user decision) value "TrojanScanner" (new data: "C:\Program Files\Trojan Remover\Trjscan.exe") ajouté(e) in System Startup global entry!
29/02/2008 21:39:41 Autorisé(e) (based on user decision) value "Streams Drivers" (new data: "") supprimé(e) in System Startup global entry!
29/02/2008 21:41:55 Refusé(e) (based on user decision) value "Trojan Remover" (new data: ""C:\Program Files\Trojan Remover\RMVTRJAN.EXE" /restart") ajouté(e) in System Startup global entry!
01/03/2008 00:27:00 Autorisé(e) (based on user decision) value "MSMSGS" (new data: "") supprimé(e) in System Startup user entry!
01/03/2008 00:27:04 Autorisé(e) (based on user decision) value "{7E853D72-626A-48EC-A868-BA8D5E23E045}" (new data: "") supprimé(e) in Browser Helper Object!
01/03/2008 00:27:05 Autorisé(e) (based on user decision) value "load" (new data: "") supprimé(e) in NT startup!
01/03/2008 09:35:09 Autorisé(e) (based on user decision) value "KernelFaultCheck" (new data: "") supprimé(e) in System Startup global entry!
01/03/2008 09:42:09 Autorisé(e) (based on user decision) value "{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" (new data: "") ajouté(e) in Internet Explorer searches!
01/03/2008 09:42:11 Autorisé(e) (based on user decision) value "{BC4FFE41-DE9F-46fa-B455-AAD49B9F9938}" (new data: "") supprimé(e) in Internet Explorer searches!
01/03/2008 09:42:16 Autorisé(e) (based on user decision) value "{EF99BD32-C1FB-11D2-892F-0090271D4F88}" (new data: "") supprimé(e) in Global browser toolbar!
01/03/2008 09:42:17 Autorisé(e) (based on user decision) value "{02478D38-C3F9-4EFB-9B51-7695ECA05670}" (new data: "") supprimé(e) in Browser Helper Object!
01/03/2008 09:49:13 Autorisé(e) (based on user decision) value "Search Page" (new data: "https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF") modifié(e) in Browser page!
01/03/2008 09:49:14 Autorisé(e) (based on user decision) value "Start Page" (new data: "https://www.msn.com/fr-fr/?ocid=iehp") modifié(e) in Browser page!
01/03/2008 09:49:16 Autorisé(e) (based on user decision) value "Default_Page_URL" (new data: "https://www.msn.com/fr-fr/?ocid=iehp") modifié(e) in Browser page!
01/03/2008 09:49:18 Autorisé(e) (based on user decision) value "Default_Search_URL" (new data: "https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF") modifié(e) in Browser page!
01/03/2008 11:12:06 Autorisé(e) (based on user decision) value "OnlineArmor GUI" (new data: ""C:\Program Files\Tall Emu\Online Armor\oaui.exe"") ajouté(e) in System Startup global entry!
01/03/2008 11:13:29 Autorisé(e) (based on user decision) value "Local Page" (new data: "C:\WINDOWS\system32\blank.htm") ajouté(e) in Browser page!
01/03/2008 11:57:08 Autorisé(e) (based on user decision) value "{BC4FFE41-DE9F-46FA-B455-AAD49B9F9938}" (new data: "") supprimé(e) in User-specific browser toolbar!
01/03/2008 11:57:10 Autorisé(e) (based on user decision) value "{1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A}" (new data: "") supprimé(e) in Browser Helper Object!
02/03/2008 00:27:06 Autorisé(e) (based on user decision) value "load" (new data: "") ajouté(e) in NT startup!
02/03/2008 00:32:30 Refusé(e) (based on user decision) value "Search Page" (new data: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch") modifié(e) in Browser page!
02/03/2008 00:32:36 Autorisé(e) (based on user decision) value "Search Bar" (new data: "") supprimé(e) in Browser page!
02/03/2008 00:32:40 Autorisé(e) (based on user decision) value "AutoRun" (new data: "") supprimé(e) in Command processor!
02/03/2008 00:32:42 Autorisé(e) (based on user decision) value "load" (new data: "") supprimé(e) in NT startup!
02/03/2008 00:32:52 Autorisé(e) (based on user decision) value "UserInit" (new data: "C:\WINDOWS\system32\userinit.exe,") modifié(e) in Winlogon!
02/03/2008 00:32:54 Autorisé(e) (based on user decision) value "scrnsave.exe" (new data: "") supprimé(e) in Desktop settings!
02/03/2008 00:42:03 Autorisé(e) (based on user decision) value "OnlineArmor GUI" (new data: "") supprimé(e) in System Startup global entry!
02/03/2008 00:42:55 Autorisé(e) (based on user decision) value "TrojanScanner" (new data: "") supprimé(e) in System Startup global entry!
03/02/2008 17:45:54 Autorisé(e) (based on user decision) value "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}" (new data: "Easy-WebPrint") ajouté(e) in Global browser toolbar!
03/02/2008 17:45:56 Autorisé(e) (based on user decision) value "{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}" (new data: "") ajouté(e) in Browser Helper Object!
03/02/2008 17:45:57 Autorisé(e) (based on user decision) value "Easy-WebPrint Ajouter à la liste d'impressions" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:45:58 Autorisé(e) (based on user decision) value "Easy-WebPrint Impression rapide" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:45:59 Autorisé(e) (based on user decision) value "Easy-WebPrint Imprimer" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:46:00 Autorisé(e) (based on user decision) value "Easy-WebPrint Prévisualiser" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 17:49:35 Autorisé(e) (based on user decision) value "RunCanonMsetUp" (new data: "C:\DOCUME~1\maman\LOCALS~1\Temp\MasterReboot\CANON_IJ\MCDCheck.exe") ajouté(e) in System Startup user entry!
