Tom's Guide > Forum > Sécurité - Virus > (Resolu)Trojan vundo fichier Geebc.dll impossible supprimer

(Resolu)Trojan vundo fichier Geebc.dll impossible supprimer

Forum Sécurité - Virus : (Resolu)Trojan vundo fichier Geebc.dll impossible supprimer

TomsGuide.com : 800 000 inscrits répondent à toutes vos questions high-tech et informatique. Pour obtenir de l'aide, inscrivez-vous gratuitement !
Mot :    Pseudo :           
 

Bonjour,

J'ai un packard bell windows xp familial sp2 et dessus j'ai un trojan vundo fichier geebc.dll
j'ai fait un vundo fix en mode sans echec et j'ai toujour ce fichier embetant.
si quelqu'un peu m'aidé m'envoyer un message pour me connecté le soir je vérifirais car c'est sur un autre pc comme cela je ferais les manipulation en meme temps que le dialogue

Merci d'avanc
Titou600


Message édité par titou600 le 27-03-2008 à 20:24:45
Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

Bonjour,

Télécharge puis installe Hijackthis (Trend Micro)
Poste ensuite un rapport dans ta prochaine réponse.
AIDE : Comment utiliser Hijackthis v2.0.2

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Pc appartenant a un copain j'ai déja viré plusieurs virus et je supprimerais
les 2 autres antivirus car il m'en avait installé 3


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:55:48, on 17/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Safe mode

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Administrateur\Bureau\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://fr.rd.yahoo.com/customize/y [...] .yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL
O3 - Toolbar: Related Page - {9A9C9B68-F908-4AAB-8D0C-10EA8997F37E} - C:\WINDOWS\system32\WinNB92.dll
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy Gif Animator Toolbar - {35065594-9169-4A34-B167-FC4865038E53} - C:\Program Files\Easy Gif Animator Extension\v3.3.0.0\EasyGifAnimator_Toolbar.dll
O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2008\IEToolbar.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [EPSON Stylus C66 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.EXE /P23 "EPSON Stylus C66 Series" /O6 "USB001" /M "Stylus C66"
O4 - HKLM\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [YeppStudioAgent] C:\Program Files\Samsung\SamsungMediaStudio4.1\SamsungMediaStudioAgent.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [runner1] C:\WINDOWS\mrofinu1188.exe 61A847B5BBF72813339330466188719AB689201522886B092CBD44BD8689220221DD3257
O4 - HKLM\..\Run: [{92-27-76-62-DW}] C:\WINDOWS\system32\bev4\dameco3305.exe DWram
O4 - HKLM\..\Run: [mecery] C:\Program Files\ComPlus Applications\mecery77798.exe
O4 - HKLM\..\Run: [miuesmrer] c:\windows\system32\miuesmrer.exe miuesmrer
O4 - HKLM\..\Run: [pumvggymhm] c:\windows\system32\pumvggymhm.exe pumvggymhm
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [luixburdv] c:\windows\system32\luixburdv.exe luixburdv
O4 - HKLM\..\Run: [DefenseNetSurfage] C:\Program Files\DefenseNetSurfage\GDC.exe
O4 - HKLM\..\Run: [gdcw] C:\Program Files\DefenseNetSurfage\data\GDCW.exe
O4 - HKLM\..\Run: [Salestart] "C:\Program Files\Fichiers communs\DefenseNetSurfage\stm.exe" dm=http://defensenetsurfage.com ad=http://defensenetsurfage.com sd=http://paylogs.defensenetsurfage.com
O4 - HKLM\..\Run: [cwriter] C:\Program Files\StorageProtector\ucookw.exe
O4 - HKLM\..\Run: [Salestart(1)] "C:\Program Files\Fichiers communs\StorageProtector\strpmon.exe" dm=http://storageprotector.com ad=http://storageprotector.com sd=http://inspaid.storageprotector.com
O4 - HKLM\..\Run: [DriveDefender] C:\Program Files\DriveDefender\GDC.exe
O4 - HKLM\..\Run: [Salestart(2)] "C:\Program Files\Fichiers communs\DriveDefender\stm.exe" dm=http://drivedefender.com ad=http://drivedefender.com sd=http://ilp.drivedefender.com
O4 - HKLM\..\Run: [p2p networking] p2pnetworking.exe
O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe"
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe"
O4 - HKLM\..\Run: [5c8927cd] rundll32.exe "C:\WINDOWS\system32\hrsovtif.dll",b
O4 - HKLM\..\RunServices: [p2p networking] p2pnetworking.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: TransText.lnk = C:\Program Files\ChaosSoft\TransText\TransText.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O15 - Trusted Zone: http://click.getmirar.com (HKLM)
O15 - Trusted Zone: http://click.mirarsearch.com (HKLM)
O15 - Trusted Zone: http://redirect.mirarsearch.com (HKLM)
O15 - Trusted Zone: http://awbeta.net-nucleus.com (HKLM)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-F [...] E_UNO1.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://aureliemarseillaise.spaces. [...] nPUpld.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL
O21 - SSODL: rdihost - {F9F1F156-5FA3-4237-96E4-4A0868F39307} - rdihost.dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender S.R.L. - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe

--
End of file - 12473 bytes

Répondre à titou600

Re,

Il fait quoi avec son PC ton copain ? Il est totalement vérolé, la désinfection va être longue :)

1) Télécharge MsnFix (de !aur3n7) sur ton Bureau. (>>Tuto<< )
Dézippe-le sur ton bureau.

Ouvre le dossier MSNFix puis double-clique sur MSNFix.bat. (L’extension bat peut ne pas apparaître)
- Exécute l'option R.
- Si l'infection est détectée, presse une touche pour lancer le nettoyage. (N)

Si tu dois redémarrer l’ordinateur fais le manuellement.

Poste le rapport situé dans le dossier MSNFix.
Le nom du rapport correspond au moment de sa création : date_heure.log

Note : Si tu obtiens un fichier zip d’upload sur ton bureau, fais ceci

2) Télécharge SDFix (créé par AndyManchesta ) et sauvegarde le sur ton Bureau.
Guide d'utilisation : http://mickael.barroux.free.fr/securite/sdfix.php

Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :

  • Redémarre ton ordinateur
  • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
  • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
  • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
  • Choisis ton compte.

Déroule la liste des instructions ci-dessous :

  • Ouvre le dossier SDFix qui vient d'être créé sur le Bureau et double clique sur RunThis.bat pour lancer le script.
  • Appuie sur Y pour commencer le processus de nettoyage.
  • Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
  • Appuie sur une touche pour redémarrer le PC.
  • Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
  • Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
  • Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
  • Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
  • Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum.

N.B.:
- Le fichier SDFIX_README.htm (dans le dossier SDFix) contient la liste des malwares pris en compte par l'outil.
- Andy fait plusieurs mises à jour, souvent plus d'une par jour... N'hésitez donc pas à demander de télécharger une nouvelle version lorsque le nettoyage dure et que l'outil ne semble pas tout voir.

3) Télécharge Navilog1 de IL-MAFIOSO : http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe

Selon l’antivirus que tu utilises navilog1 peut être détecté comme virus !!!
Dans ce cas-là désactive le pendant le téléchargement et le scan!!!!


Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
Ensuite double clique sur navilog1.exe pour lancer l'installation.
Une fois l'installation terminée, le fix s'exécutera automatiquement.
(Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).

Laisse-toi guider. Au menu principal, choisis 1 et valides.
(ne fais pas le choix 2,3 ou 4 sans notre avis/accord)

Patiente jusqu'au message :
*** Analyse Termine le ..... ***
Appuie sur une touche comme demandé, le bloc note va s'ouvrir.
Copie-colle l'intégralité dans une réponse. Referme le bloc note.
Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)

4) Il faut désinstaller les deux antivirus de trop.

Bon courage.

;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Egwene a écrit :

Re,

Il fait quoi avec son PC ton copain ? Il est totalement vérolé, la désinfection va être longue :)

1) Télécharge MsnFix (de !aur3n7) sur ton Bureau. (>>Tuto<< )
Dézippe-le sur ton bureau.

Ouvre le dossier MSNFix puis double-clique sur MSNFix.bat. (L’extension bat peut ne pas apparaître)
- Exécute l'option R.
- Si l'infection est détectée, presse une touche pour lancer le nettoyage. (N)

Si tu dois redémarrer l’ordinateur fais le manuellement.

Poste le rapport situé dans le dossier MSNFix.
Le nom du rapport correspond au moment de sa création : date_heure.log

Note : Si tu obtiens un fichier zip d’upload sur ton bureau, fais ceci

2) Télécharge SDFix (créé par AndyManchesta ) et sauvegarde le sur ton Bureau.
Guide d'utilisation : http://mickael.barroux.free.fr/securite/sdfix.php

Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :

  • Redémarre ton ordinateur
  • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
  • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
  • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
  • Choisis ton compte.

Déroule la liste des instructions ci-dessous :

  • Ouvre le dossier SDFix qui vient d'être créé sur le Bureau et double clique sur RunThis.bat pour lancer le script.
  • Appuie sur Y pour commencer le processus de nettoyage.
  • Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
  • Appuie sur une touche pour redémarrer le PC.
  • Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
  • Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
  • Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
  • Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
  • Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum.

N.B.:
- Le fichier SDFIX_README.htm (dans le dossier SDFix) contient la liste des malwares pris en compte par l'outil.
- Andy fait plusieurs mises à jour, souvent plus d'une par jour... N'hésitez donc pas à demander de télécharger une nouvelle version lorsque le nettoyage dure et que l'outil ne semble pas tout voir.

3) Télécharge Navilog1 de IL-MAFIOSO : http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe

Selon l’antivirus que tu utilises navilog1 peut être détecté comme virus !!!
Dans ce cas-là désactive le pendant le téléchargement et le scan!!!!


Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
Ensuite double clique sur navilog1.exe pour lancer l'installation.
Une fois l'installation terminée, le fix s'exécutera automatiquement.
(Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).

Laisse-toi guider. Au menu principal, choisis 1 et valides.
(ne fais pas le choix 2,3 ou 4 sans notre avis/accord)

Patiente jusqu'au message :
*** Analyse Termine le ..... ***
Appuie sur une touche comme demandé, le bloc note va s'ouvrir.
Copie-colle l'intégralité dans une réponse. Referme le bloc note.
Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)

4) Il faut désinstaller les deux antivirus de trop.

Bon courage.

;)



merci pour tes infos
je pense le faire vendredi ou ce week end peut etre car j'ai pas trop le temps le soir
est ce que je pourrais te poster un message vendredi ou plutot dimanche car samedi idem pas trop le temps
encore je te remerci pour les infos

Répondre à titou600

:hello:

Tu postes ici ce que je t'ai demandé quand tu auras le temps :)

La désinfection sera pas très rapide donc voilà ^^

;)


Message édité par Egwene le 18-03-2008 à 13:48:59
------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Search Navipromo version 3.5.0 commencé le 18/03/2008 à 21:06:46,78

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 04.03.2008 à 17h00 par IL-MAFIOSO


Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.11
Système de fichiers : NTFS

Executé en mode sans échec

*** Recherche Programmes installés ***




*** Recherche dossiers dans C:\WINDOWS ***



*** Recherche dossiers dans C:\Program Files ***

C:\Program Files\MessengerSkinner trouvé !


*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\APPLIC~1 ***




*** Recherche dossiers dans "C:\Documents and Settings\Administrateur\applic~1" ***



*** Recherche dossiers dans "C:\Documents and Settings\Administrateur\locals~1\applic~1" ***



*** Recherche dossiers dans "C:\Documents and Settings\Administrateur\menudm~1\progra~1" ***


*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\MENUD?~1\PROGRA~1 ***


*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier trouvé



*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans C:\WINDOWS\system32 *

Fichiers trouvés :

idogakin.exe trouvé !
luixburdv.exe trouvé !
luixburdv.dat trouvé !
luixburdv_nav.dat trouvé !
luixburdv_navps.dat trouvé !
miuesmrer.exe trouvé !
miuesmrer.dat trouvé !
miuesmrer_nav.dat trouvé !
miuesmrer_navps.dat trouvé !
osrude.exe trouvé !
pumvggymhm.exe trouvé !
pumvggymhm.dat trouvé !
pumvggymhm_nav.dat trouvé !
pumvggymhm_navps.dat trouvé !
xyuvycm.exe trouvé !
yrsyqdo.exe trouvé !

Fichiers suspects :

C:\WINDOWS\system32\wprfruayd.exe trouvé !

* Recherche dans "C:\Documents and Settings\Administrateur\locals~1\applic~1" *



*** Recherche fichiers ***


C:\WINDOWS\pack.epk trouvé !
C:\WINDOWS\system32\nvs2.inf trouvé !


*** Recherche clés spécifiques dans le Registre ***


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans C:\WINDOWS\system32 :

luixburdv.dat trouvé !
pumvggymhm.dat trouvé !
luixburdv_nav.dat trouvé !
miuesmrer_nav.dat trouvé !
pumvggymhm_nav.dat trouvé !
luixburdv_navps.dat trouvé !
miuesmrer_navps.dat trouvé !
pumvggymhm_navps.dat trouvé !

* Dans "C:\Documents and Settings\Administrateur\locals~1\applic~1" :


3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat OOO-Favorit absent !

4)Recherche fichiers connus :

C:\WINDOWS\system32\cbeeg.ini2 trouvé ! infection Vundo possible non traitée par cet outil !
C:\WINDOWS\system32\mnnmp.ini2 trouvé ! infection Vundo possible non traitée par cet outil !
C:\WINDOWS\system32\wyadd.ini2 trouvé ! infection Vundo possible non traitée par cet outil !


*** Analyse terminée le 18/03/2008 à 21:17:34,68 ***

Répondre à titou600

MSNFix 1.685

C:\Documents and Settings\Administrateur\Bureau\MSNFix
Fix exécuté le 18/03/2008 - 20:47:29,60 By Administrateur
mode sans échec

************************ Recherche les fichiers présents

... C:\??????.exe
... C:\Program Files\Fichiers communs\Yazzle1560OinUninstaller.exe
... C:\Program Files\JavaCore\UnInstall.exe
... C:\Program Files\MapEDC\IDE.stt
... C:\Program Files\NoDNS\UnInstall.exe
... C:\Program Files\Temporary\InsiDERInst.exe
... C:\WINDOWS\photo album.zip
... C:\WINDOWS\system32\mcrh.tmp
... C:\WINDOWS\system32\vbzip10.dll
... C:\WINDOWS\photo album.zip

************************ Recherche les dossiers présents

... \TEMP\
... C:\Temp\




************************ Suppression des fichiers

.. OK ... C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\winlogon.exe
.. OK ... C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\services.exe
/!\ ... C:\??????.exe
.. OK ... C:\Program Files\Fichiers communs\Yazzle1560OinUninstaller.exe
.. OK ... C:\Program Files\JavaCore\UnInstall.exe
.. OK ... C:\Program Files\MapEDC\IDE.stt
.. OK ... C:\Program Files\NoDNS\UnInstall.exe
.. OK ... C:\Program Files\Temporary\InsiDERInst.exe
.. OK ... C:\WINDOWS\photo album.zip
.. OK ... C:\WINDOWS\system32\mcrh.tmp
.. OK ... C:\WINDOWS\system32\vbzip10.dll
.. OK ... C:\WINDOWS\photo album.zip


************************ Suppression des dossiers

.. OK ... \TEMP\
.. OK ... C:\Temp\


************************ Nettoyage du registre



Les fichiers encore présents seront supprimés au prochain redémarrage


************************ Suppression des fichiers

.. OK ... C:\??????.exe



************************ Fichiers suspects

/!\ ces fichiers nécessitent un avis expérimenté avant toute intervention

[C:\install.exe] 0727BF7BC0378D229811684CB7E407ED
[C:\winlogo.exe] 424EB7A0247D27883C71435570824790

[color=#FF0000]==>[/color] SVP merci d'envoyer le fichier C:\DOCUME~1\ADMINI~1\Bureau\Upload_Me.zip sur http://upload.changelog.fr



Les fichiers et clés de registre supprimés ont été sauvegardés dans le fichier 18032008_20512334.zip

************************ HKLM\...\Winlogon\Userinit

Userinit = C:\WINDOWS\system32\userinit.exe,


------------------------------------------------------------------------
Auteur : !aur3n7 Contact: http://changelog.fr
------------------------------------------------------------------------

--------------------------------------------- END ---------------------------------------------

Répondre à titou600

SDFix: Version 1.158

Run by Administrateur on 18/03/2008 at 20:56

Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix

Checking Services :


Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting


Checking Files :

Trojan Files Found:

C:\WINDOWS\system32\WinNB92.dll - Deleted
C:\WINDOWS\SYSTEM32\TASKKILL.EXE - Deleted
C:\POS4417.TMP - Deleted
C:\POS5497.TMP - Deleted
C:\PROGRA~1\FICHIE~1\QUGA - Deleted
C:\PROGRA~1\COMPLU~1\JAQI77~1.DLL - Deleted
C:\PROGRA~1\COMPLU~1\JAQI89~1.DLL - Deleted
C:\Program Files\JavaCore\UnInstall.MSNFix - Deleted
C:\Program Files\MapEDC\IDE.MSNFix - Deleted
C:\Program Files\NoDNS\UnInstall.MSNFix - Deleted
C:\Program Files\Temporary\InsiDERInst.MSNFix - Deleted
C:\Program Files\Fichiers communs\Yazzle1560OinAdmin.exe - Deleted
C:\Program Files\Fichiers communs\Yazzle1560OinUninstaller.MSNFix - Deleted
C:\Program Files\a.zip - Deleted
C:\Program Files\b.zip - Deleted
C:\Program Files\c.zip - Deleted
C:\Program Files\A.ico - Deleted
C:\Program Files\B.ico - Deleted
C:\WINDOWS\system32\msnav32.ax - Deleted
C:\WINDOWS\system32\pac.txt - Deleted
C:\WINDOWS\system32\WINLOGO.EXE - Deleted



Folder C:\Documents and Settings\All Users\Application Data\SalesMon - Removed
Folder C:\Program Files\InetGet2 - Removed
Folder C:\Program Files\JavaCore - Removed
Folder C:\Program Files\MapEDC - Removed
Folder C:\Program Files\NoDNS - Removed
Folder C:\Program Files\Temporary - Removed


Removing Temp Files

ADS Check :



Final Check :

catchme 0.3.1344.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-03-18 21:00:10
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BTHPORT\Parameters\Keys\001060ab9526]
"0015b9223015"=hex:11,a0,9a,dc,56,83,e9,79,ad,71,07,48,92,7a,ea,97
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\BTHPORT\Parameters\Keys\001060ab9526]
"0015b9223015"=hex:11,a0,9a,dc,56,83,e9,79,ad,71,07,48,92,7a,ea,97
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BTHPORT\Parameters\Keys\001060ab9526]
"0015b9223015"=hex:11,a0,9a,dc,56,83,e9,79,ad,71,07,48,92,7a,ea,97

scanning hidden registry entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


Remaining Services :



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\\Program Files\\AOL 9.0\\aol.exe"="C:\\Program Files\\AOL 9.0\\aol.exe:*:Disabled:AOL"
"C:\\WINDOWS\\system32\\sessmgr.exe"="C:\\WINDOWS\\system32\\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\\APPS\\Inventime\\my.exe"="C:\\APPS\\Inventime\\my.exe:*:Disabled:INVENTIME"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

Remaining Files :


File Backups: - C:\SDFix\backups\backups.zip

Files with Hidden Attributes :

Thu 18 May 2006 215 A.SHR --- "C:\BOOT.BAK"
Mon 28 Jun 2004 54,384 A..H. --- "C:\Program Files\AOL 9.0\aolphx.exe"
Mon 28 Jun 2004 156,784 A..H. --- "C:\Program Files\AOL 9.0\aoltray.exe"
Mon 28 Jun 2004 31,344 A..H. --- "C:\Program Files\AOL 9.0\RBM.exe"
Tue 23 Oct 2007 5,903,928 A..H. --- "C:\Program Files\Picasa2\setup.exe"
Thu 18 Jan 2001 32,768 A..H. --- "C:\Program Files\RM-X© Audio Capture\ASProtect.dll"
Tue 26 Sep 2006 9 A..H. --- "C:\WINDOWS\system32\wxmmin.dll"
Mon 28 Jan 2008 230,400 ..SHR --- "C:\WINDOWS\??curity\j?vaw.exe"
Mon 25 Feb 2008 68,608 ..SHR --- "C:\WINDOWS\?dobe\winlogon.exe"
Wed 7 Jun 2006 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Sat 24 Nov 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Thu 24 Jan 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\585dc2612ebcefc90e7dee4c276ee95e\BIT2.tmp"
Mon 28 Jun 2004 106,496 A..H. --- "C:\Program Files\Fichiers communs\aolshare\shell\fr\shellext.dll"

Finished!

Répondre à titou600

:hello:

Entre nous, ça faisait un moment que je n'avais pas vu un PC aussi vérolé :D Mais bon, quand on en aura fini, il sera tout propre :sol:

1) Tu es infecté(e) par "Vundo". Supprime tous les cracks de ton PC s'ils sont présents car sinon ils relanceront l'infection.

Télécharge VundoFix.exe (par Atribune) sur ton Bureau.

http://www.atribune.org/ccount/click.php?id=4

  • Double-clique VundoFix.exe afin de le lancer
  • Clique sur le bouton Scan for Vundo
  • Lorsque le scan est complété, clique sur le bouton Remove Vundo
  • Une invite te demandera si tu veux supprimer les fichiers, clique YES
  • Après avoir cliqué "Yes", le Bureau disparaîtra un moment lors de la suppression des fichiers
  • Tu verras une invite qui t'annonce que ton PC va redémarrer; clique OK
  • Copie/colle le contenu du rapport situé dans C:\vundofix.txt dans ta prochaine réponse


Note:
Il est possible que VundoFix soit confronté à un fichier qu'il ne peut supprimer. Si tel est le cas, l'outil se lancera au prochain redémarrage; il faut simplement suivre les instructions ci-dessus, à partir de "clique sur le bouton Scan for Vundo".

2) Double clique sur le raccourci Navilog1 présent sur le bureau et laisse-toi guider.
Au menu principal, choisis 2 et valide.

Le fix va t'informer qu'il va alors redémarrer ton PC
Ferme toutes les fenêtres ouvertes et enregistre tes documents personnels ouverts
Appuie sur une touche comme demandé.
(si ton PC ne redémarre pas automatiquement, fais le toi même)
Au redémarrage de ton PC, choisis ta session habituelle.

Patiente jusqu'au message :
*** Nettoyage Termine le ..... ***
Le bloc note va s'ouvrir.
Sauvegarde le rapport de manière à le retrouver
Referme le bloc note. Ton bureau va réapparaître

PS:Si ton bureau ne réapparaît pas, fais CTRL+ALT+SUPP pour ouvrir le gestionnaire de tâches.
Puis rends-toi à l'onglet "processus". Clique en haut à gauche sur fichiers et choisis "exécuter"
Tape explorer et valide. Cela te fera apparaître ton bureau


3) Affiche les fichiers et dossiers cachés …
Pour ce faire, tu vas dans un dossier, par ex. "Mes Images".
Ensuite, clique sur > Outils > Options des dossiers ...
clique sur l' onglet « Affichage » et ...
coche ---> Afficher les fichiers et dossiers cachés
décoche > Masquer les extensions des fichiers dont le type est connu
décoche > Masquer les fichiers protégés du système d' exploitation (recommandé).
« Appliquer » et « OK ».

4) Désactive toute protection résidente ( antivirus…) !

Télécharge Combofix de sUBs :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
Sauvegarde le sur ton bureau et pas ailleurs !


Redémarre en mode sans échecs : aide ici >>>

http://forum.telecharger.01net.com [...] ges-1.html
/!\ Ne jamais redémarrer en mode sans échec via msconfig ! /!\

Double-clic sur combofix, Il va te poser une question, réponds par la touche 1 et entrée pour valider, laisse toi guider.
Attends que combofix ait terminé, un rapport sera créé. Poste le rapport.

5) Redémarre en mode normal et poste-moi un nouveau rapport hijackthis + tous les rapports demandés.

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

bonjour merillym

j'ai fait les procedure vundofix.ex en mode sans echec le scan ne me révéle rien pas de fichier (je l'ai fait 2 fois)
ensuite toujours en mode sans echec j'ai fait le naviog1

Clean Navipromo version 3.5.0 commencé le 18/03/2008 à 22:08:33,17

Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 04.03.2008 à 17h00 par IL-MAFIOSO


Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.11
Système de fichiers : NTFS

Mode suppression automatique
avec prise en charge résultats Catchme et GNS


Executé en mode sans échec


*** fsbl1.txt non trouvé ***
(Assurez-vous que Catchme n'avait rien trouvé lors de la recherche)


*** Suppression avec sauvegardes résultats GenericNaviSearch ***

* Suppression dans C:\WINDOWS\System32 *

idogakin.exe trouvé !
Copie idogakin.exe réalisée avec succès !
idogakin.exe supprimé !

luixburdv.exe trouvé !
Copie luixburdv.exe réalisée avec succès !
luixburdv.exe supprimé !

luixburdv.dat trouvé !
Copie luixburdv.dat réalisée avec succès !
luixburdv.dat supprimé !

luixburdv_nav.dat trouvé !
Copie luixburdv_nav.dat réalisée avec succès !
luixburdv_nav.dat supprimé !

luixburdv_navps.dat trouvé !
Copie luixburdv_navps.dat réalisée avec succès !
luixburdv_navps.dat supprimé !

C:\WINDOWS\prefetch\luixburdv*.pf trouvé !
Copie C:\WINDOWS\prefetch\luixburdv*.pf réalisée avec succès !
C:\WINDOWS\prefetch\luixburdv*.pf supprimé !

miuesmrer.exe trouvé !
Copie miuesmrer.exe réalisée avec succès !
miuesmrer.exe supprimé !

miuesmrer.dat trouvé !
Copie miuesmrer.dat réalisée avec succès !
miuesmrer.dat supprimé !

miuesmrer_nav.dat trouvé !
Copie miuesmrer_nav.dat réalisée avec succès !
miuesmrer_nav.dat supprimé !

miuesmrer_navps.dat trouvé !
Copie miuesmrer_navps.dat réalisée avec succès !
miuesmrer_navps.dat supprimé !

C:\WINDOWS\prefetch\miuesmrer*.pf trouvé !
Copie C:\WINDOWS\prefetch\miuesmrer*.pf réalisée avec succès !
C:\WINDOWS\prefetch\miuesmrer*.pf supprimé !

osrude.exe trouvé !
Copie osrude.exe réalisée avec succès !
osrude.exe supprimé !

pumvggymhm.exe trouvé !
Copie pumvggymhm.exe réalisée avec succès !
pumvggymhm.exe supprimé !

pumvggymhm.dat trouvé !
Copie pumvggymhm.dat réalisée avec succès !
pumvggymhm.dat supprimé !

pumvggymhm_nav.dat trouvé !
Copie pumvggymhm_nav.dat réalisée avec succès !
pumvggymhm_nav.dat supprimé !

pumvggymhm_navps.dat trouvé !
Copie pumvggymhm_navps.dat réalisée avec succès !
pumvggymhm_navps.dat supprimé !

C:\WINDOWS\prefetch\pumvggymhm*.pf trouvé !
Copie C:\WINDOWS\prefetch\pumvggymhm*.pf réalisée avec succès !
C:\WINDOWS\prefetch\pumvggymhm*.pf supprimé !

xyuvycm.exe trouvé !
Copie xyuvycm.exe réalisée avec succès !
xyuvycm.exe supprimé !

yrsyqdo.exe trouvé !
Copie yrsyqdo.exe réalisée avec succès !
yrsyqdo.exe supprimé !


* Suppression dans "C:\Documents and Settings\Administrateur\locals~1\applic~1" *



*** Suppression dossiers dans C:\WINDOWS ***


*** Suppression dossiers dans C:\Program Files ***

C:\Program Files\MessengerSkinner ...suppression...
C:\Program Files\MessengerSkinner supprimé !


*** Suppression dossiers dans C:\DOCUME~1\ALLUSE~1\APPLIC~1 ***


*** Suppression dossiers dans "C:\Documents and Settings\Administrateur\applic~1" ***


*** Suppression dossiers dans "C:\Documents and Settings\Administrateur\locals~1\applic~1" ***


*** Suppression dossiers dans "C:\Documents and Settings\Administrateur\menudm~1\progra~1" ***


*** Suppression dossiers dans C:\DOCUME~1\ALLUSE~1\MENUD?~1\PROGRA~1 ***



*** Suppression fichiers ***

C:\WINDOWS\pack.epk supprimé !
C:\WINDOWS\system32\nvs2.inf supprimé !

*** Suppression fichiers temporaires ***

Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\Administrateur\locals~1\Temp effectué !

*** Traitement Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Suppression avec sauvegardes nouveaux fichiers Instant Access :

2)Recherche, création sauvegardes et suppression Heuristique :


* Dans C:\WINDOWS\system32 *


* Dans "C:\Documents and Settings\Administrateur\locals~1\applic~1" *


*** Sauvegarde du Registre vers dossier Backupnavi ***

sauvegarde du Registre réalisée avec succès !

*** Nettoyage Registre ***

Nettoyage Registre Ok


*** Certificats ***

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat OOO-Favorit absent !

*** Fichiers suspects non supprimés par Navilog1 ***
!! Fichiers légitimes possibles, à contrôler avant suppression !!

Fichiers suspects dans C:\WINDOWS\system32 :

C:\WINDOWS\system32\wprfruayd.exe trouvé !

