Infections bagle !!

Résolu/Fermé
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018 - 29 nov. 2008 à 00:51
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018 - 6 déc. 2010 à 06:51
Bonjour, g ete infecté par bagle, elibagla a supprimer la souche et m'indike ojourdui ke plus aucun fichiers ne sont infectés, idem pour mbam, mais certaines applis et progs ne fonctionnent plus corrrectement comme
msn
explorer
internet...

j'aimerai savoir si je suis toujour infecté
si oui comment y remedier
si non comment retablir mes progs et applis ?

quelqun peut-il maider svp ?? merci

167 réponses

madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 00:06
rapport

Script executed in Safe Mode
Rapport clean par Malekal_morte - http://www.malekal.com
Script executed in Safe Mode 2008-11-30 a 23:54:50.86

Microsoft Windows [version 6.0.6001]

*** Suppression C:

*** Suppression C:\Windows\

*** Suppression C:\Windows\system32
tentative de suppression de C:\Windows\system32\bdod.bin
tentative de suppression de C:\Windows\system32\wininit.exe
Impossible de supprimer C:\Windows\system32\wininit.exe
tentative de suppression de C:\Windows\system32\wininit.exe
Impossible de supprimer C:\Windows\system32\wininit.exe
tentative de suppression de "C:\Windows\Downloaded Program Files\CONFLICT.1"

*** Suppression C:\Program Files

*** Deletion of the registry keys successful..
*** End of the report !
0
Utilisateur anonyme
1 déc. 2008 à 00:15
as tu toujours dees soucis ?
0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 00:22
mon centre de secu ne trouve pas mon antivirus ptet paskil nest pas dan la liste des proggs, internet deconne encore explorer a l'air daller mieux chui pas tt a fait sur...
0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 00:25
explorer a encore des lacunes en fait ainsi k'internet et lativirus comme ci dessus ...
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
1 déc. 2008 à 00:36
je pense que l antivirus tu vas devoir le desinstaller et reinstaller


Télécharges MalwareByte's :
ici ftp://ftp.commentcamarche.com/download/mbam-setup.exe
ou ici : http://www.malwarebytes.org/mbam.php

* Installes le ( choisis bien "francais" ; ne modifies pas les paramètres d'installe ) et mets le à jour .

(NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharges le ici : https://www.malekal.com/tutorial-aboutbuster/ )

* Potasses le tuto pour te familiariser avec le prg :
https://forum.pcastuces.com/sujet.asp?f=31&s=3
( cela dis, il est très simple d'utilisation ).

! Déconnectes toi et fermes toutes applications en cours !

Redemarre en mode sans echec :

Comment aller en Mode sans échec
1) Redémarres ton ordi
2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip"
3) Tu verras un écran avec options de démarrage apparaître
4) Choisis la première option : Sans Échec, et valide avec "Entrée"
5) Choisis ton compte habituel, et non Administrateur (si besoin ... )
(attention : pas de connexion possible en mode sans échec , donc copies ou imprimes bien la manipe pour éviter les erreurs ...)


* Lances Malwarebyte's .

Fais un examen dit "complet" ( sélectionnes bien tous tes disks avant le scan ! ).

--> Laisses le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
--> à la fin tu cliques sur "résultat" .
--> Vérifies que tous les objets infectés soient validés, puis cliques sur " suppression " .Puis vides la quarantaine.....;


Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !

Postes le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date)
accompagné d'un nouveau rapport hijackthis pour analyse ...
0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 07:53
Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1439
Windows 6.0.6001 Service Pack 1

2008-12-01 07:30:13
mbam-log-2008-12-01 (07-30-13).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 257387
Temps écoulé: 56 minute(s), 3 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 1

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
C:\Users\julien\pack_securite.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.


g vidé la quarantaine aussi... jfai un rsit.exe et jtenvoie sa...
0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 08:01
Logfile of random's system information tool 1.04 (written by random/random)
Run by julien at 2008-12-01 07:58:55
Microsoft® Windows Vista™ Édition Familiale Premium Service Pack 1
System drive C: has 120 GB (36%) free of 336 GB
Total RAM: 3070 MB (57% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 07:59:23, on 01/12/2008
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
C:\Windows\RtHDVCpl.exe
C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
C:\Program Files\Lexmark 5400 Series\lxctmon.exe
C:\Program Files\Lexmark 5400 Series\ezprint.exe
C:\Program Files\Hercules\DualPix Exchange\CamService.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Pack Securite\Common\FSM32.EXE
C:\Windows\system32\conime.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Windows\system32\schtasks.exe
C:\Windows\system32\jusched.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Pack Securite\FSGUI\scanwizard.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hp\kbd\kbd.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\julien\Desktop\RSIT.exe
C:\Program Files\trend micro\julien.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Lexmark Barre d'outils - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Lexmark Barre d'outils - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [StartCCC] c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [CCUTRAYICON] FactoryMode
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe"
O4 - HKLM\..\Run: [lxctmon.exe] "C:\Program Files\Lexmark 5400 Series\lxctmon.exe"
O4 - HKLM\..\Run: [Lexmark 5400 Series Fax Server] "C:\Program Files\Lexmark 5400 Series\fm3032.exe" /s
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 5400 Series\ezprint.exe"
O4 - HKLM\..\Run: [LXCTCATS] rundll32 C:\Windows\system32\spool\DRIVERS\W32X86\3\LXCTtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [CamserviceDP] C:\Program Files\Hercules\DualPix Exchange\Camservice.exe /startup
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Pack Securite\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [LaCie Backup] C:\Program Files\LaCie\Backup Software\\LaCieBackup.exe /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe
O23 - Service: Ares Chatroom server (AresChatServer) - Unknown owner - C:\Program Files\Ares\chatServer.exe (file missing)
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Pack Securite\Common\FSMA32.EXE
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Intel DH Service (IntelDHSvcConf) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Tools\IntelDHSvcConf.exe
O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: lxct_device - - C:\Windows\system32\lxctcoms.exe
O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe
O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
0
Utilisateur anonyme
1 déc. 2008 à 11:13
c est quoi ca pack securité ?tu l as eu comment ?



Télécharge OTMoveIt3 de OldTimer sur ton Bureau en cliquant sur ce lien :

http://oldtimer.geekstogo.com/OTMoveIt3.exe

Double-clique sur OTMoveIt3.exe pour le lancer.

Vérifie que la case devant "Unregister Dll's and Ocx's est bien cochée.

Copie la liste qui se trouve en gras ci-dessous,

et colle-la dans le cadre de gauche de OTMoveIt : "Paste instructions for item to be moved".


:Processes
explorer.exe


:Files
c:Windows\system32\jusched.exe


:Commands
[purity]
[emptytemp]
[Reboot]




Clique sur "MoveIt!" pour lancer la suppression.

Le résultat apparaitra dans le cadre "Results".

Clique sur "Exit" pour fermer.

Poste le rapport situé dans C:\_OTMoveIt\MovedFiles sous le nom xxxxxx_xxxxxxxxxx.log .

Il te sera peut-être demander de redémarrer le pc pour achever la suppression. Si c'est le cas accepte par Yes.

0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 18:15
le pack securité c'est mon antivirus+firewall etc ke g pris en abonnement chez neufbox, de chez sfr maintenant...

voici le rapport

========== PROCESSES ==========
Process explorer.exe killed successfully.
========== FILES ==========
File/Folder c:Windows\system32\jusched.exe not found.
========== COMMANDS ==========
File delete failed. C:\Users\julien\AppData\Local\Temp\{83612b9f-dd06-485e-b931-e46fd06c60d2}\appcompat.txt scheduled to be deleted on reboot.
File delete failed. C:\Users\julien\AppData\Local\Temp\JET348E.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\julien\AppData\Local\Temp\MainFrame.Log.txt scheduled to be deleted on reboot.
File delete failed. C:\Users\julien\AppData\Local\Temp\~DFB93A.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\julien\AppData\Local\Temp\~DFB95A.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\julien\AppData\Local\Temp\~DFC3F5.tmp scheduled to be deleted on reboot.
File delete failed. C:\Users\julien\AppData\Local\Temp\~DFC415.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
Local Service Temporary Internet Files folder emptied.
File delete failed. C:\Windows\temp\nmsmc_DQLWinService.log scheduled to be deleted on reboot.
File delete failed. C:\Windows\temp\nvcbin.def.BF4C85DE.TMP scheduled to be deleted on reboot.
Windows Temp folder emptied.
Temp folders emptied.

