Tom's Guide > Forum > Sécurité - Virus > Probleme avec Security Toolbar 7.1 !!!
Mot :    Pseudo :           
 

Bonjour,j'ai un gros problème:je ne sais pas ou,mais j'a choppé une toolbar nommée Security Toolbar 7.1.Le probleme est que je ne peux pas la désinstaller.Je sais par contre qu'il faut que je vous envoie un rapport de HijackThis.

Voici le mien:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:08:50, on 24/11/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Belkin\Logiciel Bluetooth\bin\btwdins.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Video Add-on\icthis.exe
C:\Program Files\Video Add-on\isfmntr.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Video Add-on\icmntr.exe
C:\Program Files\Video Add-on\isfmm.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\VM_STI.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Lexmark 6200 Series\lxbumon.exe
C:\Program Files\Lexmark 6200 Series\ezprint.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\ccSvcHst.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\program files\steam\steam.exe
C:\PROGRA~1\FICHIE~1\PCSuite\Services\SERVIC~1.EXE
C:\WINDOWS\system32\lxbucoms.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\thibaut PRENANT\Application Data\Anuman Interactive\AnumanLive\AnumanLive.exe
C:\Program Files\Belkin\Logiciel Bluetooth\BTTray.exe
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.BIN
C:\PROGRA~1\FICHIE~1\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer fourni par Yahoo! France
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
R3 - URLSearchHook: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspe0.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {23B760D6-C98B-450B-9B32-26C7775CDF83} - C:\Program Files\Video Add-on\isfmdl.dll
O2 - BHO: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspe0.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: (no name) - {CDE8EAB9-CEF3-4885-B12F-26960A25C800} - C:\Program Files\Video ActiveX Access\iesplg.dll (file missing)
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: speed-bit Toolbar - {2ba521ac-b9b9-4433-ba45-dba2f02cba5a} - C:\Program Files\speed-bit\tbspe0.dll
O3 - Toolbar: IE Custom Tools - {EFAF6EA3-615D-4F83-8748-2F7A576FCEA6} - C:\Program Files\Video Add-on\ictmdl.dll
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [InstantOn] "C:\Program Files\CyberLink\PowerCinema Linux\ion_install.exe" /c
O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE VIMICRO USB PC Camera
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ubqyvoja] C:\WINDOWS\system32\inyftbmc.exe
O4 - HKLM\..\Run: [MMTray] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe"
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [.nvsvc] C:\WINDOWS\system\smss.exe /w
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -onlytray
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [LXBUCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXBUtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [lxbumon.exe] "C:\Program Files\Lexmark 6200 Series\lxbumon.exe"
O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 6200 Series\ezprint.exe"
O4 - HKLM\..\Run: [devenv] C:\WINDOWS\system\smvss.exe /w
O4 - HKLM\..\Run: [ccSvcHst.exe] C:\WINDOWS\ccSvcHst.exe
O4 - HKCU\..\Run: [fsc-reminder.exe] C:\WINDOWS\reminder\fsc-reminder.exe 2453730 14
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [heartthat] C:\DOCUME~1\THIBAU~1\APPLIC~1\flaw way lies\Bolt Seek Bib.exe
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [AnumanLive] C:\Documents and Settings\thibaut PRENANT\Application Data\Anuman Interactive\AnumanLive\AnumanLive.exe
O4 - HKCU\..\Run: [AdobeUpdater] C:\Program Files\Fichiers communs\Adobe\Updater5\AdobeUpdater.exe
O4 - HKLM\..\Policies\Explorer\Run: [user32.dll] C:\Program Files\Video ActiveX Access\iesmn.exe
O4 - HKLM\..\Policies\Explorer\Run: [rare] C:\Program Files\Video ActiveX Access\imsmain.exe
O4 - HKLM\..\Policies\Explorer\Run: [some] C:\Program Files\Video Add-on\icthis.exe
O4 - HKLM\..\Policies\Explorer\Run: [start] C:\Program Files\Video Add-on\isfmntr.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Anti-Pub.lnk = C:\Program Files\Antipub\antipub.exe
O4 - Startup: OpenOffice.org 2.2.lnk = C:\Program Files\OpenOffice.org 2.2\program\quickstart.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: BTTray.lnk = ?
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolb [...] xmk931YYFR
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\Belkin\Logiciel Bluetooth\btsendto_ie_ctx.htm
O8 - Extra context menu item: Save Flash with Flash Catcher - res://C:\Program Files\Fichiers communs\Justdo\IECatcher.DLL/FlashCatcher.htm
O9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.topsoftwarefeed.com/redirect.php (file missing)
O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.topsoftwarefeed.com/redirect.php (file missing)
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-F [...] E_UNO1.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/bina [...] b32846.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O22 - SharedTaskScheduler: farrandly - {8aa7a4d2-73c7-4fca-bef7-7923e38a3b1c} - C:\WINDOWS\system32\tczij.dll (file missing)
O22 - SharedTaskScheduler: bemocked - {b0883848-1466-4470-a418-3fe7d36694b9} - C:\WINDOWS\system32\rldyt.dll
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Belkin\Logiciel Bluetooth\bin\btwdins.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: lxbu_device - Lexmark International, Inc. - C:\WINDOWS\system32\lxbucoms.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe

--
End of file - 15180 bytes


Voila,en esperant que vous puissiez m'aider =|

Babaye
Knasucre

Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

Heu en plus de la toolbar j'ai environ les meme problemes que coutcouti (un peu plus bas) c'est a dire le triangle jaune qui clignote,des avertissements pour dire que mon ordi est infecté,des fenetres CiD que je n'avais jamais eu avant...

Répondre à Knasucre

Salut,

Télécharge SDFix (d’Andy Manchesta)

Enregistre le sur ton le bureau.

Lance le.
Fais install afin qu’il puisse s’extraire.

Redémarre en mode sans échec
/!\ Ne jamais démarrer en mode sans échec via MSCONFIG /!\

Lance SDFix.
Double clique sur RunThis.bat .
Appuie sur Y pour le lancer.

Il te sera demandé d'appuyer sur une touche pour redemarrer , fais le
Il est probable que le redémarrage soit un peu plus long que d’habitude.
Une fois l’apparition de ton Bureau, il affichera Finished

Appuie sur une touche.

Un rapport est généré , poste le dans ta réponse.
Il se trouve également. dans le dossier SDFix >Report.txt<

------------------------------ >> Centre de Formation Helpers <<
Répondre à XmichouX

Voila le rapport de SDFix:


SDFix: Version 1.115

Run by thibaut PRENANT on 24/11/2007 at 12:35

Microsoft Windows XP [version 5.1.2600]

Running From: C:\SDFix

Safe Mode:
Checking Services:


C:\WINDOWS\system32\Microsoft\backup.ftp Found
C:\WINDOWS\system32\Microsoft\backup.tftp Found

Checking files:

Genuine:
C:\WINDOWS\system32\Microsoft\backup.ftp
C:\WINDOWS\system32\Microsoft\backup.tftp

Dummy:
C:\WINDOWS\system32\ftp.exe
C:\WINDOWS\system32\tftp.exe
C:\WINDOWS\system32\dllcache\ftp.exe
C:\WINDOWS\system32\dllcache\tftp.exe

Files copied to SDFix\Backups

Restoring files if backups are found

Final Check:

Genuine:
C:\WINDOWS\system32\Microsoft\backup.ftp
C:\WINDOWS\system32\Microsoft\backup.tftp
C:\WINDOWS\system32\ftp.exe
C:\WINDOWS\system32\tftp.exe
C:\WINDOWS\system32\dllcache\ftp.exe
C:\WINDOWS\system32\dllcache\tftp.exe

Dummy:


Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting...


Normal Mode:
Checking Files:

Trojan Files Found:

C:\3D3T4T~1.EXE - Deleted
C:\P6G7J3~1.EXE - Deleted
C:\Program Files\Fichiers communs\Carlson\carlton - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\0exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\0exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\0exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\10exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\10exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\10exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\10exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\11exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\11exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\12exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\13exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\13exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\14exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\14exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\14exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\15exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\15exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\16exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\16exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\17exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\17exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\18exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\18exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\18exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\19exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\19exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\19exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\19exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\1exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\1exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\1exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\20exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\21exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\21exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\22exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\22exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\23exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\23exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\24exinjs.a8.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\24exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\24exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\25exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\25exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\26exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\26exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\27exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\27exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\28exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\28exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\29exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\29exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\29exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\2exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\2exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\30exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\30exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\30exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\31exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\31exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\32exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\32exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\33exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\33exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\34exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\34exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\35exinjs.a8.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\35exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\35exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\36exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\36exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\37exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\37exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\38exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\38exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\39exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\39exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\3exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\3exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\3exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\40exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\40exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\41exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\42exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\42exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\43exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\43exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\43exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\43exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\44exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\44exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\44exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\45exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\45exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\46exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\46exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\46exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\47exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\47exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\48exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\48exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\49exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\49exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\4exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\4exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\50exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\50exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\51exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\51exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\52exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\53exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\54exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\54exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\54exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\55exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\56exinjs.a8.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\56exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\56exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\57exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\57exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\58exinjs.a8.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\58exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\58exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\59exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\59exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\5exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\5exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\60exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\60exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\61exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\61exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\61exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\62exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\62exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\63exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\63exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\64exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\65exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\65exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\66exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\66exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\66exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\67exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\67exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\68exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\68exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\69exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\69exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\69exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\6exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\6exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\70exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\70exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\71exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\71exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\72exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\72exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\72exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\73exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\73exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\74exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\74exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\75exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\75exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\76exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\76exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\77exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\77exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\77exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\78exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\78exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\79exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\79exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\79exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\7exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\7exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\80exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\80exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\81exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\81exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\82exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\82exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\82exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\83exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\83exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\83exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\84exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\84exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\85exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\85exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\87exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\87exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\87exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\88exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\88exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\89exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\89exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\8exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\8exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\90exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\90exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\90exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\91exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\91exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\92exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\92exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\93exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\93exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\94exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\94exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\94exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\95exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\95exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\96exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\96exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\97exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\97exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\98exinjs.a7.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\98exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\98exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\99exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\99exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\9exinjs.a6.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\9exinjs.a9.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\9exinjs.aa.exe - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\autorun.inf - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\injs.a6.exe.conf - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\injs.a7.exe.conf - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\injs.a8.exe.conf - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\injs.a9.exe.conf - Deleted
C:\DOCUME~1\THIBAU~1\LOCALS~1\Temp\injs.aa.exe.conf - Deleted
C:\WINDOWS\Dance_dec_jpg.zip - Deleted
C:\WINDOWS\ccSvcHst.exe - Deleted
C:\WINDOWS\system\smss.exe - Deleted
C:\WINDOWS\system32\Microsoft\backup.ftp - Deleted
C:\WINDOWS\system32\Microsoft\backup.tftp - Deleted



Folder C:\Program Files\Fichiers communs\Carlson - Removed

Removing Temp Files...

ADS Check:

C:\WINDOWS
No streams found.

C:\WINDOWS\system32
No streams found.

C:\WINDOWS\system32\svchost.exe
No streams found.

C:\WINDOWS\system32\ntoskrnl.exe
No streams found.



Final Check:

catchme 0.3.1262.1 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2007-11-24 12:46:49
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

scanning hidden registry entries ...

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Reporting\EventCache\9482f4b4-e343-43b6-b170-9a65bc822c77]
"FlushCacheFiles"=str(7):"C:\WINDOWS\SoftwareDistribution\EventCache\{49918BDC-313B-40A3-AD6B-48D7CA7BF07B}.bin\0"

scanning hidden files ...