*** Nettoyage terminé le 18/03/2008 à 22:09:04,34 ***
Ensuite en mode sans echec Combofix mais sur cette outils je n'ai pas eu de question pour répondre par la touche 1 et entrée il y avait à donné une réponse oui ou non (je n'ai pas fait une image écran éxcuse)
le combofix à redémarrer le pc mais en mode normal et j'ai toujours les problemes car les antivirus ce sont lancé j'avais oublié de les désinstaller au mois en laisser un
je n'ai pas eu non plus le rapport
Je te posterai ce soir vers 19h00 un hitjackthis en mode sans echec pour savoir ou j'en suis et les procedures à reprendre si nécessaire.
hier terminé vers 22h30 mais avec la journée de boulot était grevé.
a+
Titou600


Répondre à titou600

:hello:

Oui oui prends ton temps, on fait selon nos disponibilités respectives. C'est normal que tu aies encore des alertes, tu es très infecté(e). Mais ne t'inquiète pas, chaque manip' en enlève ;)

As-tu un rapport ici ? C:\Combofix.txt ? Si oui poste-le moi :)

;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

bonjour la longueur du rapport

ComboFix 08-03-17.1 - Administrateur 2008-03-18 22:12:02.1 - NTFSx86 MINIMAL
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.786 [GMT 1:00]
Endroit: C:\Documents and Settings\Administrateur\Bureau\ComboFix.exe
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Administrateur\Application Data\DriveDefender
C:\Documents and Settings\Administrateur\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\All Users\Application Data\DriveDefender
C:\Documents and Settings\All Users\Application Data\DriveDefender\Abbr
C:\Documents and Settings\All Users\Application Data\DriveDefender\prod_code
C:\Documents and Settings\All Users\Application Data\Starware370
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\findit_music.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\Highlight.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\HighlightHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\highlighthotxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\highlightxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\lyrics.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\music_search.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\radio.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\starware_toolbar_icon.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\error.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\Related.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\travel.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\Tem150.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem204.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem215.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem21A.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem232.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem244.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem261.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem270.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem30.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem32.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem339.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem54.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem541.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem71D.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem73.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem7B4.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem96.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\TemD7.tmp
C:\Documents and Settings\All Users\Application Data\storageprotector
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\ac
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\em
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\oid
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\StorageProtector.exe.cer
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\user
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\Contact Customer Service.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\DriveDefender unregistered.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\DriveDefender web page.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\Uninstall DriveDefender.lnk
C:\Documents and Settings\Manu.SN047852920098\Application Data\DriveDefender
C:\Documents and Settings\Manu.SN047852920098\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\#SharedObjects\PVRNHJCE\iforex.com
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\#SharedObjects\PVRNHJCE\iforex.com\Emerp\Events\flash_object.swf\user_data.sol
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#iforex.com
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#iforex.com\settings.sol
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\defaultPack.cab
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\languages.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\languages_v2.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\pack1.cab
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Configurator\Configurator.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Configurator\Configurator.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\GamesOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\GamesOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\images\active\Games0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Manager\ManagerOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\images\active\Marketing40.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\Marketing4Options.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\MoviesOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Radio_FR\Radio_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Radio_FR\Radio_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Tem1A9.tmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Tem94.tmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner\MessengerSkinner.lnk
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner\Website.lnk
C:\Documents and Settings\Stephane\Application Data\DriveDefender
C:\Documents and Settings\Stephane\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\Stephane\Application Data\Starware370
C:\Documents and Settings\Stephane\Application Data\Starware370\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Configurator\Configurator.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Configurator\Configurator.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\GamesOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\GamesOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\images\active\Games0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Manager\ManagerOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\images\active\Marketing40.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\Marketing4Options.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\MoviesOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Radio_FR\Radio_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Radio_FR\Radio_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo\Terms.lnk
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo\Uninstall.lnk
C:\install.exe
C:\Program Files\DriveDefender
C:\Program Files\DriveDefender\config.ini
C:\Program Files\DriveDefender\data\application\7-Zip Compression Pgm.scr
C:\Program Files\DriveDefender\data\application\AbsoluteFTP.scr
C:\Program Files\DriveDefender\data\application\ACDSee32.scr
C:\Program Files\DriveDefender\data\application\Acoustica CD Label Maker.scr
C:\Program Files\DriveDefender\data\application\Ad-aware SE.scr
C:\Program Files\DriveDefender\data\application\Adaptec's Audio CD.scr
C:\Program Files\DriveDefender\data\application\Adaptec Easy CD Creator v4.scr
C:\Program Files\DriveDefender\data\application\Addsoft.scr
C:\Program Files\DriveDefender\data\application\AddWeb 3.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v3.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v3.1.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v4.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v5.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v6.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v7.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v5.0 LE.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v5.5.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v6.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v7.0.scr
C:\Program Files\DriveDefender\data\application\Advanced Disk Catalog.scr
C:\Program Files\DriveDefender\data\application\Advanced MP3 Catalog.scr
C:\Program Files\DriveDefender\data\application\Advanced Password Recovery.scr
C:\Program Files\DriveDefender\data\application\ahead cover designer.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGaspect.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGpano.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGview.scr
C:\Program Files\DriveDefender\data\application\Alcohol MRU List.scr
C:\Program Files\DriveDefender\data\application\Animation Shop 1.x.scr
C:\Program Files\DriveDefender\data\application\Animation Shop 3.x.scr
C:\Program Files\DriveDefender\data\application\AOL - Spool.scr
C:\Program Files\DriveDefender\data\application\ASPack.scr
C:\Program Files\DriveDefender\data\application\Avant Browser.scr
C:\Program Files\DriveDefender\data\application\AX-Icons 4.x.scr
C:\Program Files\DriveDefender\data\application\Axialis Icon Workshop 5.x.scr
C:\Program Files\DriveDefender\data\application\Axialis Media Browser.scr
C:\Program Files\DriveDefender\data\application\Babylon Builder 2.2.scr
C:\Program Files\DriveDefender\data\application\Babylon Translator.scr
C:\Program Files\DriveDefender\data\application\BlazeDVD 2.0.scr
C:\Program Files\DriveDefender\data\application\Bookreader.scr
C:\Program Files\DriveDefender\data\application\C++ Builder.scr
C:\Program Files\DriveDefender\data\application\Cabinet Manager.scr
C:\Program Files\DriveDefender\data\application\Chameleon Web Browser.scr
C:\Program Files\DriveDefender\data\application\Classify 98.scr
C:\Program Files\DriveDefender\data\application\Clicktionary 2000.scr
C:\Program Files\DriveDefender\data\application\CoffeeCup DirectFTP.scr
C:\Program Files\DriveDefender\data\application\CoffeeCup GIF Animator.scr
C:\Program Files\DriveDefender\data\application\Cool Edit 2000 1.1.scr
C:\Program Files\DriveDefender\data\application\Cool Edit Pro.scr
C:\Program Files\DriveDefender\data\application\Corel PhotoPaint 8.scr
C:\Program Files\DriveDefender\data\application\CrissCross.scr
C:\Program Files\DriveDefender\data\application\CRT 2.x.scr
C:\Program Files\DriveDefender\data\application\Cute FTP v3.0.scr
C:\Program Files\DriveDefender\data\application\Cute FTP v4.0.scr
C:\Program Files\DriveDefender\data\application\Cute MX.scr
C:\Program Files\DriveDefender\data\application\CuteFTP.scr
C:\Program Files\DriveDefender\data\application\CuteHTML.scr
C:\Program Files\DriveDefender\data\application\DataRescue_IDA.scr
C:\Program Files\DriveDefender\data\application\Delphi v3.scr
C:\Program Files\DriveDefender\data\application\Delphi v4.scr
C:\Program Files\DriveDefender\data\application\Delphi v5.scr
C:\Program Files\DriveDefender\data\application\Delphi v7.scr
C:\Program Files\DriveDefender\data\application\Disk Explorer Professional 3.scr
C:\Program Files\DriveDefender\data\application\Diskeeper 5.0.scr
C:\Program Files\DriveDefender\data\application\DivX Player.scr
C:\Program Files\DriveDefender\data\application\Download Accelerator.scr
C:\Program Files\DriveDefender\data\application\Ebay Toolbar.scr
C:\Program Files\DriveDefender\data\application\EditPad.scr
C:\Program Files\DriveDefender\data\application\EditPlus 2.scr
C:\Program Files\DriveDefender\data\application\edonkey2000.scr
C:\Program Files\DriveDefender\data\application\eMule.scr
C:\Program Files\DriveDefender\data\application\Enfish Onespace.scr
C:\Program Files\DriveDefender\data\application\Enigma Browser.scr
C:\Program Files\DriveDefender\data\application\F-Secure SSH 2.x.scr
C:\Program Files\DriveDefender\data\application\Fix-It 2000.scr
C:\Program Files\DriveDefender\data\application\FlashGet.scr
C:\Program Files\DriveDefender\data\application\FotoCanvas 2.0.scr
C:\Program Files\DriveDefender\data\application\Fotostation 4.0.scr
C:\Program Files\DriveDefender\data\application\foxit reader.scr
C:\Program Files\DriveDefender\data\application\Free Download Manager 1.x.scr
C:\Program Files\DriveDefender\data\application\FTP Explorer.scr
C:\Program Files\DriveDefender\data\application\FTP Voyager.scr
C:\Program Files\DriveDefender\data\application\Fun CD.scr
C:\Program Files\DriveDefender\data\application\Gator.scr
C:\Program Files\DriveDefender\data\application\GeoVid Video to Flash Batch Converter.scr
C:\Program Files\DriveDefender\data\application\GetRight ExplorerBar.scr
C:\Program Files\DriveDefender\data\application\GetRight.scr
C:\Program Files\DriveDefender\data\application\Go!Zilla.scr
C:\Program Files\DriveDefender\data\application\Google Deskbar.scr
C:\Program Files\DriveDefender\data\application\Google Desktop Search History.scr
C:\Program Files\DriveDefender\data\application\Google Toolbar.scr
C:\Program Files\DriveDefender\data\application\Google Video Player 1.x.scr
C:\Program Files\DriveDefender\data\application\GoZilla.scr
C:\Program Files\DriveDefender\data\application\Gravity Newsreader.scr
C:\Program Files\DriveDefender\data\application\hardcopy.scr
C:\Program Files\DriveDefender\data\application\Helios TextPad v3.scr
C:\Program Files\DriveDefender\data\application\Helios TextPad v4.scr
C:\Program Files\DriveDefender\data\application\HelpWriter.scr
C:\Program Files\DriveDefender\data\application\hexworkshop.scr
C:\Program Files\DriveDefender\data\application\Homesite 4.0.scr
C:\Program Files\DriveDefender\data\application\Hotbar 3.0.scr
C:\Program Files\DriveDefender\data\application\HotJava Browser.scr
C:\Program Files\DriveDefender\data\application\HTML Help Workshop.scr
C:\Program Files\DriveDefender\data\application\Icon Extractor.scr
C:\Program Files\DriveDefender\data\application\iMesh.scr
C:\Program Files\DriveDefender\data\application\InoculatelT PE Antivirus.scr
C:\Program Files\DriveDefender\data\application\InstallShield Express.scr
C:\Program Files\DriveDefender\data\application\InterQuick.scr
C:\Program Files\DriveDefender\data\application\Irfanview.scr
C:\Program Files\DriveDefender\data\application\Iso Buster.scr
C:\Program Files\DriveDefender\data\application\Jasc Animation Shop 3.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v5.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v6.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v7.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v8.scr
C:\Program Files\DriveDefender\data\application\Jet Photo Shell.scr
C:\Program Files\DriveDefender\data\application\juno.scr
C:\Program Files\DriveDefender\data\application\K-Lite Codec Pack.scr
C:\Program Files\DriveDefender\data\application\Kazaa Media Desktop.scr
C:\Program Files\DriveDefender\data\application\Kodak Imaging.scr
C:\Program Files\DriveDefender\data\application\LeapFTP 2.6.scr
C:\Program Files\DriveDefender\data\application\LeechFTP.scr
C:\Program Files\DriveDefender\data\application\Letterbox.scr
C:\Program Files\DriveDefender\data\application\LViewPro 2.x.scr
C:\Program Files\DriveDefender\data\application\Macromedia Dreamweaver MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Dreamweaver Ultradev 4.scr
C:\Program Files\DriveDefender\data\application\Macromedia Firework MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Fireworks 3.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash Player.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash v4.0.scr
C:\Program Files\DriveDefender\data\application\Magic ISO Maker 4.6.scr
C:\Program Files\DriveDefender\data\application\mapinfo mapmarker.scr
C:\Program Files\DriveDefender\data\application\Mass Download.scr
C:\Program Files\DriveDefender\data\application\MasterSplitter v2.1.scr
C:\Program Files\DriveDefender\data\application\McAfee Virus Scan.scr
C:\Program Files\DriveDefender\data\application\MEDA MP3 Splitter.scr
C:\Program Files\DriveDefender\data\application\Metapad.scr
C:\Program Files\DriveDefender\data\application\MGI PHOTOSUITE SE 1.x.scr
C:\Program Files\DriveDefender\data\application\MGUSOFT Setup Builder.scr
C:\Program Files\DriveDefender\data\application\Microangelo 98.scr
C:\Program Files\DriveDefender\data\application\MicroAngelo.scr
C:\Program Files\DriveDefender\data\application\Micrografx Picture Publisher v7.scr
C:\Program Files\DriveDefender\data\application\Micrografx Picture Publisher v8.scr
C:\Program Files\DriveDefender\data\application\Microsoft FrontPage Express.scr
C:\Program Files\DriveDefender\data\application\Microsoft FrontPage.scr
C:\Program Files\DriveDefender\data\application\Microsoft Help Workshop.scr
C:\Program Files\DriveDefender\data\application\Microsoft HTML Help.scr
C:\Program Files\DriveDefender\data\application\Microsoft Imaging.scr
C:\Program Files\DriveDefender\data\application\Microsoft Managemant Console.scr
C:\Program Files\DriveDefender\data\application\Microsoft Netmeeting.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 2003.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 97.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office InfoPath 2003.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office XP.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office.scr
C:\Program Files\DriveDefender\data\application\Microsoft Outlook Express 5.0.scr
C:\Program Files\DriveDefender\data\application\Microsoft Photo Editor 3.x.scr
C:\Program Files\DriveDefender\data\application\MicroSoft PhotoDraw.scr
C:\Program Files\DriveDefender\data\application\Microsoft Picture It Publishing.scr
C:\Program Files\DriveDefender\data\application\Microsoft Publisher 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Visual Studio 6.scr
C:\Program Files\DriveDefender\data\application\Microsoft Windows Paint.scr
C:\Program Files\DriveDefender\data\application\Microsoft Windows WordPad.scr
C:\Program Files\DriveDefender\data\application\Microsoft Word 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Word Backup Files.scr
C:\Program Files\DriveDefender\data\application\Microsoft Works 4.0.scr
C:\Program Files\DriveDefender\data\application\Mijenix Powerdesk 4.0.scr
C:\Program Files\DriveDefender\data\application\MIRC.scr
C:\Program Files\DriveDefender\data\application\miroMEDIA PCTV.scr
C:\Program Files\DriveDefender\data\application\mixmeister.scr
C:\Program Files\DriveDefender\data\application\Morpheus.scr
C:\Program Files\DriveDefender\data\application\MovieXone 1.0.scr
C:\Program Files\DriveDefender\data\application\Mozart 4.0.scr
C:\Program Files\DriveDefender\data\application\ms autoroute express.scr
C:\Program Files\DriveDefender\data\application\MS WORD.scr
C:\Program Files\DriveDefender\data\application\MSE.scr
C:\Program Files\DriveDefender\data\application\MSN Toolbar.scr
C:\Program Files\DriveDefender\data\application\Music Match Jukebox.scr
C:\Program Files\DriveDefender\data\application\MyWay Advertising.scr
C:\Program Files\DriveDefender\data\application\Napster Music Community.scr
C:\Program Files\DriveDefender\data\application\Naviscope.scr
C:\Program Files\DriveDefender\data\application\NEATO Labels.scr
C:\Program Files\DriveDefender\data\application\nero burning rom.scr
C:\Program Files\DriveDefender\data\application\Nero Vision.scr
C:\Program Files\DriveDefender\data\application\Net Vampire 3.x.scr
C:\Program Files\DriveDefender\data\application\netants.scr
C:\Program Files\DriveDefender\data\application\NetCaptor.scr
C:\Program Files\DriveDefender\data\application\netmeeting.scr
C:\Program Files\DriveDefender\data\application\Netsonic.scr
C:\Program Files\DriveDefender\data\application\Netzip Download Demon 3.x.scr
C:\Program Files\DriveDefender\data\application\NewsBin Pro 4.scr
C:\Program Files\DriveDefender\data\application\Norton AntiVirus 2000 (v6).scr
C:\Program Files\DriveDefender\data\application\Norton AntiVirus 2003.scr
C:\Program Files\DriveDefender\data\application\Norton Commander.scr
C:\Program Files\DriveDefender\data\application\Norton File Manager.scr
C:\Program Files\DriveDefender\data\application\Norton Firewall.scr
C:\Program Files\DriveDefender\data\application\Norton Internet Security.scr
C:\Program Files\DriveDefender\data\application\Norton LiveUpdate.scr
C:\Program Files\DriveDefender\data\application\Norton Utilities 2000.scr
C:\Program Files\DriveDefender\data\application\NotePad Plus.scr
C:\Program Files\DriveDefender\data\application\notetab lite.scr
C:\Program Files\DriveDefender\data\application\NoteTab Pro.scr
C:\Program Files\DriveDefender\data\application\Object Rescue.scr
C:\Program Files\DriveDefender\data\application\OmniPage 10.0.scr
C:\Program Files\DriveDefender\data\application\OnTrack Powerdesk 4.scr
C:\Program Files\DriveDefender\data\application\Ontrack PowerDesk 5.scr
C:\Program Files\DriveDefender\data\application\PackageForTheWeb.scr
C:\Program Files\DriveDefender\data\application\Paint Shop Pro 5.0.scr
C:\Program Files\DriveDefender\data\application\Paint Shop Pro 7.0.scr
C:\Program Files\DriveDefender\data\application\Password Safe.scr
C:\Program Files\DriveDefender\data\application\PE Explorer 1.95.scr
C:\Program Files\DriveDefender\data\application\Personal Ancestral File.scr
C:\Program Files\DriveDefender\data\application\photo magic 4.0.scr
C:\Program Files\DriveDefender\data\application\PhotoCanvas 2.0.scr
C:\Program Files\DriveDefender\data\application\Photodex Compupic Pro.scr
C:\Program Files\DriveDefender\data\application\PhotoDraw 2000.scr
C:\Program Files\DriveDefender\data\application\PhotoImpact 8.0.scr
C:\Program Files\DriveDefender\data\application\PhotoImpact Viewer 4.0.scr
C:\Program Files\DriveDefender\data\application\PicoZip.scr
C:\Program Files\DriveDefender\data\application\PictureIt Digital Image Pro 7.0.scr
C:\Program Files\DriveDefender\data\application\PKZip for Windows v2.60.03+.scr
C:\Program Files\DriveDefender\data\application\PolyView.scr
C:\Program Files\DriveDefender\data\application\Popup Purger.scr
C:\Program Files\DriveDefender\data\application\PopUpCop.scr
C:\Program Files\DriveDefender\data\application\Power archiver.scr
C:\Program Files\DriveDefender\data\application\PowerArc.scr
C:\Program Files\DriveDefender\data\application\PowerDVD.scr
C:\Program Files\DriveDefender\data\application\PowerZip.scr
C:\Program Files\DriveDefender\data\application\Privacy Eraser Pro.scr
C:\Program Files\DriveDefender\data\application\Putty hostkeys.scr
C:\Program Files\DriveDefender\data\application\PYTHON.scr
C:\Program Files\DriveDefender\data\application\QuickTime.scr
C:\Program Files\DriveDefender\data\application\Real Audio Player v6 v7 v8.scr
C:\Program Files\DriveDefender\data\application\Real Download v4.scr
C:\Program Files\DriveDefender\data\application\RealNetworks Real Download.scr
C:\Program Files\DriveDefender\data\application\RealOne & RealPlayer.scr
C:\Program Files\DriveDefender\data\application\RealVNC.scr
C:\Program Files\DriveDefender\data\application\RegEdit.scr
C:\Program Files\DriveDefender\data\application\Roxio Easy CD Creator.scr
C:\Program Files\DriveDefender\data\application\Save Now.scr
C:\Program Files\DriveDefender\data\application\Scour Exchange.scr
C:\Program Files\DriveDefender\data\application\Seal Module Mlayer.scr
C:\Program Files\DriveDefender\data\application\SearchAndBrowse.scr
C:\Program Files\DriveDefender\data\application\SearchAnt.scr
C:\Program Files\DriveDefender\data\application\SearchV.scr
C:\Program Files\DriveDefender\data\application\SearchWolf.scr
C:\Program Files\DriveDefender\data\application\SearchWWW.scr
C:\Program Files\DriveDefender\data\application\SideStep.scr
C:\Program Files\DriveDefender\data\application\Skype.scr
C:\Program Files\DriveDefender\data\application\Smart Explorer.scr
C:\Program Files\DriveDefender\data\application\SmartDraw 6.scr
C:\Program Files\DriveDefender\data\application\smartftp.scr
C:\Program Files\DriveDefender\data\application\SmartPops.scr
C:\Program Files\DriveDefender\data\application\Sonic Foundry's Acid 2.0.scr
C:\Program Files\DriveDefender\data\application\Sonique Player.scr
C:\Program Files\DriveDefender\data\application\Spinner Plus.scr
C:\Program Files\DriveDefender\data\application\SpotOn Browser plugin.scr
C:\Program Files\DriveDefender\data\application\Staff-FTP.scr
C:\Program Files\DriveDefender\data\application\Star Downloader.scr
C:\Program Files\DriveDefender\data\application\Stardialer.scr
C:\Program Files\DriveDefender\data\application\StarOffice 5.x.scr
C:\Program Files\DriveDefender\data\application\SubmitWolf Pro.scr
C:\Program Files\DriveDefender\data\application\Sun Java Cache.scr
C:\Program Files\DriveDefender\data\application\SureThing CD Labeler.scr
C:\Program Files\DriveDefender\data\application\SVAPlayer.scr
C:\Program Files\DriveDefender\data\application\SWiSH 2.0.scr
C:\Program Files\DriveDefender\data\application\Teleport Pro.scr
C:\Program Files\DriveDefender\data\application\Telnet.scr
C:\Program Files\DriveDefender\data\application\Text Pad 4.x.scr
C:\Program Files\DriveDefender\data\application\The Playa.scr
C:\Program Files\DriveDefender\data\application\Third Voice 1.x.scr
C:\Program Files\DriveDefender\data\application\Thumbs Plus 4.scr
C:\Program Files\DriveDefender\data\application\Timesink.scr
C:\Program Files\DriveDefender\data\application\TinyBar.scr
C:\Program Files\DriveDefender\data\application\TOPicks.scr
C:\Program Files\DriveDefender\data\application\Total Commander.scr
C:\Program Files\DriveDefender\data\application\transponder.scr
C:\Program Files\DriveDefender\data\application\Trellians Classify 98.scr
C:\Program Files\DriveDefender\data\application\Tribal Voice's PowWow.scr
C:\Program Files\DriveDefender\data\application\Trojan Remover.scr
C:\Program Files\DriveDefender\data\application\TSADBOT.scr
C:\Program Files\DriveDefender\data\application\UCmore toolbar.scr
C:\Program Files\DriveDefender\data\application\Ulead Gif Animator v4.0.scr
C:\Program Files\DriveDefender\data\application\Ulead GIF Animator v5.0.scr
C:\Program Files\DriveDefender\data\application\Ulead Photo Explorer v4.2.scr
C:\Program Files\DriveDefender\data\application\Ulead Photo Express.scr
C:\Program Files\DriveDefender\data\application\Ulead PhotoImpact v5.scr
C:\Program Files\DriveDefender\data\application\Ulead VideoStudio 4.0.scr
C:\Program Files\DriveDefender\data\application\Ultimate Paint.scr
C:\Program Files\DriveDefender\data\application\ULTImate Technology BV v5.5.scr
C:\Program Files\DriveDefender\data\application\UltraEdit v4.scr
C:\Program Files\DriveDefender\data\application\UltraEdit v7.scr
C:\Program Files\DriveDefender\data\application\UltraEdit.scr
C:\Program Files\DriveDefender\data\application\UltraISO 7.x.scr
C:\Program Files\DriveDefender\data\application\uTorrent 1.x.scr
C:\Program Files\DriveDefender\data\application\VBoxEdit.scr
C:\Program Files\DriveDefender\data\application\VirtualDub.scr
C:\Program Files\DriveDefender\data\application\VMWARE.scr
C:\Program Files\DriveDefender\data\application\Vueprint.scr
C:\Program Files\DriveDefender\data\application\VX2 Respondmiter.scr
C:\Program Files\DriveDefender\data\application\W32Dasm.scr
C:\Program Files\DriveDefender\data\application\Web Ferret v3.scr
C:\Program Files\DriveDefender\data\application\WebFerret.scr
C:\Program Files\DriveDefender\data\application\webhancer.scr
C:\Program Files\DriveDefender\data\application\Wildstylz.scr
C:\Program Files\DriveDefender\data\application\WildTangent.scr
C:\Program Files\DriveDefender\data\application\WinAce.scr
C:\Program Files\DriveDefender\data\application\winamp.scr
C:\Program Files\DriveDefender\data\application\Windows Commander.scr
C:\Program Files\DriveDefender\data\application\WinHTTrack Website Copier.scr
C:\Program Files\DriveDefender\data\application\WinOnCD.scr
C:\Program Files\DriveDefender\data\application\WinRar.scr
C:\Program Files\DriveDefender\data\application\Winshow.scr
C:\Program Files\DriveDefender\data\application\WinUAE.scr
C:\Program Files\DriveDefender\data\application\Winupie.scr
C:\Program Files\DriveDefender\data\application\WinVNC.scr
C:\Program Files\DriveDefender\data\application\WinZip v8.scr
C:\Program Files\DriveDefender\data\application\Wise Installer.scr
C:\Program Files\DriveDefender\data\application\Worm.Sobig.scr
C:\Program Files\DriveDefender\data\application\WurldMedia.scr
C:\Program Files\DriveDefender\data\application\Xara 3D v4.x.scr
C:\Program Files\DriveDefender\data\application\Xara Webstyle.scr
C:\Program Files\DriveDefender\data\application\XDialer.scr
C:\Program Files\DriveDefender\data\application\XING MP3 PLAYER.scr
C:\Program Files\DriveDefender\data\application\XLoader.scr
C:\Program Files\DriveDefender\data\application\Xolox.scr
C:\Program Files\DriveDefender\data\application\Xrenoder.scr
C:\Program Files\DriveDefender\data\application\Xupiter toolbar.scr
C:\Program Files\DriveDefender\data\application\Xzoomy.scr
C:\Program Files\DriveDefender\data\application\Yahoo Player.scr
C:\Program Files\DriveDefender\data\application\Yahoo! Toolbar.scr
C:\Program Files\DriveDefender\data\application\Yamaha S-YXG100.scr
C:\Program Files\DriveDefender\data\application\ZeroPopup.scr
C:\Program Files\DriveDefender\data\application\ZipMagic 2000.scr
C:\Program Files\DriveDefender\data\application\Zone Alarm.scr
C:\Program Files\DriveDefender\data\brand.dat
C:\Program Files\DriveDefender\data\firefox\Firefox - cache.scr
C:\Program Files\DriveDefender\data\firefox\Firefox - cookies.scr
C:\Program Files\DriveDefender\data\firefox\Firefox - history.scr
C:\Program Files\DriveDefender\data\GDCW.exe
C:\Program Files\DriveDefender\data\ie\ie cookies.scr
C:\Program Files\DriveDefender\data\ie\ie internet cache.scr
C:\Program Files\DriveDefender\data\ie\ie privacy history.scr
C:\Program Files\DriveDefender\data\ie\ie typed urls.scr
C:\Program Files\DriveDefender\data\ie\ie url history.scr
C:\Program Files\DriveDefender\data\ie\windows autocomplete.scr
C:\Program Files\DriveDefender\data\ie\windows downloaded files.scr
C:\Program Files\DriveDefender\data\ie\windows favorites order.scr
C:\Program Files\DriveDefender\data\ie\windows passwords.scr
C:\Program Files\DriveDefender\data\IH.exe
C:\Program Files\DriveDefender\data\messanger\aim.scr
C:\Program Files\DriveDefender\data\messanger\AOL Bart.scr
C:\Program Files\DriveDefender\data\messanger\AOL Instant Messenger.scr
C:\Program Files\DriveDefender\data\messanger\aolim.scr
C:\Program Files\DriveDefender\data\messanger\icq - download.scr
C:\Program Files\DriveDefender\data\messanger\icq - logs.scr
C:\Program Files\DriveDefender\data\messanger\Miranda ICQ.scr
C:\Program Files\DriveDefender\data\messanger\MSN Messenger User Account.scr
C:\Program Files\DriveDefender\data\messanger\Trillian cache.scr
C:\Program Files\DriveDefender\data\messanger\trillian downloads.scr
C:\Program Files\DriveDefender\data\messanger\trillian logs.scr
C:\Program Files\DriveDefender\data\messanger\yahoo messenger logs.scr
C:\Program Files\DriveDefender\data\messanger\Yahoo! Messenger.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - autocomplete.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - cache.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - cookies.scr
C:\Program Files\DriveDefender\data\mozilla\Mozilla - history.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - saved passwords.scr
C:\Program Files\DriveDefender\data\mozilla\Mozilla - typed urls.scr
C:\Program Files\DriveDefender\data\netscape\netscape - cache.scr
C:\Program Files\DriveDefender\data\netscape\netscape - cookies.scr
C:\Program Files\DriveDefender\data\netscape\netscape - history.scr
C:\Program Files\DriveDefender\data\netscape\Netscape Navigator - last trusted apps.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - cache.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - cookies.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - Download.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - history.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - misc.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - mru.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - visited.scr
C:\Program Files\DriveDefender\data\sfl.dat
C:\Program Files\DriveDefender\data\skin.skn
C:\Program Files\DriveDefender\data\sr.log
C:\Program Files\DriveDefender\data\srl.dat
C:\Program Files\DriveDefender\data\windows\Direct Draw.scr
C:\Program Files\DriveDefender\data\windows\direct input.scr
C:\Program Files\DriveDefender\data\windows\last files.scr
C:\Program Files\DriveDefender\data\windows\Microsoft Send-To Extensions.scr
C:\Program Files\DriveDefender\data\windows\windows applog.scr
C:\Program Files\DriveDefender\data\windows\windows documents.scr
C:\Program Files\DriveDefender\data\windows\Windows Downloaded Installations.scr
C:\Program Files\DriveDefender\data\windows\Windows Empty Recycle Bin.scr
C:\Program Files\DriveDefender\data\windows\Windows Explorer User Assistant history.scr
C:\Program Files\DriveDefender\data\windows\windows findfile.scr
C:\Program Files\DriveDefender\data\windows\Windows FTP Accounts.scr
C:\Program Files\DriveDefender\data\windows\windows hotfix uninstall.scr
C:\Program Files\DriveDefender\data\windows\windows logfiles.scr
C:\Program Files\DriveDefender\data\windows\Windows Mapped Drives.scr
C:\Program Files\DriveDefender\data\windows\windows media player 7.scr
C:\Program Files\DriveDefender\data\windows\windows minidump.scr
C:\Program Files\DriveDefender\data\windows\windows MUICache.scr
C:\Program Files\DriveDefender\data\windows\windows network links.scr
C:\Program Files\DriveDefender\data\windows\windows opensave.scr
C:\Program Files\DriveDefender\data\windows\windows openwith.scr
C:\Program Files\DriveDefender\data\windows\windows prefetch.scr
C:\Program Files\DriveDefender\data\windows\windows reg history.scr
C:\Program Files\DriveDefender\data\windows\windows run history.scr
C:\Program Files\DriveDefender\data\windows\windows search.scr
C:\Program Files\DriveDefender\data\windows\windows start menu order.scr
C:\Program Files\DriveDefender\data\windows\windows stream history.scr
C:\Program Files\DriveDefender\data\windows\windows temp.scr
C:\Program Files\DriveDefender\data\windows\windows update.scr
C:\Program Files\DriveDefender\data\windows\Windows XP Unread Mail Count.scr
C:\Program Files\DriveDefender\default.ini
C:\Program Files\DriveDefender\diagnosis.dat
C:\Program Files\DriveDefender\errors.log
C:\Program Files\DriveDefender\GDC.exe
C:\Program Files\DriveDefender\GDC.url
C:\Program Files\DriveDefender\gfx\button_arrow.bmp
C:\Program Files\DriveDefender\gfx\button_arrow2.bmp
C:\Program Files\DriveDefender\gfx\buy.bmp
C:\Program Files\DriveDefender\gfx\checked.bmp
C:\Program Files\DriveDefender\gfx\custom.bmp
C:\Program Files\DriveDefender\gfx\customcleanup.bmp
C:\Program Files\DriveDefender\gfx\header.bmp
C:\Program Files\DriveDefender\gfx\icon.ico
C:\Program Files\DriveDefender\gfx\icon_about.ico
C:\Program Files\DriveDefender\gfx\icon_checked.ico
C:\Program Files\DriveDefender\gfx\icon_grayed.ico
C:\Program Files\DriveDefender\gfx\icon_link.ico
C:\Program Files\DriveDefender\gfx\icon_manual.ico
C:\Program Files\DriveDefender\gfx\icon_quit.ico
C:\Program Files\DriveDefender\gfx\icon_support.ico
C:\Program Files\DriveDefender\gfx\icon_unchecked.ico
C:\Program Files\DriveDefender\gfx\icon_uncheked.ico
C:\Program Files\DriveDefender\gfx\icon_uninstall.ico
C:\Program Files\DriveDefender\gfx\icon_update.ico
C:\Program Files\DriveDefender\gfx\log.bmp
C:\Program Files\DriveDefender\gfx\logo.bmp
C:\Program Files\DriveDefender\gfx\register.bmp
C:\Program Files\DriveDefender\gfx\settings.bmp
C:\Program Files\DriveDefender\gfx\sign_green.bmp
C:\Program Files\DriveDefender\gfx\sign_green_big.bmp
C:\Program Files\DriveDefender\gfx\sign_red.bmp
C:\Program Files\DriveDefender\gfx\sign_red_big.bmp
C:\Program Files\DriveDefender\gfx\sign_yellow.bmp
C:\Program Files\DriveDefender\gfx\splash.bmp
C:\Program Files\DriveDefender\gfx\status_good.bmp
C:\Program Files\DriveDefender\gfx\status_risk.bmp
C:\Program Files\DriveDefender\gfx\support.bmp
C:\Program Files\DriveDefender\gfx\sys_shield.bmp
C:\Program Files\DriveDefender\gfx\sys_update.bmp
C:\Program Files\DriveDefender\gfx\sysstatus.bmp
C:\Program Files\DriveDefender\gfx\unchecked.bmp
C:\Program Files\DriveDefender\gfx\update.bmp
C:\Program Files\DriveDefender\lang\Arabic.lng
C:\Program Files\DriveDefender\lang\Brazilian.lng
C:\Program Files\DriveDefender\lang\Catalan.lng
C:\Program Files\DriveDefender\lang\Chinese.lng
C:\Program Files\DriveDefender\lang\Czech.lng
C:\Program Files\DriveDefender\lang\Danish.lng
C:\Program Files\DriveDefender\lang\Dutch.lng
C:\Program Files\DriveDefender\lang\English.lng
C:\Program Files\DriveDefender\lang\Finnish.lng
C:\Program Files\DriveDefender\lang\French.lng
C:\Program Files\DriveDefender\lang\German.lng
C:\Program Files\DriveDefender\lang\Greek.lng
C:\Program Files\DriveDefender\lang\Hebrew.lng
C:\Program Files\DriveDefender\lang\Italian.lng
C:\Program Files\DriveDefender\lang\Japanese.lng
C:\Program Files\DriveDefender\lang\Malayan.lng
C:\Program Files\DriveDefender\lang\Norwegian.lng
C:\Program Files\DriveDefender\lang\Polish.lng
C:\Program Files\DriveDefender\lang\Portuguese.lng
C:\Program Files\DriveDefender\lang\Russian.lng
C:\Program Files\DriveDefender\lang\Slovenian.lng
C:\Program Files\DriveDefender\lang\Spanish.lng
C:\Program Files\DriveDefender\lang\Swedish.lng
C:\Program Files\DriveDefender\lang\Thai.lng
C:\Program Files\DriveDefender\lang\Turkish.lng
C:\Program Files\DriveDefender\License.rtf
C:\Program Files\DriveDefender\plug\GDCPatch.exe
C:\Program Files\DriveDefender\plug\stpHlpr.dll
C:\Program Files\DriveDefender\Readme.rtf
C:\Program Files\DriveDefender\runtime
C:\Program Files\DriveDefender\Scan_report.htm
C:\Program Files\DriveDefender\support.url
C:\Program Files\DriveDefender\unins000.dat
C:\Program Files\DriveDefender\unins000.exe
C:\Program Files\DriveDefender\upd_cr.log
C:\Program Files\DriveDefender\updater.dat
C:\Program Files\DriveDefender\updater.exe
C:\Program Files\DriveDefender\ver.dat
C:\Program Files\Fichiers communs\DriveDefender
C:\Program Files\Fichiers communs\DriveDefender\stm.exe
C:\Program Files\Fichiers communs\StorageProtector
C:\Program Files\Fichiers communs\StorageProtector\strpmon.exe
C:\Program Files\FunWebProducts
C:\Program Files\MyWebSearch
C:\Program Files\MyWebSearch\bar\History\search2
C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat
C:\Program Files\outerinfo
C:\Program Files\outerinfo\FF\chrome.manifest
C:\Program Files\outerinfo\FF\components\OuterinfoAds.xpt
C:\Program Files\outerinfo\FF\install.rdf
C:\Program Files\outerinfo\Terms.rtf
C:\Program Files\Starware370
C:\Program Files\Starware370\brand.bmp
C:\Program Files\Starware370\icons\star_16.ico
C:\Program Files\Starware370\Starware370Config.xml
C:\Program Files\Starware370\Starware370Uninstall.exe
C:\WINDOWS\BM5fba1451.xml
C:\WINDOWS\curity~1
C:\WINDOWS\curity~1\j?vaw.exe
C:\WINDOWS\dobe~1
C:\WINDOWS\dobe~1\?dobe\
C:\WINDOWS\dobe~1\winlogon.exe
C:\WINDOWS\pskt.ini
C:\WINDOWS\system32\autvhmom.ini
C:\WINDOWS\system32\awtttst.dll
C:\WINDOWS\system32\cbeeg.ini
C:\WINDOWS\system32\cbeeg.ini2
C:\WINDOWS\system32\cbxxxuv.dll
C:\WINDOWS\system32\ddcawts.dll
C:\WINDOWS\system32\ddccyab.dll
C:\WINDOWS\system32\ddcdaby.dll
C:\WINDOWS\system32\fcccyvw.dll
C:\WINDOWS\system32\fccyvvs.dll
C:\WINDOWS\system32\gebccaa.dll
C:\WINDOWS\system32\gebyxvw.dll
C:\WINDOWS\system32\geebc.dll
C:\WINDOWS\system32\jkkjijk.dll
C:\WINDOWS\system32\jkklkhg.dll
C:\WINDOWS\system32\ljjhfdb.dll
C:\WINDOWS\system32\mljghec.dll
C:\WINDOWS\system32\mljhghe.dll
C:\WINDOWS\system32\mljji.dll
C:\WINDOWS\system32\mnnmp.ini
C:\WINDOWS\system32\mnnmp.ini2
C:\WINDOWS\system32\nGpxx18
C:\WINDOWS\system32\pmnnm.dll
C:\WINDOWS\system32\qomjhif.dll
C:\WINDOWS\system32\qomllkl.dll
C:\WINDOWS\system32\tuvvuut.dll
C:\WINDOWS\system32\UpMedia
C:\WINDOWS\system32\UpMedia\ContentTool.dll
C:\WINDOWS\system32\UpMedia\SearchTool.dll
C:\WINDOWS\system32\UpMedia\uninstallSE.exe
C:\WINDOWS\system32\wvurrpp.dll
C:\WINDOWS\system32\wyadd.ini
C:\WINDOWS\system32\wyadd.ini2
C:\WINDOWS\system32\xxyyxvw.dll
C:\winlogo.exe

.
((((((((((((((((((((((((((((( Fichiers créés 2008-02-18 to 2008-03-18 ))))))))))))))))))))))))))))))))))))
.