OTMoveIt3 by OldTimer - Version 1.0.7.1 log created on 12012008_180126

Files moved on Reboot...
File C:\Users\julien\AppData\Local\Temp\{83612b9f-dd06-485e-b931-e46fd06c60d2}\appcompat.txt not found!
File C:\Users\julien\AppData\Local\Temp\JET348E.tmp not found!
C:\Users\julien\AppData\Local\Temp\MainFrame.Log.txt moved successfully.
File C:\Users\julien\AppData\Local\Temp\~DFB93A.tmp not found!
File C:\Users\julien\AppData\Local\Temp\~DFB95A.tmp not found!
File C:\Users\julien\AppData\Local\Temp\~DFC3F5.tmp not found!
File C:\Users\julien\AppData\Local\Temp\~DFC415.tmp not found!
File move failed. C:\Windows\temp\nmsmc_DQLWinService.log scheduled to be moved on reboot.
File move failed. C:\Windows\temp\nvcbin.def.BF4C85DE.TMP scheduled to be moved on reboot.
0
Utilisateur anonyme
1 déc. 2008 à 18:37
tu as toujours Combofix sur ton bureau ?
0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 18:39
non je l'ai plus...
0
Utilisateur anonyme
1 déc. 2008 à 19:03
télécharge combofix (par sUBs) ici :

http://download.bleepingcomputer.com/sUBs/ComboFix.exe

et enregistre le sur le bureau.

déconnecte toi d'internet et ferme toutes tes applications.

désactive tes protections (antivirus, parefeu, garde en temps réel de l'antispyware)


ensuite ouvre un document texte et copies colles ceci :


file::
c:\Windows\system32\jusched.exe



* Veille à ce que Retour à la ligne ne soit pas coché dans Format.
* Sauvegarde ce fichier sous le nom de CFScript.txt
* Fais un glisser/déposer de ce fichier CFScript sur le fichier ComboFix.exe comme ceci
http://img.photobucket.com/albums/v666/sUBs/CFScript.gif
* Patiente le temps du scan. Le bureau va disparaître à plusieurs reprises : c'est normal!
Ne touche à rien tant que le scan n'est pas terminé.
* Une fois le scan achevé, un rapport va s'afficher : Poste son contenu.
* Si le fichier ne s'ouvre pas, il se trouve ici > C:\ComboFix.txt
0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 19:44
ComboFix 08-11-30.02 - julien 2008-12-01 19:29:38.1 - NTFSx86
Microsoft® Windows Vista™ Édition Familiale Premium 6.0.6001.1.1252.1.1036.18.1881 [GMT 1:00]
Lancé depuis: c:\users\julien\Desktop\ComboFix.exe
Commutateurs utilisés :: c:\users\julien\Desktop\CFScript.txt
* Resident AV is active


FILE ::
c:\windows\system32\jusched.exe
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\windows\system32\jusched.exe

.
((((((((((((((((((((((((((((( Fichiers créés du 2008-11-01 au 2008-12-01 ))))))))))))))))))))))))))))))))))))
.

2008-12-01 07:49 . 2008-12-01 07:49 268 --ah----- C:\sqmdata00.sqm
2008-12-01 07:49 . 2008-12-01 07:49 244 --ah----- C:\sqmnoopt00.sqm
2008-12-01 00:46 . 2008-12-01 00:46 <REP> d-------- c:\program files\Malwarebytes' Anti-Malware
2008-12-01 00:46 . 2008-10-22 16:10 38,496 --a------ c:\windows\System32\drivers\mbamswissarmy.sys
2008-12-01 00:46 . 2008-10-22 16:10 15,504 --a------ c:\windows\System32\drivers\mbam.sys
2008-11-30 23:34 . 2008-11-30 23:34 <REP> d-------- c:\program files\Ad-remover
2008-11-29 18:55 . 2008-11-29 19:00 <REP> d-------- C:\rsit
2008-11-29 18:16 . 2008-11-29 18:40 <REP> d-------- C:\ToolBar SD
2008-11-29 17:07 . 2008-11-29 17:08 <REP> d-------- C:\Temp
2008-11-27 21:35 . 2008-11-27 21:35 <REP> d-------- C:\inetpub
2008-11-27 17:35 . 2008-11-27 17:35 524,288 --ahs---- C:\ntuser.dat{0d8cf94d-bc9e-11dd-b8df-001d60532d8e}.TMContainer00000000000000000002.regtrans-ms
2008-11-27 17:35 . 2008-11-27 17:35 524,288 --ahs---- C:\ntuser.dat{0d8cf94d-bc9e-11dd-b8df-001d60532d8e}.TMContainer00000000000000000001.regtrans-ms
2008-11-27 17:35 . 2008-11-27 17:35 524,288 --ahs---- C:\ntuser.dat{0d8cf941-bc9e-11dd-b8df-001d60532d8e}.TMContainer00000000000000000002.regtrans-ms
2008-11-27 17:35 . 2008-11-27 17:35 524,288 --ahs---- C:\ntuser.dat{0d8cf941-bc9e-11dd-b8df-001d60532d8e}.TMContainer00000000000000000001.regtrans-ms
2008-11-27 17:35 . 2008-11-27 17:35 262,144 --a------ C:\ntuser.dat
2008-11-27 17:35 . 2008-11-27 17:35 65,536 --ahs---- C:\ntuser.dat{0d8cf94d-bc9e-11dd-b8df-001d60532d8e}.TM.blf
2008-11-27 17:35 . 2008-11-27 17:35 65,536 --ahs---- C:\ntuser.dat{0d8cf941-bc9e-11dd-b8df-001d60532d8e}.TM.blf
2008-11-27 17:35 . 2008-11-27 17:35 5,120 --ah----- C:\ntuser.dat.LOG1
2008-11-27 17:35 . 2008-11-27 17:35 0 --ah----- C:\ntuser.dat.LOG2
2008-11-27 12:31 . 2008-10-21 06:25 1,645,568 --a------ c:\windows\System32\connect.dll
2008-11-27 12:31 . 2008-08-28 04:40 712,704 --a------ c:\windows\System32\WindowsCodecs.dll
2008-11-27 12:31 . 2008-08-28 04:40 425,472 --a------ c:\windows\System32\PhotoMetadataHandler.dll
2008-11-27 12:31 . 2008-08-28 04:40 347,136 --a------ c:\windows\System32\WindowsCodecsExt.dll
2008-11-27 12:31 . 2008-10-22 04:57 241,152 --a------ c:\windows\System32\PortableDeviceApi.dll
2008-11-24 21:47 . 2008-12-01 07:48 <REP> dr------- c:\windows\System32\config\systemprofile\Documents
2008-11-23 21:29 . 2008-12-01 07:59 <REP> d-------- c:\program files\Trend Micro
2008-11-23 20:16 . 2008-11-23 20:16 <REP> d-------- C:\!KillBox
2008-11-23 20:09 . 2008-11-23 20:09 <REP> d-------- C:\_OTMoveIt
2008-11-23 12:10 . 2008-11-30 21:49 <REP> d-------- c:\program files\FindyKill
2008-11-23 10:42 . 2008-11-23 10:42 30,856 --a------ c:\windows\System32\drivers\fsbts.sys
2008-11-23 10:32 . 2008-09-23 14:35 70,944 --a------ c:\windows\System32\drivers\fsdfw.sys
2008-11-23 10:32 . 2007-04-26 18:08 35,024 --a------ c:\windows\System32\drivers\fses.sys
2008-11-22 23:26 . 2008-11-22 23:26 <REP> d-------- C:\hretrfduhsssskiksikillool
2008-11-22 23:26 . 2008-11-22 23:31 <REP> d-------- C:\ghfkdfjhfit2516525looolik
2008-11-22 22:10 . 2008-11-22 22:10 <REP> d-------- c:\users\julien\AppData\Roaming\Malwarebytes
2008-11-22 22:10 . 2008-11-22 22:10 <REP> d-------- c:\users\All Users\Malwarebytes
2008-11-22 22:10 . 2008-11-22 22:10 <REP> d-------- c:\progra~2\Malwarebytes
2008-11-22 21:10 . 2008-11-24 21:40 250 --a------ c:\windows\gmer.ini
2008-11-22 20:27 . 2008-11-22 20:27 <REP> d-------- C:\bastaard
2008-11-17 22:14 . 2008-11-17 22:14 <REP> d-------- c:\users\All Users\Innovative Solutions
2008-11-17 22:14 . 2008-11-17 22:14 <REP> d-------- c:\progra~2\Innovative Solutions
2008-11-13 20:36 . 2008-11-13 20:36 <REP> d-------- c:\users\julien\AppData\Roaming\Windows Live Writer
2008-11-12 07:47 . 2008-08-05 10:49 428,544 --a------ c:\windows\System32\EncDec.dll
2008-11-12 07:47 . 2008-08-05 10:49 293,376 --a------ c:\windows\System32\psisdecd.dll
2008-11-12 07:47 . 2008-08-05 10:48 217,088 --a------ c:\windows\System32\psisrndr.ax
2008-11-12 07:47 . 2008-08-05 10:48 177,664 --a------ c:\windows\System32\mpg2splt.ax
2008-11-12 07:47 . 2008-08-05 10:48 80,896 --a------ c:\windows\System32\MSNP.ax
2008-11-12 07:46 . 2008-09-18 05:56 147,456 --a------ c:\windows\System32\Faultrep.dll
2008-11-12 07:46 . 2008-09-18 05:56 125,952 --a------ c:\windows\System32\wersvc.dll
2008-11-12 02:36 . 2008-09-05 06:14 1,191,936 --a------ c:\windows\System32\msxml3.dll
2008-11-12 02:17 . 2008-08-27 02:05 212,480 --a------ c:\windows\System32\drivers\mrxsmb10.sys
2008-11-12 02:00 . 2008-09-10 04:40 1,334,272 --a------ c:\windows\System32\msxml6.dll
2008-11-07 19:52 . 2008-10-16 22:13 1,809,944 --a------ c:\windows\System32\wuaueng.dll
2008-11-07 19:52 . 2008-10-16 21:56 1,524,736 --a------ c:\windows\System32\wucltux.dll
2008-11-07 19:52 . 2008-10-16 22:12 561,688 --a------ c:\windows\System32\wuapi.dll
2008-11-07 19:52 . 2008-10-16 21:55 83,456 --a------ c:\windows\System32\wudriver.dll
2008-11-07 19:52 . 2008-10-16 22:09 51,224 --a------ c:\windows\System32\wuauclt.exe
2008-11-07 19:52 . 2008-10-16 22:09 43,544 --a------ c:\windows\System32\wups2.dll
2008-11-07 19:52 . 2008-10-16 22:08 34,328 --a------ c:\windows\System32\wups.dll
2008-11-07 19:51 . 2008-10-16 14:08 162,064 --a------ c:\windows\System32\wuwebv.dll
2008-11-07 19:51 . 2008-10-16 13:56 31,232 --a------ c:\windows\System32\wuapp.exe