03/02/2008 18:00:54 Autorisé(e) (based on user decision) value "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}" (new data: "") supprimé(e) in Global browser toolbar!
03/02/2008 18:00:55 Autorisé(e) (based on user decision) value "{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}" (new data: "") supprimé(e) in Browser Helper Object!
03/02/2008 18:00:56 Autorisé(e) (based on user decision) value "Easy-WebPrint Ajouter à la liste d'impressions" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:00:56 Autorisé(e) (based on user decision) value "Easy-WebPrint Impression rapide" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:00:57 Autorisé(e) (based on user decision) value "Easy-WebPrint Imprimer" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:00:58 Autorisé(e) (based on user decision) value "Easy-WebPrint Prévisualiser" (new data: "") supprimé(e) in Browser menu extension!
03/02/2008 18:04:31 Autorisé(e) (based on user decision) value "{327C2873-E90D-4c37-AA9D-10AC9BABA46C}" (new data: "Easy-WebPrint") ajouté(e) in Global browser toolbar!
03/02/2008 18:04:32 Autorisé(e) (based on user decision) value "{68F9551E-0411-48E4-9AAF-4BC42A6A46BE}" (new data: "") ajouté(e) in Browser Helper Object!
03/02/2008 18:04:33 Autorisé(e) (based on user decision) value "Easy-WebPrint Ajouter à la liste d'impressions" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 18:04:34 Autorisé(e) (based on user decision) value "Easy-WebPrint Impression rapide" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 18:04:34 Autorisé(e) (based on user decision) value "Easy-WebPrint Imprimer" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 18:04:35 Autorisé(e) (based on user decision) value "Easy-WebPrint Prévisualiser" (new data: "") ajouté(e) in Browser menu extension!
03/02/2008 19:03:38 Autorisé(e) (based on user decision) value "RunCanonMsetUp" (new data: "") supprimé(e) in System Startup user entry!
03/03/2008 00:48:11 Refusé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup user entry!
03/03/2008 00:48:11 Refusé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup global entry!
03/03/2008 00:48:11 Refusé(e) (based on user decision) value "Search Page" (new data: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch") modifié(e) in Browser page!
03/03/2008 01:05:27 Autorisé(e) (based on user decision) value "Search Page" (new data: "http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch") modifié(e) in Browser page!
03/03/2008 07:47:58 Autorisé(e) (based on user decision) value "avast!" (new data: "") supprimé(e) in System Startup global entry!
03/03/2008 07:51:06 Autorisé(e) (based on user decision) value "avgnt" (new data: ""C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min") ajouté(e) in System Startup global entry!
03/03/2008 19:57:11 Autorisé(e) (based on user decision) value "eMuleAutoStart" (new data: "C:\Program Files\eMule\emule.exe -AutoStart") ajouté(e) in System Startup user entry!
04/03/2008 16:14:57 Autorisé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup user entry!
04/03/2008 16:14:59 Autorisé(e) (based on user decision) value "SweetIM" (new data: "") supprimé(e) in System Startup global entry!
04/03/2008 16:26:11 Autorisé(e) (based on user decision) value "BootExecute" (new data: "autocheck autochk *
lsdelete
") modifié(e) in Session manager!
04/03/2008 18:53:12 Refusé(e) (based on user decision) value "SpybotSD TeaTimer" (new data: "") supprimé(e) in System Startup user entry!
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
6 mars 2008 à 00:01
6 mars 2008 à 00:01
bonsoir bebedouxreve,
ok pour les rapports.
tu as bien supprimé tout ce qu´adaware et spybot on trouvé ?
Repost un nouveau hijack this stp
Precises tes soucis.
@+
ok pour les rapports.
tu as bien supprimé tout ce qu´adaware et spybot on trouvé ?
Repost un nouveau hijack this stp
Precises tes soucis.
@+
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:32:52, on 05/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Scan saved at 10:32:52, on 05/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
6 mars 2008 à 12:21
6 mars 2008 à 12:21
bonjour bebedouxreve,
a l´aide de hijack this coche et fix les ligners ci dessous :
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
instales un par feu :
par feu : kerio
http://www.malekal.com/kerio_firewall.php#mozTocId721480
https://www.vulgarisation-informatique.com/kerio.php
https://kerio.probb.fr/f2-sunbelt-kerio-personal-firewall
Comodo 3 pro :
http://www.commentcamarche.net/telecharger/telecharger 34055041 comodo firewall pro
Online armor :
http://www.commentcamarche.net/telecharger/telecharger 34055356 online armor personal firewall
tuto : https://forum.pcastuces.com/sujet.asp?f=25&s=35606
ou zone alarm plus facil a configurer mais moins performant
https://www.malekal.com/tutoriel-zonealarm-firewall/
puis passe ceci :
Télécharge FixWareout d'un de ces deux sites sur le bureau:
http://downloads.subratam.org/Fixwareout.exe
http://swandog46.geekstogo.com/Fixwareout.exe
Lance le fix: clique sur Next, puis Install, puis assure toi que "Run fixit" est activé puis clique sur Finish.
Le fix va commencer, suis les messages à l'écran. Il te sera demandé de redémarrer ton ordinateur, fais le. Ton système mettra un peu plus de temps au démarrage, c'est normal.
*Poste (Copie/colle) le contenu du rapport qui va s'afficher à l'écran (report.txt) avec un nouveau rapport HijackThis! dans ta prochaine réponse.