2008-03-18 21:04 . 2008-03-18 22:09 <REP> d-------- C:\Program Files\Navilog1
2008-03-18 20:54 . 2008-03-18 20:54 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-18 20:53 . 2008-03-18 21:02 <REP> d-------- C:\SDFix
2008-03-18 19:46 . <REP> C:\WINDOWS\LastGood.Tmp
2008-03-16 09:06 . 2008-03-16 11:03 <REP> d-------- C:\VundoFix Backups
2008-03-16 09:05 . 2008-03-16 09:05 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-03-16 00:23 . 2008-03-16 00:23 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\DefenseNetSurfage
2008-03-15 23:37 . 2008-03-15 23:37 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\BitDefender
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage r‚seau
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage d'impression
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\ModŠles
2008-03-15 18:29 . 2004-08-16 17:19 <REP> dr------- C:\Documents and Settings\Administrateur\Mes documents
2008-03-15 18:29 . 2004-08-16 16:55 <REP> dr------- C:\Documents and Settings\Administrateur\Menu D‚marrer
2008-03-15 18:29 . 2006-05-18 19:29 <REP> dr------- C:\Documents and Settings\Administrateur\Favoris
2008-03-15 18:29 . 2008-03-18 22:15 <REP> dr------- C:\Documents and Settings\Administrateur\Bureau
2008-03-15 18:29 . 2006-05-18 19:29 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver
2008-03-15 18:29 . 2006-05-18 19:32 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\Symantec
2008-03-03 15:08 . 2008-03-03 15:08 <REP> d-------- C:\Documents and Settings\Manu.SN047852920098\Application Data\DefenseNetSurfage
2008-03-03 15:01 . 2008-03-03 15:01 <REP> d-------- C:\Documents and Settings\Manu.SN047852920098\Application Data\BitDefender
2008-03-02 21:56 . 2008-03-16 00:03 121 --a------ C:\WINDOWS\bdagent.INI
2008-03-02 18:36 . 2008-03-02 18:36 <REP> d-------- C:\Documents and Settings\Stephane\Application Data\BitDefender
2008-03-02 15:23 . 2008-03-02 15:23 <REP> d-------- C:\Program Files\BitDefender
2008-03-02 15:23 . 2008-03-02 15:23 <REP> d-------- C:\Documents and Settings\All Users\Application Data\BitDefender
2008-03-02 15:22 . 2008-03-02 15:23 <REP> d-------- C:\Program Files\Fichiers communs\BitDefender
2008-03-02 15:17 . 2008-03-02 15:17 89,664 --a------ C:\WINDOWS\system32\bigfmnxp.dll
2008-03-02 15:14 . 2008-03-05 21:54 1,374 ---hs---- C:\WINDOWS\system32\fitvosrh.ini
2008-03-02 15:12 . 2008-03-02 15:12 91,712 --a------ C:\WINDOWS\system32\bwqbinlh.dll
2008-03-02 14:48 . 2008-03-02 14:48 223 --a------ C:\WINDOWS\system32\3107.bat
2008-03-02 14:07 . 2008-03-02 15:11 474 ---hs---- C:\WINDOWS\system32\xkqeingo.ini
2008-03-02 14:04 . 2008-03-02 14:04 89,664 --a------ C:\WINDOWS\system32\lkveatgu.dll
2008-03-02 14:02 . 2008-03-02 14:02 91,712 --a------ C:\WINDOWS\system32\obotfdrm.dll
2008-03-02 14:02 . 2008-03-02 14:02 52,736 --a------ C:\app.MSNFix
2008-03-02 14:02 . 2008-03-02 14:02 223 --a------ C:\7892.bat
2008-03-01 15:24 . 2008-03-01 15:24 223 --a------ C:\Documents and Settings\Stephane\9363.bat
2008-03-01 15:10 . 2008-03-01 15:10 223 --a------ C:\Documents and Settings\Stephane\1902.bat
2008-03-01 14:54 . 2008-03-01 14:54 223 --a------ C:\Documents and Settings\Stephane\8473.bat
2008-03-01 14:39 . 2008-03-01 15:24 36,864 --a------ C:\Documents and Settings\Stephane\winlogo.exe
2008-03-01 14:39 . 2008-03-01 14:39 223 --a------ C:\Documents and Settings\Stephane\1940.bat
2008-03-01 13:56 . 2008-03-01 13:56 223 --a------ C:\Documents and Settings\Stephane\6622.bat
2008-03-01 13:26 . 2008-03-01 13:26 223 --a------ C:\Documents and Settings\Stephane\2446.bat
2008-03-01 13:11 . 2008-03-01 13:11 223 --a------ C:\Documents and Settings\Stephane\3608.bat
2008-03-01 12:56 . 2008-03-01 12:56 223 --a------ C:\Documents and Settings\Stephane\7694.bat
2008-03-01 12:14 . 2008-03-01 12:14 89,664 --a------ C:\WINDOWS\system32\urmoexex.dll
2008-03-01 12:11 . 2008-03-01 12:11 85,568 --a------ C:\WINDOWS\system32\urofwppt.dll
2008-03-01 12:11 . 2008-03-01 12:19 1,014 ---hs---- C:\WINDOWS\system32\tppwforu.ini
2008-03-01 12:08 . 2008-03-01 12:08 91,712 --a------ C:\WINDOWS\system32\vnvexgyg.dll
2008-03-01 10:35 . 2008-03-01 10:35 223 --a------ C:\Documents and Settings\Stephane\6080.bat
2008-02-29 21:49 . 2008-02-29 21:49 223 --a------ C:\Documents and Settings\Stephane\2509.bat
2008-02-29 21:34 . 2008-02-29 21:34 223 --a------ C:\Documents and Settings\Stephane\5819.bat
2008-02-29 21:19 . 2008-02-29 21:19 223 --a------ C:\Documents and Settings\Stephane\4506.bat
2008-02-29 21:04 . 2008-02-29 21:04 223 --a------ C:\Documents and Settings\Stephane\2385.bat
2008-02-29 20:49 . 2008-02-29 20:49 223 --a------ C:\Documents and Settings\Stephane\3477.bat
2008-02-29 20:42 . 2008-03-01 12:09 894 ---hs---- C:\WINDOWS\system32\sffnujkx.ini
2008-02-29 20:22 . 2008-02-29 20:22 223 --a------ C:\Documents and Settings\Stephane\9796.bat
2008-02-29 18:07 . 2008-03-16 16:41 143 --a------ C:\WINDOWS\system32\mcrh.MSNFix
2008-02-29 18:00 . 2008-02-29 20:34 714 ---hs---- C:\WINDOWS\system32\cpydvapy.ini
2008-02-29 17:58 . 2008-02-29 17:58 <REP> d-------- C:\Documents and Settings\Stephane\Application Data\DefenseNetSurfage
2008-02-29 11:49 . 2008-02-29 11:49 84,544 --a------ C:\WINDOWS\system32\momhvtua.dll
2008-02-29 11:47 . 2008-02-29 11:47 91,712 --a------ C:\WINDOWS\system32\rtqarqus.dll
2008-02-29 11:47 . 2008-02-29 11:47 88,640 --a------ C:\WINDOWS\system32\bilroequ.dll
2008-02-29 11:44 . 2008-02-29 11:44 <REP> d-------- C:\Program Files\Fichiers communs\DefenseNetSurfage
2008-02-29 11:44 . 2008-03-02 16:19 <REP> d-------- C:\Program Files\DefenseNetSurfage
2008-02-29 11:44 . 2008-02-29 11:44 <REP> d-------- C:\Documents and Settings\All Users\Application Data\DefenseNetSurfage
2008-02-29 11:44 . 2007-02-13 08:09 388,126 --a------ C:\WINDOWS\system32\sqlite3.dll
2008-02-28 19:21 . 2008-02-29 11:19 354 ---hs---- C:\WINDOWS\system32\wovxiagk.ini
2008-02-28 18:04 . 2008-02-28 18:04 89,664 --a------ C:\WINDOWS\system32\jeqcsybo.dll
2008-02-28 18:02 . 2008-02-28 18:02 294 ---hs---- C:\WINDOWS\system32\vusengjh.ini
2008-02-28 18:01 . 2008-02-28 18:01 84,544 --a------ C:\WINDOWS\system32\hjgnesuv.dll
2008-02-28 17:59 . 2008-02-28 17:59 91,712 --a------ C:\WINDOWS\system32\ldiohxrr.dll
2008-02-28 17:23 . 2008-02-28 17:23 223 --a------ C:\Documents and Settings\Stephane\4782.bat
2008-02-27 19:29 . 2008-02-27 19:29 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Messenger Plus!
2008-02-27 19:13 . 2008-02-27 19:13 91,712 --a------ C:\WINDOWS\system32\mpkfvgxq.dll
2008-02-27 19:13 . 2008-02-27 19:13 90,176 --a------ C:\WINDOWS\system32\bawfkfsf.dll
2008-02-27 19:13 . 2008-02-27 19:13 85,056 --a------ C:\WINDOWS\system32\fsrhwnca.dll
2008-02-27 19:13 . 2008-02-27 20:09 834 ---hs---- C:\WINDOWS\system32\acnwhrsf.ini
2008-02-27 18:58 . 2008-03-02 15:12 136,627 --a------ C:\WINDOWS\POTA777444.exe
2008-02-27 18:47 . 2008-02-27 18:56 594 ---hs---- C:\WINDOWS\system32\njsbrquw.ini
2008-02-27 18:44 . 2008-02-27 18:44 90,176 --a------ C:\WINDOWS\system32\gvhbocdr.dll
2008-02-27 18:43 . 2008-02-27 18:43 91,712 --a------ C:\WINDOWS\system32\ggpfxutb.dll
2008-02-26 20:09 . 2008-02-27 18:38 474 ---hs---- C:\WINDOWS\system32\krphkvon.ini
2008-02-26 20:04 . 2008-02-26 20:04 91,712 --a------ C:\WINDOWS\system32\bunvjdev.dll
2008-02-26 20:04 . 2008-02-26 20:04 89,152 --a------ C:\WINDOWS\system32\jfwyfwld.dll
2008-02-26 19:03 . 2008-02-26 19:57 354 ---hs---- C:\WINDOWS\system32\hhsncxbx.ini
2008-02-26 18:07 . 2008-02-26 18:07 223 --a------ C:\Documents and Settings\Manu.SN047852920098\9210.bat
2008-02-26 18:06 . 2008-02-26 18:06 124,050 --a------ C:\WINDOWS\system32\wprfruayd.exe
2008-02-26 18:04 . 2008-02-26 18:04 36,864 --a------ C:\Documents and Settings\Manu.SN047852920098\winlogo.exe
2008-02-26 17:50 . 2008-02-26 17:50 223 --a------ C:\Documents and Settings\Stephane\8781.bat
2008-02-26 11:15 . 2008-02-26 11:15 414 ---hs---- C:\WINDOWS\system32\tgtavila.ini
2008-02-26 11:14 . 2008-02-26 11:15 86,080 --a------ C:\WINDOWS\system32\alivatgt.dll
2008-02-26 11:10 . 2008-02-26 11:11 89,152 --a------ C:\WINDOWS\system32\wqihcfji.dll
2008-02-26 11:08 . 2008-02-26 11:08 91,712 --a------ C:\WINDOWS\system32\vtlgafsf.dll
2008-02-25 20:49 . 2008-02-25 20:49 223 --a------ C:\Documents and Settings\Stephane\3730.bat
2008-02-25 20:43 . 2008-02-26 11:08 354 ---hs---- C:\WINDOWS\system32\pjctwdwn.ini
2008-02-25 20:36 . 2008-02-25 20:36 223 --a------ C:\Documents and Settings\Stephane\2268.bat
2008-02-25 17:45 . 2008-02-25 17:45 223 --a------ C:\Documents and Settings\Stephane\3132.bat
2008-02-25 10:40 . 2008-03-15 19:24 <REP> d-------- C:\WINDOWS\system32\iDlo18
2008-02-24 12:40 . 2008-03-15 19:24 <REP> d-------- C:\WINDOWS\system32\fr3
2008-02-24 12:40 . 2008-03-16 15:37 <REP> d-------- C:\WINDOWS\system32\br1
2008-02-24 12:40 . 2008-03-02 15:39 <REP> d-------- C:\WINDOWS\system32\bev4
2008-02-24 12:40 . 2008-02-24 12:40 <REP> d-------- C:\WINDOWS\system32\auz9

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-15 19:41 --------- d-----w C:\Program Files\eMule
2008-03-15 18:26 --------- d-----w C:\Program Files\Circle Developement
2008-03-15 18:24 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\great scr logo
2008-03-15 16:50 --------- d-----w C:\Program Files\Fichiers communs\Symantec Shared
2008-03-04 12:33 --------- d-----w C:\Documents and Settings\Stephane\Application Data\VMNTOOLBAR
2008-03-03 14:22 374 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb6334.dat
2008-03-02 19:24 --------- d-----w C:\Program Files\Lavasoft
2008-03-02 19:19 --------- d-----w C:\Program Files\Micro Application
2008-02-28 16:16 --------- d-----w C:\Program Files\Windows Live
2008-02-27 19:13 --------- d-----w C:\Program Files\Java
2008-02-27 18:31 --------- d-----w C:\Program Files\Winamp
2008-02-27 18:14 --------- d-----w C:\Documents and Settings\All Users\Application Data\Readme Live Axis Tons
2008-02-27 18:13 --------- d-----w C:\Program Files\LimeWire
2008-02-26 17:20 18,432 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb41.dat
2008-02-26 17:15 555 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb8467.dat
2008-02-26 17:15 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\VMNTOOLBAR
2008-02-26 17:08 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\LimeWire
2008-02-23 12:11 --------- d-----w C:\Program Files\Messenger Plus! Live
2008-02-14 18:15 --------- d-----w C:\Program Files\Windows Media Components
2008-02-14 18:13 --------- d-----w C:\Program Files\NRJ
2008-02-01 10:17 587,264 ----a-w C:\WINDOWS\WLXPGSS.SCR
2008-01-28 15:57 --------- d-----w C:\Documents and Settings\Stephane\Application Data\MAGIX
2008-01-13 17:32 231,872 ----a-w C:\WINDOWS\EasyGifAnimator_Toolbar_Uninstaller_5781.exe
2008-01-11 05:36 44,544 ----a-w C:\WINDOWS\system32\dllcache\pngfilt.dll
2007-12-24 16:04 24,575 ----a-w C:\WINDOWS\system32\Bwinsysmwappio61.dll
2007-12-19 22:53 347,136 ----a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll
2007-12-18 09:51 179,584 ------w C:\WINDOWS\system32\dllcache\mrxdav.sys
2007-10-04 09:46 142 ----a-w C:\Program Files\Fichiers communs\rtepre.html
2006-11-05 17:03 60,240 -c--a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\GDIPFONTCACHEV1.DAT
.

------- Sigcheck -------

2004-08-05 13:00 14336 1bd6c2f707a275cb7c16fd99fe0f31ca C:\WINDOWS\system32\svchost.exe

2005-03-02 19:20 578048 c34920eb988ce98910bd6b0417f334eb C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll
2007-03-08 16:50 579072 4d88aaf39adabfe45958ea1384e2c4ff C:\WINDOWS\$hf_mig$\KB925902\SP2QFE\user32.dll
2004-08-05 13:00 578048 e46fb493e3b33704f0715020cf52106b C:\WINDOWS\$NtUninstallKB890859$\user32.dll
2005-03-02 19:10 578048 0df75fb73f705b011630159a43d7c354 C:\WINDOWS\$NtUninstallKB925902$\user32.dll
2007-03-08 16:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\user32.dll
2007-03-08 16:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\dllcache\user32.dll

2004-08-05 13:00 82944 bc41f51a39d3b255805fdb759b7814ae C:\WINDOWS\system32\ws2_32.dll

2004-08-05 13:00 506368 d2de785aeab0bb8ca4c14a8a199dbe4e C:\WINDOWS\system32\winlogon.exe

2004-08-05 13:00 182912 558635d3af1c7546d26067d5d9b6959e C:\WINDOWS\system32\drivers\ndis.sys

2004-08-05 13:00 29056 4448006b6bc60e6c027932cfc38d6855 C:\WINDOWS\system32\drivers\ip6fw.sys

2005-03-02 09:13 2059008 5311776074b6c13f983dc75baeac9c0c C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
2006-12-19 19:45 2061440 8b039efbe4c9aa23f152ffa0e238b8fa C:\WINDOWS\$hf_mig$\KB929338\SP2QFE\ntkrnlpa.exe
2007-02-28 17:08 2061440 7a56a64eb50399613587e90292dd2aab C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ntkrnlpa.exe
2004-08-05 13:00 2058880 f252fae094c54572ece38a039f2103c4 C:\WINDOWS\$NtUninstallKB890859$\ntkrnlpa.exe
2005-03-02 19:07 2058880 73fa9c95d235844a36968c7852c7dbdd C:\WINDOWS\$NtUninstallKB929338$\ntkrnlpa.exe
2006-12-19 19:22 2059648 06015d137b02542f07d5cd7b144df942 C:\WINDOWS\$NtUninstallKB931784$\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\system32\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\system32\dllcache\ntkrnlpa.exe

2005-03-02 19:13 2181632 3e2a0a4a0c0b19fc113618a9562a3b2a C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
2006-12-19 19:45 2184064 1f3fa2065e6e043a1d82a487b5da309c C:\WINDOWS\$hf_mig$\KB929338\SP2QFE\ntoskrnl.exe
2007-02-28 17:08 2184192 8e244108562e0e452eb68dff64cb08a9 C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ntoskrnl.exe
2004-08-05 13:00 2183040 7d38ce4398e6aa6339b4644feadcc0d8 C:\WINDOWS\$NtUninstallKB890859$\ntoskrnl.exe
2005-03-02 19:08 2181376 63729dd0f2aae36cc52b89c05505146c C:\WINDOWS\$NtUninstallKB929338$\ntoskrnl.exe
2006-12-19 19:22 2182400 d27929db7b7f92f9d0f8ec9ba01c601c C:\WINDOWS\$NtUninstallKB931784$\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\Driver Cache\i386\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\system32\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\system32\dllcache\ntoskrnl.exe

2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\explorer.exe
2007-06-13 14:10 1037312 b795475444d6d57a572c14b9e1a29839 C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
2004-08-05 13:00 1036288 4c33e5b9a6197b6ed215f6cfba0a2daa C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{79311601-2254-4a50-9c31-5e24ff74c21f}]
2008-03-02 15:17 89664 --a------ C:\WINDOWS\system32\bigfmnxp.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9F523B63-FCF8-42BA-30AD-A360B1BE040A}]
C:\Program Files\Fichiers communs\quga.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EBE60F6A-25D8-44F6-A048-03EAE8E2809F}]
C:\Program Files\ComPlus Applications\j

Répondre à titou600

un autre rapport hitjathis

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:34, on 2008-03-19
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Safe mode

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Administrateur\Bureau\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\PROGRA~1\MACROG~1\SWEETI~1\toolbar.dll
O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: {f12c47ff-42e5-13c9-05a4-452210611397} - {79311601-2254-4a50-9c31-5e24ff74c21f} - C:\WINDOWS\system32\bigfmnxp.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Gif Animator Toolbar Helper - {96372AB6-15EB-4316-B497-71C741BC548C} - C:\Program Files\Easy Gif Animator Extension\v3.3.0.0\EasyGifAnimator_Toolbar.dll
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: 0 - {9F523B63-FCF8-42BA-30AD-A360B1BE040A} - C:\Program Files\Fichiers communs\quga.dll (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: (no name) - {EBE60F6A-25D8-44F6-A048-03EAE8E2809F} - C:\Program Files\ComPlus Applications\jaqi777444.dll (file missing)
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy Gif Animator Toolbar - {35065594-9169-4A34-B167-FC4865038E53} - C:\Program Files\Easy Gif Animator Extension\v3.3.0.0\EasyGifAnimator_Toolbar.dll
O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2008\IEToolbar.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [EPSON Stylus C66 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.EXE /P23 "EPSON Stylus C66 Series" /O6 "USB001" /M "Stylus C66"
O4 - HKLM\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [YeppStudioAgent] C:\Program Files\Samsung\SamsungMediaStudio4.1\SamsungMediaStudioAgent.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [{92-27-76-62-DW}] C:\WINDOWS\system32\bev4\dameco3305.exe DWram
O4 - HKLM\..\Run: [mecery] C:\Program Files\ComPlus Applications\mecery77798.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [DefenseNetSurfage] C:\Program Files\DefenseNetSurfage\GDC.exe
O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe"
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe"
O4 - HKLM\..\Run: [5c8927cd] rundll32.exe "C:\WINDOWS\system32\hrsovtif.dll",b
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: TransText.lnk = C:\Program Files\ChaosSoft\TransText\TransText.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O15 - Trusted Zone: http://click.getmirar.com (HKLM)
O15 - Trusted Zone: http://click.mirarsearch.com (HKLM)
O15 - Trusted Zone: http://redirect.mirarsearch.com (HKLM)
O15 - Trusted Zone: http://awbeta.net-nucleus.com (HKLM)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-F [...] E_UNO1.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://aureliemarseillaise.spaces. [...] nPUpld.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender S.R.L. - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe

--
End of file - 12834 bytes

Répondre à titou600

Re,

Le rapport de combofix est incomplet, poste moi la fin ;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Egwene a écrit :

:hello:

Oui oui prends ton temps, on fait selon nos disponibilités respectives. C'est normal que tu aies encore des alertes, tu es très infecté(e). Mais ne t'inquiète pas, chaque manip' en enlève ;)

As-tu un rapport ici ? C:\Combofix.txt ? Si oui poste-le moi :)

;)




simplement une info je fais toutes ces manips en mode sans echec et sur le compte administrateur confirme moi si c'est bon