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-01 18:11 --------- d-----w c:\program files\Lx_cats
2008-12-01 13:33 --------- d-----w c:\program files\Pack Securite
2008-11-30 21:41 --------- d-----w c:\users\julien\AppData\Roaming\Orbit
2008-11-27 20:29 --------- d-----w c:\program files\Xilisoft
2008-11-27 20:16 --------- d-----w c:\program files\AFT Software
2008-11-27 20:15 --------- d-----w c:\program files\Free Audio Pack
2008-11-27 20:14 --------- d-----w c:\program files\Free FLV Converter
2008-11-27 20:09 --------- d-----w c:\program files\All Video Splitter
2008-11-27 20:09 --------- d-----w c:\program files\All Video Joiner
2008-11-23 17:31 --------- d-----w c:\program files\Windows Live Toolbar
2008-11-23 12:25 --------- d-----w c:\progra~2\fssg
2008-11-23 09:31 --------- d-----w c:\progra~2\F-Secure
2008-11-22 21:20 --------- d-----w c:\program files\ailhfde
2008-11-21 14:49 --------- d-----w c:\users\julien\AppData\Roaming\LimeWire
2008-11-19 15:42 --------- d-----w c:\users\julien\AppData\Roaming\dvdcss
2008-11-12 20:45 2,138 ----a-w c:\users\julien\AppData\Roaming\wklnhst.dat
2008-11-12 06:56 --------- d-----w c:\progra~2\utilshcom
2008-11-12 06:56 --------- d-----w c:\progra~2\Microsoft Help
2008-11-12 06:49 --------- d-----w c:\program files\Windows Mail
2008-10-30 15:10 --------- d-----w c:\progra~2\WindowsSearch
2008-10-28 18:53 --------- d-----w c:\progra~2\ruzqpyhc
2008-10-26 22:24 --------- d-----w c:\users\julien\AppData\Roaming\DMCache
2008-10-26 22:19 --------- d-----w c:\users\julien\AppData\Roaming\IDM
2008-10-23 23:31 --------- d-----w c:\program files\VDOWNLOADER
2008-10-23 23:31 --------- d-----w c:\program files\Ripp-it_AM
2008-10-23 13:50 --------- d-----w c:\users\julien\AppData\Roaming\LaCie
2008-10-23 13:49 --------- d-----w c:\program files\LaCie
2008-10-23 10:20 --------- d-----w c:\program files\Microsoft Silverlight
2008-10-22 21:14 --------- d---a-w c:\progra~2\TEMP
2008-10-22 19:21 --------- d-----w c:\users\julien\AppData\Roaming\GrabPro
2008-10-22 14:45 21,248 ----a-w c:\windows\Help\OEM\scripts\HPScript.exe
2008-10-22 06:30 --------- d-----w c:\program files\WMR11
2008-10-13 16:43 --------- d-----w c:\program files\Windows Live Safety Center
2008-10-11 15:19 --------- d-----w c:\progra~2\Apple Computer
2008-10-11 14:57 --------- d-----w c:\program files\MSBuild
2008-10-11 14:57 --------- d-----w c:\program files\Microsoft Works
2008-10-11 14:44 --------- d-----w c:\program files\Microsoft.NET
2008-10-11 14:41 --------- d-----w c:\program files\Microsoft Visual Studio 8
2008-10-10 08:32 --------- d-----w c:\users\julien\AppData\Roaming\vlc
2008-10-10 00:42 --------- d-----w c:\program files\WinISO
2008-10-09 23:56 --------- d-----w c:\program files\LimeWire
2008-10-09 18:51 --------- d-----w c:\program files\SuperAudiotool
2008-10-09 15:40 266,240 ----a-w c:\windows\System32\TubeFinder.exe
2008-10-06 15:40 --------- d-----w c:\users\julien\AppData\Roaming\ALLCapture
2008-10-06 02:10 --------- d-----w c:\program files\TechSmith
2008-10-06 02:08 --------- d-----w c:\program files\Common Files\Wise Installation Wizard
2008-10-05 23:49 --------- d-----w c:\program files\Stardock
2008-10-02 03:49 827,392 ----a-w c:\windows\System32\wininet.dll
2008-10-01 17:46 --------- d-----w c:\program files\K-Lite Codec Pack
2008-10-01 15:21 --------- d-----w c:\program files\AviSynth 2.5
2008-09-30 15:43 1,286,152 ----a-w c:\windows\System32\msxml4.dll
2008-09-18 05:09 3,601,464 ----a-w c:\windows\System32\ntkrnlpa.exe
2008-09-18 05:09 3,549,240 ----a-w c:\windows\System32\ntoskrnl.exe
2008-09-18 02:16 2,032,640 ----a-w c:\windows\System32\win32k.sys
2008-06-10 18:47 174 --sha-w c:\program files\desktop.ini
.