@+
a l´aide de hijack this coche et fix les ligners ci dessous :
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
instales un par feu :
par feu : kerio
http://www.malekal.com/kerio_firewall.php#mozTocId721480
https://www.vulgarisation-informatique.com/kerio.php
https://kerio.probb.fr/f2-sunbelt-kerio-personal-firewall
Comodo 3 pro :
http://www.commentcamarche.net/telecharger/telecharger 34055041 comodo firewall pro
Online armor :
http://www.commentcamarche.net/telecharger/telecharger 34055356 online armor personal firewall
tuto : https://forum.pcastuces.com/sujet.asp?f=25&s=35606
ou zone alarm plus facil a configurer mais moins performant
https://www.malekal.com/tutoriel-zonealarm-firewall/
puis passe ceci :
Télécharge FixWareout d'un de ces deux sites sur le bureau:
http://downloads.subratam.org/Fixwareout.exe
http://swandog46.geekstogo.com/Fixwareout.exe
Lance le fix: clique sur Next, puis Install, puis assure toi que "Run fixit" est activé puis clique sur Finish.
Le fix va commencer, suis les messages à l'écran. Il te sera demandé de redémarrer ton ordinateur, fais le. Ton système mettra un peu plus de temps au démarrage, c'est normal.
*Poste (Copie/colle) le contenu du rapport qui va s'afficher à l'écran (report.txt) avec un nouveau rapport HijackThis! dans ta prochaine réponse.
@+
Username "maman" - 05/03/2008 20:45:46 [Fixwareout edited 9/01/2007]
~~~~~ Prerun check
Cache de résolution DNS vidé.
System was rebooted successfully.
~~~~~ Postrun check
HKLM\SOFTWARE\~\Winlogon\ "System"=""
....
....
~~~~~ Misc files.
....
~~~~~ Checking for older varients.
....
~~~~~ Current runs (hklm hkcu "run" Keys Only)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
"SoundMan"="SOUNDMAN.EXE"
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\""
"SSBkgdUpdate"="\"C:\\Program Files\\Fichiers communs\\Scansoft Shared\\SSBkgdUpdate\\SSBkgdupdate.exe\" -Embedding -boot"
"OpwareSE4"="\"C:\\Program Files\\ScanSoft\\OmniPageSE4.0\\OpwareSE4.exe\""
"REGSHAVE"="C:\\Program Files\\REGSHAVE\\REGSHAVE.EXE /AUTORUN"
"DAEMON Tools-1033"="\"C:\\Program Files\\D-Tools\\daemon.exe\" -lang 1033"
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_03\\bin\\jusched.exe\""
"WinampAgent"="\"C:\\Program Files\\Winamp\\Winampa.exe\""
"LVCOMSX"="C:\\WINDOWS\\system32\\LVCOMSX.EXE"
"LogitechVideoRepair"="C:\\Program Files\\Logitech\\Video\\ISStart.exe "
"LogitechVideoTray"="C:\\Program Files\\Logitech\\Video\\LogiTray.exe"
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir PersonalEdition Classic\\avgnt.exe\" /min"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"Picasa Media Detector"="C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe"
"Shareaza"="\"C:\\Program Files\\Shareaza\\Shareaza.exe\" -tray"
"TuneUp MemOptimizer"="\"C:\\Program Files\\TuneUp Utilities 2008\\MemOptimizer.exe\" autostart"
"LDM"="C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\BackWeb-8876480.exe"
"LogitechSoftwareUpdate"="\"C:\\Program Files\\Logitech\\Video\\ManifestEngine.exe\" boot"
"ccleaner"="\"C:\\Program Files\\CCleaner\\CCleaner.exe\" /AUTO"
"MsnMsgr"="~\"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe\" /background"
"SpybotSD TeaTimer"="C:\\Program Files\\Spybot - Search & Destroy\\TeaTimer.exe"
"eMuleAutoStart"="C:\\Program Files\\eMule\\emule.exe -AutoStart"
....
Hosts file was reset, If you use a custom hosts file please replace it...
~~~~~ End report ~~~~~
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:23:33, on 05/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
~~~~~ Prerun check
Cache de résolution DNS vidé.
System was rebooted successfully.
~~~~~ Postrun check
HKLM\SOFTWARE\~\Winlogon\ "System"=""
....
....
~~~~~ Misc files.
....
~~~~~ Checking for older varients.
....
~~~~~ Current runs (hklm hkcu "run" Keys Only)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"nwiz"="nwiz.exe /install"
"NvMediaCenter"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
"SoundMan"="SOUNDMAN.EXE"
"Adobe Reader Speed Launcher"="\"C:\\Program Files\\Adobe\\Reader 8.0\\Reader\\Reader_sl.exe\""
"SSBkgdUpdate"="\"C:\\Program Files\\Fichiers communs\\Scansoft Shared\\SSBkgdUpdate\\SSBkgdupdate.exe\" -Embedding -boot"
"OpwareSE4"="\"C:\\Program Files\\ScanSoft\\OmniPageSE4.0\\OpwareSE4.exe\""
"REGSHAVE"="C:\\Program Files\\REGSHAVE\\REGSHAVE.EXE /AUTORUN"
"DAEMON Tools-1033"="\"C:\\Program Files\\D-Tools\\daemon.exe\" -lang 1033"
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_03\\bin\\jusched.exe\""
"WinampAgent"="\"C:\\Program Files\\Winamp\\Winampa.exe\""
"LVCOMSX"="C:\\WINDOWS\\system32\\LVCOMSX.EXE"
"LogitechVideoRepair"="C:\\Program Files\\Logitech\\Video\\ISStart.exe "
"LogitechVideoTray"="C:\\Program Files\\Logitech\\Video\\LogiTray.exe"
"avgnt"="\"C:\\Program Files\\Avira\\AntiVir PersonalEdition Classic\\avgnt.exe\" /min"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\\WINDOWS\\system32\\ctfmon.exe"
"Picasa Media Detector"="C:\\Program Files\\Picasa2\\PicasaMediaDetector.exe"
"Shareaza"="\"C:\\Program Files\\Shareaza\\Shareaza.exe\" -tray"
"TuneUp MemOptimizer"="\"C:\\Program Files\\TuneUp Utilities 2008\\MemOptimizer.exe\" autostart"
"LDM"="C:\\Program Files\\Logitech\\Desktop Messenger\\8876480\\Program\\BackWeb-8876480.exe"
"LogitechSoftwareUpdate"="\"C:\\Program Files\\Logitech\\Video\\ManifestEngine.exe\" boot"
"ccleaner"="\"C:\\Program Files\\CCleaner\\CCleaner.exe\" /AUTO"
"MsnMsgr"="~\"C:\\Program Files\\MSN Messenger\\MsnMsgr.Exe\" /background"
"SpybotSD TeaTimer"="C:\\Program Files\\Spybot - Search & Destroy\\TeaTimer.exe"
"eMuleAutoStart"="C:\\Program Files\\eMule\\emule.exe -AutoStart"
....