titou600

Répondre à titou600

ComboFix 08-03-17.1 - Administrateur 2008-03-18 22:12:02.1 - NTFSx86 MINIMAL
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.786 [GMT 1:00]
Endroit: C:\Documents and Settings\Administrateur\Bureau\ComboFix.exe
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Administrateur\Application Data\DriveDefender
C:\Documents and Settings\Administrateur\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\All Users\Application Data\DriveDefender
C:\Documents and Settings\All Users\Application Data\DriveDefender\Abbr
C:\Documents and Settings\All Users\Application Data\DriveDefender\prod_code
C:\Documents and Settings\All Users\Application Data\Starware370
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\findit_music.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\Highlight.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\HighlightHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\highlighthotxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\highlightxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\lyrics.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\music_search.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\radio.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\starware_toolbar_icon.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\error.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\Related.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\travel.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\Tem150.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem204.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem215.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem21A.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem232.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem244.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem261.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem270.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem30.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem32.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem339.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem54.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem541.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem71D.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem73.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem7B4.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem96.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\TemD7.tmp
C:\Documents and Settings\All Users\Application Data\storageprotector
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\ac
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\em
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\oid
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\StorageProtector.exe.cer
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\user
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\Contact Customer Service.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\DriveDefender unregistered.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\DriveDefender web page.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\Uninstall DriveDefender.lnk
C:\Documents and Settings\Manu.SN047852920098\Application Data\DriveDefender
C:\Documents and Settings\Manu.SN047852920098\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\#SharedObjects\PVRNHJCE\iforex.com
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\#SharedObjects\PVRNHJCE\iforex.com\Emerp\Events\flash_object.swf\user_data.sol
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#iforex.com
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#iforex.com\settings.sol
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\defaultPack.cab
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\languages.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\languages_v2.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\pack1.cab
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Configurator\Configurator.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Configurator\Configurator.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\GamesOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\GamesOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\images\active\Games0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Manager\ManagerOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\images\active\Marketing40.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\Marketing4Options.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\MoviesOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Radio_FR\Radio_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Radio_FR\Radio_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Tem1A9.tmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Tem94.tmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner\MessengerSkinner.lnk
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner\Website.lnk
C:\Documents and Settings\Stephane\Application Data\DriveDefender
C:\Documents and Settings\Stephane\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\Stephane\Application Data\Starware370
C:\Documents and Settings\Stephane\Application Data\Starware370\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Configurator\Configurator.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Configurator\Configurator.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\GamesOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\GamesOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\images\active\Games0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Manager\ManagerOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\images\active\Marketing40.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\Marketing4Options.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\MoviesOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Radio_FR\Radio_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Radio_FR\Radio_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo\Terms.lnk
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo\Uninstall.lnk
C:\install.exe
C:\Program Files\DriveDefender
C:\Program Files\DriveDefender\config.ini
C:\Program Files\DriveDefender\data\application\7-Zip Compression Pgm.scr
C:\Program Files\DriveDefender\data\application\AbsoluteFTP.scr
C:\Program Files\DriveDefender\data\application\ACDSee32.scr
C:\Program Files\DriveDefender\data\application\Acoustica CD Label Maker.scr
C:\Program Files\DriveDefender\data\application\Ad-aware SE.scr
C:\Program Files\DriveDefender\data\application\Adaptec's Audio CD.scr
C:\Program Files\DriveDefender\data\application\Adaptec Easy CD Creator v4.scr
C:\Program Files\DriveDefender\data\application\Addsoft.scr
C:\Program Files\DriveDefender\data\application\AddWeb 3.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v3.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v3.1.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v4.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v5.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v6.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v7.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v5.0 LE.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v5.5.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v6.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v7.0.scr
C:\Program Files\DriveDefender\data\application\Advanced Disk Catalog.scr
C:\Program Files\DriveDefender\data\application\Advanced MP3 Catalog.scr
C:\Program Files\DriveDefender\data\application\Advanced Password Recovery.scr
C:\Program Files\DriveDefender\data\application\ahead cover designer.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGaspect.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGpano.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGview.scr
C:\Program Files\DriveDefender\data\application\Alcohol MRU List.scr
C:\Program Files\DriveDefender\data\application\Animation Shop 1.x.scr
C:\Program Files\DriveDefender\data\application\Animation Shop 3.x.scr
C:\Program Files\DriveDefender\data\application\AOL - Spool.scr
C:\Program Files\DriveDefender\data\application\ASPack.scr
C:\Program Files\DriveDefender\data\application\Avant Browser.scr
C:\Program Files\DriveDefender\data\application\AX-Icons 4.x.scr
C:\Program Files\DriveDefender\data\application\Axialis Icon Workshop 5.x.scr
C:\Program Files\DriveDefender\data\application\Axialis Media Browser.scr
C:\Program Files\DriveDefender\data\application\Babylon Builder 2.2.scr
C:\Program Files\DriveDefender\data\application\Babylon Translator.scr
C:\Program Files\DriveDefender\data\application\BlazeDVD 2.0.scr
C:\Program Files\DriveDefender\data\application\Bookreader.scr
C:\Program Files\DriveDefender\data\application\C++ Builder.scr
C:\Program Files\DriveDefender\data\application\Cabinet Manager.scr
C:\Program Files\DriveDefender\data\application\Chameleon Web Browser.scr
C:\Program Files\DriveDefender\data\application\Classify 98.scr
C:\Program Files\DriveDefender\data\application\Clicktionary 2000.scr
C:\Program Files\DriveDefender\data\application\CoffeeCup DirectFTP.scr
C:\Program Files\DriveDefender\data\application\CoffeeCup GIF Animator.scr
C:\Program Files\DriveDefender\data\application\Cool Edit 2000 1.1.scr
C:\Program Files\DriveDefender\data\application\Cool Edit Pro.scr
C:\Program Files\DriveDefender\data\application\Corel PhotoPaint 8.scr
C:\Program Files\DriveDefender\data\application\CrissCross.scr
C:\Program Files\DriveDefender\data\application\CRT 2.x.scr
C:\Program Files\DriveDefender\data\application\Cute FTP v3.0.scr
C:\Program Files\DriveDefender\data\application\Cute FTP v4.0.scr
C:\Program Files\DriveDefender\data\application\Cute MX.scr
C:\Program Files\DriveDefender\data\application\CuteFTP.scr
C:\Program Files\DriveDefender\data\application\CuteHTML.scr
C:\Program Files\DriveDefender\data\application\DataRescue_IDA.scr
C:\Program Files\DriveDefender\data\application\Delphi v3.scr
C:\Program Files\DriveDefender\data\application\Delphi v4.scr
C:\Program Files\DriveDefender\data\application\Delphi v5.scr
C:\Program Files\DriveDefender\data\application\Delphi v7.scr
C:\Program Files\DriveDefender\data\application\Disk Explorer Professional 3.scr
C:\Program Files\DriveDefender\data\application\Diskeeper 5.0.scr
C:\Program Files\DriveDefender\data\application\DivX Player.scr
C:\Program Files\DriveDefender\data\application\Download Accelerator.scr
C:\Program Files\DriveDefender\data\application\Ebay Toolbar.scr
C:\Program Files\DriveDefender\data\application\EditPad.scr
C:\Program Files\DriveDefender\data\application\EditPlus 2.scr
C:\Program Files\DriveDefender\data\application\edonkey2000.scr
C:\Program Files\DriveDefender\data\application\eMule.scr
C:\Program Files\DriveDefender\data\application\Enfish Onespace.scr
C:\Program Files\DriveDefender\data\application\Enigma Browser.scr
C:\Program Files\DriveDefender\data\application\F-Secure SSH 2.x.scr
C:\Program Files\DriveDefender\data\application\Fix-It 2000.scr
C:\Program Files\DriveDefender\data\application\FlashGet.scr
C:\Program Files\DriveDefender\data\application\FotoCanvas 2.0.scr
C:\Program Files\DriveDefender\data\application\Fotostation 4.0.scr
C:\Program Files\DriveDefender\data\application\foxit reader.scr
C:\Program Files\DriveDefender\data\application\Free Download Manager 1.x.scr
C:\Program Files\DriveDefender\data\application\FTP Explorer.scr
C:\Program Files\DriveDefender\data\application\FTP Voyager.scr
C:\Program Files\DriveDefender\data\application\Fun CD.scr
C:\Program Files\DriveDefender\data\application\Gator.scr
C:\Program Files\DriveDefender\data\application\GeoVid Video to Flash Batch Converter.scr
C:\Program Files\DriveDefender\data\application\GetRight ExplorerBar.scr
C:\Program Files\DriveDefender\data\application\GetRight.scr
C:\Program Files\DriveDefender\data\application\Go!Zilla.scr
C:\Program Files\DriveDefender\data\application\Google Deskbar.scr
C:\Program Files\DriveDefender\data\application\Google Desktop Search History.scr
C:\Program Files\DriveDefender\data\application\Google Toolbar.scr
C:\Program Files\DriveDefender\data\application\Google Video Player 1.x.scr
C:\Program Files\DriveDefender\data\application\GoZilla.scr
C:\Program Files\DriveDefender\data\application\Gravity Newsreader.scr
C:\Program Files\DriveDefender\data\application\hardcopy.scr
C:\Program Files\DriveDefender\data\application\Helios TextPad v3.scr
C:\Program Files\DriveDefender\data\application\Helios TextPad v4.scr
C:\Program Files\DriveDefender\data\application\HelpWriter.scr
C:\Program Files\DriveDefender\data\application\hexworkshop.scr
C:\Program Files\DriveDefender\data\application\Homesite 4.0.scr
C:\Program Files\DriveDefender\data\application\Hotbar 3.0.scr
C:\Program Files\DriveDefender\data\application\HotJava Browser.scr
C:\Program Files\DriveDefender\data\application\HTML Help Workshop.scr
C:\Program Files\DriveDefender\data\application\Icon Extractor.scr
C:\Program Files\DriveDefender\data\application\iMesh.scr
C:\Program Files\DriveDefender\data\application\InoculatelT PE Antivirus.scr
C:\Program Files\DriveDefender\data\application\InstallShield Express.scr
C:\Program Files\DriveDefender\data\application\InterQuick.scr
C:\Program Files\DriveDefender\data\application\Irfanview.scr
C:\Program Files\DriveDefender\data\application\Iso Buster.scr
C:\Program Files\DriveDefender\data\application\Jasc Animation Shop 3.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v5.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v6.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v7.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v8.scr
C:\Program Files\DriveDefender\data\application\Jet Photo Shell.scr
C:\Program Files\DriveDefender\data\application\juno.scr
C:\Program Files\DriveDefender\data\application\K-Lite Codec Pack.scr
C:\Program Files\DriveDefender\data\application\Kazaa Media Desktop.scr
C:\Program Files\DriveDefender\data\application\Kodak Imaging.scr
C:\Program Files\DriveDefender\data\application\LeapFTP 2.6.scr
C:\Program Files\DriveDefender\data\application\LeechFTP.scr
C:\Program Files\DriveDefender\data\application\Letterbox.scr
C:\Program Files\DriveDefender\data\application\LViewPro 2.x.scr
C:\Program Files\DriveDefender\data\application\Macromedia Dreamweaver MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Dreamweaver Ultradev 4.scr
C:\Program Files\DriveDefender\data\application\Macromedia Firework MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Fireworks 3.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash Player.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash v4.0.scr
C:\Program Files\DriveDefender\data\application\Magic ISO Maker 4.6.scr
C:\Program Files\DriveDefender\data\application\mapinfo mapmarker.scr
C:\Program Files\DriveDefender\data\application\Mass Download.scr
C:\Program Files\DriveDefender\data\application\MasterSplitter v2.1.scr
C:\Program Files\DriveDefender\data\application\McAfee Virus Scan.scr
C:\Program Files\DriveDefender\data\application\MEDA MP3 Splitter.scr
C:\Program Files\DriveDefender\data\application\Metapad.scr
C:\Program Files\DriveDefender\data\application\MGI PHOTOSUITE SE 1.x.scr
C:\Program Files\DriveDefender\data\application\MGUSOFT Setup Builder.scr
C:\Program Files\DriveDefender\data\application\Microangelo 98.scr
C:\Program Files\DriveDefender\data\application\MicroAngelo.scr
C:\Program Files\DriveDefender\data\application\Micrografx Picture Publisher v7.scr
C:\Program Files\DriveDefender\data\application\Micrografx Picture Publisher v8.scr
C:\Program Files\DriveDefender\data\application\Microsoft FrontPage Express.scr
C:\Program Files\DriveDefender\data\application\Microsoft FrontPage.scr
C:\Program Files\DriveDefender\data\application\Microsoft Help Workshop.scr
C:\Program Files\DriveDefender\data\application\Microsoft HTML Help.scr
C:\Program Files\DriveDefender\data\application\Microsoft Imaging.scr
C:\Program Files\DriveDefender\data\application\Microsoft Managemant Console.scr
C:\Program Files\DriveDefender\data\application\Microsoft Netmeeting.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 2003.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 97.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office InfoPath 2003.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office XP.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office.scr
C:\Program Files\DriveDefender\data\application\Microsoft Outlook Express 5.0.scr
C:\Program Files\DriveDefender\data\application\Microsoft Photo Editor 3.x.scr
C:\Program Files\DriveDefender\data\application\MicroSoft PhotoDraw.scr
C:\Program Files\DriveDefender\data\application\Microsoft Picture It Publishing.scr
C:\Program Files\DriveDefender\data\application\Microsoft Publisher 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Visual Studio 6.scr
C:\Program Files\DriveDefender\data\application\Microsoft Windows Paint.scr
C:\Program Files\DriveDefender\data\application\Microsoft Windows WordPad.scr
C:\Program Files\DriveDefender\data\application\Microsoft Word 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Word Backup Files.scr
C:\Program Files\DriveDefender\data\application\Microsoft Works 4.0.scr
C:\Program Files\DriveDefender\data\application\Mijenix Powerdesk 4.0.scr
C:\Program Files\DriveDefender\data\application\MIRC.scr
C:\Program Files\DriveDefender\data\application\miroMEDIA PCTV.scr
C:\Program Files\DriveDefender\data\application\mixmeister.scr
C:\Program Files\DriveDefender\data\application\Morpheus.scr
C:\Program Files\DriveDefender\data\application\MovieXone 1.0.scr
C:\Program Files\DriveDefender\data\application\Mozart 4.0.scr
C:\Program Files\DriveDefender\data\application\ms autoroute express.scr
C:\Program Files\DriveDefender\data\application\MS WORD.scr
C:\Program Files\DriveDefender\data\application\MSE.scr
C:\Program Files\DriveDefender\data\application\MSN Toolbar.scr
C:\Program Files\DriveDefender\data\application\Music Match Jukebox.scr
C:\Program Files\DriveDefender\data\application\MyWay Advertising.scr
C:\Program Files\DriveDefender\data\application\Napster Music Community.scr
C:\Program Files\DriveDefender\data\application\Naviscope.scr
C:\Program Files\DriveDefender\data\application\NEATO Labels.scr
C:\Program Files\DriveDefender\data\application\nero burning rom.scr
C:\Program Files\DriveDefender\data\application\Nero Vision.scr
C:\Program Files\DriveDefender\data\application\Net Vampire 3.x.scr
C:\Program Files\DriveDefender\data\application\netants.scr
C:\Program Files\DriveDefender\data\application\NetCaptor.scr
C:\Program Files\DriveDefender\data\application\netmeeting.scr
C:\Program Files\DriveDefender\data\application\Netsonic.scr
C:\Program Files\DriveDefender\data\application\Netzip Download Demon 3.x.scr
C:\Program Files\DriveDefender\data\application\NewsBin Pro 4.scr
C:\Program Files\DriveDefender\data\application\Norton AntiVirus 2000 (v6).scr
C:\Program Files\DriveDefender\data\application\Norton AntiVirus 2003.scr
C:\Program Files\DriveDefender\data\application\Norton Commander.scr
C:\Program Files\DriveDefender\data\application\Norton File Manager.scr
C:\Program Files\DriveDefender\data\application\Norton Firewall.scr
C:\Program Files\DriveDefender\data\application\Norton Internet Security.scr
C:\Program Files\DriveDefender\data\application\Norton LiveUpdate.scr
C:\Program Files\DriveDefender\data\application\Norton Utilities 2000.scr
C:\Program Files\DriveDefender\data\application\NotePad Plus.scr
C:\Program Files\DriveDefender\data\application\notetab lite.scr
C:\Program Files\DriveDefender\data\application\NoteTab Pro.scr
C:\Program Files\DriveDefender\data\application\Object Rescue.scr
C:\Program Files\DriveDefender\data\application\OmniPage 10.0.scr
C:\Program Files\DriveDefender\data\application\OnTrack Powerdesk 4.scr
C:\Program Files\DriveDefender\data\application\Ontrack PowerDesk 5.scr
C:\Program Files\DriveDefender\data\application\PackageForTheWeb.scr
C:\Program Files\DriveDefender\data\application\Paint Shop Pro 5.0.scr
C:\Program Files\DriveDefender\data\application\Paint Shop Pro 7.0.scr
C:\Program Files\DriveDefender\data\application\Password Safe.scr
C:\Program Files\DriveDefender\data\application\PE Explorer 1.95.scr
C:\Program Files\DriveDefender\data\application\Personal Ancestral File.scr
C:\Program Files\DriveDefender\data\application\photo magic 4.0.scr
C:\Program Files\DriveDefender\data\application\PhotoCanvas 2.0.scr
C:\Program Files\DriveDefender\data\application\Photodex Compupic Pro.scr
C:\Program Files\DriveDefender\data\application\PhotoDraw 2000.scr
C:\Program Files\DriveDefender\data\application\PhotoImpact 8.0.scr
C:\Program Files\DriveDefender\data\application\PhotoImpact Viewer 4.0.scr
C:\Program Files\DriveDefender\data\application\PicoZip.scr
C:\Program Files\DriveDefender\data\application\PictureIt Digital Image Pro 7.0.scr
C:\Program Files\DriveDefender\data\application\PKZip for Windows v2.60.03+.scr
C:\Program Files\DriveDefender\data\application\PolyView.scr
C:\Program Files\DriveDefender\data\application\Popup Purger.scr
C:\Program Files\DriveDefender\data\application\PopUpCop.scr
C:\Program Files\DriveDefender\data\application\Power archiver.scr
C:\Program Files\DriveDefender\data\application\PowerArc.scr
C:\Program Files\DriveDefender\data\application\PowerDVD.scr
C:\Program Files\DriveDefender\data\application\PowerZip.scr
C:\Program Files\DriveDefender\data\application\Privacy Eraser Pro.scr
C:\Program Files\DriveDefender\data\application\Putty hostkeys.scr
C:\Program Files\DriveDefender\data\application\PYTHON.scr
C:\Program Files\DriveDefender\data\application\QuickTime.scr
C:\Program Files\DriveDefender\data\application\Real Audio Player v6 v7 v8.scr
C:\Program Files\DriveDefender\data\application\Real Download v4.scr
C:\Program Files\DriveDefender\data\application\RealNetworks Real Download.scr
C:\Program Files\DriveDefender\data\application\RealOne & RealPlayer.scr
C:\Program Files\DriveDefender\data\application\RealVNC.scr
C:\Program Files\DriveDefender\data\application\RegEdit.scr
C:\Program Files\DriveDefender\data\application\Roxio Easy CD Creator.scr
C:\Program Files\DriveDefender\data\application\Save Now.scr
C:\Program Files\DriveDefender\data\application\Scour Exchange.scr
C:\Program Files\DriveDefender\data\application\Seal Module Mlayer.scr
C:\Program Files\DriveDefender\data\application\SearchAndBrowse.scr
C:\Program Files\DriveDefender\data\application\SearchAnt.scr
C:\Program Files\DriveDefender\data\application\SearchV.scr
C:\Program Files\DriveDefender\data\application\SearchWolf.scr
C:\Program Files\DriveDefender\data\application\SearchWWW.scr
C:\Program Files\DriveDefender\data\application\SideStep.scr
C:\Program Files\DriveDefender\data\application\Skype.scr
C:\Program Files\DriveDefender\data\application\Smart Explorer.scr
C:\Program Files\DriveDefender\data\application\SmartDraw 6.scr
C:\Program Files\DriveDefender\data\application\smartftp.scr
C:\Program Files\DriveDefender\data\application\SmartPops.scr
C:\Program Files\DriveDefender\data\application\Sonic Foundry's Acid 2.0.scr
C:\Program Files\DriveDefender\data\application\Sonique Player.scr
C:\Program Files\DriveDefender\data\application\Spinner Plus.scr
C:\Program Files\DriveDefender\data\application\SpotOn Browser plugin.scr
C:\Program Files\DriveDefender\data\application\Staff-FTP.scr
C:\Program Files\DriveDefender\data\application\Star Downloader.scr
C:\Program Files\DriveDefender\data\application\Stardialer.scr
C:\Program Files\DriveDefender\data\application\StarOffice 5.x.scr
C:\Program Files\DriveDefender\data\application\SubmitWolf Pro.scr
C:\Program Files\DriveDefender\data\application\Sun Java Cache.scr
C:\Program Files\DriveDefender\data\application\SureThing CD Labeler.scr
C:\Program Files\DriveDefender\data\application\SVAPlayer.scr
C:\Program Files\DriveDefender\data\application\SWiSH 2.0.scr
C:\Program Files\DriveDefender\data\application\Teleport Pro.scr
C:\Program Files\DriveDefender\data\application\Telnet.scr
C:\Program Files\DriveDefender\data\application\Text Pad 4.x.scr
C:\Program Files\DriveDefender\data\application\The Playa.scr
C:\Program Files\DriveDefender\data\application\Third Voice 1.x.scr
C:\Program Files\DriveDefender\data\application\Thumbs Plus 4.scr
C:\Program Files\DriveDefender\data\application\Timesink.scr
C:\Program Files\DriveDefender\data\application\TinyBar.scr
C:\Program Files\DriveDefender\data\application\TOPicks.scr
C:\Program Files\DriveDefender\data\application\Total Commander.scr
C:\Program Files\DriveDefender\data\application\transponder.scr
C:\Program Files\DriveDefender\data\application\Trellians Classify 98.scr
C:\Program Files\DriveDefender\data\application\Tribal Voice's PowWow.scr
C:\Program Files\DriveDefender\data\application\Trojan Remover.scr
C:\Program Files\DriveDefender\data\application\TSADBOT.scr
C:\Program Files\DriveDefender\data\application\UCmore toolbar.scr
C:\Program Files\DriveDefender\data\application\Ulead Gif Animator v4.0.scr
C:\Program Files\DriveDefender\data\application\Ulead GIF Animator v5.0.scr
C:\Program Files\DriveDefender\data\application\Ulead Photo Explorer v4.2.scr
C:\Program Files\DriveDefender\data\application\Ulead Photo Express.scr
C:\Program Files\DriveDefender\data\application\Ulead PhotoImpact v5.scr
C:\Program Files\DriveDefender\data\application\Ulead VideoStudio 4.0.scr
C:\Program Files\DriveDefender\data\application\Ultimate Paint.scr
C:\Program Files\DriveDefender\data\application\ULTImate Technology BV v5.5.scr
C:\Program Files\DriveDefender\data\application\UltraEdit v4.scr
C:\Program Files\DriveDefender\data\application\UltraEdit v7.scr
C:\Program Files\DriveDefender\data\application\UltraEdit.scr
C:\Program Files\DriveDefender\data\application\UltraISO 7.x.scr
C:\Program Files\DriveDefender\data\application\uTorrent 1.x.scr
C:\Program Files\DriveDefender\data\application\VBoxEdit.scr
C:\Program Files\DriveDefender\data\application\VirtualDub.scr
C:\Program Files\DriveDefender\data\application\VMWARE.scr
C:\Program Files\DriveDefender\data\application\Vueprint.scr
C:\Program Files\DriveDefender\data\application\VX2 Respondmiter.scr
C:\Program Files\DriveDefender\data\application\W32Dasm.scr
C:\Program Files\DriveDefender\data\application\Web Ferret v3.scr
C:\Program Files\DriveDefender\data\application\WebFerret.scr
C:\Program Files\DriveDefender\data\application\webhancer.scr
C:\Program Files\DriveDefender\data\application\Wildstylz.scr
C:\Program Files\DriveDefender\data\application\WildTangent.scr
C:\Program Files\DriveDefender\data\application\WinAce.scr
C:\Program Files\DriveDefender\data\application\winamp.scr
C:\Program Files\DriveDefender\data\application\Windows Commander.scr
C:\Program Files\DriveDefender\data\application\WinHTTrack Website Copier.scr
C:\Program Files\DriveDefender\data\application\WinOnCD.scr
C:\Program Files\DriveDefender\data\application\WinRar.scr
C:\Program Files\DriveDefender\data\application\Winshow.scr
C:\Program Files\DriveDefender\data\application\WinUAE.scr
C:\Program Files\DriveDefender\data\application\Winupie.scr
C:\Program Files\DriveDefender\data\application\WinVNC.scr
C:\Program Files\DriveDefender\data\application\WinZip v8.scr
C:\Program Files\DriveDefender\data\application\Wise Installer.scr
C:\Program Files\DriveDefender\data\application\Worm.Sobig.scr
C:\Program Files\DriveDefender\data\application\WurldMedia.scr
C:\Program Files\DriveDefender\data\application\Xara 3D v4.x.scr
C:\Program Files\DriveDefender\data\application\Xara Webstyle.scr
C:\Program Files\DriveDefender\data\application\XDialer.scr
C:\Program Files\DriveDefender\data\application\XING MP3 PLAYER.scr
C:\Program Files\DriveDefender\data\application\XLoader.scr
C:\Program Files\DriveDefender\data\application\Xolox.scr
C:\Program Files\DriveDefender\data\application\Xrenoder.scr
C:\Program Files\DriveDefender\data\application\Xupiter toolbar.scr
C:\Program Files\DriveDefender\data\application\Xzoomy.scr
C:\Program Files\DriveDefender\data\application\Yahoo Player.scr
C:\Program Files\DriveDefender\data\application\Yahoo! Toolbar.scr
C:\Program Files\DriveDefender\data\application\Yamaha S-YXG100.scr
C:\Program Files\DriveDefender\data\application\ZeroPopup.scr
C:\Program Files\DriveDefender\data\application\ZipMagic 2000.scr
C:\Program Files\DriveDefender\data\application\Zone Alarm.scr
C:\Program Files\DriveDefender\data\brand.dat
C:\Program Files\DriveDefender\data\firefox\Firefox - cache.scr
C:\Program Files\DriveDefender\data\firefox\Firefox - cookies.scr
C:\Program Files\DriveDefender\data\firefox\Firefox - history.scr
C:\Program Files\DriveDefender\data\GDCW.exe
C:\Program Files\DriveDefender\data\ie\ie cookies.scr
C:\Program Files\DriveDefender\data\ie\ie internet cache.scr
C:\Program Files\DriveDefender\data\ie\ie privacy history.scr
C:\Program Files\DriveDefender\data\ie\ie typed urls.scr
C:\Program Files\DriveDefender\data\ie\ie url history.scr
C:\Program Files\DriveDefender\data\ie\windows autocomplete.scr
C:\Program Files\DriveDefender\data\ie\windows downloaded files.scr
C:\Program Files\DriveDefender\data\ie\windows favorites order.scr
C:\Program Files\DriveDefender\data\ie\windows passwords.scr
C:\Program Files\DriveDefender\data\IH.exe
C:\Program Files\DriveDefender\data\messanger\aim.scr
C:\Program Files\DriveDefender\data\messanger\AOL Bart.scr
C:\Program Files\DriveDefender\data\messanger\AOL Instant Messenger.scr
C:\Program Files\DriveDefender\data\messanger\aolim.scr
C:\Program Files\DriveDefender\data\messanger\icq - download.scr
C:\Program Files\DriveDefender\data\messanger\icq - logs.scr
C:\Program Files\DriveDefender\data\messanger\Miranda ICQ.scr
C:\Program Files\DriveDefender\data\messanger\MSN Messenger User Account.scr
C:\Program Files\DriveDefender\data\messanger\Trillian cache.scr
C:\Program Files\DriveDefender\data\messanger\trillian downloads.scr
C:\Program Files\DriveDefender\data\messanger\trillian logs.scr
C:\Program Files\DriveDefender\data\messanger\yahoo messenger logs.scr
C:\Program Files\DriveDefender\data\messanger\Yahoo! Messenger.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - autocomplete.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - cache.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - cookies.scr
C:\Program Files\DriveDefender\data\mozilla\Mozilla - history.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - saved passwords.scr
C:\Program Files\DriveDefender\data\mozilla\Mozilla - typed urls.scr
C:\Program Files\DriveDefender\data\netscape\netscape - cache.scr
C:\Program Files\DriveDefender\data\netscape\netscape - cookies.scr
C:\Program Files\DriveDefender\data\netscape\netscape - history.scr
C:\Program Files\DriveDefender\data\netscape\Netscape Navigator - last trusted apps.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - cache.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - cookies.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - Download.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - history.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - misc.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - mru.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - visited.scr
C:\Program Files\DriveDefender\data\sfl.dat
C:\Program Files\DriveDefender\data\skin.skn
C:\Program Files\DriveDefender\data\sr.log
C:\Program Files\DriveDefender\data\srl.dat
C:\Program Files\DriveDefender\data\windows\Direct Draw.scr
C:\Program Files\DriveDefender\data\windows\direct input.scr
C:\Program Files\DriveDefender\data\windows\last files.scr
C:\Program Files\DriveDefender\data\windows\Microsoft Send-To Extensions.scr
C:\Program Files\DriveDefender\data\windows\windows applog.scr
C:\Program Files\DriveDefender\data\windows\windows documents.scr
C:\Program Files\DriveDefender\data\windows\Windows Downloaded Installations.scr
C:\Program Files\DriveDefender\data\windows\Windows Empty Recycle Bin.scr
C:\Program Files\DriveDefender\data\windows\Windows Explorer User Assistant history.scr
C:\Program Files\DriveDefender\data\windows\windows findfile.scr
C:\Program Files\DriveDefender\data\windows\Windows FTP Accounts.scr
C:\Program Files\DriveDefender\data\windows\windows hotfix uninstall.scr
C:\Program Files\DriveDefender\data\windows\windows logfiles.scr
C:\Program Files\DriveDefender\data\windows\Windows Mapped Drives.scr
C:\Program Files\DriveDefender\data\windows\windows media player 7.scr
C:\Program Files\DriveDefender\data\windows\windows minidump.scr
C:\Program Files\DriveDefender\data\windows\windows MUICache.scr
C:\Program Files\DriveDefender\data\windows\windows network links.scr
C:\Program Files\DriveDefender\data\windows\windows opensave.scr
C:\Program Files\DriveDefender\data\windows\windows openwith.scr
C:\Program Files\DriveDefender\data\windows\windows prefetch.scr
C:\Program Files\DriveDefender\data\windows\windows reg history.scr
C:\Program Files\DriveDefender\data\windows\windows run history.scr
C:\Program Files\DriveDefender\data\windows\windows search.scr
C:\Program Files\DriveDefender\data\windows\windows start menu order.scr
C:\Program Files\DriveDefender\data\windows\windows stream history.scr
C:\Program Files\DriveDefender\data\windows\windows temp.scr
C:\Program Files\DriveDefender\data\windows\windows update.scr
C:\Program Files\DriveDefender\data\windows\Windows XP Unread Mail Count.scr
C:\Program Files\DriveDefender\default.ini
C:\Program Files\DriveDefender\diagnosis.dat
C:\Program Files\DriveDefender\errors.log
C:\Program Files\DriveDefender\GDC.exe
C:\Program Files\DriveDefender\GDC.url
C:\Program Files\DriveDefender\gfx\button_arrow.bmp
C:\Program Files\DriveDefender\gfx\button_arrow2.bmp
C:\Program Files\DriveDefender\gfx\buy.bmp
C:\Program Files\DriveDefender\gfx\checked.bmp
C:\Program Files\DriveDefender\gfx\custom.bmp
C:\Program Files\DriveDefender\gfx\customcleanup.bmp
C:\Program Files\DriveDefender\gfx\header.bmp
C:\Program Files\DriveDefender\gfx\icon.ico
C:\Program Files\DriveDefender\gfx\icon_about.ico
C:\Program Files\DriveDefender\gfx\icon_checked.ico
C:\Program Files\DriveDefender\gfx\icon_grayed.ico
C:\Program Files\DriveDefender\gfx\icon_link.ico
C:\Program Files\DriveDefender\gfx\icon_manual.ico
C:\Program Files\DriveDefender\gfx\icon_quit.ico
C:\Program Files\DriveDefender\gfx\icon_support.ico
C:\Program Files\DriveDefender\gfx\icon_unchecked.ico
C:\Program Files\DriveDefender\gfx\icon_uncheked.ico
C:\Program Files\DriveDefender\gfx\icon_uninstall.ico
C:\Program Files\DriveDefender\gfx\icon_update.ico
C:\Program Files\DriveDefender\gfx\log.bmp
C:\Program Files\DriveDefender\gfx\logo.bmp
C:\Program Files\DriveDefender\gfx\register.bmp
C:\Program Files\DriveDefender\gfx\settings.bmp
C:\Program Files\DriveDefender\gfx\sign_green.bmp
C:\Program Files\DriveDefender\gfx\sign_green_big.bmp
C:\Program Files\DriveDefender\gfx\sign_red.bmp
C:\Program Files\DriveDefender\gfx\sign_red_big.bmp
C:\Program Files\DriveDefender\gfx\sign_yellow.bmp
C:\Program Files\DriveDefender\gfx\splash.bmp
C:\Program Files\DriveDefender\gfx\status_good.bmp
C:\Program Files\DriveDefender\gfx\status_risk.bmp
C:\Program Files\DriveDefender\gfx\support.bmp
C:\Program Files\DriveDefender\gfx\sys_shield.bmp
C:\Program Files\DriveDefender\gfx\sys_update.bmp
C:\Program Files\DriveDefender\gfx\sysstatus.bmp
C:\Program Files\DriveDefender\gfx\unchecked.bmp
C:\Program Files\DriveDefender\gfx\update.bmp
C:\Program Files\DriveDefender\lang\Arabic.lng
C:\Program Files\DriveDefender\lang\Brazilian.lng
C:\Program Files\DriveDefender\lang\Catalan.lng
C:\Program Files\DriveDefender\lang\Chinese.lng
C:\Program Files\DriveDefender\lang\Czech.lng
C:\Program Files\DriveDefender\lang\Danish.lng
C:\Program Files\DriveDefender\lang\Dutch.lng
C:\Program Files\DriveDefender\lang\English.lng
C:\Program Files\DriveDefender\lang\Finnish.lng
C:\Program Files\DriveDefender\lang\French.lng
C:\Program Files\DriveDefender\lang\German.lng
C:\Program Files\DriveDefender\lang\Greek.lng
C:\Program Files\DriveDefender\lang\Hebrew.lng
C:\Program Files\DriveDefender\lang\Italian.lng
C:\Program Files\DriveDefender\lang\Japanese.lng
C:\Program Files\DriveDefender\lang\Malayan.lng
C:\Program Files\DriveDefender\lang\Norwegian.lng
C:\Program Files\DriveDefender\lang\Polish.lng
C:\Program Files\DriveDefender\lang\Portuguese.lng
C:\Program Files\DriveDefender\lang\Russian.lng
C:\Program Files\DriveDefender\lang\Slovenian.lng
C:\Program Files\DriveDefender\lang\Spanish.lng
C:\Program Files\DriveDefender\lang\Swedish.lng
C:\Program Files\DriveDefender\lang\Thai.lng
C:\Program Files\DriveDefender\lang\Turkish.lng
C:\Program Files\DriveDefender\License.rtf
C:\Program Files\DriveDefender\plug\GDCPatch.exe
C:\Program Files\DriveDefender\plug\stpHlpr.dll
C:\Program Files\DriveDefender\Readme.rtf
C:\Program Files\DriveDefender\runtime
C:\Program Files\DriveDefender\Scan_report.htm
C:\Program Files\DriveDefender\support.url
C:\Program Files\DriveDefender\unins000.dat
C:\Program Files\DriveDefender\unins000.exe
C:\Program Files\DriveDefender\upd_cr.log
C:\Program Files\DriveDefender\updater.dat
C:\Program Files\DriveDefender\updater.exe
C:\Program Files\DriveDefender\ver.dat
C:\Program Files\Fichiers communs\DriveDefender
C:\Program Files\Fichiers communs\DriveDefender\stm.exe
C:\Program Files\Fichiers communs\StorageProtector
C:\Program Files\Fichiers communs\StorageProtector\strpmon.exe
C:\Program Files\FunWebProducts
C:\Program Files\MyWebSearch
C:\Program Files\MyWebSearch\bar\History\search2
C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat
C:\Program Files\outerinfo
C:\Program Files\outerinfo\FF\chrome.manifest
C:\Program Files\outerinfo\FF\components\OuterinfoAds.xpt
C:\Program Files\outerinfo\FF\install.rdf
C:\Program Files\outerinfo\Terms.rtf
C:\Program Files\Starware370
C:\Program Files\Starware370\brand.bmp
C:\Program Files\Starware370\icons\star_16.ico
C:\Program Files\Starware370\Starware370Config.xml
C:\Program Files\Starware370\Starware370Uninstall.exe
C:\WINDOWS\BM5fba1451.xml
C:\WINDOWS\curity~1
C:\WINDOWS\curity~1\j?vaw.exe
C:\WINDOWS\dobe~1
C:\WINDOWS\dobe~1\?dobe\
C:\WINDOWS\dobe~1\winlogon.exe
C:\WINDOWS\pskt.ini
C:\WINDOWS\system32\autvhmom.ini
C:\WINDOWS\system32\awtttst.dll
C:\WINDOWS\system32\cbeeg.ini
C:\WINDOWS\system32\cbeeg.ini2
C:\WINDOWS\system32\cbxxxuv.dll
C:\WINDOWS\system32\ddcawts.dll
C:\WINDOWS\system32\ddccyab.dll
C:\WINDOWS\system32\ddcdaby.dll
C:\WINDOWS\system32\fcccyvw.dll
C:\WINDOWS\system32\fccyvvs.dll
C:\WINDOWS\system32\gebccaa.dll
C:\WINDOWS\system32\gebyxvw.dll
C:\WINDOWS\system32\geebc.dll
C:\WINDOWS\system32\jkkjijk.dll
C:\WINDOWS\system32\jkklkhg.dll
C:\WINDOWS\system32\ljjhfdb.dll
C:\WINDOWS\system32\mljghec.dll
C:\WINDOWS\system32\mljhghe.dll
C:\WINDOWS\system32\mljji.dll
C:\WINDOWS\system32\mnnmp.ini
C:\WINDOWS\system32\mnnmp.ini2
C:\WINDOWS\system32\nGpxx18
C:\WINDOWS\system32\pmnnm.dll
C:\WINDOWS\system32\qomjhif.dll
C:\WINDOWS\system32\qomllkl.dll
C:\WINDOWS\system32\tuvvuut.dll
C:\WINDOWS\system32\UpMedia
C:\WINDOWS\system32\UpMedia\ContentTool.dll
C:\WINDOWS\system32\UpMedia\SearchTool.dll
C:\WINDOWS\system32\UpMedia\uninstallSE.exe
C:\WINDOWS\system32\wvurrpp.dll
C:\WINDOWS\system32\wyadd.ini
C:\WINDOWS\system32\wyadd.ini2
C:\WINDOWS\system32\xxyyxvw.dll
C:\winlogo.exe

.
((((((((((((((((((((((((((((( Fichiers créés 2008-02-18 to 2008-03-18 ))))))))))))))))))))))))))))))))))))
.