((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-19 1233920]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
"MsnMsgr"="c:\program files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184]
"LaCie Backup"="c:\program files\LaCie\Backup Software\\LaCieBackup.exe" [2006-07-06 2596864]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-19 202240]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CCUTRAYICON"="FactoryMode" [X]
"hpsysdrv"="c:\hp\support\hpsysdrv.exe" [2007-04-18 65536]
"KBD"="c:\hp\KBD\KbdStub.EXE" [2006-12-08 65536]
"OsdMaestro"="c:\program files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe" [2007-02-15 118784]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2006-11-10 90112]
"HP Health Check Scheduler"="c:\program files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe" [2007-05-24 71176]
"SunJavaUpdateReg"="c:\windows\system32\jureg.exe" [2007-04-07 54936]
"lxctmon.exe"="c:\program files\Lexmark 5400 Series\lxctmon.exe" [2007-03-19 291760]
"Lexmark 5400 Series Fax Server"="c:\program files\Lexmark 5400 Series\fm3032.exe" [2007-03-19 304048]
"EzPrint"="c:\program files\Lexmark 5400 Series\ezprint.exe" [2007-03-19 82864]
"LXCTCATS"="c:\windows\system32\spool\DRIVERS\W32X86\3\LXCTtime.dll" [2006-11-21 106496]
"Symantec PIF AlertEng"="c:\program files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" [2008-11-22 517768]
"CamserviceDP"="c:\program files\Hercules\DualPix Exchange\Camservice.exe" [2007-08-10 81920]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2007-05-08 54840]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"IAAnotif"="c:\program files\Intel\Intel Matrix Storage Manager\Iaanotif.exe" [2008-06-02 178712]
"F-Secure Manager"="c:\program files\Pack Securite\Common\FSM32.EXE" [2008-09-23 182936]
"F-Secure TNB"="c:\program files\Pack Securite\FSGUI\TNBUtil.exe" [2008-09-23 957024]
"RtHDVCpl"="RtHDVCpl.exe" [2008-01-15 c:\windows\RtHDVCpl.exe]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"="c:\windows\SMINST\launcher.exe" [2007-04-03 44168]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 5724184]

c:\progra~2\MICROS~1\Windows\STARTM~1\Programs\Startup\
WinZip Quick Pick.lnk - c:\program files\WinZip\WZQKPICK.EXE [2008-04-28 415072]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDAgent]
--a------ 2008-11-22 20:08 69632 c:\program files\Softwin\BitDefender10\bdagent.exe

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UacDisableNotify"=dword:00000001
"InternetSettingsDisableNotify"=dword:00000001
"AutoUpdateDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-2033653160-2484511087-3431162249-1001]
"EnableNotificationsRef"=dword:0000000b

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\DomainProfile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
"{C811BB3A-C6BF-48F1-A9B2-9E3A25CD7478}"= UDP:c:\program files\Intel\IntelDH\Intel Media Server\Media Server\bin\TSHWMDTCP.exe:SPCM
"{EF6CA61F-9863-45F4-8549-FD48443B7E7E}"= TCP:c:\program files\Intel\IntelDH\Intel Media Server\Media Server\bin\TSHWMDTCP.exe:SPCM
"{AD63F5DE-D4D5-42A6-8136-9102C7EF05E3}"= UDP:c:\program files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe:Intel(R) Viiv(TM) Media Server
"{0AB6ED54-0E52-40D4-9621-20AB7D749574}"= TCP:c:\program files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe:Intel(R) Viiv(TM) Media Server
"{66FF50A4-40D9-4C3E-A4CD-BC4C3A933208}"= UDP:c:\program files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe:Intel(R) Remoting Service
"{DBCB39EF-C1D7-4419-9ECE-DE15D7C52483}"= TCP:c:\program files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe:Intel(R) Remoting Service
"{2B83BC5B-2FC0-449C-91AE-F09F87BA0CCF}"= TCP:9442:127.0.0.1:Intel(R) Viiv(TM) Media Server Discovery
"{069B212C-2947-402F-BD6A-6350E37F07BA}"= TCP:1900:LocalSubnet:LocalSubnet:Intel(R) Viiv(TM) Media Server UPnP Discovery
"{C3676E06-891D-49E4-BA37-81394F9FDF40}"= UDP:c:\windows\System32\lxctcoms.exe:Lexmark Communications System
"{3F3E40C7-2FAB-470B-B748-3B957F7B52E2}"= TCP:c:\windows\System32\lxctcoms.exe:Lexmark Communications System
"{C7DFF910-120A-4A69-81FB-0019E7C1F24F}"= UDP:c:\program files\Lexmark 5400 Series\lxctmon.exe:Device Monitor
"{EA1575F6-3F29-419A-85E9-CD30689A8E90}"= TCP:c:\program files\Lexmark 5400 Series\lxctmon.exe:Device Monitor
"{7E214A53-AE68-464E-9D03-E59E911F894C}"= UDP:c:\program files\Lexmark 5400 Series\LXCTaiox.exe:All In One Center
"{4E2DA1A8-1370-4D0F-A493-0A8648AF0C86}"= TCP:c:\program files\Lexmark 5400 Series\LXCTaiox.exe:All In One Center
"{D2B222E6-A7CB-409E-8BF7-BAA4A0D21AFE}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{DCE995CD-C946-4691-8BD8-CA6F6319113E}"= UDP:c:\program files\LimeWire\LimeWire.exe:LimeWire
"{E51B7429-FAD1-4F1F-85BC-02C1EEC4E8C5}"= TCP:c:\program files\LimeWire\LimeWire.exe:LimeWire
"TCP Query User{17F6077A-0EBF-47F5-9A34-A34751914A21}c:\\users\\julien\\desktop\\emule.exe"= UDP:c:\users\julien\desktop\emule.exe:emule.exe
"UDP Query User{C81CB3D1-170F-4924-B47C-E722DF214D91}c:\\users\\julien\\desktop\\emule.exe"= TCP:c:\users\julien\desktop\emule.exe:emule.exe
"TCP Query User{2A9A012B-233A-4316-BEFF-972AE2008F79}c:\\program files\\emule\\emule.exe"= UDP:c:\program files\emule\emule.exe:eMule
"UDP Query User{8356E236-FE07-487F-8215-E2F72159A68E}c:\\program files\\emule\\emule.exe"= TCP:c:\program files\emule\emule.exe:eMule
"TCP Query User{F483CF3F-FCDE-4F43-B8B9-23E9316A8C2F}c:\\program files\\windows sidebar\\sidebar.exe"= UDP:c:\program files\windows sidebar\sidebar.exe:Volet Windows
"UDP Query User{4E1AB325-35AB-4238-9875-6A62C3C30941}c:\\program files\\windows sidebar\\sidebar.exe"= TCP:c:\program files\windows sidebar\sidebar.exe:Volet Windows
"TCP Query User{C9B1E7E9-2A8C-48B8-9FE7-1F74B0F33C67}c:\\program files\\soulseek-test\\slsk.exe"= UDP:c:\program files\soulseek-test\slsk.exe:SoulSeek
"UDP Query User{63760A51-716B-4A3E-A6BC-F4F75687A8AA}c:\\program files\\soulseek-test\\slsk.exe"= TCP:c:\program files\soulseek-test\slsk.exe:SoulSeek
"{F88146DD-FBEC-435A-8638-C55225EC3402}"= Disabled:UDP:c:\program files\DNA\btdna.exe:DNA
"{4B316D5E-2AAA-4E73-9E2B-2F61A068D6A6}"= Disabled:TCP:c:\program files\DNA\btdna.exe:DNA
"{E2202BC9-5F8F-424D-84A6-2C6D067610A6}"= Disabled:UDP:c:\program files\BitTorrent\bittorrent.exe:BitTorrent
"{E36C66D5-CBE7-45AC-8F41-4DA5869A6A3E}"= Disabled:TCP:c:\program files\BitTorrent\bittorrent.exe:BitTorrent
"TCP Query User{8C0FF60E-FFD2-4B10-85E7-19AD9CB8A06C}c:\\program files\\hercules\\dualpix exchange\\station2.exe"= UDP:c:\program files\hercules\dualpix exchange\station2.exe:Hercules Webcam Station Evolution SE
"UDP Query User{5E411170-38CD-4BA8-8E83-71F310D68325}c:\\program files\\hercules\\dualpix exchange\\station2.exe"= TCP:c:\program files\hercules\dualpix exchange\station2.exe:Hercules Webcam Station Evolution SE
"TCP Query User{5AC4BFBD-0622-4A19-9A26-6F7FE47D5364}c:\\users\\julien\\documents\\mes fichiers reçus\\emule0.49a\\emule.exe"= UDP:c:\users\julien\documents\mes fichiers reçus\emule0.49a\emule.exe:emule.exe
"UDP Query User{3DD78A4C-3B85-4FB5-BCE4-2B27E884A231}c:\\users\\julien\\documents\\mes fichiers reçus\\emule0.49a\\emule.exe"= TCP:c:\users\julien\documents\mes fichiers reçus\emule0.49a\emule.exe:emule.exe
"TCP Query User{3F9482B7-5583-409E-921C-4FBCF7854B17}c:\\program files\\hercules\\dualpix exchange\\controlui.exe"= UDP:c:\program files\hercules\dualpix exchange\controlui.exe:Hercules Zoom Controller Main Application
"UDP Query User{B6B881FD-44A8-427D-BA94-3A00C3FABADB}c:\\program files\\hercules\\dualpix exchange\\controlui.exe"= TCP:c:\program files\hercules\dualpix exchange\controlui.exe:Hercules Zoom Controller Main Application
"TCP Query User{91FA7A06-B3D4-4DF7-B8C0-C4706918A189}c:\\program files\\azureus\\azureus.exe"= UDP:c:\program files\azureus\azureus.exe:Azureus
"UDP Query User{52051661-76D0-4227-AA79-1F0C9AAE7794}c:\\program files\\azureus\\azureus.exe"= TCP:c:\program files\azureus\azureus.exe:Azureus
"{AACA56F8-9208-497E-B785-3AB39013D374}"= TCP:6004|c:\program files\Microsoft Office\Office12\outlook.exe:Microsoft Office Outlook
"TCP Query User{B35E8E09-CBA4-47AD-8FB5-6A3A7AF654F2}c:\\program files\\internet explorer\\iexplore.exe"= UDP:c:\program files\internet explorer\iexplore.exe:Internet Explorer
"UDP Query User{32613659-B338-45CB-B511-F3B98FC88D7A}c:\\program files\\internet explorer\\iexplore.exe"= TCP:c:\program files\internet explorer\iexplore.exe:Internet Explorer
"TCP Query User{114D7C9B-5573-4047-A62A-69EAD585AB09}c:\\program files\\orbitdownloader\\orbitnet.exe"= UDP:c:\program files\orbitdownloader\orbitnet.exe:P2P service of Orbit Downloader
"UDP Query User{F109A352-44F9-43A6-AB23-4C89D7B285FF}c:\\program files\\orbitdownloader\\orbitnet.exe"= TCP:c:\program files\orbitdownloader\orbitnet.exe:P2P service of Orbit Downloader
"{418BE306-64CE-4E5E-85DC-C10011CB0E43}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{C4291994-DE99-4EFF-AD95-4D0501812A8C}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{F88DBA07-0111-4D5A-A073-952FEC4120AA}"= UDP:c:\program files\Pack Securite\FSGUI\fsavgui.exe:Ouvrir F-Secure Internet Security Technology Preview
"{A5B4D1D3-1AB6-4DF5-AFF1-2A2B4742E71D}"= TCP:c:\program files\Pack Securite\FSGUI\fsavgui.exe:Ouvrir F-Secure Internet Security Technology Preview
"{E2711A29-DF1D-47AE-BCE8-489CC9BC2D69}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{DB6E16DA-ED7F-4A41-B2FA-68232EFDF969}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{389D3156-13E7-4646-B6BC-FA387DFF785A}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)
"{1DDB654D-FDC4-4829-956F-B85B6CEBB039}"= c:\program files\Windows Live\Messenger\livecall.exe:Windows Live Messenger (Phone)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\PublicProfile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\StandardProfile]
"EnableFirewall"= 0 (0x0)