C:\WINDOWS\SoftwareDistribution\WuRedir\9482F4B4-E343-43B6-B170-9A65BC822C77\wuredir.cab.bak 10040 bytes
C:\Program Files\DAP\History\Romain\_lasthist.dat 0 bytes
C:\Documents and Settings\thibaut PRENANT\Local Settings\Application Data\Microsoft\Messenger\t.i.b.o-du-13@hotmail.fr\SharingMetadata\ilcapitano28@hotmail.fr\DFSR\Staging\CS{590C8125-8ED1-124B-E811-3AD19C2BAD7C}\01\10-{590C8125-8ED1-124B-E811-3AD19C2BAD7C}-v1-{9FCEB952-535C-44E6-A1D6-8A3888524412}-v10-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS 8 bytes hidden from API

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 3


Remaining Services:
------------------



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Disabled:Windows Messenger"
"C:\\Program Files\\EA GAMES\\La Bataille pour la Terre du Milieu(tm)\\game.dat"="C:\\Program Files\\EA GAMES\\La Bataille pour la Terre du Milieu(tm)\\game.dat:*:Enabled:La Bataille pour la Terre du Milieu(tm)"
"C:\\Program Files\\Microsoft Games\\Zoo Tycoon 2\\zt.exe"="C:\\Program Files\\Microsoft Games\\Zoo Tycoon 2\\zt.exe:*:Enabled:Zoo Tycoon 2 Executable"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\WINDOWS\\system32\\svchost.exe"="C:\\WINDOWS\\system32\\svchost.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\9exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\9exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\18exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\18exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\50exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\50exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\79exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\79exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\10exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\10exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\43exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\43exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\54exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\54exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\30exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\30exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\20exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\20exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\44exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\44exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\66exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\66exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\19exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\19exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\3exinjs.a6.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\3exinjs.a6.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\73exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\73exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\46exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\46exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\10exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\10exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\98exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\98exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\72exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\72exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\87exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\87exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\51exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\51exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\69exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\69exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\59exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\59exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\90exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\90exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\0exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\0exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\82exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\82exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\43exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\43exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\14exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\14exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\94exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\94exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\83exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\83exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\1exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\1exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\19exinjs.a7.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\19exinjs.a7.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\24exinjs.a8.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\24exinjs.a8.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\56exinjs.a8.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\56exinjs.a8.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\58exinjs.a8.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\58exinjs.a8.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\65exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\65exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\59exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\59exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\9exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\9exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\10exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\10exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\23exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\23exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\51exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\51exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\0exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\0exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\62exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\62exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\14exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\14exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\16exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\16exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\37exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\37exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\91exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\91exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\43exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\43exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\83exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\83exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\22exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\22exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\68exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\68exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\31exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\31exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\17exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\17exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\84exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\84exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\44exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\44exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\69exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\69exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\40exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\40exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\77exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\77exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\19exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\19exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\7exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\7exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\66exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\66exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\24exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\24exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\18exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\18exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\26exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\26exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\90exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\90exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\61exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\61exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\4exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\4exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\97exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\97exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\99exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\99exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\89exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\89exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\13exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\13exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\29exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\29exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\25exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\25exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\33exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\33exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\80exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\80exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\95exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\95exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\34exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\34exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\94exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\94exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\46exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\46exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\45exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\45exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\72exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\72exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\53exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\53exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\32exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\32exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\35exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\35exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\64exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\64exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\8exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\8exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\98exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\98exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\36exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\36exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\27exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\27exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\63exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\63exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\3exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\3exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\12exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\12exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\38exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\38exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\49exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\49exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\88exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\88exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\30exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\30exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\42exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\42exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\92exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\92exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\39exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\39exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\5exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\5exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\66exinjs.a9.exe"="C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\66exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\64exinjs.a9.exe"="C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\64exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\40exinjs.a9.exe"="C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\40exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\83exinjs.a9.exe"="C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\83exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\55exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\55exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\79exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\79exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\11exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\11exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\1exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\1exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\60exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\60exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\82exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\82exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\76exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\76exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\81exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\81exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\96exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\96exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\56exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\56exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\87exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\87exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\2exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\2exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\70exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\70exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\74exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\74exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\20exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\20exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\89exinjs.a9.exe"="C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\89exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\71exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\71exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\58exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\58exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\47exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\47exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\78exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\78exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\57exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\57exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\67exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\67exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\85exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\85exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\54exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\54exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\48exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\48exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\15exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\15exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\41exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\41exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\28exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\28exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\41exinjs.a9.exe"="C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\41exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\43exinjs.a9.exe"="C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\43exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\93exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\93exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\75exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\75exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\50exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\50exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\73exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\73exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\21exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\21exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\6exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\6exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\52exinjs.a9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\52exinjs.a9.exe:*:Enabled:Microsoft Update"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\50exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\50exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\91exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\91exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\45exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\45exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\90exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\90exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\57exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\57exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\97exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\97exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\80exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\80exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\73exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\73exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\19exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\19exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\38exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\38exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\68exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\68exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\43exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\43exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\3exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\3exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\26exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\26exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\4exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\4exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\23exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\23exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\14exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\14exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\7exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\7exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\85exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\85exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\58exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\58exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\74exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\74exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\88exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\88exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\1exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\1exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\67exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\67exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\93exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\93exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\65exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\65exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\6exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\6exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\54exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\54exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\61exinjs.aa.exe"="C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\61exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\7exinjs.aa.exe"="C:\\DOCUME~1\\Romain\\LOCALS~1\\Temp\\7exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\39exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\39exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\64exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\64exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\36exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\36exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\52exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\52exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\47exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\47exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\13exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\13exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\15exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\15exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\62exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\62exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\76exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\76exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\75exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\75exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\63exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\63exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\94exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\94exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\89exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\89exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\44exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\44exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\35exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\35exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\18exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\18exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\98exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\98exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\11exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\11exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\92exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\92exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\21exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\21exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\70exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\70exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\17exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\17exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\16exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\16exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\95exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\95exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\81exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\81exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\40exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\40exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\8exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\8exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\53exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\53exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\9exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\9exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\46exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\46exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\60exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\60exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\32exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\32exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\48exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\48exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\2exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\2exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\10exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\10exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\82exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\82exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\61exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\61exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\84exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\84exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\72exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\72exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\37exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\37exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\56exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\56exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\79exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\79exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\99exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\99exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\71exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\71exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\34exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\34exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\5exml32.9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\5exml32.9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\66exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\66exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\78exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\78exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\49exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\49exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\18exed32_2.d.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\18exed32_2.d.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\83exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\83exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\87exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\87exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\27exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\27exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\30exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\30exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\78exml32.9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\78exml32.9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\22exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\22exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\33exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\33exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\29exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\29exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\25exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\25exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\87exed32_2.d.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\87exed32_2.d.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\66exml32.9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\66exml32.9.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\96exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\96exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\31exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\31exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\5exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\5exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\24exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\24exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\69exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\69exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\42exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\42exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\59exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\59exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\76exml32.9.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\76exml32.9.exe:*:Enabled:Microsoft Update"
"C:\\Program Files\\BitTorrent\\bittorrent.exe"="C:\\Program Files\\BitTorrent\\bittorrent.exe:*:Enabled:BitTorrent"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\28exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\28exinjs.aa.exe:*:Enabled:Microsoft Update"
"C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\0exinjs.aa.exe"="C:\\DOCUME~1\\THIBAU~1\\LOCALS~1\\Temp\\0exinjs.aa.exe:*:Enabled:Microsoft Update"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

Remaining Files:
---------------

File Backups: - C:\SDFix\backups\backups.zip

Files with Hidden Attributes:

Wed 3 May 2006 163,328 ..SHR --- "C:\WINDOWS\system32\flvDX.dll"
Wed 21 Feb 2007 31,744 ..SHR --- "C:\WINDOWS\system32\msfDX.dll"
Sat 30 Dec 2006 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Sun 26 Jun 2005 616,448 ..SHR --- "C:\Program Files\eRightSoft\SUPER\cygwin1.dll"
Tue 21 Jun 2005 45,568 ..SHR --- "C:\Program Files\eRightSoft\SUPER\cygz.dll"
Sat 9 Jun 2007 72,704 ..SHR --- "C:\Program Files\eRightSoft\SUPER\Setup.exe"
Fri 27 Oct 2006 15,872 A.SHR --- "C:\Program Files\eRightSoft\SUPER\_Setup.dll"
Fri 8 Dec 2006 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Tue 4 Jun 2002 84,992 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\14_43260.dll"
Tue 4 Jun 2002 44,032 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\28_83260.dll"
Tue 10 Dec 2002 73,766 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\atrc3260.dll"
Tue 10 Dec 2002 65,575 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\cook3260.dll"
Sun 9 Jun 2002 36,864 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\ddnt3260.dll"
Tue 4 Jun 2002 20,480 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\dnet3260.dll"
Tue 10 Dec 2002 102,437 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv13260.dll"
Tue 10 Dec 2002 176,165 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv23260.dll"
Tue 10 Dec 2002 208,935 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv33260.dll"
Tue 10 Dec 2002 217,127 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\drv43260.dll"
Sun 9 Jun 2002 40,448 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\dspr3260.dll"
Sun 4 Nov 2001 225,280 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\ivvideo.dll"
Tue 10 Apr 2001 225,280 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\qtmlClient.dll"
Fri 20 Feb 2004 232,960 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\raac.dll"
Sun 9 Jun 2002 525,824 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rnco3260.dll"
Tue 10 Dec 2002 245,805 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rnlt3260.dll"
Tue 10 Dec 2002 45,093 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv103260.dll"
Tue 10 Dec 2002 98,341 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv203260.dll"
Tue 10 Dec 2002 94,247 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv303260.dll"
Tue 10 Dec 2002 90,151 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\rv403260.dll"
Tue 10 Dec 2002 102,439 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\sipr3260.dll"
Sun 9 Jun 2002 49,152 ...HR --- "C:\Program Files\eRightSoft\SUPER\mencoder\tokr3260.dll"

Finished!

Répondre à Knasucre

Re,

Beau ménage de fait.

+++++++++++++++

On regarde si il en reste :

Télécharge MsnFix (de !aur3n7) sur ton Bureau. (>>Tuto<< )
Dézippe-le sur ton bureau.

Ouvre le dossier MSNFix puis double-clique sur MSNFix.bat.
- Exécute l'option R.
- Si l'infection est détectée, presse une touche pour lancer le nettoyage. (N)

Si tu dois redémarrer l’ordinateur fais le manuellement.

Poste le rapport situé dans le dossier MSNFix.
Le nom du rapport correspond au moment de sa création : date_heure.log

Note : [i]Si tu obtiens un fichier zip d’upload sur ton bureau, fais ceci

++++++++++++++

Clique sur démarrer --> exécuter, tape CMD puis valide par ok.
Colle la ligne suivante dans la fenêtre noire qui apparaît.
del /s/q "%temp%\*.*"

++++++++++++++

Fais analyser ces fichier sur ce site >> Virustotal <<

Clique sur Parcourir en haut, choisis Poste de travail et cherche ce fichier : C:\WINDOWS\system32\flvDX.dll
Clique maintenant sur envoyer le fichier.
Poste le rapport
Fais la même chose avec ces fichiers : C:\WINDOWS\system32\msfDX.dll

------------------------------ >> Centre de Formation Helpers <<
Répondre à XmichouX
Tom's Guide > Forum > Sécurité - Virus > Probleme avec Security Toolbar 7.1 !!!
Aller à :

Il y a 654 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.

Attention

Vous allez répondre sur un sujet resté inactif pendant plus de 6 mois.
Assurez-vous d'apporter des éléments nouveaux à la discussion avant de poursuivre.

Répondre Annuler
Liens