Hosts file was reset, If you use a custom hosts file please replace it...
~~~~~ End report ~~~~~
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:23:33, on 05/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
voici le résultat du scan antivir
03/03/2008,07:51:09 ---------------------------------------------------------
03/03/2008,07:51:13 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
03/03/2008,07:51:13 AntiVir Guard version: 7.00.00.81,engine version 7.6.0.15,VDF version: 7.0.0.2
03/03/2008,07:51:14 Start Filter Device.
03/03/2008,07:51:14 Avira AntiVir PersonalEdition Classic has been started successfully!
03/03/2008,07:51:14 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SPL .SWF .SYS .TLB .TMP .TSP .TTF
.URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,07:52:43 Avira AntiVir PersonalEdition Classic service has been stopped!
03/03/2008,07:52:49 ---------------------------------------------------------
03/03/2008,07:52:54 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
03/03/2008,07:52:54 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.225
03/03/2008,07:52:55 Start Filter Device.
03/03/2008,07:52:55 Avira AntiVir PersonalEdition Classic has been started successfully!
03/03/2008,07:52:55 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,07:52:57 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,11:35:57 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,11:39:28 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,15:42:45 Avira AntiVir PersonalEdition Classic service has been stopped!
03/03/2008,16:21:52 ---------------------------------------------------------
03/03/2008,16:22:15 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
03/03/2008,16:22:15 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.225
03/03/2008,16:22:18 Start Filter Device.
03/03/2008,16:22:18 Avira AntiVir PersonalEdition Classic has been started successfully!
03/03/2008,16:22:18 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,01:03:11 Avira AntiVir PersonalEdition Classic service has been stopped!
04/03/2008,07:47:35 ---------------------------------------------------------
04/03/2008,07:48:06 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
04/03/2008,07:48:06 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.225
04/03/2008,07:48:09 Start Filter Device.
04/03/2008,07:48:10 Avira AntiVir PersonalEdition Classic has been started successfully!
04/03/2008,07:48:10 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,07:52:11 Update process started!
04/03/2008,07:52:16 Current Engine Version: 7.6.0.73
04/03/2008,07:52:16 Current Pattern File: 7.0.2.231 from 04/03/2008, 16:22
04/03/2008,07:52:16 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,16:32:18 [WARNING] Suspicious file: Contains suspicious code HEUR/Crypted!
C:\Documents and Settings\maman\Mes documents\Downloads\Crack.exe
[INFO] The file will be moved to quarantine.
04/03/2008,16:38:45 [WARNING] Is the Trojan horse TR/Crypt.XPACK.Gen!
C:\Documents and Settings\maman\Mes documents\photo diverse\patriciademarteau-photo12.com
04/03/2008,16:53:46 [WARNING] Is the Trojan horse TR/Agent.bux.1!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP2\A0000068.dll
04/03/2008,16:58:47 [WARNING] Contains detection pattern of the batch virus BAT/Small.515!
C:\WINDOWS\Drivers\Microsoft\install.bat
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:08 [WARNING] Is the Trojan horse TR/Zapchast.GF.2!
C:\WINDOWS\Drivers\Microsoft\restart.bat
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:12 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\WINDOWS\Drivers\Microsoft\script.dll
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:15 [WARNING] Is the Trojan horse TR/PSW.Zapchast.GF.13!
C:\WINDOWS\Drivers\Microsoft\service.dll
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:20 [WARNING] Is the Trojan horse TR/IRC.Flood.BAT.J!
C:\WINDOWS\Drivers\Microsoft\telnet.bat
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:23 [WARNING] Contains detection pattern of the batch virus BAT/Small.653!
C:\WINDOWS\Drivers\Microsoft\unroot.bat
[INFO] The file will be moved to quarantine.
04/03/2008,20:23:45 ---------------------------------------------------------
04/03/2008,20:24:03 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
04/03/2008,20:24:03 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.231
04/03/2008,20:24:05 Start Filter Device.
04/03/2008,20:24:05 Avira AntiVir PersonalEdition Classic has been started successfully!
04/03/2008,20:24:05 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,23:55:30 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,06:55:12 ---------------------------------------------------------
05/03/2008,06:55:27 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,06:55:27 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.231
05/03/2008,06:55:29 Start Filter Device.
05/03/2008,06:55:29 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,06:55:29 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,07:22:19 [WARNING] Contains detection pattern of the batch virus BAT/Small.515!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002671.bat
[INFO] The file will be moved to quarantine.
05/03/2008,07:52:00 Update process started!
05/03/2008,07:52:05 Current Engine Version: 7.6.0.73
05/03/2008,07:52:06 Current Pattern File: 7.0.2.237 from 05/03/2008, 16:45
05/03/2008,07:52:06 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,07:57:39 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,09:55:45 ---------------------------------------------------------
05/03/2008,09:55:59 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,09:55:59 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,09:56:01 Start Filter Device.
05/03/2008,09:56:02 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,09:56:02 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,11:47:58 [WARNING] Is the Trojan horse TR/Zapchast.GF.2!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002672.bat
[INFO] The file will be moved to quarantine.