R0 fsbts;fsbts;c:\windows\system32\Drivers\fsbts.sys [2008-11-23 30856]
R1 F-Secure HIPS;F-Secure HIPS;\??\c:\program files\Pack Securite\HIPS\fshs.sys [2008-11-23 48176]
R1 FSES;F-Secure Email Scanning Driver;c:\windows\system32\drivers\fses.sys [2008-11-23 35024]
R1 FSFW;F-Secure Firewall Driver;c:\windows\system32\drivers\fsdfw.sys [2008-11-23 70944]
R1 fsvista;F-Secure Vista Support Driver;\??\c:\program files\Pack Securite\Anti-Virus\minifilter\fsvista.sys [2008-11-23 12384]
R2 DQLWinService;DQLWinService;"c:\program files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe" [2006-09-03 208896]
R3 atikmdag;atikmdag;c:\windows\system32\DRIVERS\atikmdag.sys [2007-09-01 2769408]
R3 camfilt2;camfilt2;c:\windows\system32\Drivers\camfilt2.sys [2008-05-09 94208]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper;\??\c:\program files\Pack Securite\Anti-Virus\minifilter\fsgk.sys [2008-11-23 72288]
S2 IntelDHSvcConf;Intel DH Service;"c:\program files\Intel\IntelDH\Intel Media Server\Tools\IntelDHSvcConf.exe" [2006-05-10 29696]
S4 F-Secure Filter;F-Secure File System Filter;\??\c:\program files\Pack Securite\Anti-Virus\Win2K\FSfilter.sys [2008-11-23 39776]
S4 F-Secure Recognizer;F-Secure File System Recognizer;\??\c:\program files\Pack Securite\Anti-Virus\Win2K\FSrec.sys [2008-11-23 25184]
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-01 19:34:27
Windows 6.0.6001 Service Pack 1 NTFS

Recherche de processus cachés ...

Recherche d'éléments en démarrage automatique cachés ...

Recherche de fichiers cachés ...

Scan terminé avec succès
Fichiers cachés: 0

**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------

- - - - - - - > 'winlogon.exe'(860)
c:\program files\Pack Securite\FWES\Program\fsdc32.dll

- - - - - - - > 'lsass.exe'(660)
c:\program files\Pack Securite\FWES\Program\fsdc32.dll

- - - - - - - > 'Explorer.exe'(5220)
c:\program files\Pack Securite\Spam Control\fsscoepl.dll
c:\program files\Hewlett-Packard\HP Advisor\Pillars\Market\MLDeskBand.dll

- - - - - - - > 'csrss.exe'(540)
c:\program files\Pack Securite\FWES\Program\fsdc32.dll

- - - - - - - > 'csrss.exe'(612)
c:\program files\Pack Securite\FWES\Program\fsdc32.dll
.
Heure de fin: 2008-12-01 19:35:32
ComboFix-quarantined-files.txt 2008-12-01 18:35:17
ComboFix2.txt 2008-11-22 22:31:21
ComboFix3.txt 2008-11-22 19:43:04

Avant-CF: 126 645 108 736 octets libres
Après-CF: 126,621,827,072 octets libres

287 --- E O F --- 2008-11-27 11:32:23
0
Utilisateur anonyme
1 déc. 2008 à 19:53
apparemment tu es retourne sur MSN depuis le dernier grand nettoyage.............;

bien.....maintenant repasse "CleanAfterMe" et "PureRa"

et c est bon .....................;;et attention aux fichiers transmis pas msn ainsi que les eMail ouverts sans expediteur nottement
0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 19:55
euh wai c vrai ... par contre je n'est ni clean after me ni purera ... ??
0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 20:03
par ailleur je ne sais pas comment desinstaller mon antivirus pour le reinstaller a moin peutetre de relancer linstall ce ki jartera lautre en croyant ke c un logiciel en conflit .... ( sa me parait clair moi o_0) ta une idée
?
0
Utilisateur anonyme
1 déc. 2008 à 20:48
non...............;pour purera et clean after me autant pour moi voila qui corrigera le tir..............

C'est peut etre un peu long mais ......ton pc.......ira 100 fois mieux(version marseillaise) :


1)Telecharge :
-------------

https://www.clubic.com/telecharger-fiche262022-purera.html

coche tout a droite , et "clean"

ensuite :
-----------

http://www.commentcamarche.net/telecharger/cleanafterme 34056612 avis opinions.php3

meme chose tu coches tout et "clean selected items"


source = Gen-Hackman..........et puis a faire aussi :

2)

---> Télécharge ToolsCleaner2 sur ton Bureau.
* Double-clique sur ToolsCleaner2.exe pour le lancer.
* Clique sur Recherche et laisse le scan agir.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options Facultatives.
* Clique sur Quitter pour obtenir le rapport.
* Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).


3/

---> Télécharge et installe CCleaner (N'installe pas la Yahoo Toolbar) :

http://www.commentcamarche.net/telecharger/telecharger 168 ccleaner

* Lance-le. Va dans Options puis Avancé et décoche la case Effacer uniquement les fichiers etc....
* Va dans Nettoyeur, choisis Analyse. Une fois terminé, lance le nettoyage.
* Ensuite, choisis Registre, puis Chercher des erreurs. Une fois terminé, répare toutes les erreurs tant de fois qu il en trouve a l analyse(Sauvegarde la base de registre).
* Veille a ce que dans les options le reglage soit au demarrage de windows et réglé sur "effacement securisé" 35 passes (guttman)
* Décoche la case plus vieux que 48 h

4/

---> Il est nécessaire de désactiver puis réactiver la restauration système pour la purger :
http://www.infos-du-net.com/forum/272480-11-desactiver-activer-restauration-systeme

---> Je te conseille de créer un point de restauration que tu pourras utiliser plus tard si tu as un problème :
https://www.vulgarisation-informatique.com/creer-point-restauration.php


stp poste tous les rapports delivrés....merci.....

si tu as deja Ccleaner ne tiens pas compte du N°3.....mais fais ce qu il est demande avec
(desole le canned est pour tout le monde....lol)

Attention : ne pas toucher au PC pendant qu'il travaille !