2008-03-18 21:04 . 2008-03-18 22:09 <REP> d-------- C:\Program Files\Navilog1
2008-03-18 20:54 . 2008-03-18 20:54 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-18 20:53 . 2008-03-18 21:02 <REP> d-------- C:\SDFix
2008-03-18 19:46 . <REP> C:\WINDOWS\LastGood.Tmp
2008-03-16 09:06 . 2008-03-16 11:03 <REP> d-------- C:\VundoFix Backups
2008-03-16 09:05 . 2008-03-16 09:05 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-03-16 00:23 . 2008-03-16 00:23 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\DefenseNetSurfage
2008-03-15 23:37 . 2008-03-15 23:37 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\BitDefender
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage r‚seau
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage d'impression
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\ModŠles
2008-03-15 18:29 . 2004-08-16 17:19 <REP> dr------- C:\Documents and Settings\Administrateur\Mes documents
2008-03-15 18:29 . 2004-08-16 16:55 <REP> dr------- C:\Documents and Settings\Administrateur\Menu D‚marrer
2008-03-15 18:29 . 2006-05-18 19:29 <REP> dr------- C:\Documents and Settings\Administrateur\Favoris
2008-03-15 18:29 . 2008-03-18 22:15 <REP> dr------- C:\Documents and Settings\Administrateur\Bureau
2008-03-15 18:29 . 2006-05-18 19:29 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver
2008-03-15 18:29 . 2006-05-18 19:32 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\Symantec
2008-03-03 15:08 . 2008-03-03 15:08 <REP> d-------- C:\Documents and Settings\Manu.SN047852920098\Application Data\DefenseNetSurfage
2008-03-03 15:01 . 2008-03-03 15:01 <REP> d-------- C:\Documents and Settings\Manu.SN047852920098\Application Data\BitDefender
2008-03-02 21:56 . 2008-03-16 00:03 121 --a------ C:\WINDOWS\bdagent.INI
2008-03-02 18:36 . 2008-03-02 18:36 <REP> d-------- C:\Documents and Settings\Stephane\Application Data\BitDefender
2008-03-02 15:23 . 2008-03-02 15:23 <REP> d-------- C:\Program Files\BitDefender
2008-03-02 15:23 . 2008-03-02 15:23 <REP> d-------- C:\Documents and Settings\All Users\Application Data\BitDefender
2008-03-02 15:22 . 2008-03-02 15:23 <REP> d-------- C:\Program Files\Fichiers communs\BitDefender
2008-03-02 15:17 . 2008-03-02 15:17 89,664 --a------ C:\WINDOWS\system32\bigfmnxp.dll
2008-03-02 15:14 . 2008-03-05 21:54 1,374 ---hs---- C:\WINDOWS\system32\fitvosrh.ini
2008-03-02 15:12 . 2008-03-02 15:12 91,712 --a------ C:\WINDOWS\system32\bwqbinlh.dll
2008-03-02 14:48 . 2008-03-02 14:48 223 --a------ C:\WINDOWS\system32\3107.bat
2008-03-02 14:07 . 2008-03-02 15:11 474 ---hs---- C:\WINDOWS\system32\xkqeingo.ini
2008-03-02 14:04 . 2008-03-02 14:04 89,664 --a------ C:\WINDOWS\system32\lkveatgu.dll
2008-03-02 14:02 . 2008-03-02 14:02 91,712 --a------ C:\WINDOWS\system32\obotfdrm.dll
2008-03-02 14:02 . 2008-03-02 14:02 52,736 --a------ C:\app.MSNFix
2008-03-02 14:02 . 2008-03-02 14:02 223 --a------ C:\7892.bat
2008-03-01 15:24 . 2008-03-01 15:24 223 --a------ C:\Documents and Settings\Stephane\9363.bat
2008-03-01 15:10 . 2008-03-01 15:10 223 --a------ C:\Documents and Settings\Stephane\1902.bat
2008-03-01 14:54 . 2008-03-01 14:54 223 --a------ C:\Documents and Settings\Stephane\8473.bat
2008-03-01 14:39 . 2008-03-01 15:24 36,864 --a------ C:\Documents and Settings\Stephane\winlogo.exe
2008-03-01 14:39 . 2008-03-01 14:39 223 --a------ C:\Documents and Settings\Stephane\1940.bat
2008-03-01 13:56 . 2008-03-01 13:56 223 --a------ C:\Documents and Settings\Stephane\6622.bat
2008-03-01 13:26 . 2008-03-01 13:26 223 --a------ C:\Documents and Settings\Stephane\2446.bat
2008-03-01 13:11 . 2008-03-01 13:11 223 --a------ C:\Documents and Settings\Stephane\3608.bat
2008-03-01 12:56 . 2008-03-01 12:56 223 --a------ C:\Documents and Settings\Stephane\7694.bat
2008-03-01 12:14 . 2008-03-01 12:14 89,664 --a------ C:\WINDOWS\system32\urmoexex.dll
2008-03-01 12:11 . 2008-03-01 12:11 85,568 --a------ C:\WINDOWS\system32\urofwppt.dll
2008-03-01 12:11 . 2008-03-01 12:19 1,014 ---hs---- C:\WINDOWS\system32\tppwforu.ini
2008-03-01 12:08 . 2008-03-01 12:08 91,712 --a------ C:\WINDOWS\system32\vnvexgyg.dll
2008-03-01 10:35 . 2008-03-01 10:35 223 --a------ C:\Documents and Settings\Stephane\6080.bat
2008-02-29 21:49 . 2008-02-29 21:49 223 --a------ C:\Documents and Settings\Stephane\2509.bat
2008-02-29 21:34 . 2008-02-29 21:34 223 --a------ C:\Documents and Settings\Stephane\5819.bat
2008-02-29 21:19 . 2008-02-29 21:19 223 --a------ C:\Documents and Settings\Stephane\4506.bat
2008-02-29 21:04 . 2008-02-29 21:04 223 --a------ C:\Documents and Settings\Stephane\2385.bat
2008-02-29 20:49 . 2008-02-29 20:49 223 --a------ C:\Documents and Settings\Stephane\3477.bat
2008-02-29 20:42 . 2008-03-01 12:09 894 ---hs---- C:\WINDOWS\system32\sffnujkx.ini
2008-02-29 20:22 . 2008-02-29 20:22 223 --a------ C:\Documents and Settings\Stephane\9796.bat
2008-02-29 18:07 . 2008-03-16 16:41 143 --a------ C:\WINDOWS\system32\mcrh.MSNFix
2008-02-29 18:00 . 2008-02-29 20:34 714 ---hs---- C:\WINDOWS\system32\cpydvapy.ini
2008-02-29 17:58 . 2008-02-29 17:58 <REP> d-------- C:\Documents and Settings\Stephane\Application Data\DefenseNetSurfage
2008-02-29 11:49 . 2008-02-29 11:49 84,544 --a------ C:\WINDOWS\system32\momhvtua.dll
2008-02-29 11:47 . 2008-02-29 11:47 91,712 --a------ C:\WINDOWS\system32\rtqarqus.dll
2008-02-29 11:47 . 2008-02-29 11:47 88,640 --a------ C:\WINDOWS\system32\bilroequ.dll
2008-02-29 11:44 . 2008-02-29 11:44 <REP> d-------- C:\Program Files\Fichiers communs\DefenseNetSurfage
2008-02-29 11:44 . 2008-03-02 16:19 <REP> d-------- C:\Program Files\DefenseNetSurfage
2008-02-29 11:44 . 2008-02-29 11:44 <REP> d-------- C:\Documents and Settings\All Users\Application Data\DefenseNetSurfage
2008-02-29 11:44 . 2007-02-13 08:09 388,126 --a------ C:\WINDOWS\system32\sqlite3.dll
2008-02-28 19:21 . 2008-02-29 11:19 354 ---hs---- C:\WINDOWS\system32\wovxiagk.ini
2008-02-28 18:04 . 2008-02-28 18:04 89,664 --a------ C:\WINDOWS\system32\jeqcsybo.dll
2008-02-28 18:02 . 2008-02-28 18:02 294 ---hs---- C:\WINDOWS\system32\vusengjh.ini
2008-02-28 18:01 . 2008-02-28 18:01 84,544 --a------ C:\WINDOWS\system32\hjgnesuv.dll
2008-02-28 17:59 . 2008-02-28 17:59 91,712 --a------ C:\WINDOWS\system32\ldiohxrr.dll
2008-02-28 17:23 . 2008-02-28 17:23 223 --a------ C:\Documents and Settings\Stephane\4782.bat
2008-02-27 19:29 . 2008-02-27 19:29 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Messenger Plus!
2008-02-27 19:13 . 2008-02-27 19:13 91,712 --a------ C:\WINDOWS\system32\mpkfvgxq.dll
2008-02-27 19:13 . 2008-02-27 19:13 90,176 --a------ C:\WINDOWS\system32\bawfkfsf.dll
2008-02-27 19:13 . 2008-02-27 19:13 85,056 --a------ C:\WINDOWS\system32\fsrhwnca.dll
2008-02-27 19:13 . 2008-02-27 20:09 834 ---hs---- C:\WINDOWS\system32\acnwhrsf.ini
2008-02-27 18:58 . 2008-03-02 15:12 136,627 --a------ C:\WINDOWS\POTA777444.exe
2008-02-27 18:47 . 2008-02-27 18:56 594 ---hs---- C:\WINDOWS\system32\njsbrquw.ini
2008-02-27 18:44 . 2008-02-27 18:44 90,176 --a------ C:\WINDOWS\system32\gvhbocdr.dll
2008-02-27 18:43 . 2008-02-27 18:43 91,712 --a------ C:\WINDOWS\system32\ggpfxutb.dll
2008-02-26 20:09 . 2008-02-27 18:38 474 ---hs---- C:\WINDOWS\system32\krphkvon.ini
2008-02-26 20:04 . 2008-02-26 20:04 91,712 --a------ C:\WINDOWS\system32\bunvjdev.dll
2008-02-26 20:04 . 2008-02-26 20:04 89,152 --a------ C:\WINDOWS\system32\jfwyfwld.dll
2008-02-26 19:03 . 2008-02-26 19:57 354 ---hs---- C:\WINDOWS\system32\hhsncxbx.ini
2008-02-26 18:07 . 2008-02-26 18:07 223 --a------ C:\Documents and Settings\Manu.SN047852920098\9210.bat
2008-02-26 18:06 . 2008-02-26 18:06 124,050 --a------ C:\WINDOWS\system32\wprfruayd.exe
2008-02-26 18:04 . 2008-02-26 18:04 36,864 --a------ C:\Documents and Settings\Manu.SN047852920098\winlogo.exe
2008-02-26 17:50 . 2008-02-26 17:50 223 --a------ C:\Documents and Settings\Stephane\8781.bat
2008-02-26 11:15 . 2008-02-26 11:15 414 ---hs---- C:\WINDOWS\system32\tgtavila.ini
2008-02-26 11:14 . 2008-02-26 11:15 86,080 --a------ C:\WINDOWS\system32\alivatgt.dll
2008-02-26 11:10 . 2008-02-26 11:11 89,152 --a------ C:\WINDOWS\system32\wqihcfji.dll
2008-02-26 11:08 . 2008-02-26 11:08 91,712 --a------ C:\WINDOWS\system32\vtlgafsf.dll
2008-02-25 20:49 . 2008-02-25 20:49 223 --a------ C:\Documents and Settings\Stephane\3730.bat
2008-02-25 20:43 . 2008-02-26 11:08 354 ---hs---- C:\WINDOWS\system32\pjctwdwn.ini
2008-02-25 20:36 . 2008-02-25 20:36 223 --a------ C:\Documents and Settings\Stephane\2268.bat
2008-02-25 17:45 . 2008-02-25 17:45 223 --a------ C:\Documents and Settings\Stephane\3132.bat
2008-02-25 10:40 . 2008-03-15 19:24 <REP> d-------- C:\WINDOWS\system32\iDlo18
2008-02-24 12:40 . 2008-03-15 19:24 <REP> d-------- C:\WINDOWS\system32\fr3
2008-02-24 12:40 . 2008-03-16 15:37 <REP> d-------- C:\WINDOWS\system32\br1
2008-02-24 12:40 . 2008-03-02 15:39 <REP> d-------- C:\WINDOWS\system32\bev4
2008-02-24 12:40 . 2008-02-24 12:40 <REP> d-------- C:\WINDOWS\system32\auz9

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-15 19:41 --------- d-----w C:\Program Files\eMule
2008-03-15 18:26 --------- d-----w C:\Program Files\Circle Developement
2008-03-15 18:24 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\great scr logo
2008-03-15 16:50 --------- d-----w C:\Program Files\Fichiers communs\Symantec Shared
2008-03-04 12:33 --------- d-----w C:\Documents and Settings\Stephane\Application Data\VMNTOOLBAR
2008-03-03 14:22 374 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb6334.dat
2008-03-02 19:24 --------- d-----w C:\Program Files\Lavasoft
2008-03-02 19:19 --------- d-----w C:\Program Files\Micro Application
2008-02-28 16:16 --------- d-----w C:\Program Files\Windows Live
2008-02-27 19:13 --------- d-----w C:\Program Files\Java
2008-02-27 18:31 --------- d-----w C:\Program Files\Winamp
2008-02-27 18:14 --------- d-----w C:\Documents and Settings\All Users\Application Data\Readme Live Axis Tons
2008-02-27 18:13 --------- d-----w C:\Program Files\LimeWire
2008-02-26 17:20 18,432 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb41.dat
2008-02-26 17:15 555 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb8467.dat
2008-02-26 17:15 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\VMNTOOLBAR
2008-02-26 17:08 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\LimeWire
2008-02-23 12:11 --------- d-----w C:\Program Files\Messenger Plus! Live
2008-02-14 18:15 --------- d-----w C:\Program Files\Windows Media Components
2008-02-14 18:13 --------- d-----w C:\Program Files\NRJ
2008-02-01 10:17 587,264 ----a-w C:\WINDOWS\WLXPGSS.SCR
2008-01-28 15:57 --------- d-----w C:\Documents and Settings\Stephane\Application Data\MAGIX
2008-01-13 17:32 231,872 ----a-w C:\WINDOWS\EasyGifAnimator_Toolbar_Uninstaller_5781.exe
2008-01-11 05:36 44,544 ----a-w C:\WINDOWS\system32\dllcache\pngfilt.dll
2007-12-24 16:04 24,575 ----a-w C:\WINDOWS\system32\Bwinsysmwappio61.dll
2007-12-19 22:53 347,136 ----a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll
2007-12-18 09:51 179,584 ------w C:\WINDOWS\system32\dllcache\mrxdav.sys
2007-10-04 09:46 142 ----a-w C:\Program Files\Fichiers communs\rtepre.html
2006-11-05 17:03 60,240 -c--a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\GDIPFONTCACHEV1.DAT
.

------- Sigcheck -------

2004-08-05 13:00 14336 1bd6c2f707a275cb7c16fd99fe0f31ca C:\WINDOWS\system32\svchost.exe

2005-03-02 19:20 578048 c34920eb988ce98910bd6b0417f334eb C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll
2007-03-08 16:50 579072 4d88aaf39adabfe45958ea1384e2c4ff C:\WINDOWS\$hf_mig$\KB925902\SP2QFE\user32.dll
2004-08-05 13:00 578048 e46fb493e3b33704f0715020cf52106b C:\WINDOWS\$NtUninstallKB890859$\user32.dll
2005-03-02 19:10 578048 0df75fb73f705b011630159a43d7c354 C:\WINDOWS\$NtUninstallKB925902$\user32.dll
2007-03-08 16:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\user32.dll
2007-03-08 16:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\dllcache\user32.dll

2004-08-05 13:00 82944 bc41f51a39d3b255805fdb759b7814ae C:\WINDOWS\system32\ws2_32.dll

2004-08-05 13:00 506368 d2de785aeab0bb8ca4c14a8a199dbe4e C:\WINDOWS\system32\winlogon.exe

2004-08-05 13:00 182912 558635d3af1c7546d26067d5d9b6959e C:\WINDOWS\system32\drivers\ndis.sys

2004-08-05 13:00 29056 4448006b6bc60e6c027932cfc38d6855 C:\WINDOWS\system32\drivers\ip6fw.sys

2005-03-02 09:13 2059008 5311776074b6c13f983dc75baeac9c0c C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
2006-12-19 19:45 2061440 8b039efbe4c9aa23f152ffa0e238b8fa C:\WINDOWS\$hf_mig$\KB929338\SP2QFE\ntkrnlpa.exe
2007-02-28 17:08 2061440 7a56a64eb50399613587e90292dd2aab C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ntkrnlpa.exe
2004-08-05 13:00 2058880 f252fae094c54572ece38a039f2103c4 C:\WINDOWS\$NtUninstallKB890859$\ntkrnlpa.exe
2005-03-02 19:07 2058880 73fa9c95d235844a36968c7852c7dbdd C:\WINDOWS\$NtUninstallKB929338$\ntkrnlpa.exe
2006-12-19 19:22 2059648 06015d137b02542f07d5cd7b144df942 C:\WINDOWS\$NtUninstallKB931784$\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\system32\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\system32\dllcache\ntkrnlpa.exe

2005-03-02 19:13 2181632 3e2a0a4a0c0b19fc113618a9562a3b2a C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
2006-12-19 19:45 2184064 1f3fa2065e6e043a1d82a487b5da309c C:\WINDOWS\$hf_mig$\KB929338\SP2QFE\ntoskrnl.exe
2007-02-28 17:08 2184192 8e244108562e0e452eb68dff64cb08a9 C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ntoskrnl.exe
2004-08-05 13:00 2183040 7d38ce4398e6aa6339b4644feadcc0d8 C:\WINDOWS\$NtUninstallKB890859$\ntoskrnl.exe
2005-03-02 19:08 2181376 63729dd0f2aae36cc52b89c05505146c C:\WINDOWS\$NtUninstallKB929338$\ntoskrnl.exe
2006-12-19 19:22 2182400 d27929db7b7f92f9d0f8ec9ba01c601c C:\WINDOWS\$NtUninstallKB931784$\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\Driver Cache\i386\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\system32\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\system32\dllcache\ntoskrnl.exe

2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\explorer.exe
2007-06-13 14:10 1037312 b795475444d6d57a572c14b9e1a29839 C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
2004-08-05 13:00 1036288 4c33e5b9a6197b6ed215f6cfba0a2daa C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{79311601-2254-4a50-9c31-5e24ff74c21f}]
2008-03-02 15:17 89664 --a------ C:\WINDOWS\system32\bigfmnxp.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9F523B63-FCF8-42BA-30AD-A360B1BE040A}]
C:\Program Files\Fichiers communs\quga.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EBE60F6A-25D8-44F6-A048-03EAE8E2809F}]
C:\Program Files\ComPlus Applications\jaqi777444.dll

[HKEY_CURRENT_USE

Répondre à titou600

est ce que c'est bon

Répondre à titou600

non :)

Poste-moi juste ce qui se trouve sous :

((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 13:00 15360]
"msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184]
"Acmw"="C:\WINDOWS\DOBE~1\winlogon.exe" [ ]
"Cphfq"="C:\WINDOWS\??curity\j?vaw.exe" [ ]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [2004-08-05 13:00 208952]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-05 13:00 455168]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-05 13:00 455168]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-04-01 15:16 5562368]
"nwiz"="nwiz.exe" [2005-04-01 15:16 1495040 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="NvMCTray.dll" [2005-04-01 15:16 86016 C:\WINDOWS\system32\nvmctray.dll]
"SoundMan"="SOUNDMAN.EXE" [2005-01-20 19:04 77824 C:\WINDOWS\SOUNDMAN.EXE]
"ccApp"="C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" [2005-04-12 12:39 58992]
"PCMService"="c:\Apps\Powercinema\PCMService.exe" [2005-04-29 08:07 127118]
"Symantec NetDriver Monitor"="C:\PROGRA~1\SYMNET~1\SNDMon.exe" [2006-05-19 14:00 100056]
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2006-05-18 19:34 180269]
"EPSON Stylus C66 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.exe" [2003-11-26 14:00 99840]
"DownloadAccelerator"="C:\Program Files\DAP\DAP.exe" [2006-09-27 18:09 2864128]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-05 13:00 110592 C:\WINDOWS\system32\bthprops.cpl]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-07-28 11:38 1836544]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"YeppStudioAgent"="C:\Program Files\Samsung\SamsungMediaStudio4.1\SamsungMediaStudioAgent.exe" [ ]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-12-11 10:56 286720]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-12-11 12:10 267048]
"{92-27-76-62-DW}"="C:\WINDOWS\system32\bev4\dameco3305.exe" [ ]
"mecery"="C:\Program Files\ComPlus Applications\mecery77798.exe" [ ]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"DefenseNetSurfage"="C:\Program Files\DefenseNetSurfage\GDC.exe" [2008-01-28 15:17 1825280]
"BitDefender Antiphishing Helper"="C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe" [2007-08-27 15:24 49152]
"BDAgent"="C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe" [2007-10-01 15:23 294912]
"5c8927cd"="C:\WINDOWS\system32\hrsovtif.dll" [ ]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 13:00 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\AOL 9.0\\aol.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"C:\\APPS\\Inventime\\my.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=

R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;C:\WINDOWS\system32\DRIVERS\bdfndisf.sys [2007-09-25 11:01]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bdx REG_MULTI_SZ scan

.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-25 19:00:03 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-03-15 23:00:40 C:\WINDOWS\Tasks\B1090D53913EB403.job"
- c:\docume~1\manu~1.sn0\applic~1\greats~1\Once Bleh Cdrom.exe
"2008-03-05 19:10:15 C:\WINDOWS\Tasks\Symantec NetDetect.job"
- C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE
"2008-03-13 17:54:02 C:\WINDOWS\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job"
ca devrais etre la suite excuse moi
titou600

Répondre à titou600

est ce que c'est bon avec ce que j'ai copier

titou600

Répondre à titou600

non :p

Poste moi tout ce qu'il y a dessous
((((((((((((((((((((((((((((((((( Point de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))) ;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{79311601-2254-4a50-9c31-5e24ff74c21f}]
2008-03-02 15:17 89664 --a------ C:\WINDOWS\system32\bigfmnxp.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9F523B63-FCF8-42BA-30AD-A360B1BE040A}]
C:\Program Files\Fichiers communs\quga.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EBE60F6A-25D8-44F6-A048-03EAE8E2809F}]
C:\Program Files\ComPlus Applications\jaqi777444.dll

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 13:00 15360]
"msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184]
"Acmw"="C:\WINDOWS\DOBE~1\winlogon.exe" [ ]
"Cphfq"="C:\WINDOWS\??curity\j?vaw.exe" [ ]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [2004-08-05 13:00 208952]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-05 13:00 455168]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-05 13:00 455168]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-04-01 15:16 5562368]
"nwiz"="nwiz.exe" [2005-04-01 15:16 1495040 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="NvMCTray.dll" [2005-04-01 15:16 86016 C:\WINDOWS\system32\nvmctray.dll]
"SoundMan"="SOUNDMAN.EXE" [2005-01-20 19:04 77824 C:\WINDOWS\SOUNDMAN.EXE]
"ccApp"="C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" [2005-04-12 12:39 58992]
"PCMService"="c:\Apps\Powercinema\PCMService.exe" [2005-04-29 08:07 127118]
"Symantec NetDriver Monitor"="C:\PROGRA~1\SYMNET~1\SNDMon.exe" [2006-05-19 14:00 100056]
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2006-05-18 19:34 180269]
"EPSON Stylus C66 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.exe" [2003-11-26 14:00 99840]
"DownloadAccelerator"="C:\Program Files\DAP\DAP.exe" [2006-09-27 18:09 2864128]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-05 13:00 110592 C:\WINDOWS\system32\bthprops.cpl]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-07-28 11:38 1836544]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"YeppStudioAgent"="C:\Program Files\Samsung\SamsungMediaStudio4.1\SamsungMediaStudioAgent.exe" [ ]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-12-11 10:56 286720]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-12-11 12:10 267048]
"{92-27-76-62-DW}"="C:\WINDOWS\system32\bev4\dameco3305.exe" [ ]
"mecery"="C:\Program Files\ComPlus Applications\mecery77798.exe" [ ]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"DefenseNetSurfage"="C:\Program Files\DefenseNetSurfage\GDC.exe" [2008-01-28 15:17 1825280]
"BitDefender Antiphishing Helper"="C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe" [2007-08-27 15:24 49152]
"BDAgent"="C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe" [2007-10-01 15:23 294912]
"5c8927cd"="C:\WINDOWS\system32\hrsovtif.dll" [ ]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 13:00 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\AOL 9.0\\aol.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"C:\\APPS\\Inventime\\my.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=

R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;C:\WINDOWS\system32\DRIVERS\bdfndisf.sys [2007-09-25 11:01]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bdx REG_MULTI_SZ scan

.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-25 19:00:03 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-03-15 23:00:40 C:\WINDOWS\Tasks\B1090D53913EB403.job"
- c:\docume~1\manu~1.sn0\applic~1\greats~1\Once Bleh Cdrom.exe
"2008-03-05 19:10:15 C:\WINDOWS\Tasks\Symantec NetDetect.job"
- C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE
"2008-03-13 17:54:02 C:\WINDOWS\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job"

ouf jy suis arrivé

Répondre à titou600

Re,

Désactive toute protection résidente ( antivirus…) !

Copie le texte se situant dans le cadre ci-dessous, sans le mot citation :

Citation :

File::
C:\WINDOWS\system32\bigfmnxp.dll
C:\WINDOWS\system32\fitvosrh.ini
C:\WINDOWS\system32\bwqbinlh.dll
C:\WINDOWS\system32\3107.bat
C:\WINDOWS\system32\xkqeingo.ini
C:\WINDOWS\system32\lkveatgu.dll
C:\WINDOWS\system32\obotfdrm.dll
C:\Documents and Settings\Stephane\9363.bat
C:\Documents and Settings\Stephane\1902.bat
C:\Documents and Settings\Stephane\8473.bat
C:\Documents and Settings\Stephane\winlogo.exe
C:\Documents and Settings\Stephane\1940.bat
C:\Documents and Settings\Stephane\6622.bat
C:\Documents and Settings\Stephane\2446.bat
C:\Documents and Settings\Stephane\3608.bat
C:\Documents and Settings\Stephane\7694.bat
C:\WINDOWS\system32\urmoexex.dll
C:\WINDOWS\system32\urofwppt.dll
C:\WINDOWS\system32\tppwforu.ini
C:\WINDOWS\system32\vnvexgyg.dll
C:\Documents and Settings\Stephane\6080.bat
C:\Documents and Settings\Stephane\2509.bat
C:\Documents and Settings\Stephane\5819.bat
C:\Documents and Settings\Stephane\4506.bat
C:\Documents and Settings\Stephane\2385.bat
C:\Documents and Settings\Stephane\3477.bat
C:\WINDOWS\system32\sffnujkx.ini
C:\Documents and Settings\Stephane\9796.bat
C:\WINDOWS\system32\cpydvapy.ini
C:\WINDOWS\system32\momhvtua.dll
C:\WINDOWS\system32\rtqarqus.dll
C:\WINDOWS\system32\bilroequ.dll
C:\WINDOWS\system32\wovxiagk.ini
C:\WINDOWS\system32\jeqcsybo.dll
C:\WINDOWS\system32\vusengjh.ini
C:\WINDOWS\system32\hjgnesuv.dll
C:\WINDOWS\system32\ldiohxrr.dll
C:\Documents and Settings\Stephane\4782.bat
C:\WINDOWS\system32\mpkfvgxq.dll
C:\WINDOWS\system32\bawfkfsf.dll
C:\WINDOWS\system32\fsrhwnca.dll
C:\WINDOWS\system32\acnwhrsf.ini
C:\WINDOWS\POTA777444.exe
C:\WINDOWS\system32\njsbrquw.ini
C:\WINDOWS\system32\gvhbocdr.dll
C:\WINDOWS\system32\ggpfxutb.dll
C:\WINDOWS\system32\krphkvon.ini
C:\WINDOWS\system32\bunvjdev.dll
C:\WINDOWS\system32\jfwyfwld.dll
C:\WINDOWS\system32\hhsncxbx.ini
C:\Documents and Settings\Manu.SN047852920098\9210.bat
C:\WINDOWS\system32\wprfruayd.exe
C:\Documents and Settings\Manu.SN047852920098\winlogo.exe
C:\Documents and Settings\Stephane\8781.bat
C:\WINDOWS\system32\tgtavila.ini
C:\WINDOWS\system32\alivatgt.dll
C:\WINDOWS\system32\wqihcfji.dll
C:\WINDOWS\system32\vtlgafsf.dll
C:\Documents and Settings\Stephane\3730.bat
C:\WINDOWS\system32\pjctwdwn.ini
C:\Documents and Settings\Stephane\2268.bat
C:\Documents and Settings\Stephane\3132.bat
C:\WINDOWS\system32\bev4\dameco3305.exe
C:\Program Files\ComPlus Applications\mecery77798.exe

Folder::
C:\Program Files\DefenseNetSurfage

Registry::
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{79311601-2254-4a50-9c31-5e24ff74c21f}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9F523B63-FCF8-42BA-30AD-A360B1BE040A}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EBE60F6A-25D8-44F6-A048-03EAE8E2809F}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"{92-27-76-62-DW}"=-
"mecery"=-
"DefenseNetSurfage"=-
"5c8927cd"=-




Ouvre le Bloc-Notes puis colle le texte copié.
(Démarrer\Tous les programmes\Accessoires\Bloc notes.)
Sauvegarde ce fichier sous le nom de CFScript.txt.

Glisse maintenant le fichier ComboFix-Do.txt dans Combofix.exe comme ci-dessous :

http://i261.photobucket.com/albums/ii49/Malekal_morte/CFScript.gif

Cela va relancer Combofix, tape sur 1 puis valide. Après redémarrage, poste le contenu du rapport Combofix.txt accompagné d'un nouveau rapport Hijackthis.
S'il n'y a pas de redémarrage, poste quand même les rapports.

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

je ferais ca demain
car je suis sur mon poste person et je dois déconnecté
je fais ca toujours en mode sans echec et administrateur


Répondre à titou600

Re,

Oki, pas de problèmes.

:hello:

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Désolé pour hier 20 mars 2008 car j'étais avec ma petite famille,
ci joint le rapport combofix et hitjacthis
(précision sur conbofix pas de réponse 1 il démarre systématiquement et je lance ces procedures en mode sans echec.)