05/03/2008,13:02:02 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
05/03/2008,13:59:44 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
05/03/2008,15:59:44 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
05/03/2008,20:08:29 ---------------------------------------------------------
05/03/2008,20:08:43 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,20:08:43 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,20:08:46 Start Filter Device.
05/03/2008,20:08:46 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,20:08:46 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,20:19:58 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,20:21:15 ---------------------------------------------------------
05/03/2008,20:21:29 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,20:21:29 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,20:21:31 Start Filter Device.
05/03/2008,20:21:31 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,20:21:31 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,20:46:24 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,20:47:41 ---------------------------------------------------------
05/03/2008,20:47:45 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,20:47:45 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,20:47:46 Start Filter Device.
05/03/2008,20:47:46 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,20:47:46 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,21:19:42 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
03/03/2008,07:51:09 ---------------------------------------------------------
03/03/2008,07:51:13 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
03/03/2008,07:51:13 AntiVir Guard version: 7.00.00.81,engine version 7.6.0.15,VDF version: 7.0.0.2
03/03/2008,07:51:14 Start Filter Device.
03/03/2008,07:51:14 Avira AntiVir PersonalEdition Classic has been started successfully!
03/03/2008,07:51:14 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SPL .SWF .SYS .TLB .TMP .TSP .TTF
.URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,07:52:43 Avira AntiVir PersonalEdition Classic service has been stopped!
03/03/2008,07:52:49 ---------------------------------------------------------
03/03/2008,07:52:54 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
03/03/2008,07:52:54 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.225
03/03/2008,07:52:55 Start Filter Device.
03/03/2008,07:52:55 Avira AntiVir PersonalEdition Classic has been started successfully!
03/03/2008,07:52:55 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,07:52:57 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,11:35:57 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,11:39:28 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
03/03/2008,15:42:45 Avira AntiVir PersonalEdition Classic service has been stopped!
03/03/2008,16:21:52 ---------------------------------------------------------
03/03/2008,16:22:15 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
03/03/2008,16:22:15 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.225
03/03/2008,16:22:18 Start Filter Device.
03/03/2008,16:22:18 Avira AntiVir PersonalEdition Classic has been started successfully!
03/03/2008,16:22:18 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,01:03:11 Avira AntiVir PersonalEdition Classic service has been stopped!
04/03/2008,07:47:35 ---------------------------------------------------------
04/03/2008,07:48:06 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
04/03/2008,07:48:06 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.225
04/03/2008,07:48:09 Start Filter Device.
04/03/2008,07:48:10 Avira AntiVir PersonalEdition Classic has been started successfully!
04/03/2008,07:48:10 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,07:52:11 Update process started!
04/03/2008,07:52:16 Current Engine Version: 7.6.0.73
04/03/2008,07:52:16 Current Pattern File: 7.0.2.231 from 04/03/2008, 16:22
04/03/2008,07:52:16 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,16:32:18 [WARNING] Suspicious file: Contains suspicious code HEUR/Crypted!
C:\Documents and Settings\maman\Mes documents\Downloads\Crack.exe
[INFO] The file will be moved to quarantine.
04/03/2008,16:38:45 [WARNING] Is the Trojan horse TR/Crypt.XPACK.Gen!
C:\Documents and Settings\maman\Mes documents\photo diverse\patriciademarteau-photo12.com
04/03/2008,16:53:46 [WARNING] Is the Trojan horse TR/Agent.bux.1!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP2\A0000068.dll
04/03/2008,16:58:47 [WARNING] Contains detection pattern of the batch virus BAT/Small.515!
C:\WINDOWS\Drivers\Microsoft\install.bat
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:08 [WARNING] Is the Trojan horse TR/Zapchast.GF.2!
C:\WINDOWS\Drivers\Microsoft\restart.bat
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:12 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\WINDOWS\Drivers\Microsoft\script.dll
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:15 [WARNING] Is the Trojan horse TR/PSW.Zapchast.GF.13!
C:\WINDOWS\Drivers\Microsoft\service.dll
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:20 [WARNING] Is the Trojan horse TR/IRC.Flood.BAT.J!
C:\WINDOWS\Drivers\Microsoft\telnet.bat
[INFO] The file will be moved to quarantine.
04/03/2008,16:59:23 [WARNING] Contains detection pattern of the batch virus BAT/Small.653!
C:\WINDOWS\Drivers\Microsoft\unroot.bat
[INFO] The file will be moved to quarantine.
04/03/2008,20:23:45 ---------------------------------------------------------
04/03/2008,20:24:03 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
04/03/2008,20:24:03 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.231
04/03/2008,20:24:05 Start Filter Device.
04/03/2008,20:24:05 Avira AntiVir PersonalEdition Classic has been started successfully!
04/03/2008,20:24:05 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
04/03/2008,23:55:30 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,06:55:12 ---------------------------------------------------------
05/03/2008,06:55:27 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,06:55:27 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.231
05/03/2008,06:55:29 Start Filter Device.
05/03/2008,06:55:29 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,06:55:29 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,07:22:19 [WARNING] Contains detection pattern of the batch virus BAT/Small.515!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002671.bat
[INFO] The file will be moved to quarantine.
05/03/2008,07:52:00 Update process started!
05/03/2008,07:52:05 Current Engine Version: 7.6.0.73
05/03/2008,07:52:06 Current Pattern File: 7.0.2.237 from 05/03/2008, 16:45
05/03/2008,07:52:06 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,07:57:39 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,09:55:45 ---------------------------------------------------------
05/03/2008,09:55:59 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,09:55:59 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,09:56:01 Start Filter Device.
05/03/2008,09:56:02 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,09:56:02 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,11:47:58 [WARNING] Is the Trojan horse TR/Zapchast.GF.2!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002672.bat
[INFO] The file will be moved to quarantine.