B-Nettoyage et Défragmentation de tes Disques
*Nettoyage :
Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Général"
Cliques sur le bouton "nettoyage de disque", OK
tu le fais pour chacun de tes disques

*Vérifications des erreurs :
Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Outil"
"Vérifier maintenant", une boîte s'ouvre, cocher les cases :
-réparer automatiquement les erreurs...
-rechercher et tenter une récupération...
--->Démarrer, ok
Note : s'il te dis de redémarrer ton Pc pour le faire , tu redémarres et tu laisses faire, cela prend un peu de temps c'est normal
tu le fais pour chacun de tes disques

ensuite toujours dans le même onglet tu choisis :
*Défragmentation :
"défragmenter maintenant", OK
une boîte s'ouvre, tu sélectionnes le disque à défragmenter, et tu cliques sur "analyser", puis après l'analyse, "défragmenter" . OK
tu le fais pour chacun de tes disques

Note : si tu as un utilitaire pour défragmenter , utilises le à la place ...

pour ce faire je te conseille ceci :

https://www.clubic.com/telecharger-fiche44314-defraggler.html

C-Crées un point de restauration de ton PC :

Aller dans le Menu Démarrer puis dans Programmes,
- Ensuite dans Accessoires et enfin dans Outils système,
- Choisir "Restauration du système",
- Sélectionner "Créer un point de restauration",
- Cliquer sur "Suivant",
- Entrer un nom pour le point de restauration (ce nom doit être assez évocateur), exemple :
<< Point restauration sain >> .

--> Cliquer sur "Créer" et le point de restauration se créé automatiquement.


> Peux-tu vérifier ta console JAVA ici ? : https://www.java.com/fr/download/uninstalltool.jsp et installer la nouvelle version si besoin est (dans ce cas désinstalle avant l'ancienne version).
Pour info. ou en cas de problème : http://assiste.com.free.fr/p/abc/c/anti_java.html

> Mets à jour Acrobat si ce n'est pas le cas (désinstalle avant la version antérieure) : https://get2.adobe.com/reader/otherversions/

> Télécharge et installe Update Checker : https://filehippo.com/windows/tuning-utilities/
- Lance le programme. Une page web de ce type va s'ouvrir.
- Fais les mises à jour de tous les logiciels proposés pour Update. Je ne te conseille pas de faire celles pour les versions béta (elles peuvent être instables).
- Fais un copier/coller de la liste de éléments "Updates". Puis poste la sur le forum.
- Une fois les mises à jour effectuées, relance ton PC.
Tuto si problèmes : https://www.commentcamarche.net/list 9908 update checker vos logiciels sont ils a jour

> Télécharge et installe Easy Cleaner : https://www.01net.com/telecharger/windows/Utilitaire/registre/fiches/8351.html
(lien miroir : https://www.clubic.com/telecharger-fiche11170-easycleaner.html )
- Lance le programme puis clique sur <Registre> puis sur <Trouver>.
- A la fin du scan clique sur <Supprime tout> puis confirme par <Oui> puis quitte le programme.
Si besoin tuto ici : https://www.pcparadise.fr
et http://www.6ma.fr/tuto/easycleaner-nettoyer-windows-des-elements-obsoletes/

> Tu peux aussi vider ta corbeille......quoi que Ccleaner le fasse tout seul.......

> Si nous avons utilisé MalwaresByte's Anti-Malware : vide sa quarantaine.
- Lance le programme puis clique sur <Quarantaine>.
- Sélectionne tous les éléments puis clique sur <supprime>.
- Quitte la programme.

> Idem pour ton antivirus : vide sa quarantaine si ce n'est pas déjà fait...

> Désactive et réactive la restauration de système, pour cela : suis les instructions de ce lien :

liens XP:

http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/fr_docid/20020830101856924

liens Vista :

http://service1.symantec.com/SUPPORT/INTER/tsgeninfointl.nsf/4f60eedf1156c8068525695b005ca288/c066b2e9a50cc948802572870032b170?OpenDocument
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Quelques conseils et recommandations pour l'avenir :

> Passe un coup d'AGV et/ou de MalwareByte's Anti-Malware et de Ccleaner de temps en temps (1 fois par semaine à 1 fois par mois, suivant l'utilisation que tu fais de ton PC. Tu peux aussi décocher la casse dans l’onglet "Options" puis clique sur "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier temp de Windows, plus vieux que 48 heures").
- Utilise aussi tes autres logiciels de protection (scannes antivirus, antispywares...). N'oublie pas de faire les mises à jour avant de les utiliser.
- Pense aussi à faire une défragmentation de tes disques durs de temps en temps (garde suffisamment d'espace sur C:\ (1/3 de libre pour être à l'aise))

> Pour bien protéger ton PC :
[1 seul Antivirus] + [1 seul Pare feu (/!\ les routeurs et box en possèdent un)] + [Quelques Antispywares] + [Mises à Jour récentes Windows et Logiciels de Protection] + [Utilisation de Firefox -ou autres- (Internet Explorer présente des failles de sécurité qui mettent longtemps avant d'être corrigées mais il faut absolument le conserver pour les mises à jour Windows)] + [Utilisation du PC en mode Invité (= limité). Lors d'une infection en mode administrateur le PC est beaucoup plus vulnérable. Voir ICI]
PS : En fait la meilleure des protections c'est toi même : ce que tu fais avec ton PC : où tu surfes, télécharges...ect....
Les virus utilisent les failles de ton PC pour infecter un système. Info : http://assiste.com.free.fr/p/abc/a/zombies_et_botnets.html

> Quelques liens utiles :
- https://www.commentcamarche.net/list 2432 securite proteger un ordinateur contre les malwares d internet
- https://sebsauvage.net/safehex.html
- https://www.zebulon.fr/telechargements/securite/protection-donnees-personnelles/spywareblaster.html (= petit logiciel qui bloque l'installation d'activ-X nuisibles au PC. Fonctionne en arrière plan)

ensuite :


pour desinstaller :

demarrer / panneau de configuration / Ajout-suppression de programmes

et tu cliques dessus

et au final dernier petite chose :


http://www.commentcamarche.net/faq/sujet 11365 mettre son poste en probleme resolu


Voila,
Bonne lecture....

source : DllD..............;-)
0
madarikatua Messages postés 169 Date d'inscription dimanche 23 novembre 2008 Statut Membre Dernière intervention 13 septembre 2018
1 déc. 2008 à 21:12
purera se stoppe je passe a cleanafterme
0
cleanafterme... :


The following actions will be executed if you choose to clean the selected items:

Delete registry value: 'LangID' in HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Delete registry value: '@%windir%\system32\inetsrv\iisres.dll,-30503' in HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Delete registry value: '@%windir%\system32\inetsrv\iisres.dll,-30501' in HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Delete registry value: '@C:\Windows\System32\SyncCenter.dll,-3000' in HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Delete registry value: '@C:\Program Files\Windows Live\Messenger\msgslang.8.5.1302.1018.dll,-61143' in HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Delete registry value: '@sstpsvc.dll,-35001' in HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Delete registry value: '@netlogon.dll,-1010' in HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Delete registry value: '@snmptrap.exe,-3' in HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Delete registry value: '@PlaSrv.exe,-10005' in HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache
Delete file: C:\Users\julien\AppData\Local\Temp\wmplog00.sqm
Empty the Recycle Bin
Clean the clipboard
Clean event log: Application
Clean event log: Security
Clean event log: System
Uninstall USB Devices
Clean index.dat file: C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
Delete file: C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SS5EWQE8\affich-9653589-infections-bagle[1].htm
Delete folder: C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SS5EWQE8
Clean index.dat file: C:\Users\julien\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
Clean index.dat file: C:\Users\julien\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
Clean index.dat file: C:\Users\julien\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012008120120081202\index.dat
Delete file: C:\Users\julien\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012008120120081202\index.dat
Delete folder: C:\Users\julien\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012008120120081202


Number of files to delete: 3
Total size of files to delete: 441 KB
0
purera :


PureRa v1.1 from RaProducts
Log created at 21:18 on 01/12/2008
===================================