ComboFix 08-03-17.1 - Administrateur 2008-03-18 22:12:02.1 - NTFSx86 MINIMAL
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.786 [GMT 1:00]
Endroit: C:\Documents and Settings\Administrateur\Bureau\ComboFix.exe
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Administrateur\Application Data\DriveDefender
C:\Documents and Settings\Administrateur\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\All Users\Application Data\DriveDefender
C:\Documents and Settings\All Users\Application Data\DriveDefender\Abbr
C:\Documents and Settings\All Users\Application Data\DriveDefender\prod_code
C:\Documents and Settings\All Users\Application Data\Starware370
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\findit_music.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\Highlight.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\HighlightHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\highlighthotxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\highlightxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\lyrics.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\music_search.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\radio.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\starware_toolbar_icon.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\error.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\Related.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\travel.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\Tem150.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem204.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem215.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem21A.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem232.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem244.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem261.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem270.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem30.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem32.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem339.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem54.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem541.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem71D.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem73.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem7B4.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem96.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\TemD7.tmp
C:\Documents and Settings\All Users\Application Data\storageprotector
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\ac
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\em
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\oid
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\StorageProtector.exe.cer
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\user
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\Contact Customer Service.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\DriveDefender unregistered.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\DriveDefender web page.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\Uninstall DriveDefender.lnk
C:\Documents and Settings\Manu.SN047852920098\Application Data\DriveDefender
C:\Documents and Settings\Manu.SN047852920098\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\#SharedObjects\PVRNHJCE\iforex.com
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\#SharedObjects\PVRNHJCE\iforex.com\Emerp\Events\flash_object.swf\user_data.sol
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#iforex.com
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#iforex.com\settings.sol
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\defaultPack.cab
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\languages.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\languages_v2.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\pack1.cab
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Configurator\Configurator.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Configurator\Configurator.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\GamesOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\GamesOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\images\active\Games0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Manager\ManagerOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\images\active\Marketing40.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\Marketing4Options.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\MoviesOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Radio_FR\Radio_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Radio_FR\Radio_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Tem1A9.tmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Tem94.tmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner\MessengerSkinner.lnk
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner\Website.lnk
C:\Documents and Settings\Stephane\Application Data\DriveDefender
C:\Documents and Settings\Stephane\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\Stephane\Application Data\Starware370
C:\Documents and Settings\Stephane\Application Data\Starware370\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Configurator\Configurator.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Configurator\Configurator.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\GamesOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\GamesOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\images\active\Games0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Manager\ManagerOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\images\active\Marketing40.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\Marketing4Options.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\MoviesOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Radio_FR\Radio_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Radio_FR\Radio_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo\Terms.lnk
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo\Uninstall.lnk
C:\install.exe
C:\Program Files\DriveDefender
C:\Program Files\DriveDefender\config.ini
C:\Program Files\DriveDefender\data\application\7-Zip Compression Pgm.scr
C:\Program Files\DriveDefender\data\application\AbsoluteFTP.scr
C:\Program Files\DriveDefender\data\application\ACDSee32.scr
C:\Program Files\DriveDefender\data\application\Acoustica CD Label Maker.scr
C:\Program Files\DriveDefender\data\application\Ad-aware SE.scr
C:\Program Files\DriveDefender\data\application\Adaptec's Audio CD.scr
C:\Program Files\DriveDefender\data\application\Adaptec Easy CD Creator v4.scr
C:\Program Files\DriveDefender\data\application\Addsoft.scr
C:\Program Files\DriveDefender\data\application\AddWeb 3.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v3.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v3.1.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v4.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v5.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v6.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v7.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v5.0 LE.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v5.5.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v6.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v7.0.scr
C:\Program Files\DriveDefender\data\application\Advanced Disk Catalog.scr
C:\Program Files\DriveDefender\data\application\Advanced MP3 Catalog.scr
C:\Program Files\DriveDefender\data\application\Advanced Password Recovery.scr
C:\Program Files\DriveDefender\data\application\ahead cover designer.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGaspect.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGpano.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGview.scr
C:\Program Files\DriveDefender\data\application\Alcohol MRU List.scr
C:\Program Files\DriveDefender\data\application\Animation Shop 1.x.scr
C:\Program Files\DriveDefender\data\application\Animation Shop 3.x.scr
C:\Program Files\DriveDefender\data\application\AOL - Spool.scr
C:\Program Files\DriveDefender\data\application\ASPack.scr
C:\Program Files\DriveDefender\data\application\Avant Browser.scr
C:\Program Files\DriveDefender\data\application\AX-Icons 4.x.scr
C:\Program Files\DriveDefender\data\application\Axialis Icon Workshop 5.x.scr
C:\Program Files\DriveDefender\data\application\Axialis Media Browser.scr
C:\Program Files\DriveDefender\data\application\Babylon Builder 2.2.scr
C:\Program Files\DriveDefender\data\application\Babylon Translator.scr
C:\Program Files\DriveDefender\data\application\BlazeDVD 2.0.scr
C:\Program Files\DriveDefender\data\application\Bookreader.scr
C:\Program Files\DriveDefender\data\application\C++ Builder.scr
C:\Program Files\DriveDefender\data\application\Cabinet Manager.scr
C:\Program Files\DriveDefender\data\application\Chameleon Web Browser.scr
C:\Program Files\DriveDefender\data\application\Classify 98.scr
C:\Program Files\DriveDefender\data\application\Clicktionary 2000.scr
C:\Program Files\DriveDefender\data\application\CoffeeCup DirectFTP.scr
C:\Program Files\DriveDefender\data\application\CoffeeCup GIF Animator.scr
C:\Program Files\DriveDefender\data\application\Cool Edit 2000 1.1.scr
C:\Program Files\DriveDefender\data\application\Cool Edit Pro.scr
C:\Program Files\DriveDefender\data\application\Corel PhotoPaint 8.scr
C:\Program Files\DriveDefender\data\application\CrissCross.scr
C:\Program Files\DriveDefender\data\application\CRT 2.x.scr
C:\Program Files\DriveDefender\data\application\Cute FTP v3.0.scr
C:\Program Files\DriveDefender\data\application\Cute FTP v4.0.scr
C:\Program Files\DriveDefender\data\application\Cute MX.scr
C:\Program Files\DriveDefender\data\application\CuteFTP.scr
C:\Program Files\DriveDefender\data\application\CuteHTML.scr
C:\Program Files\DriveDefender\data\application\DataRescue_IDA.scr
C:\Program Files\DriveDefender\data\application\Delphi v3.scr
C:\Program Files\DriveDefender\data\application\Delphi v4.scr
C:\Program Files\DriveDefender\data\application\Delphi v5.scr
C:\Program Files\DriveDefender\data\application\Delphi v7.scr
C:\Program Files\DriveDefender\data\application\Disk Explorer Professional 3.scr
C:\Program Files\DriveDefender\data\application\Diskeeper 5.0.scr
C:\Program Files\DriveDefender\data\application\DivX Player.scr
C:\Program Files\DriveDefender\data\application\Download Accelerator.scr
C:\Program Files\DriveDefender\data\application\Ebay Toolbar.scr
C:\Program Files\DriveDefender\data\application\EditPad.scr
C:\Program Files\DriveDefender\data\application\EditPlus 2.scr
C:\Program Files\DriveDefender\data\application\edonkey2000.scr
C:\Program Files\DriveDefender\data\application\eMule.scr
C:\Program Files\DriveDefender\data\application\Enfish Onespace.scr
C:\Program Files\DriveDefender\data\application\Enigma Browser.scr
C:\Program Files\DriveDefender\data\application\F-Secure SSH 2.x.scr
C:\Program Files\DriveDefender\data\application\Fix-It 2000.scr
C:\Program Files\DriveDefender\data\application\FlashGet.scr
C:\Program Files\DriveDefender\data\application\FotoCanvas 2.0.scr
C:\Program Files\DriveDefender\data\application\Fotostation 4.0.scr
C:\Program Files\DriveDefender\data\application\foxit reader.scr
C:\Program Files\DriveDefender\data\application\Free Download Manager 1.x.scr
C:\Program Files\DriveDefender\data\application\FTP Explorer.scr
C:\Program Files\DriveDefender\data\application\FTP Voyager.scr
C:\Program Files\DriveDefender\data\application\Fun CD.scr
C:\Program Files\DriveDefender\data\application\Gator.scr
C:\Program Files\DriveDefender\data\application\GeoVid Video to Flash Batch Converter.scr
C:\Program Files\DriveDefender\data\application\GetRight ExplorerBar.scr
C:\Program Files\DriveDefender\data\application\GetRight.scr
C:\Program Files\DriveDefender\data\application\Go!Zilla.scr
C:\Program Files\DriveDefender\data\application\Google Deskbar.scr
C:\Program Files\DriveDefender\data\application\Google Desktop Search History.scr
C:\Program Files\DriveDefender\data\application\Google Toolbar.scr
C:\Program Files\DriveDefender\data\application\Google Video Player 1.x.scr
C:\Program Files\DriveDefender\data\application\GoZilla.scr
C:\Program Files\DriveDefender\data\application\Gravity Newsreader.scr
C:\Program Files\DriveDefender\data\application\hardcopy.scr
C:\Program Files\DriveDefender\data\application\Helios TextPad v3.scr
C:\Program Files\DriveDefender\data\application\Helios TextPad v4.scr
C:\Program Files\DriveDefender\data\application\HelpWriter.scr
C:\Program Files\DriveDefender\data\application\hexworkshop.scr
C:\Program Files\DriveDefender\data\application\Homesite 4.0.scr
C:\Program Files\DriveDefender\data\application\Hotbar 3.0.scr
C:\Program Files\DriveDefender\data\application\HotJava Browser.scr
C:\Program Files\DriveDefender\data\application\HTML Help Workshop.scr
C:\Program Files\DriveDefender\data\application\Icon Extractor.scr
C:\Program Files\DriveDefender\data\application\iMesh.scr
C:\Program Files\DriveDefender\data\application\InoculatelT PE Antivirus.scr
C:\Program Files\DriveDefender\data\application\InstallShield Express.scr
C:\Program Files\DriveDefender\data\application\InterQuick.scr
C:\Program Files\DriveDefender\data\application\Irfanview.scr
C:\Program Files\DriveDefender\data\application\Iso Buster.scr
C:\Program Files\DriveDefender\data\application\Jasc Animation Shop 3.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v5.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v6.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v7.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v8.scr
C:\Program Files\DriveDefender\data\application\Jet Photo Shell.scr
C:\Program Files\DriveDefender\data\application\juno.scr
C:\Program Files\DriveDefender\data\application\K-Lite Codec Pack.scr
C:\Program Files\DriveDefender\data\application\Kazaa Media Desktop.scr
C:\Program Files\DriveDefender\data\application\Kodak Imaging.scr
C:\Program Files\DriveDefender\data\application\LeapFTP 2.6.scr
C:\Program Files\DriveDefender\data\application\LeechFTP.scr
C:\Program Files\DriveDefender\data\application\Letterbox.scr
C:\Program Files\DriveDefender\data\application\LViewPro 2.x.scr
C:\Program Files\DriveDefender\data\application\Macromedia Dreamweaver MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Dreamweaver Ultradev 4.scr
C:\Program Files\DriveDefender\data\application\Macromedia Firework MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Fireworks 3.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash Player.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash v4.0.scr
C:\Program Files\DriveDefender\data\application\Magic ISO Maker 4.6.scr
C:\Program Files\DriveDefender\data\application\mapinfo mapmarker.scr
C:\Program Files\DriveDefender\data\application\Mass Download.scr
C:\Program Files\DriveDefender\data\application\MasterSplitter v2.1.scr
C:\Program Files\DriveDefender\data\application\McAfee Virus Scan.scr
C:\Program Files\DriveDefender\data\application\MEDA MP3 Splitter.scr
C:\Program Files\DriveDefender\data\application\Metapad.scr
C:\Program Files\DriveDefender\data\application\MGI PHOTOSUITE SE 1.x.scr
C:\Program Files\DriveDefender\data\application\MGUSOFT Setup Builder.scr
C:\Program Files\DriveDefender\data\application\Microangelo 98.scr
C:\Program Files\DriveDefender\data\application\MicroAngelo.scr
C:\Program Files\DriveDefender\data\application\Micrografx Picture Publisher v7.scr
C:\Program Files\DriveDefender\data\application\Micrografx Picture Publisher v8.scr
C:\Program Files\DriveDefender\data\application\Microsoft FrontPage Express.scr
C:\Program Files\DriveDefender\data\application\Microsoft FrontPage.scr
C:\Program Files\DriveDefender\data\application\Microsoft Help Workshop.scr
C:\Program Files\DriveDefender\data\application\Microsoft HTML Help.scr
C:\Program Files\DriveDefender\data\application\Microsoft Imaging.scr
C:\Program Files\DriveDefender\data\application\Microsoft Managemant Console.scr
C:\Program Files\DriveDefender\data\application\Microsoft Netmeeting.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 2003.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 97.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office InfoPath 2003.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office XP.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office.scr
C:\Program Files\DriveDefender\data\application\Microsoft Outlook Express 5.0.scr
C:\Program Files\DriveDefender\data\application\Microsoft Photo Editor 3.x.scr
C:\Program Files\DriveDefender\data\application\MicroSoft PhotoDraw.scr
C:\Program Files\DriveDefender\data\application\Microsoft Picture It Publishing.scr
C:\Program Files\DriveDefender\data\application\Microsoft Publisher 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Visual Studio 6.scr
C:\Program Files\DriveDefender\data\application\Microsoft Windows Paint.scr
C:\Program Files\DriveDefender\data\application\Microsoft Windows WordPad.scr
C:\Program Files\DriveDefender\data\application\Microsoft Word 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Word Backup Files.scr
C:\Program Files\DriveDefender\data\application\Microsoft Works 4.0.scr
C:\Program Files\DriveDefender\data\application\Mijenix Powerdesk 4.0.scr
C:\Program Files\DriveDefender\data\application\MIRC.scr
C:\Program Files\DriveDefender\data\application\miroMEDIA PCTV.scr
C:\Program Files\DriveDefender\data\application\mixmeister.scr
C:\Program Files\DriveDefender\data\application\Morpheus.scr
C:\Program Files\DriveDefender\data\application\MovieXone 1.0.scr
C:\Program Files\DriveDefender\data\application\Mozart 4.0.scr
C:\Program Files\DriveDefender\data\application\ms autoroute express.scr
C:\Program Files\DriveDefender\data\application\MS WORD.scr
C:\Program Files\DriveDefender\data\application\MSE.scr
C:\Program Files\DriveDefender\data\application\MSN Toolbar.scr
C:\Program Files\DriveDefender\data\application\Music Match Jukebox.scr
C:\Program Files\DriveDefender\data\application\MyWay Advertising.scr
C:\Program Files\DriveDefender\data\application\Napster Music Community.scr
C:\Program Files\DriveDefender\data\application\Naviscope.scr
C:\Program Files\DriveDefender\data\application\NEATO Labels.scr
C:\Program Files\DriveDefender\data\application\nero burning rom.scr
C:\Program Files\DriveDefender\data\application\Nero Vision.scr
C:\Program Files\DriveDefender\data\application\Net Vampire 3.x.scr
C:\Program Files\DriveDefender\data\application\netants.scr
C:\Program Files\DriveDefender\data\application\NetCaptor.scr
C:\Program Files\DriveDefender\data\application\netmeeting.scr
C:\Program Files\DriveDefender\data\application\Netsonic.scr
C:\Program Files\DriveDefender\data\application\Netzip Download Demon 3.x.scr
C:\Program Files\DriveDefender\data\application\NewsBin Pro 4.scr
C:\Program Files\DriveDefender\data\application\Norton AntiVirus 2000 (v6).scr
C:\Program Files\DriveDefender\data\application\Norton AntiVirus 2003.scr
C:\Program Files\DriveDefender\data\application\Norton Commander.scr
C:\Program Files\DriveDefender\data\application\Norton File Manager.scr
C:\Program Files\DriveDefender\data\application\Norton Firewall.scr
C:\Program Files\DriveDefender\data\application\Norton Internet Security.scr
C:\Program Files\DriveDefender\data\application\Norton LiveUpdate.scr
C:\Program Files\DriveDefender\data\application\Norton Utilities 2000.scr
C:\Program Files\DriveDefender\data\application\NotePad Plus.scr
C:\Program Files\DriveDefender\data\application\notetab lite.scr
C:\Program Files\DriveDefender\data\application\NoteTab Pro.scr
C:\Program Files\DriveDefender\data\application\Object Rescue.scr
C:\Program Files\DriveDefender\data\application\OmniPage 10.0.scr
C:\Program Files\DriveDefender\data\application\OnTrack Powerdesk 4.scr
C:\Program Files\DriveDefender\data\application\Ontrack PowerDesk 5.scr
C:\Program Files\DriveDefender\data\application\PackageForTheWeb.scr
C:\Program Files\DriveDefender\data\application\Paint Shop Pro 5.0.scr
C:\Program Files\DriveDefender\data\application\Paint Shop Pro 7.0.scr
C:\Program Files\DriveDefender\data\application\Password Safe.scr
C:\Program Files\DriveDefender\data\application\PE Explorer 1.95.scr
C:\Program Files\DriveDefender\data\application\Personal Ancestral File.scr
C:\Program Files\DriveDefender\data\application\photo magic 4.0.scr
C:\Program Files\DriveDefender\data\application\PhotoCanvas 2.0.scr
C:\Program Files\DriveDefender\data\application\Photodex Compupic Pro.scr
C:\Program Files\DriveDefender\data\application\PhotoDraw 2000.scr
C:\Program Files\DriveDefender\data\application\PhotoImpact 8.0.scr
C:\Program Files\DriveDefender\data\application\PhotoImpact Viewer 4.0.scr
C:\Program Files\DriveDefender\data\application\PicoZip.scr
C:\Program Files\DriveDefender\data\application\PictureIt Digital Image Pro 7.0.scr
C:\Program Files\DriveDefender\data\application\PKZip for Windows v2.60.03+.scr
C:\Program Files\DriveDefender\data\application\PolyView.scr
C:\Program Files\DriveDefender\data\application\Popup Purger.scr
C:\Program Files\DriveDefender\data\application\PopUpCop.scr
C:\Program Files\DriveDefender\data\application\Power archiver.scr
C:\Program Files\DriveDefender\data\application\PowerArc.scr
C:\Program Files\DriveDefender\data\application\PowerDVD.scr
C:\Program Files\DriveDefender\data\application\PowerZip.scr
C:\Program Files\DriveDefender\data\application\Privacy Eraser Pro.scr
C:\Program Files\DriveDefender\data\application\Putty hostkeys.scr
C:\Program Files\DriveDefender\data\application\PYTHON.scr
C:\Program Files\DriveDefender\data\application\QuickTime.scr
C:\Program Files\DriveDefender\data\application\Real Audio Player v6 v7 v8.scr
C:\Program Files\DriveDefender\data\application\Real Download v4.scr
C:\Program Files\DriveDefender\data\application\RealNetworks Real Download.scr
C:\Program Files\DriveDefender\data\application\RealOne & RealPlayer.scr
C:\Program Files\DriveDefender\data\application\RealVNC.scr
C:\Program Files\DriveDefender\data\application\RegEdit.scr
C:\Program Files\DriveDefender\data\application\Roxio Easy CD Creator.scr
C:\Program Files\DriveDefender\data\application\Save Now.scr
C:\Program Files\DriveDefender\data\application\Scour Exchange.scr
C:\Program Files\DriveDefender\data\application\Seal Module Mlayer.scr
C:\Program Files\DriveDefender\data\application\SearchAndBrowse.scr
C:\Program Files\DriveDefender\data\application\SearchAnt.scr
C:\Program Files\DriveDefender\data\application\SearchV.scr
C:\Program Files\DriveDefender\data\application\SearchWolf.scr
C:\Program Files\DriveDefender\data\application\SearchWWW.scr
C:\Program Files\DriveDefender\data\application\SideStep.scr
C:\Program Files\DriveDefender\data\application\Skype.scr
C:\Program Files\DriveDefender\data\application\Smart Explorer.scr
C:\Program Files\DriveDefender\data\application\SmartDraw 6.scr
C:\Program Files\DriveDefender\data\application\smartftp.scr
C:\Program Files\DriveDefender\data\application\SmartPops.scr
C:\Program Files\DriveDefender\data\application\Sonic Foundry's Acid 2.0.scr
C:\Program Files\DriveDefender\data\application\Sonique Player.scr
C:\Program Files\DriveDefender\data\application\Spinner Plus.scr
C:\Program Files\DriveDefender\data\application\SpotOn Browser plugin.scr
C:\Program Files\DriveDefender\data\application\Staff-FTP.scr
C:\Program Files\DriveDefender\data\application\Star Downloader.scr
C:\Program Files\DriveDefender\data\application\Stardialer.scr
C:\Program Files\DriveDefender\data\application\StarOffice 5.x.scr
C:\Program Files\DriveDefender\data\application\SubmitWolf Pro.scr
C:\Program Files\DriveDefender\data\application\Sun Java Cache.scr
C:\Program Files\DriveDefender\data\application\SureThing CD Labeler.scr
C:\Program Files\DriveDefender\data\application\SVAPlayer.scr
C:\Program Files\DriveDefender\data\application\SWiSH 2.0.scr
C:\Program Files\DriveDefender\data\application\Teleport Pro.scr
C:\Program Files\DriveDefender\data\application\Telnet.scr
C:\Program Files\DriveDefender\data\application\Text Pad 4.x.scr
C:\Program Files\DriveDefender\data\application\The Playa.scr
C:\Program Files\DriveDefender\data\application\Third Voice 1.x.scr
C:\Program Files\DriveDefender\data\application\Thumbs Plus 4.scr
C:\Program Files\DriveDefender\data\application\Timesink.scr
C:\Program Files\DriveDefender\data\application\TinyBar.scr
C:\Program Files\DriveDefender\data\application\TOPicks.scr
C:\Program Files\DriveDefender\data\application\Total Commander.scr
C:\Program Files\DriveDefender\data\application\transponder.scr
C:\Program Files\DriveDefender\data\application\Trellians Classify 98.scr
C:\Program Files\DriveDefender\data\application\Tribal Voice's PowWow.scr
C:\Program Files\DriveDefender\data\application\Trojan Remover.scr
C:\Program Files\DriveDefender\data\application\TSADBOT.scr
C:\Program Files\DriveDefender\data\application\UCmore toolbar.scr
C:\Program Files\DriveDefender\data\application\Ulead Gif Animator v4.0.scr
C:\Program Files\DriveDefender\data\application\Ulead GIF Animator v5.0.scr
C:\Program Files\DriveDefender\data\application\Ulead Photo Explorer v4.2.scr
C:\Program Files\DriveDefender\data\application\Ulead Photo Express.scr
C:\Program Files\DriveDefender\data\application\Ulead PhotoImpact v5.scr
C:\Program Files\DriveDefender\data\application\Ulead VideoStudio 4.0.scr
C:\Program Files\DriveDefender\data\application\Ultimate Paint.scr
C:\Program Files\DriveDefender\data\application\ULTImate Technology BV v5.5.scr
C:\Program Files\DriveDefender\data\application\UltraEdit v4.scr
C:\Program Files\DriveDefender\data\application\UltraEdit v7.scr
C:\Program Files\DriveDefender\data\application\UltraEdit.scr
C:\Program Files\DriveDefender\data\application\UltraISO 7.x.scr
C:\Program Files\DriveDefender\data\application\uTorrent 1.x.scr
C:\Program Files\DriveDefender\data\application\VBoxEdit.scr
C:\Program Files\DriveDefender\data\application\VirtualDub.scr
C:\Program Files\DriveDefender\data\application\VMWARE.scr
C:\Program Files\DriveDefender\data\application\Vueprint.scr
C:\Program Files\DriveDefender\data\application\VX2 Respondmiter.scr
C:\Program Files\DriveDefender\data\application\W32Dasm.scr
C:\Program Files\DriveDefender\data\application\Web Ferret v3.scr
C:\Program Files\DriveDefender\data\application\WebFerret.scr
C:\Program Files\DriveDefender\data\application\webhancer.scr
C:\Program Files\DriveDefender\data\application\Wildstylz.scr
C:\Program Files\DriveDefender\data\application\WildTangent.scr
C:\Program Files\DriveDefender\data\application\WinAce.scr
C:\Program Files\DriveDefender\data\application\winamp.scr
C:\Program Files\DriveDefender\data\application\Windows Commander.scr
C:\Program Files\DriveDefender\data\application\WinHTTrack Website Copier.scr
C:\Program Files\DriveDefender\data\application\WinOnCD.scr
C:\Program Files\DriveDefender\data\application\WinRar.scr
C:\Program Files\DriveDefender\data\application\Winshow.scr
C:\Program Files\DriveDefender\data\application\WinUAE.scr
C:\Program Files\DriveDefender\data\application\Winupie.scr
C:\Program Files\DriveDefender\data\application\WinVNC.scr
C:\Program Files\DriveDefender\data\application\WinZip v8.scr
C:\Program Files\DriveDefender\data\application\Wise Installer.scr
C:\Program Files\DriveDefender\data\application\Worm.Sobig.scr
C:\Program Files\DriveDefender\data\application\WurldMedia.scr
C:\Program Files\DriveDefender\data\application\Xara 3D v4.x.scr
C:\Program Files\DriveDefender\data\application\Xara Webstyle.scr
C:\Program Files\DriveDefender\data\application\XDialer.scr
C:\Program Files\DriveDefender\data\application\XING MP3 PLAYER.scr
C:\Program Files\DriveDefender\data\application\XLoader.scr
C:\Program Files\DriveDefender\data\application\Xolox.scr
C:\Program Files\DriveDefender\data\application\Xrenoder.scr
C:\Program Files\DriveDefender\data\application\Xupiter toolbar.scr
C:\Program Files\DriveDefender\data\application\Xzoomy.scr
C:\Program Files\DriveDefender\data\application\Yahoo Player.scr
C:\Program Files\DriveDefender\data\application\Yahoo! Toolbar.scr
C:\Program Files\DriveDefender\data\application\Yamaha S-YXG100.scr
C:\Program Files\DriveDefender\data\application\ZeroPopup.scr
C:\Program Files\DriveDefender\data\application\ZipMagic 2000.scr
C:\Program Files\DriveDefender\data\application\Zone Alarm.scr
C:\Program Files\DriveDefender\data\brand.dat
C:\Program Files\DriveDefender\data\firefox\Firefox - cache.scr
C:\Program Files\DriveDefender\data\firefox\Firefox - cookies.scr
C:\Program Files\DriveDefender\data\firefox\Firefox - history.scr
C:\Program Files\DriveDefender\data\GDCW.exe
C:\Program Files\DriveDefender\data\ie\ie cookies.scr
C:\Program Files\DriveDefender\data\ie\ie internet cache.scr
C:\Program Files\DriveDefender\data\ie\ie privacy history.scr
C:\Program Files\DriveDefender\data\ie\ie typed urls.scr
C:\Program Files\DriveDefender\data\ie\ie url history.scr
C:\Program Files\DriveDefender\data\ie\windows autocomplete.scr
C:\Program Files\DriveDefender\data\ie\windows downloaded files.scr
C:\Program Files\DriveDefender\data\ie\windows favorites order.scr
C:\Program Files\DriveDefender\data\ie\windows passwords.scr
C:\Program Files\DriveDefender\data\IH.exe
C:\Program Files\DriveDefender\data\messanger\aim.scr
C:\Program Files\DriveDefender\data\messanger\AOL Bart.scr
C:\Program Files\DriveDefender\data\messanger\AOL Instant Messenger.scr
C:\Program Files\DriveDefender\data\messanger\aolim.scr
C:\Program Files\DriveDefender\data\messanger\icq - download.scr
C:\Program Files\DriveDefender\data\messanger\icq - logs.scr
C:\Program Files\DriveDefender\data\messanger\Miranda ICQ.scr
C:\Program Files\DriveDefender\data\messanger\MSN Messenger User Account.scr
C:\Program Files\DriveDefender\data\messanger\Trillian cache.scr
C:\Program Files\DriveDefender\data\messanger\trillian downloads.scr
C:\Program Files\DriveDefender\data\messanger\trillian logs.scr
C:\Program Files\DriveDefender\data\messanger\yahoo messenger logs.scr
C:\Program Files\DriveDefender\data\messanger\Yahoo! Messenger.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - autocomplete.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - cache.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - cookies.scr
C:\Program Files\DriveDefender\data\mozilla\Mozilla - history.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - saved passwords.scr
C:\Program Files\DriveDefender\data\mozilla\Mozilla - typed urls.scr
C:\Program Files\DriveDefender\data\netscape\netscape - cache.scr
C:\Program Files\DriveDefender\data\netscape\netscape - cookies.scr
C:\Program Files\DriveDefender\data\netscape\netscape - history.scr
C:\Program Files\DriveDefender\data\netscape\Netscape Navigator - last trusted apps.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - cache.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - cookies.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - Download.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - history.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - misc.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - mru.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - visited.scr
C:\Program Files\DriveDefender\data\sfl.dat
C:\Program Files\DriveDefender\data\skin.skn
C:\Program Files\DriveDefender\data\sr.log
C:\Program Files\DriveDefender\data\srl.dat
C:\Program Files\DriveDefender\data\windows\Direct Draw.scr
C:\Program Files\DriveDefender\data\windows\direct input.scr
C:\Program Files\DriveDefender\data\windows\last files.scr
C:\Program Files\DriveDefender\data\windows\Microsoft Send-To Extensions.scr
C:\Program Files\DriveDefender\data\windows\windows applog.scr
C:\Program Files\DriveDefender\data\windows\windows documents.scr
C:\Program Files\DriveDefender\data\windows\Windows Downloaded Installations.scr
C:\Program Files\DriveDefender\data\windows\Windows Empty Recycle Bin.scr
C:\Program Files\DriveDefender\data\windows\Windows Explorer User Assistant history.scr
C:\Program Files\DriveDefender\data\windows\windows findfile.scr
C:\Program Files\DriveDefender\data\windows\Windows FTP Accounts.scr
C:\Program Files\DriveDefender\data\windows\windows hotfix uninstall.scr
C:\Program Files\DriveDefender\data\windows\windows logfiles.scr
C:\Program Files\DriveDefender\data\windows\Windows Mapped Drives.scr
C:\Program Files\DriveDefender\data\windows\windows media player 7.scr
C:\Program Files\DriveDefender\data\windows\windows minidump.scr
C:\Program Files\DriveDefender\data\windows\windows MUICache.scr
C:\Program Files\DriveDefender\data\windows\windows network links.scr
C:\Program Files\DriveDefender\data\windows\windows opensave.scr
C:\Program Files\DriveDefender\data\windows\windows openwith.scr
C:\Program Files\DriveDefender\data\windows\windows prefetch.scr
C:\Program Files\DriveDefender\data\windows\windows reg history.scr
C:\Program Files\DriveDefender\data\windows\windows run history.scr
C:\Program Files\DriveDefender\data\windows\windows search.scr
C:\Program Files\DriveDefender\data\windows\windows start menu order.scr
C:\Program Files\DriveDefender\data\windows\windows stream history.scr
C:\Program Files\DriveDefender\data\windows\windows temp.scr
C:\Program Files\DriveDefender\data\windows\windows update.scr
C:\Program Files\DriveDefender\data\windows\Windows XP Unread Mail Count.scr
C:\Program Files\DriveDefender\default.ini
C:\Program Files\DriveDefender\diagnosis.dat
C:\Program Files\DriveDefender\errors.log
C:\Program Files\DriveDefender\GDC.exe
C:\Program Files\DriveDefender\GDC.url
C:\Program Files\DriveDefender\gfx\button_arrow.bmp
C:\Program Files\DriveDefender\gfx\button_arrow2.bmp
C:\Program Files\DriveDefender\gfx\buy.bmp
C:\Program Files\DriveDefender\gfx\checked.bmp
C:\Program Files\DriveDefender\gfx\custom.bmp
C:\Program Files\DriveDefender\gfx\customcleanup.bmp
C:\Program Files\DriveDefender\gfx\header.bmp
C:\Program Files\DriveDefender\gfx\icon.ico
C:\Program Files\DriveDefender\gfx\icon_about.ico
C:\Program Files\DriveDefender\gfx\icon_checked.ico
C:\Program Files\DriveDefender\gfx\icon_grayed.ico
C:\Program Files\DriveDefender\gfx\icon_link.ico
C:\Program Files\DriveDefender\gfx\icon_manual.ico
C:\Program Files\DriveDefender\gfx\icon_quit.ico
C:\Program Files\DriveDefender\gfx\icon_support.ico
C:\Program Files\DriveDefender\gfx\icon_unchecked.ico
C:\Program Files\DriveDefender\gfx\icon_uncheked.ico
C:\Program Files\DriveDefender\gfx\icon_uninstall.ico
C:\Program Files\DriveDefender\gfx\icon_update.ico
C:\Program Files\DriveDefender\gfx\log.bmp
C:\Program Files\DriveDefender\gfx\logo.bmp
C:\Program Files\DriveDefender\gfx\register.bmp
C:\Program Files\DriveDefender\gfx\settings.bmp
C:\Program Files\DriveDefender\gfx\sign_green.bmp
C:\Program Files\DriveDefender\gfx\sign_green_big.bmp
C:\Program Files\DriveDefender\gfx\sign_red.bmp
C:\Program Files\DriveDefender\gfx\sign_red_big.bmp
C:\Program Files\DriveDefender\gfx\sign_yellow.bmp
C:\Program Files\DriveDefender\gfx\splash.bmp
C:\Program Files\DriveDefender\gfx\status_good.bmp
C:\Program Files\DriveDefender\gfx\status_risk.bmp
C:\Program Files\DriveDefender\gfx\support.bmp
C:\Program Files\DriveDefender\gfx\sys_shield.bmp
C:\Program Files\DriveDefender\gfx\sys_update.bmp
C:\Program Files\DriveDefender\gfx\sysstatus.bmp
C:\Program Files\DriveDefender\gfx\unchecked.bmp
C:\Program Files\DriveDefender\gfx\update.bmp
C:\Program Files\DriveDefender\lang\Arabic.lng
C:\Program Files\DriveDefender\lang\Brazilian.lng
C:\Program Files\DriveDefender\lang\Catalan.lng
C:\Program Files\DriveDefender\lang\Chinese.lng
C:\Program Files\DriveDefender\lang\Czech.lng
C:\Program Files\DriveDefender\lang\Danish.lng
C:\Program Files\DriveDefender\lang\Dutch.lng
C:\Program Files\DriveDefender\lang\English.lng
C:\Program Files\DriveDefender\lang\Finnish.lng
C:\Program Files\DriveDefender\lang\French.lng
C:\Program Files\DriveDefender\lang\German.lng
C:\Program Files\DriveDefender\lang\Greek.lng
C:\Program Files\DriveDefender\lang\Hebrew.lng
C:\Program Files\DriveDefender\lang\Italian.lng
C:\Program Files\DriveDefender\lang\Japanese.lng
C:\Program Files\DriveDefender\lang\Malayan.lng
C:\Program Files\DriveDefender\lang\Norwegian.lng
C:\Program Files\DriveDefender\lang\Polish.lng
C:\Program Files\DriveDefender\lang\Portuguese.lng
C:\Program Files\DriveDefender\lang\Russian.lng
C:\Program Files\DriveDefender\lang\Slovenian.lng
C:\Program Files\DriveDefender\lang\Spanish.lng
C:\Program Files\DriveDefender\lang\Swedish.lng
C:\Program Files\DriveDefender\lang\Thai.lng
C:\Program Files\DriveDefender\lang\Turkish.lng
C:\Program Files\DriveDefender\License.rtf
C:\Program Files\DriveDefender\plug\GDCPatch.exe
C:\Program Files\DriveDefender\plug\stpHlpr.dll
C:\Program Files\DriveDefender\Readme.rtf
C:\Program Files\DriveDefender\runtime
C:\Program Files\DriveDefender\Scan_report.htm
C:\Program Files\DriveDefender\support.url
C:\Program Files\DriveDefender\unins000.dat
C:\Program Files\DriveDefender\unins000.exe
C:\Program Files\DriveDefender\upd_cr.log
C:\Program Files\DriveDefender\updater.dat
C:\Program Files\DriveDefender\updater.exe
C:\Program Files\DriveDefender\ver.dat
C:\Program Files\Fichiers communs\DriveDefender
C:\Program Files\Fichiers communs\DriveDefender\stm.exe
C:\Program Files\Fichiers communs\StorageProtector
C:\Program Files\Fichiers communs\StorageProtector\strpmon.exe
C:\Program Files\FunWebProducts
C:\Program Files\MyWebSearch
C:\Program Files\MyWebSearch\bar\History\search2
C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat
C:\Program Files\outerinfo
C:\Program Files\outerinfo\FF\chrome.manifest
C:\Program Files\outerinfo\FF\components\OuterinfoAds.xpt
C:\Program Files\outerinfo\FF\install.rdf
C:\Program Files\outerinfo\Terms.rtf
C:\Program Files\Starware370
C:\Program Files\Starware370\brand.bmp
C:\Program Files\Starware370\icons\star_16.ico
C:\Program Files\Starware370\Starware370Config.xml
C:\Program Files\Starware370\Starware370Uninstall.exe
C:\WINDOWS\BM5fba1451.xml
C:\WINDOWS\curity~1
C:\WINDOWS\curity~1\j?vaw.exe
C:\WINDOWS\dobe~1
C:\WINDOWS\dobe~1\?dobe\
C:\WINDOWS\dobe~1\winlogon.exe
C:\WINDOWS\pskt.ini
C:\WINDOWS\system32\autvhmom.ini
C:\WINDOWS\system32\awtttst.dll
C:\WINDOWS\system32\cbeeg.ini
C:\WINDOWS\system32\cbeeg.ini2
C:\WINDOWS\system32\cbxxxuv.dll
C:\WINDOWS\system32\ddcawts.dll
C:\WINDOWS\system32\ddccyab.dll
C:\WINDOWS\system32\ddcdaby.dll
C:\WINDOWS\system32\fcccyvw.dll
C:\WINDOWS\system32\fccyvvs.dll
C:\WINDOWS\system32\gebccaa.dll
C:\WINDOWS\system32\gebyxvw.dll
C:\WINDOWS\system32\geebc.dll
C:\WINDOWS\system32\jkkjijk.dll
C:\WINDOWS\system32\jkklkhg.dll
C:\WINDOWS\system32\ljjhfdb.dll
C:\WINDOWS\system32\mljghec.dll
C:\WINDOWS\system32\mljhghe.dll
C:\WINDOWS\system32\mljji.dll
C:\WINDOWS\system32\mnnmp.ini
C:\WINDOWS\system32\mnnmp.ini2
C:\WINDOWS\system32\nGpxx18
C:\WINDOWS\system32\pmnnm.dll
C:\WINDOWS\system32\qomjhif.dll
C:\WINDOWS\system32\qomllkl.dll
C:\WINDOWS\system32\tuvvuut.dll
C:\WINDOWS\system32\UpMedia
C:\WINDOWS\system32\UpMedia\ContentTool.dll
C:\WINDOWS\system32\UpMedia\SearchTool.dll
C:\WINDOWS\system32\UpMedia\uninstallSE.exe
C:\WINDOWS\system32\wvurrpp.dll
C:\WINDOWS\system32\wyadd.ini
C:\WINDOWS\system32\wyadd.ini2
C:\WINDOWS\system32\xxyyxvw.dll
C:\winlogo.exe

.
((((((((((((((((((((((((((((( Fichiers créés 2008-02-18 to 2008-03-18 ))))))))))))))))))))))))))))))))))))
.