05/03/2008,13:02:02 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
05/03/2008,13:59:44 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
05/03/2008,15:59:44 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
05/03/2008,20:08:29 ---------------------------------------------------------
05/03/2008,20:08:43 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,20:08:43 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,20:08:46 Start Filter Device.
05/03/2008,20:08:46 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,20:08:46 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,20:19:58 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,20:21:15 ---------------------------------------------------------
05/03/2008,20:21:29 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,20:21:29 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,20:21:31 Start Filter Device.
05/03/2008,20:21:31 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,20:21:31 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,20:46:24 Avira AntiVir PersonalEdition Classic service has been stopped!
05/03/2008,20:47:41 ---------------------------------------------------------
05/03/2008,20:47:45 Keyfile contains a valid license. The Avira AntiVir PersonalEdition Classic will run as a fully functional version!
05/03/2008,20:47:45 AntiVir Guard version: 7.00.00.82,engine version 7.6.0.73,VDF version: 7.0.2.237
05/03/2008,20:47:46 Start Filter Device.
05/03/2008,20:47:46 Avira AntiVir PersonalEdition Classic has been started successfully!
05/03/2008,20:47:46 [CONFIG] On-Access configuration used:
- Files to scan: scan files from local drives
- Device mode: scan files on open, scan files on close
- Only scan files with one of the following extensions: . .386 .?HT* .ACM .ADE .ADP .ANI .APP .ASD .ASF .ASP .ASX .AWX .AX .BAS .BAT .BIN .BOO .CDF .CHM .CLASS .CMD .CNV .COM .CPL .CRT .CSH .DLL .DLO .DO? .DRV .EMF .EML .EXE* .FLT .FOT .HLP .HT* .INF .INI .INS .ISP .J2K .JAR .JFF .JFI .JFIF .JIF .JMH .JNG .JP2 .JPE .JPEG .JPG .JS* .JSE .LNK .LSP .MD? .MDB .MOD .MS? .NWS .OBJ .OCX .OLB .OSD .OV? .PCD .PDF .PDR .PGM .PHP .PIF .PKG .PL* .PNG .POT .PPS .PPT .PRG .RAR .REG .RPL .RTF .SBF .SCR .SCRIPT .SCT .SH .SHA .SHB .SHS .SHTM* .SIS .SPL .SWF .SYS .TLB .TMP
.TSP .TTF .URL .VB? .VCS .VLM .VXD .VXO .WIZ .WLL .WMD .WMF .WMS .WMZ .WPC .WSC .WSF .WSH .WWK .XL? .XML .ZIP
- Unpack runtime compressed files
- Actions: ask the user
- Heuristic: MACRO , WIN32 MEDIUM
- Logfile report level 1
05/03/2008,21:19:42 [WARNING] Contains detection pattern of the IRC virus IRC/Agent.BL!
C:\System Volume Information\_restore{66B2F8E7-2F8C-4285-A7BD-D8BA85693A0D}\RP16\A0002673.dll
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
6 mars 2008 à 23:57
6 mars 2008 à 23:57
bonsoir patricia,
ok pour kerio.
coche et fix les lignes suivantes a l´aide de hijack this :
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
comment fixer :
Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)
-> http://pageperso.aol.fr/balltrap34/demohijack.htm
as tu kazaa dans le panneau de configuration > ajoue et suppression de programme ?
repost un nouveau hijack this stp
@+
ok pour kerio.
coche et fix les lignes suivantes a l´aide de hijack this :
O17 - HKLM\System\CCS\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
O17 - HKLM\System\CS3\Services\Tcpip\..\{11968F34-8673-412C-9C35-657E0D9F1C3A}: NameServer = 192.168.1.254
comment fixer :
Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)
-> http://pageperso.aol.fr/balltrap34/demohijack.htm
as tu kazaa dans le panneau de configuration > ajoue et suppression de programme ?
repost un nouveau hijack this stp
@+
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:15:47, on 06/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Scan saved at 00:15:47, on 06/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\spupdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\spnpinst.exe
C:\WINDOWS\system32\Sysocmgr.exe
C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\Program Files\Winamp\Winampa.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\FinePixViewer\QuickDCF.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.be/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Canon Easy Web Print Helper - {68F9551E-0411-48E4-9AAF-4BC42A6A46BE} - C:\Program Files\Canon\Easy-WebPrint\EWPBrowseLoader.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4.0\OpwareSE4.exe"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\Winampa.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [MsnMsgr] ~"C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Exif Launcher.lnk = C:\Program Files\FinePixViewer\QuickDCF.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Ralink Wireless Utility.lnk = C:\Program Files\RALINK\Common\RaUI.exe
O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.13\AMVConverter\grab.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Toolband.dll/RC_Preview.html
O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.13\MediaManager\grab.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
7 mars 2008 à 00:13
7 mars 2008 à 00:13
Re,
on dirait qu´il l n´y a plus rien de detecté apart la restauration system qui est touché...
fais ce que je t´ai indiqué au post 21
puis
Désactive ta restauration système:
pour cela :
Click droit sur poste de travail, dans l´arborescence sur propriétés;
dans la nouvelle fenettre click sur l´onglet restauration système;
coche la case désactiver la restauration systèm et applique.
puis redemarre le pc et click droit sur poste de travail, dans l´arborescence sur propriétés;
dans la nouvelle fenettre click sur l´onglet restauration systèm
décoche la case désactiver la restauration systèm et applique.
puis refais un scan mais en ligne cette fois ci
ici :
Scan en ligne bitdefender :
https://www.bitdefender.com/toolbox/
Clicker sur " I agree " et suivre les indications
A faire imperativement sous internet explorer, en acceptant l´activ x
tutoriel en image en image
http://pageperso.aol.fr/rginformatique/mapage/defender.htm
post le rapport ici stp
@+
on dirait qu´il l n´y a plus rien de detecté apart la restauration system qui est touché...