C:\$Recycle.Bin\S-1-5-21-2033653160-2484511087-3431162249-1001\desktop.ini << Deleted.
C:\Program Files\Common Files\Roxio Shared\9.0\Common Resources\White\Generic\Images\DVDNavigation\Thumbs.db << Unable to Delete.
C:\Program Files\Common Files\Roxio Shared\9.0\Common Resources\White\Generic\Images\VCDNavigation\Thumbs.db << Unable to Delete.
C:\Users\julien\AppData\Local\Microsoft\Feeds Cache\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\History\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\History\Low\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\History\Low\History.IE5\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AOHH5PDZ\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E30AHIGG\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GOAY10T1\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ODPWTNAB\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\desktop.ini << Deleted.
C:\Users\julien\AppData\Local\Temp\wmplog00.sqm << Deleted.
C:\Users\julien\Desktop\SYMPHONYS\guitars\apr 1994\Thumbs.db << Unable to Delete.
C:\Users\julien\Desktop\SYMPHONYS\guitars\aug 1994\Thumbs.db << Unable to Delete.
C:\Users\julien\Desktop\SYMPHONYS\guitars\dec 1998\Thumbs.db << Unable to Delete.
C:\Users\julien\Desktop\SYMPHONYS\guitars\feb 1993\Thumbs.db << Unable to Delete.
C:\Users\julien\Desktop\tracks\HEAVY\manowar\Manowar 1984 (LP Sign Of The Hammer Completo) by EL MAG\Thumbs.db << Unable to Delete.
C:\Users\julien\Desktop\tracks\HEAVY\Savatage-discografia-by Goblin\SAVATAGE-the wake of magellan 1997-1998\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\Savatage-discografia-by Goblin\sirens 1983\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\Savatage-discografia-by Goblin\sirens 1983\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\sonata arctica-\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1988 - Future Shock (EP)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1989 - Black Night (EP)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1989 - Fright Night\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1992 - Break the Ice (EP)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1992 - Twilight Time\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1994 - Dreamspace\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1995 - Fourth Dimension\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1997 - Visions\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1998 - Destiny\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1998 - Visions Of Europe 2 CD\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1998 - Visions Of Europe 2 CD\Stratovarius - Visions of Europe [CD2]\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 1999 - The Chosen Ones\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 2003 - Elements Pt.1\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 2003 - Elements Pt.2\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 2003 - I Walk to My Own Song (EP)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\HEAVY\stratovarius\Stratovarius - 2005 - Stratovarius\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\acdcc\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\acdcc\ACDC - Black Ice - 2008 Mp3 224 kbps (MusicaCentral.com)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\acdcc\ACDC - Black Ice - 2008 Mp3 224 kbps (MusicaCentral.com)\ACDC - Black Ice - 2008 Mp3 224 kbps (MusicaCentral.com)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\acdcc\Album inconnu (22-02-2008 16-42-39)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\aerosmith\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Appetite for Destruction\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Appetite for Destruction\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Use Your Illusion I\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Use your Illusion II\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N roses - Greatest Hits\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N roses - Greatest Hits\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Lies\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Lies\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Live Era '87 - '93\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Live Era '87 - '93\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Live Era '87 - '93\Live Era '87 - '93 (CD 1)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Live Era '87 - '93\Live Era '87 - '93 (CD 1)\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - Live Era '87 - '93\Live Era '87 - '93 (CD 2)\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N Roses - The Spaghetti Incident\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N' Roses - Remasters\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\gun's n roses\Guns N' Roses - Remasters\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\judas priest\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\punk celtik\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\punk celtik\punk-celtik\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1984 - Red Hot Chili Peppers\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1984 - Red Hot Chili Peppers\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1985 - Freaky Styley\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1987 - Uplift Mofo Party Plan\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1988 - The Abbey Road E.P\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1989 - Mother's milk\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1989 - Mother's milk\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1991 - Blood Sugar Sex Magic\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1991 - Blood Sugar Sex Magic\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1992 - What Hits\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1992 - What Hits\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1994 - Live Rare Remix Box\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1994 - Live Rare Remix Box\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1994 - Out In L.A\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1994 - Out In L.A\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1995 - One Hot Minute\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1995 - One Hot Minute\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1998 - Under The Covers\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1998 - Under The Covers\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1999 - Californication\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\1999 - Californication\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\2002 - By The Way\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\2002 - By The Way\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\ROCK\Red Hot Chili Peppers\Stadium Arcadium (Advance 2006) - Rock By FEFE2003\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\black sabbath\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\born from pain\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\born from pain\Born from Pain\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\caliban\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\caliban\caliban - the awakening (promo) [2007] (vbr) metalcore\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\Discography of Converge\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\Discography of Converge\Deeper the Wound- Slip album with Hellchild\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\Discography of Converge\Petitioning The Empty Sky\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\Discography of Converge\The Poached Diaries- Slip album with Agoraphobic Nosebleed\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\Discography of Converge\Where forever comes crashing\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\Some MP3 of converge and side project\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\Some MP3 of converge and side project\Kid Kilowatt\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\Some MP3 of converge and side project\Kid Kilowatt\Guitar Method\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\converge-\CONVERGE-full discography with bonus ripped by Ass VeGaS\Wallpaper\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\Coroner\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\Coroner\1988 - Coroner - Punishment For Decadence\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\Coroner\CORONER - THE UNKNOWN\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\guerilla poubelle\(2005) - Guerilla Poubelle - Il faut repeindre le monde...en noir\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\guerilla poubelle\guerilla poubelle discographie +vidéos (clip et lives)\Videos\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hatebreed\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hatebreed\Hatebreed - Perseverance (2002)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hatebreed\Hatebreed - Satisfaction is the Death of Desire - VBR (Full Album) by SimbaKali\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hatebreed\Hatebreed-Supremacy-(Advance)-2006-KzT\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hatebreed\Hatebreed-The_Rise_of_Brutality-Advance-2003-iTS\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hatesphere\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hatesphere\Hatesphere - Ballet Of The Brute (VBR) (2004)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hatesphere\Hatesphere - Bloodred Hatred\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hatesphere\HATESPHERE - The Sickness Within\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hurtlocker\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\hurtlocker\Hurtlocker-Embrace_the_Fall-2007-JUST\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\LES SALES MAJESTES LA TOTAL-\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\LES SALES MAJESTES LA TOTAL-\Bienvenue\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\LES SALES MAJESTES LA TOTAL-\No Problemo\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\And Out Came The Wolves\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\B-sides Collection\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Grease And Garbaje\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Let's Go\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Life Won't Wait\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Live At The Hollywood Palladium\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Operation Ivy\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Others (compilations, live and singles)\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Others (compilations, live and singles)\Bloodclot\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Others (compilations, live and singles)\Brad Logan\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Others (compilations, live and singles)\Give Em The Boot\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Others (compilations, live and singles)\Hooligans\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Others (compilations, live and singles)\Radio Radio Radio 7\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Others (compilations, live and singles)\Roots Radicals 7\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Rancid 1993\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Rancid 2000\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Seedy\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Covers\Split Nofx-Rancid\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Operation Ivy\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Operation Ivy\operation ivy\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Operation Ivy\Seedy\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Rancid\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Rancid\And Out Came The Wolves\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Rancid\Let's Go\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Rancid\Life Won't Wait\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Rancid\Radio, Radio, Radio Outtakes ‘93 & Roots Radicals Demos ‘94\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Rancid\Rancid 1993\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Rancid\Roots Radicals\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Rancid\Split(Nofx-Rancid)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\rancid\Rancid-Operation Ivy Discography until 2002 [HxCTeam.tk] VBR-192 EAC LAME HQ\Rancid\Various\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\svinkels\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\svinkels\Bois Mes Paroles\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\svinkels\Feats & Live & Raretés\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\svinkels\Feats & Live & Raretés\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\svinkels\Juste Fais La\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\svinkels\Tapis Rouge\Thumbs.db << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\the casualties\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\the casualties\THE CASUALTIES - Studio Releases 1990 - 2004 [6CDs]\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\the casualties\THE CASUALTIES - Studio Releases 1990 - 2004 [6CDs]\The Casualties - On The Front Line (2004)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\the casualties\THE CASUALTIES - Studio Releases 1990 - 2004 [6CDs]\The Casualties - Stay Out Of Order (2000)\desktop.ini << Deleted.