2008-03-18 21:04 . 2008-03-18 22:09 <REP> d-------- C:\Program Files\Navilog1
2008-03-18 20:54 . 2008-03-18 20:54 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-18 20:53 . 2008-03-18 21:02 <REP> d-------- C:\SDFix
2008-03-18 19:46 . <REP> C:\WINDOWS\LastGood.Tmp
2008-03-16 09:06 . 2008-03-16 11:03 <REP> d-------- C:\VundoFix Backups
2008-03-16 09:05 . 2008-03-16 09:05 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-03-16 00:23 . 2008-03-16 00:23 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\DefenseNetSurfage
2008-03-15 23:37 . 2008-03-15 23:37 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\BitDefender
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage r‚seau
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage d'impression
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\ModŠles
2008-03-15 18:29 . 2004-08-16 17:19 <REP> dr------- C:\Documents and Settings\Administrateur\Mes documents
2008-03-15 18:29 . 2004-08-16 16:55 <REP> dr------- C:\Documents and Settings\Administrateur\Menu D‚marrer
2008-03-15 18:29 . 2006-05-18 19:29 <REP> dr------- C:\Documents and Settings\Administrateur\Favoris
2008-03-15 18:29 . 2008-03-18 22:15 <REP> dr------- C:\Documents and Settings\Administrateur\Bureau
2008-03-15 18:29 . 2006-05-18 19:29 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver
2008-03-15 18:29 . 2006-05-18 19:32 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\Symantec
2008-03-03 15:08 . 2008-03-03 15:08 <REP> d-------- C:\Documents and Settings\Manu.SN047852920098\Application Data\DefenseNetSurfage
2008-03-03 15:01 . 2008-03-03 15:01 <REP> d-------- C:\Documents and Settings\Manu.SN047852920098\Application Data\BitDefender
2008-03-02 21:56 . 2008-03-16 00:03 121 --a------ C:\WINDOWS\bdagent.INI
2008-03-02 18:36 . 2008-03-02 18:36 <REP> d-------- C:\Documents and Settings\Stephane\Application Data\BitDefender
2008-03-02 15:23 . 2008-03-02 15:23 <REP> d-------- C:\Program Files\BitDefender
2008-03-02 15:23 . 2008-03-02 15:23 <REP> d-------- C:\Documents and Settings\All Users\Application Data\BitDefender
2008-03-02 15:22 . 2008-03-02 15:23 <REP> d-------- C:\Program Files\Fichiers communs\BitDefender
2008-03-02 15:17 . 2008-03-02 15:17 89,664 --a------ C:\WINDOWS\system32\bigfmnxp.dll
2008-03-02 15:14 . 2008-03-05 21:54 1,374 ---hs---- C:\WINDOWS\system32\fitvosrh.ini
2008-03-02 15:12 . 2008-03-02 15:12 91,712 --a------ C:\WINDOWS\system32\bwqbinlh.dll
2008-03-02 14:48 . 2008-03-02 14:48 223 --a------ C:\WINDOWS\system32\3107.bat
2008-03-02 14:07 . 2008-03-02 15:11 474 ---hs---- C:\WINDOWS\system32\xkqeingo.ini
2008-03-02 14:04 . 2008-03-02 14:04 89,664 --a------ C:\WINDOWS\system32\lkveatgu.dll
2008-03-02 14:02 . 2008-03-02 14:02 91,712 --a------ C:\WINDOWS\system32\obotfdrm.dll
2008-03-02 14:02 . 2008-03-02 14:02 52,736 --a------ C:\app.MSNFix
2008-03-02 14:02 . 2008-03-02 14:02 223 --a------ C:\7892.bat
2008-03-01 15:24 . 2008-03-01 15:24 223 --a------ C:\Documents and Settings\Stephane\9363.bat
2008-03-01 15:10 . 2008-03-01 15:10 223 --a------ C:\Documents and Settings\Stephane\1902.bat
2008-03-01 14:54 . 2008-03-01 14:54 223 --a------ C:\Documents and Settings\Stephane\8473.bat
2008-03-01 14:39 . 2008-03-01 15:24 36,864 --a------ C:\Documents and Settings\Stephane\winlogo.exe
2008-03-01 14:39 . 2008-03-01 14:39 223 --a------ C:\Documents and Settings\Stephane\1940.bat
2008-03-01 13:56 . 2008-03-01 13:56 223 --a------ C:\Documents and Settings\Stephane\6622.bat
2008-03-01 13:26 . 2008-03-01 13:26 223 --a------ C:\Documents and Settings\Stephane\2446.bat
2008-03-01 13:11 . 2008-03-01 13:11 223 --a------ C:\Documents and Settings\Stephane\3608.bat
2008-03-01 12:56 . 2008-03-01 12:56 223 --a------ C:\Documents and Settings\Stephane\7694.bat
2008-03-01 12:14 . 2008-03-01 12:14 89,664 --a------ C:\WINDOWS\system32\urmoexex.dll
2008-03-01 12:11 . 2008-03-01 12:11 85,568 --a------ C:\WINDOWS\system32\urofwppt.dll
2008-03-01 12:11 . 2008-03-01 12:19 1,014 ---hs---- C:\WINDOWS\system32\tppwforu.ini
2008-03-01 12:08 . 2008-03-01 12:08 91,712 --a------ C:\WINDOWS\system32\vnvexgyg.dll
2008-03-01 10:35 . 2008-03-01 10:35 223 --a------ C:\Documents and Settings\Stephane\6080.bat
2008-02-29 21:49 . 2008-02-29 21:49 223 --a------ C:\Documents and Settings\Stephane\2509.bat
2008-02-29 21:34 . 2008-02-29 21:34 223 --a------ C:\Documents and Settings\Stephane\5819.bat
2008-02-29 21:19 . 2008-02-29 21:19 223 --a------ C:\Documents and Settings\Stephane\4506.bat
2008-02-29 21:04 . 2008-02-29 21:04 223 --a------ C:\Documents and Settings\Stephane\2385.bat
2008-02-29 20:49 . 2008-02-29 20:49 223 --a------ C:\Documents and Settings\Stephane\3477.bat
2008-02-29 20:42 . 2008-03-01 12:09 894 ---hs---- C:\WINDOWS\system32\sffnujkx.ini
2008-02-29 20:22 . 2008-02-29 20:22 223 --a------ C:\Documents and Settings\Stephane\9796.bat
2008-02-29 18:07 . 2008-03-16 16:41 143 --a------ C:\WINDOWS\system32\mcrh.MSNFix
2008-02-29 18:00 . 2008-02-29 20:34 714 ---hs---- C:\WINDOWS\system32\cpydvapy.ini
2008-02-29 17:58 . 2008-02-29 17:58 <REP> d-------- C:\Documents and Settings\Stephane\Application Data\DefenseNetSurfage
2008-02-29 11:49 . 2008-02-29 11:49 84,544 --a------ C:\WINDOWS\system32\momhvtua.dll
2008-02-29 11:47 . 2008-02-29 11:47 91,712 --a------ C:\WINDOWS\system32\rtqarqus.dll
2008-02-29 11:47 . 2008-02-29 11:47 88,640 --a------ C:\WINDOWS\system32\bilroequ.dll
2008-02-29 11:44 . 2008-02-29 11:44 <REP> d-------- C:\Program Files\Fichiers communs\DefenseNetSurfage
2008-02-29 11:44 . 2008-03-02 16:19 <REP> d-------- C:\Program Files\DefenseNetSurfage
2008-02-29 11:44 . 2008-02-29 11:44 <REP> d-------- C:\Documents and Settings\All Users\Application Data\DefenseNetSurfage
2008-02-29 11:44 . 2007-02-13 08:09 388,126 --a------ C:\WINDOWS\system32\sqlite3.dll
2008-02-28 19:21 . 2008-02-29 11:19 354 ---hs---- C:\WINDOWS\system32\wovxiagk.ini
2008-02-28 18:04 . 2008-02-28 18:04 89,664 --a------ C:\WINDOWS\system32\jeqcsybo.dll
2008-02-28 18:02 . 2008-02-28 18:02 294 ---hs---- C:\WINDOWS\system32\vusengjh.ini
2008-02-28 18:01 . 2008-02-28 18:01 84,544 --a------ C:\WINDOWS\system32\hjgnesuv.dll
2008-02-28 17:59 . 2008-02-28 17:59 91,712 --a------ C:\WINDOWS\system32\ldiohxrr.dll
2008-02-28 17:23 . 2008-02-28 17:23 223 --a------ C:\Documents and Settings\Stephane\4782.bat
2008-02-27 19:29 . 2008-02-27 19:29 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Messenger Plus!
2008-02-27 19:13 . 2008-02-27 19:13 91,712 --a------ C:\WINDOWS\system32\mpkfvgxq.dll
2008-02-27 19:13 . 2008-02-27 19:13 90,176 --a------ C:\WINDOWS\system32\bawfkfsf.dll
2008-02-27 19:13 . 2008-02-27 19:13 85,056 --a------ C:\WINDOWS\system32\fsrhwnca.dll
2008-02-27 19:13 . 2008-02-27 20:09 834 ---hs---- C:\WINDOWS\system32\acnwhrsf.ini
2008-02-27 18:58 . 2008-03-02 15:12 136,627 --a------ C:\WINDOWS\POTA777444.exe
2008-02-27 18:47 . 2008-02-27 18:56 594 ---hs---- C:\WINDOWS\system32\njsbrquw.ini
2008-02-27 18:44 . 2008-02-27 18:44 90,176 --a------ C:\WINDOWS\system32\gvhbocdr.dll
2008-02-27 18:43 . 2008-02-27 18:43 91,712 --a------ C:\WINDOWS\system32\ggpfxutb.dll
2008-02-26 20:09 . 2008-02-27 18:38 474 ---hs---- C:\WINDOWS\system32\krphkvon.ini
2008-02-26 20:04 . 2008-02-26 20:04 91,712 --a------ C:\WINDOWS\system32\bunvjdev.dll
2008-02-26 20:04 . 2008-02-26 20:04 89,152 --a------ C:\WINDOWS\system32\jfwyfwld.dll
2008-02-26 19:03 . 2008-02-26 19:57 354 ---hs---- C:\WINDOWS\system32\hhsncxbx.ini
2008-02-26 18:07 . 2008-02-26 18:07 223 --a------ C:\Documents and Settings\Manu.SN047852920098\9210.bat
2008-02-26 18:06 . 2008-02-26 18:06 124,050 --a------ C:\WINDOWS\system32\wprfruayd.exe
2008-02-26 18:04 . 2008-02-26 18:04 36,864 --a------ C:\Documents and Settings\Manu.SN047852920098\winlogo.exe
2008-02-26 17:50 . 2008-02-26 17:50 223 --a------ C:\Documents and Settings\Stephane\8781.bat
2008-02-26 11:15 . 2008-02-26 11:15 414 ---hs---- C:\WINDOWS\system32\tgtavila.ini
2008-02-26 11:14 . 2008-02-26 11:15 86,080 --a------ C:\WINDOWS\system32\alivatgt.dll
2008-02-26 11:10 . 2008-02-26 11:11 89,152 --a------ C:\WINDOWS\system32\wqihcfji.dll
2008-02-26 11:08 . 2008-02-26 11:08 91,712 --a------ C:\WINDOWS\system32\vtlgafsf.dll
2008-02-25 20:49 . 2008-02-25 20:49 223 --a------ C:\Documents and Settings\Stephane\3730.bat
2008-02-25 20:43 . 2008-02-26 11:08 354 ---hs---- C:\WINDOWS\system32\pjctwdwn.ini
2008-02-25 20:36 . 2008-02-25 20:36 223 --a------ C:\Documents and Settings\Stephane\2268.bat
2008-02-25 17:45 . 2008-02-25 17:45 223 --a------ C:\Documents and Settings\Stephane\3132.bat
2008-02-25 10:40 . 2008-03-15 19:24 <REP> d-------- C:\WINDOWS\system32\iDlo18
2008-02-24 12:40 . 2008-03-15 19:24 <REP> d-------- C:\WINDOWS\system32\fr3
2008-02-24 12:40 . 2008-03-16 15:37 <REP> d-------- C:\WINDOWS\system32\br1
2008-02-24 12:40 . 2008-03-02 15:39 <REP> d-------- C:\WINDOWS\system32\bev4
2008-02-24 12:40 . 2008-02-24 12:40 <REP> d-------- C:\WINDOWS\system32\auz9

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-15 19:41 --------- d-----w C:\Program Files\eMule
2008-03-15 18:26 --------- d-----w C:\Program Files\Circle Developement
2008-03-15 18:24 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\great scr logo
2008-03-15 16:50 --------- d-----w C:\Program Files\Fichiers communs\Symantec Shared
2008-03-04 12:33 --------- d-----w C:\Documents and Settings\Stephane\Application Data\VMNTOOLBAR
2008-03-03 14:22 374 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb6334.dat
2008-03-02 19:24 --------- d-----w C:\Program Files\Lavasoft
2008-03-02 19:19 --------- d-----w C:\Program Files\Micro Application
2008-02-28 16:16 --------- d-----w C:\Program Files\Windows Live
2008-02-27 19:13 --------- d-----w C:\Program Files\Java
2008-02-27 18:31 --------- d-----w C:\Program Files\Winamp
2008-02-27 18:14 --------- d-----w C:\Documents and Settings\All Users\Application Data\Readme Live Axis Tons
2008-02-27 18:13 --------- d-----w C:\Program Files\LimeWire
2008-02-26 17:20 18,432 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb41.dat
2008-02-26 17:15 555 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb8467.dat
2008-02-26 17:15 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\VMNTOOLBAR
2008-02-26 17:08 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\LimeWire
2008-02-23 12:11 --------- d-----w C:\Program Files\Messenger Plus! Live
2008-02-14 18:15 --------- d-----w C:\Program Files\Windows Media Components
2008-02-14 18:13 --------- d-----w C:\Program Files\NRJ
2008-02-01 10:17 587,264 ----a-w C:\WINDOWS\WLXPGSS.SCR
2008-01-28 15:57 --------- d-----w C:\Documents and Settings\Stephane\Application Data\MAGIX
2008-01-13 17:32 231,872 ----a-w C:\WINDOWS\EasyGifAnimator_Toolbar_Uninstaller_5781.exe
2008-01-11 05:36 44,544 ----a-w C:\WINDOWS\system32\dllcache\pngfilt.dll
2007-12-24 16:04 24,575 ----a-w C:\WINDOWS\system32\Bwinsysmwappio61.dll
2007-12-19 22:53 347,136 ----a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll
2007-12-18 09:51 179,584 ------w C:\WINDOWS\system32\dllcache\mrxdav.sys
2007-10-04 09:46 142 ----a-w C:\Program Files\Fichiers communs\rtepre.html
2006-11-05 17:03 60,240 -c--a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\GDIPFONTCACHEV1.DAT
.

------- Sigcheck -------

2004-08-05 13:00 14336 1bd6c2f707a275cb7c16fd99fe0f31ca C:\WINDOWS\system32\svchost.exe

2005-03-02 19:20 578048 c34920eb988ce98910bd6b0417f334eb C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll
2007-03-08 16:50 579072 4d88aaf39adabfe45958ea1384e2c4ff C:\WINDOWS\$hf_mig$\KB925902\SP2QFE\user32.dll
2004-08-05 13:00 578048 e46fb493e3b33704f0715020cf52106b C:\WINDOWS\$NtUninstallKB890859$\user32.dll
2005-03-02 19:10 578048 0df75fb73f705b011630159a43d7c354 C:\WINDOWS\$NtUninstallKB925902$\user32.dll
2007-03-08 16:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\user32.dll
2007-03-08 16:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\dllcache\user32.dll

2004-08-05 13:00 82944 bc41f51a39d3b255805fdb759b7814ae C:\WINDOWS\system32\ws2_32.dll

2004-08-05 13:00 506368 d2de785aeab0bb8ca4c14a8a199dbe4e C:\WINDOWS\system32\winlogon.exe

2004-08-05 13:00 182912 558635d3af1c7546d26067d5d9b6959e C:\WINDOWS\system32\drivers\ndis.sys

2004-08-05 13:00 29056 4448006b6bc60e6c027932cfc38d6855 C:\WINDOWS\system32\drivers\ip6fw.sys

2005-03-02 09:13 2059008 5311776074b6c13f983dc75baeac9c0c C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
2006-12-19 19:45 2061440 8b039efbe4c9aa23f152ffa0e238b8fa C:\WINDOWS\$hf_mig$\KB929338\SP2QFE\ntkrnlpa.exe
2007-02-28 17:08 2061440 7a56a64eb50399613587e90292dd2aab C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ntkrnlpa.exe
2004-08-05 13:00 2058880 f252fae094c54572ece38a039f2103c4 C:\WINDOWS\$NtUninstallKB890859$\ntkrnlpa.exe
2005-03-02 19:07 2058880 73fa9c95d235844a36968c7852c7dbdd C:\WINDOWS\$NtUninstallKB929338$\ntkrnlpa.exe
2006-12-19 19:22 2059648 06015d137b02542f07d5cd7b144df942 C:\WINDOWS\$NtUninstallKB931784$\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\system32\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\system32\dllcache\ntkrnlpa.exe

2005-03-02 19:13 2181632 3e2a0a4a0c0b19fc113618a9562a3b2a C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
2006-12-19 19:45 2184064 1f3fa2065e6e043a1d82a487b5da309c C:\WINDOWS\$hf_mig$\KB929338\SP2QFE\ntoskrnl.exe
2007-02-28 17:08 2184192 8e244108562e0e452eb68dff64cb08a9 C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ntoskrnl.exe
2004-08-05 13:00 2183040 7d38ce4398e6aa6339b4644feadcc0d8 C:\WINDOWS\$NtUninstallKB890859$\ntoskrnl.exe
2005-03-02 19:08 2181376 63729dd0f2aae36cc52b89c05505146c C:\WINDOWS\$NtUninstallKB929338$\ntoskrnl.exe
2006-12-19 19:22 2182400 d27929db7b7f92f9d0f8ec9ba01c601c C:\WINDOWS\$NtUninstallKB931784$\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\Driver Cache\i386\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\system32\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\system32\dllcache\ntoskrnl.exe

2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\explorer.exe
2007-06-13 14:10 1037312 b795475444d6d57a572c14b9e1a29839 C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
2004-08-05 13:00 1036288 4c33e5b9a6197b6ed215f6cfba0a2daa C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{79311601-2254-4a50-9c31-5e24ff74c21f}]
2008-03-02 15:17 89664 --a------ C:\WINDOWS\system32\bigfmnxp.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9F523B63-FCF8

Répondre à titou600

((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{79311601-2254-4a50-9c31-5e24ff74c21f}]
2008-03-02 15:17 89664 --a------ C:\WINDOWS\system32\bigfmnxp.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9F523B63-FCF8-42BA-30AD-A360B1BE040A}]
C:\Program Files\Fichiers communs\quga.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EBE60F6A-25D8-44F6-A048-03EAE8E2809F}]
C:\Program Files\ComPlus Applications\jaqi777444.dll

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 13:00 15360]
"msnmsgr"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe" [2007-10-18 11:34 5724184]
"Acmw"="C:\WINDOWS\DOBE~1\winlogon.exe" [ ]
"Cphfq"="C:\WINDOWS\??curity\j?vaw.exe" [ ]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [2004-08-05 13:00 208952]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-05 13:00 455168]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-05 13:00 455168]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-04-01 15:16 5562368]
"nwiz"="nwiz.exe" [2005-04-01 15:16 1495040 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="NvMCTray.dll" [2005-04-01 15:16 86016 C:\WINDOWS\system32\nvmctray.dll]
"SoundMan"="SOUNDMAN.EXE" [2005-01-20 19:04 77824 C:\WINDOWS\SOUNDMAN.EXE]
"ccApp"="C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" [2005-04-12 12:39 58992]
"PCMService"="c:\Apps\Powercinema\PCMService.exe" [2005-04-29 08:07 127118]
"Symantec NetDriver Monitor"="C:\PROGRA~1\SYMNET~1\SNDMon.exe" [2006-05-19 14:00 100056]
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2006-05-18 19:34 180269]
"EPSON Stylus C66 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.exe" [2003-11-26 14:00 99840]
"DownloadAccelerator"="C:\Program Files\DAP\DAP.exe" [2006-09-27 18:09 2864128]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-05 13:00 110592 C:\WINDOWS\system32\bthprops.cpl]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-07-28 11:38 1836544]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"YeppStudioAgent"="C:\Program Files\Samsung\SamsungMediaStudio4.1\SamsungMediaStudioAgent.exe" [ ]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-12-11 10:56 286720]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-12-11 12:10 267048]
"{92-27-76-62-DW}"="C:\WINDOWS\system32\bev4\dameco3305.exe" [ ]
"mecery"="C:\Program Files\ComPlus Applications\mecery77798.exe" [ ]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"DefenseNetSurfage"="C:\Program Files\DefenseNetSurfage\GDC.exe" [2008-01-28 15:17 1825280]
"BitDefender Antiphishing Helper"="C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe" [2007-08-27 15:24 49152]
"BDAgent"="C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe" [2007-10-01 15:23 294912]
"5c8927cd"="C:\WINDOWS\system32\hrsovtif.dll" [ ]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 13:00 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"FirewallDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\AOL 9.0\\aol.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"C:\\APPS\\Inventime\\my.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=

R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;C:\WINDOWS\system32\DRIVERS\bdfndisf.sys [2007-09-25 11:01]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bdx REG_MULTI_SZ scan

.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-25 19:00:03 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-03-15 23:00:40 C:\WINDOWS\Tasks\B1090D53913EB403.job"
- c:\docume~1\manu~1.sn0\applic~1\greats~1\Once Bleh Cdrom.exe
"2008-03-05 19:10:15 C:\WINDOWS\Tasks\Symantec NetDetect.job"
- C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE
"2008-03-13 17:54:02 C:\WINDOWS\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job"

Répondre à titou600

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:06, on 2008-03-21
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Safe mode

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Administrateur\Bureau\HiJackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\PROGRA~1\MACROG~1\SWEETI~1\toolbar.dll
O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Gif Animator Toolbar Helper - {96372AB6-15EB-4316-B497-71C741BC548C} - C:\Program Files\Easy Gif Animator Extension\v3.3.0.0\EasyGifAnimator_Toolbar.dll
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll
O3 - Toolbar: Easy Gif Animator Toolbar - {35065594-9169-4A34-B167-FC4865038E53} - C:\Program Files\Easy Gif Animator Extension\v3.3.0.0\EasyGifAnimator_Toolbar.dll
O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2008\IEToolbar.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [EPSON Stylus C66 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.EXE /P23 "EPSON Stylus C66 Series" /O6 "USB001" /M "Stylus C66"
O4 - HKLM\..\Run: [DownloadAccelerator] "C:\Program Files\DAP\DAP.EXE" /STARTUP
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [YeppStudioAgent] C:\Program Files\Samsung\SamsungMediaStudio4.1\SamsungMediaStudioAgent.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe"
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: TransText.lnk = C:\Program Files\ChaosSoft\TransText\TransText.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\npjpi160_03.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O15 - Trusted Zone: http://click.getmirar.com (HKLM)
O15 - Trusted Zone: http://click.mirarsearch.com (HKLM)
O15 - Trusted Zone: http://redirect.mirarsearch.com (HKLM)
O15 - Trusted Zone: http://awbeta.net-nucleus.com (HKLM)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-F [...] E_UNO1.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://aureliemarseillaise.spaces. [...] nPUpld.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender S.R.L. - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe
O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe

--
End of file - 12134 bytes

Répondre à titou600

celui la sera mieux

ComboFix 08-03-17.1 - Administrateur 2008-03-21 10:56:28.2 - NTFSx86 MINIMAL
Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.810 [GMT 1:00]
Endroit: C:\Documents and Settings\Administrateur\Bureau\ComboFix.exe
Command switches used :: C:\Documents and Settings\Administrateur\Bureau\CFScript.txt