fais ce que je t´ai indiqué au post 21
puis
Désactive ta restauration système:
pour cela :
Click droit sur poste de travail, dans l´arborescence sur propriétés;
dans la nouvelle fenettre click sur l´onglet restauration système;
coche la case désactiver la restauration systèm et applique.
puis redemarre le pc et click droit sur poste de travail, dans l´arborescence sur propriétés;
dans la nouvelle fenettre click sur l´onglet restauration systèm
décoche la case désactiver la restauration systèm et applique.
puis refais un scan mais en ligne cette fois ci
ici :
Scan en ligne bitdefender :
https://www.bitdefender.com/toolbox/
Clicker sur " I agree " et suivre les indications
A faire imperativement sous internet explorer, en acceptant l´activ x
tutoriel en image en image
http://pageperso.aol.fr/rginformatique/mapage/defender.htm
post le rapport ici stp
@+
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
7 mars 2008 à 00:26
7 mars 2008 à 00:26
ok patricia,
fais ce que je t´ai indiqué au post 23 maintenant...
@+
fais ce que je t´ai indiqué au post 23 maintenant...
@+
bonsoir g!rly, désolée de ne plus avoir posté mais je n'arrivais plus a me connecté a internet.
il m'a fallut le temps pour comprendre et j'y suis enfin arrivée .
voici le rapport de BitDefender :
BitDefender Online Scanner
Scan report generated at: Sat, Mar 08, 2008 - 00:16:39
Scan path: A:\;C:\;D:\;E:\;G:\;
Statistics
Time
01:38:32
Files
161409
Folders
5607
Boot Sectors
2
Archives
2366
Packed Files
11467
Results
Identified Viruses
1
Infected Files
2
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
2
Engines Info
Virus Definitions
986205
Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Scan plugins
16
Archive plugins
41
Unpack plugins
7
E-mail plugins
6
System plugins
5
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\WINDOWS\Drivers\Microsoft\service.exe
Infected with: Packer.Expressor.B
C:\WINDOWS\Drivers\Microsoft\service.exe
Disinfection failed
C:\WINDOWS\Drivers\Microsoft\service.exe
Deleted
C:\WINDOWS\Drivers\Microsoft\service32.exe
Infected with: Packer.Expressor.B
C:\WINDOWS\Drivers\Microsoft\service32.exe
Disinfection failed
C:\WINDOWS\Drivers\Microsoft\service32.exe
Deleted
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/nvcpl.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/nvcplARA.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/nvcplCHS.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/nvcplCHT.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/nvcplCSY.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/nvcplDAN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/nvcplDEU.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/nvcplELL.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/nvcplENG.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/nvcplESM.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/nvcplESN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/nvcplFIN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/nvcplFRA.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/nvcplHEB.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/nvcplHUN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/nvcplITA.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/nvcplJPN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/nvcplKOR.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/nvcplNLD.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/nvcplNOR.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/nvcplPLK.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/nvcplPTB.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/about_this_help.htm
Clean
il m'a fallut le temps pour comprendre et j'y suis enfin arrivée .
voici le rapport de BitDefender :
BitDefender Online Scanner
Scan report generated at: Sat, Mar 08, 2008 - 00:16:39
Scan path: A:\;C:\;D:\;E:\;G:\;
Statistics
Time
01:38:32
Files
161409
Folders
5607
Boot Sectors
2
Archives
2366
Packed Files
11467
Results
Identified Viruses
1
Infected Files
2
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
2
Engines Info
Virus Definitions
986205
Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Scan plugins
16
Archive plugins
41
Unpack plugins
7
E-mail plugins
6
System plugins
5
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\WINDOWS\Drivers\Microsoft\service.exe
Infected with: Packer.Expressor.B
C:\WINDOWS\Drivers\Microsoft\service.exe
Disinfection failed
C:\WINDOWS\Drivers\Microsoft\service.exe
Deleted
C:\WINDOWS\Drivers\Microsoft\service32.exe
Infected with: Packer.Expressor.B
C:\WINDOWS\Drivers\Microsoft\service32.exe
Disinfection failed
C:\WINDOWS\Drivers\Microsoft\service32.exe
Deleted
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/nvcpl.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpl.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/nvcplARA.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplara.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/nvcplCHS.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplchs.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/nvcplCHT.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcht.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/nvcplCSY.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplcsy.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/nvcplDAN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldan.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/nvcplDEU.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpldeu.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/nvcplELL.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplell.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/nvcplENG.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcpleng.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/nvcplESM.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplesm.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/nvcplESN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplesn.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/nvcplFIN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfin.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/nvcplFRA.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplfra.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/nvcplHEB.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplheb.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/nvcplHUN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplhun.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/nvcplITA.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplita.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/nvcplJPN.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcpljpn.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/nvcplKOR.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplkor.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/nvcplNLD.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnld.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/nvcplNOR.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/image6.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplnor.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/nvcplPLK.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplplk.chm=>/image5.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/about_this_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Define_Custom_Views.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Using_the_Profiles_Menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Getting_Help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Getting_Started.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Print_a_help_topic.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/To_get_technical_support.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Understanding_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/Using_the_NVIDIA_Control_Panel_Interface.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/accessing_online_help.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NVIDIA_Control_Panel.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/System_Requirement_for_NVIDIA_SLI_Technology_(Advanced_Users).htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/System_Requirements.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/glossary.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/eHelp.xml
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/RoboHHRE.lng
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/nvcplPTB.brs
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/#BSSC
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/#BSSCMF
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/coua.css
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NOTE.GIF
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/page_header.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NVControlPanel_Vista.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/callouts.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptb.chm=>/NVControlPanel_XP.gif
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/#SYSTEM
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/Get_information_about_your_program_and_computer.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/using_the_view_menu.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/About_the_Menu_Bar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/About_the_Toolbar.htm
Clean
C:\WINDOWS\Help\nvcpl\nvcplptg.chm=>/about_this_help.htm
Clean
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
10 mars 2008 à 00:49
10 mars 2008 à 00:49
bonsoir patricia,
comment se porte ton pc ?