C:\Users\julien\Desktop\tracks\THRASH\the casualties\THE CASUALTIES - Studio Releases 1990 - 2004 [6CDs]\The Casualties - The Early Years (1990-1995) + Bonus Track Live\desktop.ini << Deleted.
C:\Users\julien\Documents\desktop.ini << Deleted.
C:\Users\julien\Documents\LimeWire\Saved\soussay\Marcel & Son Orchestre - Bornes To Be En Live-Album Complet-Cover By G@Ston\desktop.ini << Deleted.
C:\Users\julien\Documents\My Stationery\Desktop.ini << Deleted.
C:\Users\julien\Documents\Notes\desktop.ini << Deleted.
C:\Users\julien\Documents\Vista; 14 DreamScene DeskScapes\DreamScenes et DeskScapes\Stella X 2\Thumbs.db << Deleted.
C:\Users\julien\Documents\Vista; 14 DreamScene DeskScapes\DreamScenes et DeskScapes\Stella X 2\Stella X 2\Thumbs.db << Deleted.
C:\Users\julien\Downloads\desktop.ini << Deleted.
C:\Users\julien\Favorites\desktop.ini << Deleted.
C:\Users\julien\Favorites\Links\desktop.ini << Deleted.
C:\Users\julien\Links\desktop.ini << Deleted.
C:\Users\julien\Music\desktop.ini << Deleted.
C:\Users\julien\Music\Playlists\black v2\desktop.ini << Deleted.
C:\Users\julien\Music\Playlists\black v2\Black metal volume 2\desktop.ini << Deleted.
C:\Users\julien\Music\Playlists\hard'n 17\desktop.ini << Deleted.
C:\Users\julien\Music\Playlists\hard'n 17\Rebel Extravaganza\desktop.ini << Deleted.
C:\Users\julien\Pictures\desktop.ini << Deleted.
C:\Users\julien\Saved Games\desktop.ini << Deleted.
C:\Users\julien\Saved Games\Microsoft Games\desktop.ini << Deleted.
C:\Users\julien\Saved Games\Microsoft Games\Spider Solitaire\desktop.ini << Deleted.
C:\Users\julien\Searches\desktop.ini << Deleted.
C:\Users\julien\Videos\desktop.ini << Deleted.
C:\Users\Public\desktop.ini << Deleted.
C:\Users\Public\Desktop\desktop.ini << Deleted.
C:\Users\Public\Documents\desktop.ini << Deleted.
C:\Users\Public\Downloads\desktop.ini << Deleted.
C:\Users\Public\Music\desktop.ini << Deleted.
C:\Users\Public\Music\Sample Music\desktop.ini << Deleted.
C:\Users\Public\Pictures\desktop.ini << Deleted.
C:\Users\Public\Pictures\Sample Pictures\desktop.ini << Deleted.
C:\Users\Public\Videos\desktop.ini << Deleted.
C:\Users\Public\Videos\Sample Videos\desktop.ini << Deleted.
C:\Windows\assembly\Desktop.ini << Unable to Delete.
C:\Windows\Downloaded Program Files\desktop.ini << Unable to Delete.
C:\Windows\Fonts\desktop.ini << Deleted.
C:\Windows\Media\Desktop.ini << Deleted.
C:\Windows\Offline Web Pages\desktop.ini << Unable to Delete.
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\O9LXC9HK\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RNB2HNN7\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V7UJMO46\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y6PK60GK\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\LocalLow\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\SendTo\Desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Desktop.ini << Deleted.
C:\Windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Desktop.ini << Deleted.
C:\Windows\ServiceProfiles\NetworkService\AppData\LocalLow\desktop.ini << Deleted.
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\SendTo\Desktop.ini << Deleted.
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Desktop.ini << Deleted.
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Desktop.ini << Deleted.
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Desktop.ini << Deleted.
C:\Windows\ServiceProfiles\NetworkService\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Desktop.ini << Deleted.
C:\Windows\System32\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Feeds Cache\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Feeds Cache\9Z1621VA\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Feeds Cache\NF3FV1IH\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Feeds Cache\QI50Z2OD\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Feeds Cache\W8M6XHLO\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog00.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog01.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog02.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog03.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog04.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog05.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog06.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog07.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog08.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog09.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog10.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog11.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog12.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog13.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog14.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog15.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog16.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog17.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog18.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Portable Devices\wpdlog19.sqm << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Burn\Burn\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0OGN9TAD\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LC8CWKGI\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R07JN8E5\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UIA5FTPE\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\LocalLow\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\Contacts\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\Desktop\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\Documents\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\Favorites\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\Favorites\Links\desktop.ini << Deleted.
C:\Windows\System32\config\systemprofile\Music\desktop.ini << Deleted.
C:\Windows\winsxs\x86_microsoft-windows-fontext_31bf3856ad364e35_6.0.6000.16386_none_9c4ed686f6b23a4a\desktop.ini << Deleted.
C:\Windows\winsxs\x86_microsoft-windows-fontext_31bf3856ad364e35_6.0.6001.18000_none_9e859882f39d4b1e\desktop.ini << Deleted.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.16386_none_3fc98d12c451f0a7\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.16426_none_400a6e80c4214628\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.16444_none_3ff2ce14c4334b5c\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.16651_none_3fe50116c43e1596\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.16721_none_400572c0c425beea\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.20524_none_40920ab7dd40b344\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.20543_none_407b6a95dd51d1cf\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.20788_none_40553023dd6dba94\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6000.20885_none_4052312bdd706bb6\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6001.18000_none_42004f0ec13d017b\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6001.18032_none_41e1dfdec15387fc\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6001.18112_none_41f7819cc1434d41\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6001.22132_none_426b7ca9da7127c6\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-gameexplorer_31bf3856ad364e35_6.0.6001.22233_none_426c7ed9da703e44\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-ie-objectcontrolviewer_31bf3856ad364e35_6.0.6000.16386_none_34efa630173804dd\desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-ie-objectcontrolviewer_31bf3856ad364e35_6.0.6001.18000_none_3726682c142315b1\desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-ie-offlinefavorites_31bf3856ad364e35_6.0.6000.16386_none_5ef520fc54ce7fc1\desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-ie-offlinefavorites_31bf3856ad364e35_6.0.6001.18000_none_612be2f851b99095\desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.0.6000.16386_none_ef216b8c52ca2227\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.0.6000.16480_none_ef1b6bb652cf8744\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.0.6000.20590_none_ef9a38956bf542ff\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.0.6001.18000_none_f1582d884fb532fb\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-moviesamples_31bf3856ad364e35_6.0.6000.16386_none_3264f7ee9b82c6e1\desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-musicsamples_31bf3856ad364e35_6.0.6000.16386_none_a81d9e66b53cd1c0\desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-photosamples_31bf3856ad364e35_6.0.6000.16386_none_95425ac284e42b43\desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..i-accessibilityuser_31bf3856ad364e35_6.0.6000.16386_none_610db8060bd1ef87\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..i-extrasandupgrades_31bf3856ad364e35_6.0.6000.16386_none_adc50b6db3b3e7f7\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..ini-accessoriesuser_31bf3856ad364e35_6.0.6000.16386_none_21cd6bba173aaff5\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..ini-maintenanceuser_31bf3856ad364e35_6.0.6000.16386_none_03d0de1058f4040c\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..ini-systemtoolsuser_31bf3856ad364e35_6.0.6000.16386_none_1e74ebc2e69c66dd\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..ktopini-accessories_31bf3856ad364e35_6.0.6000.16386_none_e9e059e8bc7eccc4\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..ktopini-maintenance_31bf3856ad364e35_6.0.6000.16386_none_5c637200a03c02ed\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..ktopini-systemtools_31bf3856ad364e35_6.0.6000.16386_none_7c367e9d8ab8dbdc\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..opini-accessibility_31bf3856ad364e35_6.0.6000.16386_none_d8349b05805d9202\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-s..sktopini-sendtouser_31bf3856ad364e35_6.0.6000.16386_none_060dcf85972dae22\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-shell-sounds_31bf3856ad364e35_6.0.6000.16386_none_14dbba36b89e8653\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-tabletpc-journal_31bf3856ad364e35_6.0.6000.16386_none_157ac655a7ad2511\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-tabletpc-journal_31bf3856ad364e35_6.0.6001.18000_none_17b18851a49835e5\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-tabletpc-stickynotes_31bf3856ad364e35_6.0.6000.16386_none_10acea2c3777be62\Desktop.ini << Unable to Delete.
C:\Windows\winsxs\x86_microsoft-windows-videosamples_31bf3856ad364e35_6.0.6000.16386_none_f3766b6019679882\desktop.ini << Unable to Delete.

===================================
-EOF-
0