post un nouveau hijack this
@+
comment se porte ton pc ?
post un nouveau hijack this
@+
bebedouxreve
Messages postés
3
Date d'inscription
samedi 1 mars 2008
Statut
Membre
Dernière intervention
15 mars 2008
12 mars 2008 à 16:58
12 mars 2008 à 16:58
bonsoir , et bien voilà je retrouve mon pc qui a du être formater .
plus rien ne fonctionnait ...
je vous remercie beaucoup pour votre aide et j'aimerais savoir si il y a moyen que cette personne qui continue a poser ses virus sur windows live messenger , il a encore essayé avec des amis qui était au manège et qui m'envoyait un lien par messenger.
j'ai le lien recopier dans le bloc note .
y a t'il quelque chose a faire ?
merci pour tout
patricia
plus rien ne fonctionnait ...
je vous remercie beaucoup pour votre aide et j'aimerais savoir si il y a moyen que cette personne qui continue a poser ses virus sur windows live messenger , il a encore essayé avec des amis qui était au manège et qui m'envoyait un lien par messenger.
j'ai le lien recopier dans le bloc note .
y a t'il quelque chose a faire ?
merci pour tout
patricia
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
12 mars 2008 à 17:40
12 mars 2008 à 17:40
patricia,
et bien quelle malheure...
tu as quoi comme protection maintenant ?
ces tes amis qui sont eux meme infectés, tu voie le truc; ils t´envoient le lien sans meme le savoir... il n´y a rien d´autre a faire que de leur dire qu´il sont infectés et qu´ils devraient se faire desinfecter ou de les enlever de tes contacts...
@+
et bien quelle malheure...
tu as quoi comme protection maintenant ?
ces tes amis qui sont eux meme infectés, tu voie le truc; ils t´envoient le lien sans meme le savoir... il n´y a rien d´autre a faire que de leur dire qu´il sont infectés et qu´ils devraient se faire desinfecter ou de les enlever de tes contacts...
@+
bebedouxreve
Messages postés
3
Date d'inscription
samedi 1 mars 2008
Statut
Membre
Dernière intervention
15 mars 2008
15 mars 2008 à 09:47
15 mars 2008 à 09:47
bonjour, mon beau frère informaticien m'a mit KASPERSKY PRO , depuis j'ai eu deux essai d'intrusion éradiquée de suite .
j'aurais aimé ne pas en arriver a le formater .
suite a cette seconde intrusion, j'ai mis en surfixe sur windows live messenger le nom du lien qu'il utilise et ca marche plus d'intrus .
je vous le mets "http://isuisse.com/?photo="c'est votre nom qui'il met".
uw foto's worden gepubliceerd op deze site
ne jamais cliquer sur un tel lien non seulement il infecte tous le système mais en plus il peut prendre possession de votre machine .
le seul moyen d'en être quitte est de formater le pc et ne plus rester en contact avec les amis infectés .
en tous les cas merci a vous tous , vous êtes tous simplement super.
a bientot sur le forum
patricia
j'aurais aimé ne pas en arriver a le formater .
suite a cette seconde intrusion, j'ai mis en surfixe sur windows live messenger le nom du lien qu'il utilise et ca marche plus d'intrus .
je vous le mets "http://isuisse.com/?photo="c'est votre nom qui'il met".
uw foto's worden gepubliceerd op deze site
ne jamais cliquer sur un tel lien non seulement il infecte tous le système mais en plus il peut prendre possession de votre machine .
le seul moyen d'en être quitte est de formater le pc et ne plus rester en contact avec les amis infectés .
en tous les cas merci a vous tous , vous êtes tous simplement super.
a bientot sur le forum
patricia
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
15 mars 2008 à 20:25
15 mars 2008 à 20:25
bon tres bien patricia ;-)
ou en sont tes soucis ?
@+
ou en sont tes soucis ?
@+
g!rly
Messages postés
18209
Date d'inscription
vendredi 17 août 2007
Statut
Contributeur
Dernière intervention
30 novembre 2014
406
4 juil. 2008 à 12:23
4 juil. 2008 à 12:23
--
mouvement de non entraide a suivre très prochainement...
mouvement de non entraide a suivre très prochainement...
1 mars 2008 à 00:30
C:\Documents and Settings\maman\Bureau\MSNFix
Fix exécuté le 01/03/2008 - 0:25:21,70 By maman
mode normal
************************ Recherche les fichiers présents
... C:\WINDOWS\system32\real.txt
... C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
... C:\Documents and Settings\maman\??????.exe
... C:\Documents and Settings\maman\????????.exe
************************ Recherche les dossiers présents
Aucun dossier trouvé
************************ Suppression des fichiers
.. OK ... C:\WINDOWS\system32\real.txt
.. OK ... C:\DOCUME~1\maman\LOCALS~1\Temp\winlogon.exe
.. OK ... C:\Documents and Settings\maman\??????.exe
.. OK ... C:\Documents and Settings\maman\????????.exe
************************ Nettoyage du registre
************************ Fichiers suspects
Aucun Fichier trouvé
Les fichiers et clés de registre supprimés ont été sauvegardés dans le fichier 01032008_ 0263064.zip
------------------------------------------------------------------------
Auteur : !aur3n7 Contact: https://www.ionos.fr/
------------------------------------------------------------------------
--------------------------------------------- END ---------------------------------------------