FILE ::
C:\Documents and Settings\Manu.SN047852920098\9210.bat
C:\Documents and Settings\Manu.SN047852920098\winlogo.exe
C:\Documents and Settings\Stephane\1902.bat
C:\Documents and Settings\Stephane\1940.bat
C:\Documents and Settings\Stephane\2268.bat
C:\Documents and Settings\Stephane\2385.bat
C:\Documents and Settings\Stephane\2446.bat
C:\Documents and Settings\Stephane\2509.bat
C:\Documents and Settings\Stephane\3132.bat
C:\Documents and Settings\Stephane\3477.bat
C:\Documents and Settings\Stephane\3608.bat
C:\Documents and Settings\Stephane\3730.bat
C:\Documents and Settings\Stephane\4506.bat
C:\Documents and Settings\Stephane\4782.bat
C:\Documents and Settings\Stephane\5819.bat
C:\Documents and Settings\Stephane\6080.bat
C:\Documents and Settings\Stephane\6622.bat
C:\Documents and Settings\Stephane\7694.bat
C:\Documents and Settings\Stephane\8473.bat
C:\Documents and Settings\Stephane\8781.bat
C:\Documents and Settings\Stephane\9363.bat
C:\Documents and Settings\Stephane\9796.bat
C:\Documents and Settings\Stephane\winlogo.exe
C:\Program Files\ComPlus Applications\mecery77798.exe
C:\WINDOWS\POTA777444.exe
C:\WINDOWS\system32\3107.bat
C:\WINDOWS\system32\acnwhrsf.ini
C:\WINDOWS\system32\alivatgt.dll
C:\WINDOWS\system32\bawfkfsf.dll
C:\WINDOWS\system32\bev4\dameco3305.exe
C:\WINDOWS\system32\bigfmnxp.dll
C:\WINDOWS\system32\bilroequ.dll
C:\WINDOWS\system32\bunvjdev.dll
C:\WINDOWS\system32\bwqbinlh.dll
C:\WINDOWS\system32\cpydvapy.ini
C:\WINDOWS\system32\fitvosrh.ini
C:\WINDOWS\system32\fsrhwnca.dll
C:\WINDOWS\system32\ggpfxutb.dll
C:\WINDOWS\system32\gvhbocdr.dll
C:\WINDOWS\system32\hhsncxbx.ini
C:\WINDOWS\system32\hjgnesuv.dll
C:\WINDOWS\system32\jeqcsybo.dll
C:\WINDOWS\system32\jfwyfwld.dll
C:\WINDOWS\system32\krphkvon.ini
C:\WINDOWS\system32\ldiohxrr.dll
C:\WINDOWS\system32\lkveatgu.dll
C:\WINDOWS\system32\momhvtua.dll
C:\WINDOWS\system32\mpkfvgxq.dll
C:\WINDOWS\system32\njsbrquw.ini
C:\WINDOWS\system32\obotfdrm.dll
C:\WINDOWS\system32\pjctwdwn.ini
C:\WINDOWS\system32\rtqarqus.dll
C:\WINDOWS\system32\sffnujkx.ini
C:\WINDOWS\system32\tgtavila.ini
C:\WINDOWS\system32\tppwforu.ini
C:\WINDOWS\system32\urmoexex.dll
C:\WINDOWS\system32\urofwppt.dll
C:\WINDOWS\system32\vnvexgyg.dll
C:\WINDOWS\system32\vtlgafsf.dll
C:\WINDOWS\system32\vusengjh.ini
C:\WINDOWS\system32\wovxiagk.ini
C:\WINDOWS\system32\wprfruayd.exe
C:\WINDOWS\system32\wqihcfji.dll
C:\WINDOWS\system32\xkqeingo.ini
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Manu.SN047852920098\9210.bat
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\Démarrage\DW_Start.lnk
C:\Documents and Settings\Manu.SN047852920098\winlogo.exe
C:\Documents and Settings\Stephane\1902.bat
C:\Documents and Settings\Stephane\1940.bat
C:\Documents and Settings\Stephane\2268.bat
C:\Documents and Settings\Stephane\2385.bat
C:\Documents and Settings\Stephane\2446.bat
C:\Documents and Settings\Stephane\2509.bat
C:\Documents and Settings\Stephane\3132.bat
C:\Documents and Settings\Stephane\3477.bat
C:\Documents and Settings\Stephane\3608.bat
C:\Documents and Settings\Stephane\3730.bat
C:\Documents and Settings\Stephane\4506.bat
C:\Documents and Settings\Stephane\4782.bat
C:\Documents and Settings\Stephane\5819.bat
C:\Documents and Settings\Stephane\6080.bat
C:\Documents and Settings\Stephane\6622.bat
C:\Documents and Settings\Stephane\7694.bat
C:\Documents and Settings\Stephane\8473.bat
C:\Documents and Settings\Stephane\8781.bat
C:\Documents and Settings\Stephane\9363.bat
C:\Documents and Settings\Stephane\9796.bat
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Démarrage\DW_Start.lnk
C:\Documents and Settings\Stephane\winlogo.exe
C:\Program Files\DefenseNetSurfage
C:\Program Files\DefenseNetSurfage\config.ini
C:\Program Files\DefenseNetSurfage\data\application\7-Zip Compression Pgm.scr
C:\Program Files\DefenseNetSurfage\data\application\AbsoluteFTP.scr
C:\Program Files\DefenseNetSurfage\data\application\ACDSee32.scr
C:\Program Files\DefenseNetSurfage\data\application\Acoustica CD Label Maker.scr
C:\Program Files\DefenseNetSurfage\data\application\Ad-aware SE.scr
C:\Program Files\DefenseNetSurfage\data\application\Adaptec's Audio CD.scr
C:\Program Files\DefenseNetSurfage\data\application\Adaptec Easy CD Creator v4.scr
C:\Program Files\DefenseNetSurfage\data\application\Addsoft.scr
C:\Program Files\DefenseNetSurfage\data\application\AddWeb 3.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Acrobat Reader v3.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Acrobat Reader v3.1.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Acrobat Reader v4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Acrobat Reader v5.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Acrobat Reader v6.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Acrobat Reader v7.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Photoshop v5.0 LE.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Photoshop v5.5.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Photoshop v6.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Adobe Photoshop v7.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Advanced Disk Catalog.scr
C:\Program Files\DefenseNetSurfage\data\application\Advanced MP3 Catalog.scr
C:\Program Files\DefenseNetSurfage\data\application\Advanced Password Recovery.scr
C:\Program Files\DefenseNetSurfage\data\application\ahead cover designer.scr
C:\Program Files\DefenseNetSurfage\data\application\Albatros ADGaspect.scr
C:\Program Files\DefenseNetSurfage\data\application\Albatros ADGpano.scr
C:\Program Files\DefenseNetSurfage\data\application\Albatros ADGview.scr
C:\Program Files\DefenseNetSurfage\data\application\Alcohol MRU List.scr
C:\Program Files\DefenseNetSurfage\data\application\Animation Shop 1.x.scr
C:\Program Files\DefenseNetSurfage\data\application\Animation Shop 3.x.scr
C:\Program Files\DefenseNetSurfage\data\application\AOL - Spool.scr
C:\Program Files\DefenseNetSurfage\data\application\ASPack.scr
C:\Program Files\DefenseNetSurfage\data\application\Avant Browser.scr
C:\Program Files\DefenseNetSurfage\data\application\AX-Icons 4.x.scr
C:\Program Files\DefenseNetSurfage\data\application\Axialis Icon Workshop 5.x.scr
C:\Program Files\DefenseNetSurfage\data\application\Axialis Media Browser.scr
C:\Program Files\DefenseNetSurfage\data\application\Babylon Builder 2.2.scr
C:\Program Files\DefenseNetSurfage\data\application\Babylon Translator.scr
C:\Program Files\DefenseNetSurfage\data\application\BlazeDVD 2.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Bookreader.scr
C:\Program Files\DefenseNetSurfage\data\application\C++ Builder.scr
C:\Program Files\DefenseNetSurfage\data\application\Cabinet Manager.scr
C:\Program Files\DefenseNetSurfage\data\application\Chameleon Web Browser.scr
C:\Program Files\DefenseNetSurfage\data\application\Classify 98.scr
C:\Program Files\DefenseNetSurfage\data\application\Clicktionary 2000.scr
C:\Program Files\DefenseNetSurfage\data\application\CoffeeCup DirectFTP.scr
C:\Program Files\DefenseNetSurfage\data\application\CoffeeCup GIF Animator.scr
C:\Program Files\DefenseNetSurfage\data\application\Cool Edit 2000 1.1.scr
C:\Program Files\DefenseNetSurfage\data\application\Cool Edit Pro.scr
C:\Program Files\DefenseNetSurfage\data\application\Corel PhotoPaint 8.scr
C:\Program Files\DefenseNetSurfage\data\application\CrissCross.scr
C:\Program Files\DefenseNetSurfage\data\application\CRT 2.x.scr
C:\Program Files\DefenseNetSurfage\data\application\Cute FTP v3.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Cute FTP v4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Cute MX.scr
C:\Program Files\DefenseNetSurfage\data\application\CuteFTP.scr
C:\Program Files\DefenseNetSurfage\data\application\CuteHTML.scr
C:\Program Files\DefenseNetSurfage\data\application\DataRescue_IDA.scr
C:\Program Files\DefenseNetSurfage\data\application\Delphi v3.scr
C:\Program Files\DefenseNetSurfage\data\application\Delphi v4.scr
C:\Program Files\DefenseNetSurfage\data\application\Delphi v5.scr
C:\Program Files\DefenseNetSurfage\data\application\Delphi v7.scr
C:\Program Files\DefenseNetSurfage\data\application\Disk Explorer Professional 3.scr
C:\Program Files\DefenseNetSurfage\data\application\Diskeeper 5.0.scr
C:\Program Files\DefenseNetSurfage\data\application\DivX Player.scr
C:\Program Files\DefenseNetSurfage\data\application\Download Accelerator.scr
C:\Program Files\DefenseNetSurfage\data\application\Ebay Toolbar.scr
C:\Program Files\DefenseNetSurfage\data\application\EditPad.scr
C:\Program Files\DefenseNetSurfage\data\application\EditPlus 2.scr
C:\Program Files\DefenseNetSurfage\data\application\edonkey2000.scr
C:\Program Files\DefenseNetSurfage\data\application\eMule.scr
C:\Program Files\DefenseNetSurfage\data\application\Enfish Onespace.scr
C:\Program Files\DefenseNetSurfage\data\application\Enigma Browser.scr
C:\Program Files\DefenseNetSurfage\data\application\F-Secure SSH 2.x.scr
C:\Program Files\DefenseNetSurfage\data\application\Fix-It 2000.scr
C:\Program Files\DefenseNetSurfage\data\application\FlashGet.scr
C:\Program Files\DefenseNetSurfage\data\application\FotoCanvas 2.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Fotostation 4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\foxit reader.scr
C:\Program Files\DefenseNetSurfage\data\application\Free Download Manager 1.x.scr
C:\Program Files\DefenseNetSurfage\data\application\FTP Explorer.scr
C:\Program Files\DefenseNetSurfage\data\application\FTP Voyager.scr
C:\Program Files\DefenseNetSurfage\data\application\Fun CD.scr
C:\Program Files\DefenseNetSurfage\data\application\Gator.scr
C:\Program Files\DefenseNetSurfage\data\application\GeoVid Video to Flash Batch Converter.scr
C:\Program Files\DefenseNetSurfage\data\application\GetRight ExplorerBar.scr
C:\Program Files\DefenseNetSurfage\data\application\GetRight.scr
C:\Program Files\DefenseNetSurfage\data\application\Go!Zilla.scr
C:\Program Files\DefenseNetSurfage\data\application\Google Deskbar.scr
C:\Program Files\DefenseNetSurfage\data\application\Google Desktop Search History.scr
C:\Program Files\DefenseNetSurfage\data\application\Google Toolbar.scr
C:\Program Files\DefenseNetSurfage\data\application\Google Video Player 1.x.scr
C:\Program Files\DefenseNetSurfage\data\application\GoZilla.scr
C:\Program Files\DefenseNetSurfage\data\application\Gravity Newsreader.scr
C:\Program Files\DefenseNetSurfage\data\application\hardcopy.scr
C:\Program Files\DefenseNetSurfage\data\application\Helios TextPad v3.scr
C:\Program Files\DefenseNetSurfage\data\application\Helios TextPad v4.scr
C:\Program Files\DefenseNetSurfage\data\application\HelpWriter.scr
C:\Program Files\DefenseNetSurfage\data\application\hexworkshop.scr
C:\Program Files\DefenseNetSurfage\data\application\Homesite 4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Hotbar 3.0.scr
C:\Program Files\DefenseNetSurfage\data\application\HotJava Browser.scr
C:\Program Files\DefenseNetSurfage\data\application\HTML Help Workshop.scr
C:\Program Files\DefenseNetSurfage\data\application\Icon Extractor.scr
C:\Program Files\DefenseNetSurfage\data\application\iMesh.scr
C:\Program Files\DefenseNetSurfage\data\application\InoculatelT PE Antivirus.scr
C:\Program Files\DefenseNetSurfage\data\application\InstallShield Express.scr
C:\Program Files\DefenseNetSurfage\data\application\InterQuick.scr
C:\Program Files\DefenseNetSurfage\data\application\Irfanview.scr
C:\Program Files\DefenseNetSurfage\data\application\Iso Buster.scr
C:\Program Files\DefenseNetSurfage\data\application\Jasc Animation Shop 3.scr
C:\Program Files\DefenseNetSurfage\data\application\JASC Paintshop Pro v5.scr
C:\Program Files\DefenseNetSurfage\data\application\JASC Paintshop Pro v6.scr
C:\Program Files\DefenseNetSurfage\data\application\JASC Paintshop Pro v7.scr
C:\Program Files\DefenseNetSurfage\data\application\JASC Paintshop Pro v8.scr
C:\Program Files\DefenseNetSurfage\data\application\Jet Photo Shell.scr
C:\Program Files\DefenseNetSurfage\data\application\juno.scr
C:\Program Files\DefenseNetSurfage\data\application\K-Lite Codec Pack.scr
C:\Program Files\DefenseNetSurfage\data\application\Kazaa Media Desktop.scr
C:\Program Files\DefenseNetSurfage\data\application\Kodak Imaging.scr
C:\Program Files\DefenseNetSurfage\data\application\LeapFTP 2.6.scr
C:\Program Files\DefenseNetSurfage\data\application\LeechFTP.scr
C:\Program Files\DefenseNetSurfage\data\application\Letterbox.scr
C:\Program Files\DefenseNetSurfage\data\application\LViewPro 2.x.scr
C:\Program Files\DefenseNetSurfage\data\application\Macromedia Dreamweaver MX.scr
C:\Program Files\DefenseNetSurfage\data\application\Macromedia Dreamweaver Ultradev 4.scr
C:\Program Files\DefenseNetSurfage\data\application\Macromedia Firework MX.scr
C:\Program Files\DefenseNetSurfage\data\application\Macromedia Fireworks 3.scr
C:\Program Files\DefenseNetSurfage\data\application\Macromedia Flash MX.scr
C:\Program Files\DefenseNetSurfage\data\application\Macromedia Flash Player.scr
C:\Program Files\DefenseNetSurfage\data\application\Macromedia Flash v4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Magic ISO Maker 4.6.scr
C:\Program Files\DefenseNetSurfage\data\application\mapinfo mapmarker.scr
C:\Program Files\DefenseNetSurfage\data\application\Mass Download.scr
C:\Program Files\DefenseNetSurfage\data\application\MasterSplitter v2.1.scr
C:\Program Files\DefenseNetSurfage\data\application\McAfee Virus Scan.scr
C:\Program Files\DefenseNetSurfage\data\application\MEDA MP3 Splitter.scr
C:\Program Files\DefenseNetSurfage\data\application\Metapad.scr
C:\Program Files\DefenseNetSurfage\data\application\MGI PHOTOSUITE SE 1.x.scr
C:\Program Files\DefenseNetSurfage\data\application\MGUSOFT Setup Builder.scr
C:\Program Files\DefenseNetSurfage\data\application\Microangelo 98.scr
C:\Program Files\DefenseNetSurfage\data\application\MicroAngelo.scr
C:\Program Files\DefenseNetSurfage\data\application\Micrografx Picture Publisher v7.scr
C:\Program Files\DefenseNetSurfage\data\application\Micrografx Picture Publisher v8.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft FrontPage Express.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft FrontPage.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Help Workshop.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft HTML Help.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Imaging.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Managemant Console.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Netmeeting.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Office 2000.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Office 2003.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Office 97.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Office InfoPath 2003.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Office XP.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Office.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Outlook Express 5.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Photo Editor 3.x.scr
C:\Program Files\DefenseNetSurfage\data\application\MicroSoft PhotoDraw.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Picture It Publishing.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Publisher 2000.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Visual Studio 6.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Windows Paint.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Windows WordPad.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Word 2000.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Word Backup Files.scr
C:\Program Files\DefenseNetSurfage\data\application\Microsoft Works 4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Mijenix Powerdesk 4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\MIRC.scr
C:\Program Files\DefenseNetSurfage\data\application\miroMEDIA PCTV.scr
C:\Program Files\DefenseNetSurfage\data\application\mixmeister.scr
C:\Program Files\DefenseNetSurfage\data\application\Morpheus.scr
C:\Program Files\DefenseNetSurfage\data\application\MovieXone 1.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Mozart 4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\ms autoroute express.scr
C:\Program Files\DefenseNetSurfage\data\application\MS WORD.scr
C:\Program Files\DefenseNetSurfage\data\application\MSE.scr
C:\Program Files\DefenseNetSurfage\data\application\MSN Toolbar.scr
C:\Program Files\DefenseNetSurfage\data\application\Music Match Jukebox.scr
C:\Program Files\DefenseNetSurfage\data\application\MyWay Advertising.scr
C:\Program Files\DefenseNetSurfage\data\application\Napster Music Community.scr
C:\Program Files\DefenseNetSurfage\data\application\Naviscope.scr
C:\Program Files\DefenseNetSurfage\data\application\NEATO Labels.scr
C:\Program Files\DefenseNetSurfage\data\application\nero burning rom.scr
C:\Program Files\DefenseNetSurfage\data\application\Nero Vision.scr
C:\Program Files\DefenseNetSurfage\data\application\Net Vampire 3.x.scr
C:\Program Files\DefenseNetSurfage\data\application\netants.scr
C:\Program Files\DefenseNetSurfage\data\application\NetCaptor.scr
C:\Program Files\DefenseNetSurfage\data\application\netmeeting.scr
C:\Program Files\DefenseNetSurfage\data\application\Netsonic.scr
C:\Program Files\DefenseNetSurfage\data\application\Netzip Download Demon 3.x.scr
C:\Program Files\DefenseNetSurfage\data\application\NewsBin Pro 4.scr
C:\Program Files\DefenseNetSurfage\data\application\Norton AntiVirus 2000 (v6).scr
C:\Program Files\DefenseNetSurfage\data\application\Norton AntiVirus 2003.scr
C:\Program Files\DefenseNetSurfage\data\application\Norton Commander.scr
C:\Program Files\DefenseNetSurfage\data\application\Norton File Manager.scr
C:\Program Files\DefenseNetSurfage\data\application\Norton Firewall.scr
C:\Program Files\DefenseNetSurfage\data\application\Norton Internet Security.scr
C:\Program Files\DefenseNetSurfage\data\application\Norton LiveUpdate.scr
C:\Program Files\DefenseNetSurfage\data\application\Norton Utilities 2000.scr
C:\Program Files\DefenseNetSurfage\data\application\NotePad Plus.scr
C:\Program Files\DefenseNetSurfage\data\application\notetab lite.scr
C:\Program Files\DefenseNetSurfage\data\application\NoteTab Pro.scr
C:\Program Files\DefenseNetSurfage\data\application\Object Rescue.scr
C:\Program Files\DefenseNetSurfage\data\application\OmniPage 10.0.scr
C:\Program Files\DefenseNetSurfage\data\application\OnTrack Powerdesk 4.scr
C:\Program Files\DefenseNetSurfage\data\application\Ontrack PowerDesk 5.scr
C:\Program Files\DefenseNetSurfage\data\application\PackageForTheWeb.scr
C:\Program Files\DefenseNetSurfage\data\application\Paint Shop Pro 5.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Paint Shop Pro 7.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Password Safe.scr
C:\Program Files\DefenseNetSurfage\data\application\PE Explorer 1.95.scr
C:\Program Files\DefenseNetSurfage\data\application\Personal Ancestral File.scr
C:\Program Files\DefenseNetSurfage\data\application\photo magic 4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\PhotoCanvas 2.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Photodex Compupic Pro.scr
C:\Program Files\DefenseNetSurfage\data\application\PhotoDraw 2000.scr
C:\Program Files\DefenseNetSurfage\data\application\PhotoImpact 8.0.scr
C:\Program Files\DefenseNetSurfage\data\application\PhotoImpact Viewer 4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\PicoZip.scr
C:\Program Files\DefenseNetSurfage\data\application\PictureIt Digital Image Pro 7.0.scr
C:\Program Files\DefenseNetSurfage\data\application\PKZip for Windows v2.60.03+.scr
C:\Program Files\DefenseNetSurfage\data\application\PolyView.scr
C:\Program Files\DefenseNetSurfage\data\application\Popup Purger.scr
C:\Program Files\DefenseNetSurfage\data\application\PopUpCop.scr
C:\Program Files\DefenseNetSurfage\data\application\Power archiver.scr
C:\Program Files\DefenseNetSurfage\data\application\PowerArc.scr
C:\Program Files\DefenseNetSurfage\data\application\PowerDVD.scr
C:\Program Files\DefenseNetSurfage\data\application\PowerZip.scr
C:\Program Files\DefenseNetSurfage\data\application\Privacy Eraser Pro.scr
C:\Program Files\DefenseNetSurfage\data\application\Putty hostkeys.scr
C:\Program Files\DefenseNetSurfage\data\application\PYTHON.scr
C:\Program Files\DefenseNetSurfage\data\application\QuickTime.scr
C:\Program Files\DefenseNetSurfage\data\application\Real Audio Player v6 v7 v8.scr
C:\Program Files\DefenseNetSurfage\data\application\Real Download v4.scr
C:\Program Files\DefenseNetSurfage\data\application\RealNetworks Real Download.scr
C:\Program Files\DefenseNetSurfage\data\application\RealOne & RealPlayer.scr
C:\Program Files\DefenseNetSurfage\data\application\RealVNC.scr
C:\Program Files\DefenseNetSurfage\data\application\RegEdit.scr
C:\Program Files\DefenseNetSurfage\data\application\Roxio Easy CD Creator.scr
C:\Program Files\DefenseNetSurfage\data\application\Save Now.scr
C:\Program Files\DefenseNetSurfage\data\application\Scour Exchange.scr
C:\Program Files\DefenseNetSurfage\data\application\Seal Module Mlayer.scr
C:\Program Files\DefenseNetSurfage\data\application\SearchAndBrowse.scr
C:\Program Files\DefenseNetSurfage\data\application\SearchAnt.scr
C:\Program Files\DefenseNetSurfage\data\application\SearchV.scr
C:\Program Files\DefenseNetSurfage\data\application\SearchWolf.scr
C:\Program Files\DefenseNetSurfage\data\application\SearchWWW.scr
C:\Program Files\DefenseNetSurfage\data\application\SideStep.scr
C:\Program Files\DefenseNetSurfage\data\application\Skype.scr
C:\Program Files\DefenseNetSurfage\data\application\Smart Explorer.scr
C:\Program Files\DefenseNetSurfage\data\application\SmartDraw 6.scr
C:\Program Files\DefenseNetSurfage\data\application\smartftp.scr
C:\Program Files\DefenseNetSurfage\data\application\SmartPops.scr
C:\Program Files\DefenseNetSurfage\data\application\Sonic Foundry's Acid 2.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Sonique Player.scr
C:\Program Files\DefenseNetSurfage\data\application\Spinner Plus.scr
C:\Program Files\DefenseNetSurfage\data\application\SpotOn Browser plugin.scr
C:\Program Files\DefenseNetSurfage\data\application\Staff-FTP.scr
C:\Program Files\DefenseNetSurfage\data\application\Star Downloader.scr
C:\Program Files\DefenseNetSurfage\data\application\Stardialer.scr
C:\Program Files\DefenseNetSurfage\data\application\StarOffice 5.x.scr
C:\Program Files\DefenseNetSurfage\data\application\SubmitWolf Pro.scr
C:\Program Files\DefenseNetSurfage\data\application\Sun Java Cache.scr
C:\Program Files\DefenseNetSurfage\data\application\SureThing CD Labeler.scr
C:\Program Files\DefenseNetSurfage\data\application\SVAPlayer.scr
C:\Program Files\DefenseNetSurfage\data\application\SWiSH 2.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Teleport Pro.scr
C:\Program Files\DefenseNetSurfage\data\application\Telnet.scr
C:\Program Files\DefenseNetSurfage\data\application\Text Pad 4.x.scr
C:\Program Files\DefenseNetSurfage\data\application\The Playa.scr
C:\Program Files\DefenseNetSurfage\data\application\Third Voice 1.x.scr
C:\Program Files\DefenseNetSurfage\data\application\Thumbs Plus 4.scr
C:\Program Files\DefenseNetSurfage\data\application\Timesink.scr
C:\Program Files\DefenseNetSurfage\data\application\TinyBar.scr
C:\Program Files\DefenseNetSurfage\data\application\TOPicks.scr
C:\Program Files\DefenseNetSurfage\data\application\Total Commander.scr
C:\Program Files\DefenseNetSurfage\data\application\transponder.scr
C:\Program Files\DefenseNetSurfage\data\application\Trellians Classify 98.scr
C:\Program Files\DefenseNetSurfage\data\application\Tribal Voice's PowWow.scr
C:\Program Files\DefenseNetSurfage\data\application\Trojan Remover.scr
C:\Program Files\DefenseNetSurfage\data\application\TSADBOT.scr
C:\Program Files\DefenseNetSurfage\data\application\UCmore toolbar.scr
C:\Program Files\DefenseNetSurfage\data\application\Ulead Gif Animator v4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Ulead GIF Animator v5.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Ulead Photo Explorer v4.2.scr
C:\Program Files\DefenseNetSurfage\data\application\Ulead Photo Express.scr
C:\Program Files\DefenseNetSurfage\data\application\Ulead PhotoImpact v5.scr
C:\Program Files\DefenseNetSurfage\data\application\Ulead VideoStudio 4.0.scr
C:\Program Files\DefenseNetSurfage\data\application\Ultimate Paint.scr
C:\Program Files\DefenseNetSurfage\data\application\ULTImate Technology BV v5.5.scr
C:\Program Files\DefenseNetSurfage\data\application\UltraEdit v4.scr
C:\Program Files\DefenseNetSurfage\data\application\UltraEdit v7.scr
C:\Program Files\DefenseNetSurfage\data\application\UltraEdit.scr
C:\Program Files\DefenseNetSurfage\data\application\UltraISO 7.x.scr
C:\Program Files\DefenseNetSurfage\data\application\uTorrent 1.x.scr
C:\Program Files\DefenseNetSurfage\data\application\VBoxEdit.scr
C:\Program Files\DefenseNetSurfage\data\application\VirtualDub.scr
C:\Program Files\DefenseNetSurfage\data\application\VMWARE.scr
C:\Program Files\DefenseNetSurfage\data\application\Vueprint.scr
C:\Program Files\DefenseNetSurfage\data\application\VX2 Respondmiter.scr
C:\Program Files\DefenseNetSurfage\data\application\W32Dasm.scr
C:\Program Files\DefenseNetSurfage\data\application\Web Ferret v3.scr
C:\Program Files\DefenseNetSurfage\data\application\WebFerret.scr
C:\Program Files\DefenseNetSurfage\data\application\webhancer.scr
C:\Program Files\DefenseNetSurfage\data\application\Wildstylz.scr
C:\Program Files\DefenseNetSurfage\data\application\WildTangent.scr
C:\Program Files\DefenseNetSurfage\data\application\WinAce.scr
C:\Program Files\DefenseNetSurfage\data\application\winamp.scr
C:\Program Files\DefenseNetSurfage\data\application\Windows Commander.scr
C:\Program Files\DefenseNetSurfage\data\application\WinHTTrack Website Copier.scr
C:\Program Files\DefenseNetSurfage\data\application\WinOnCD.scr
C:\Program Files\DefenseNetSurfage\data\application\WinRar.scr
C:\Program Files\DefenseNetSurfage\data\application\Winshow.scr
C:\Program Files\DefenseNetSurfage\data\application\WinUAE.scr
C:\Program Files\DefenseNetSurfage\data\application\Winupie.scr
C:\Program Files\DefenseNetSurfage\data\application\WinVNC.scr
C:\Program Files\DefenseNetSurfage\data\application\WinZip v8.scr
C:\Program Files\DefenseNetSurfage\data\application\Wise Installer.scr
C:\Program Files\DefenseNetSurfage\data\application\Worm.Sobig.scr
C:\Program Files\DefenseNetSurfage\data\application\WurldMedia.scr
C:\Program Files\DefenseNetSurfage\data\application\Xara 3D v4.x.scr
C:\Program Files\DefenseNetSurfage\data\application\Xara Webstyle.scr
C:\Program Files\DefenseNetSurfage\data\application\XDialer.scr
C:\Program Files\DefenseNetSurfage\data\application\XING MP3 PLAYER.scr
C:\Program Files\DefenseNetSurfage\data\application\XLoader.scr
C:\Program Files\DefenseNetSurfage\data\application\Xolox.scr
C:\Program Files\DefenseNetSurfage\data\application\Xrenoder.scr
C:\Program Files\DefenseNetSurfage\data\application\Xupiter toolbar.scr
C:\Program Files\DefenseNetSurfage\data\application\Xzoomy.scr
C:\Program Files\DefenseNetSurfage\data\application\Yahoo Player.scr
C:\Program Files\DefenseNetSurfage\data\application\Yahoo! Toolbar.scr
C:\Program Files\DefenseNetSurfage\data\application\Yamaha S-YXG100.scr
C:\Program Files\DefenseNetSurfage\data\application\ZeroPopup.scr
C:\Program Files\DefenseNetSurfage\data\application\ZipMagic 2000.scr
C:\Program Files\DefenseNetSurfage\data\application\Zone Alarm.scr
C:\Program Files\DefenseNetSurfage\data\brand.dat
C:\Program Files\DefenseNetSurfage\data\firefox\Firefox - cache.scr
C:\Program Files\DefenseNetSurfage\data\firefox\Firefox - cookies.scr
C:\Program Files\DefenseNetSurfage\data\firefox\Firefox - history.scr
C:\Program Files\DefenseNetSurfage\data\GDCW.exe
C:\Program Files\DefenseNetSurfage\data\ie\ie cookies.scr
C:\Program Files\DefenseNetSurfage\data\ie\ie internet cache.scr
C:\Program Files\DefenseNetSurfage\data\ie\ie privacy history.scr
C:\Program Files\DefenseNetSurfage\data\ie\ie typed urls.scr
C:\Program Files\DefenseNetSurfage\data\ie\ie url history.scr
C:\Program Files\DefenseNetSurfage\data\ie\windows autocomplete.scr
C:\Program Files\DefenseNetSurfage\data\ie\windows downloaded files.scr
C:\Program Files\DefenseNetSurfage\data\ie\windows favorites order.scr
C:\Program Files\DefenseNetSurfage\data\ie\windows passwords.scr
C:\Program Files\DefenseNetSurfage\data\IH.exe
C:\Program Files\DefenseNetSurfage\data\messanger\aim.scr
C:\Program Files\DefenseNetSurfage\data\messanger\AOL Bart.scr
C:\Program Files\DefenseNetSurfage\data\messanger\AOL Instant Messenger.scr
C:\Program Files\DefenseNetSurfage\data\messanger\aolim.scr
C:\Program Files\DefenseNetSurfage\data\messanger\icq - download.scr
C:\Program Files\DefenseNetSurfage\data\messanger\icq - logs.scr
C:\Program Files\DefenseNetSurfage\data\messanger\Miranda ICQ.scr
C:\Program Files\DefenseNetSurfage\data\messanger\MSN Messenger User Account.scr
C:\Program Files\DefenseNetSurfage\data\messanger\Trillian cache.scr
C:\Program Files\DefenseNetSurfage\data\messanger\trillian downloads.scr
C:\Program Files\DefenseNetSurfage\data\messanger\trillian logs.scr
C:\Program Files\DefenseNetSurfage\data\messanger\yahoo messenger logs.scr
C:\Program Files\DefenseNetSurfage\data\messanger\Yahoo! Messenger.scr
C:\Program Files\DefenseNetSurfage\data\mozilla\mozilla - autocomplete.scr
C:\Program Files\DefenseNetSurfage\data\mozilla\mozilla - cache.scr
C:\Program Files\DefenseNetSurfage\data\mozilla\mozilla - cookies.scr
C:\Program Files\DefenseNetSurfage\data\mozilla\Mozilla - history.scr
C:\Program Files\DefenseNetSurfage\data\mozilla\mozilla - saved passwords.scr
C:\Program Files\DefenseNetSurfage\data\mozilla\Mozilla - typed urls.scr
C:\Program Files\DefenseNetSurfage\data\netscape\netscape - cache.scr
C:\Program Files\DefenseNetSurfage\data\netscape\netscape - cookies.scr
C:\Program Files\DefenseNetSurfage\data\netscape\netscape - history.scr
C:\Program Files\DefenseNetSurfage\data\netscape\Netscape Navigator - last trusted apps.scr
C:\Program Files\DefenseNetSurfage\data\opera\Opera Browser - cache.scr
C:\Program Files\DefenseNetSurfage\data\opera\Opera Browser - cookies.scr
C:\Program Files\DefenseNetSurfage\data\opera\Opera Browser - Download.scr
C:\Program Files\DefenseNetSurfage\data\opera\Opera Browser - history.scr
C:\Program Files\DefenseNetSurfage\data\opera\Opera Browser - misc.scr
C:\Program Files\DefenseNetSurfage\data\opera\Opera Browser - mru.scr
C:\Program Files\DefenseNetSurfage\data\opera\Opera Browser - visited.scr
C:\Program Files\DefenseNetSurfage\data\sfl.dat
C:\Program Files\DefenseNetSurfage\data\skin.skn
C:\Program Files\DefenseNetSurfage\data\sr.log
C:\Program Files\DefenseNetSurfage\data\srl.dat
C:\Program Files\DefenseNetSurfage\data\windows\Direct Draw.scr
C:\Program Files\DefenseNetSurfage\data\windows\direct input.scr
C:\Program Files\DefenseNetSurfage\data\windows\last files.scr
C:\Program Files\DefenseNetSurfage\data\windows\Microsoft Send-To Extensions.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows applog.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows documents.scr
C:\Program Files\DefenseNetSurfage\data\windows\Windows Downloaded Installations.scr
C:\Program Files\DefenseNetSurfage\data\windows\Windows Empty Recycle Bin.scr
C:\Program Files\DefenseNetSurfage\data\windows\Windows Explorer User Assistant history.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows findfile.scr
C:\Program Files\DefenseNetSurfage\data\windows\Windows FTP Accounts.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows hotfix uninstall.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows logfiles.scr
C:\Program Files\DefenseNetSurfage\data\windows\Windows Mapped Drives.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows media player 7.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows minidump.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows MUICache.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows network links.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows opensave.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows openwith.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows prefetch.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows reg history.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows run history.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows search.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows start menu order.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows stream history.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows temp.scr
C:\Program Files\DefenseNetSurfage\data\windows\windows update.scr
C:\Program Files\DefenseNetSurfage\data\windows\Windows XP Unread Mail Count.scr
C:\Program Files\DefenseNetSurfage\default.ini
C:\Program Files\DefenseNetSurfage\diagnosis.dat
C:\Program Files\DefenseNetSurfage\errors.log
C:\Program Files\DefenseNetSurfage\GDC.exe
C:\Program Files\DefenseNetSurfage\GDCFR.url
C:\Program Files\DefenseNetSurfage\gfx\button_arrow.bmp
C:\Program Files\DefenseNetSurfage\gfx\button_arrow2.bmp
C:\Program Files\DefenseNetSurfage\gfx\buy.bmp
C:\Program Files\DefenseNetSurfage\gfx\checked.bmp
C:\Program Files\DefenseNetSurfage\gfx\custom.bmp
C:\Program Files\DefenseNetSurfage\gfx\customcleanup.bmp
C:\Program Files\DefenseNetSurfage\gfx\header.bmp
C:\Program Files\DefenseNetSurfage\gfx\icon.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_about.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_checked.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_grayed.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_link.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_manual.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_quit.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_support.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_unchecked.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_uncheked.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_uninstall.ico
C:\Program Files\DefenseNetSurfage\gfx\icon_update.ico
C:\Program Files\DefenseNetSurfage\gfx\log.bmp
C:\Program Files\DefenseNetSurfage\gfx\logo.bmp
C:\Program Files\DefenseNetSurfage\gfx\register.bmp
C:\Program Files\DefenseNetSurfage\gfx\settings.bmp
C:\Program Files\DefenseNetSurfage\gfx\sign_green.bmp
C:\Program Files\DefenseNetSurfage\gfx\sign_green_big.bmp
C:\Program Files\DefenseNetSurfage\gfx\sign_red.bmp
C:\Program Files\DefenseNetSurfage\gfx\sign_red_big.bmp
C:\Program Files\DefenseNetSurfage\gfx\sign_yellow.bmp
C:\Program Files\DefenseNetSurfage\gfx\splash.bmp
C:\Program Files\DefenseNetSurfage\gfx\status_good.bmp
C:\Program Files\DefenseNetSurfage\gfx\status_risk.bmp
C:\Program Files\DefenseNetSurfage\gfx\support.bmp
C:\Program Files\DefenseNetSurfage\gfx\sys_shield.bmp
C:\Program Files\DefenseNetSurfage\gfx\sys_update.bmp
C:\Program Files\DefenseNetSurfage\gfx\sysstatus.bmp
C:\Program Files\DefenseNetSurfage\gfx\unchecked.bmp
C:\Program Files\DefenseNetSurfage\gfx\update.bmp
C:\Program Files\DefenseNetSurfage\lang\Arabic.lng
C:\Program Files\DefenseNetSurfage\lang\Brazilian.lng
C:\Program Files\DefenseNetSurfage\lang\Catalan.lng
C:\Program Files\DefenseNetSurfage\lang\Chinese.lng
C:\Program Files\DefenseNetSurfage\lang\Czech.lng
C:\Program Files\DefenseNetSurfage\lang\Danish.lng
C:\Program Files\DefenseNetSurfage\lang\Dutch.lng
C:\Program Files\DefenseNetSurfage\lang\English.lng
C:\Program Files\DefenseNetSurfage\lang\Finnish.lng
C:\Program Files\DefenseNetSurfage\lang\French.lng
C:\Program Files\DefenseNetSurfage\lang\German.lng
C:\Program Files\DefenseNetSurfage\lang\Greek.lng
C:\Program Files\DefenseNetSurfage\lang\Hebrew.lng
C:\Program Files\DefenseNetSurfage\lang\Italian.lng
C:\Program Files\DefenseNetSurfage\lang\Japanese.lng
C:\Program Files\DefenseNetSurfage\lang\Malayan.lng
C:\Program Files\DefenseNetSurfage\lang\Norwegian.lng
C:\Program Files\DefenseNetSurfage\lang\Polish.lng
C:\Program Files\DefenseNetSurfage\lang\Portuguese.lng
C:\Program Files\DefenseNetSurfage\lang\Russian.lng
C:\Program Files\DefenseNetSurfage\lang\Slovenian.lng
C:\Program Files\DefenseNetSurfage\lang\Spanish.lng
C:\Program Files\DefenseNetSurfage\lang\Swedish.lng
C:\Program Files\DefenseNetSurfage\lang\Thai.lng
C:\Program Files\DefenseNetSurfage\lang\Turkish.lng
C:\Program Files\DefenseNetSurfage\License.rtf
C:\Program Files\DefenseNetSurfage\plug\GDCPatch.exe
C:\Program Files\DefenseNetSurfage\Readme.rtf
C:\Program Files\DefenseNetSurfage\runtime
C:\Program Files\DefenseNetSurfage\Scan_report.htm
C:\Program Files\DefenseNetSurfage\support.url
C:\Program Files\DefenseNetSurfage\unins000.dat
C:\Program Files\DefenseNetSurfage\unins000.exe
C:\Program Files\DefenseNetSurfage\upd_cr.log
C:\Program Files\DefenseNetSurfage\updater.dat
C:\Program Files\DefenseNetSurfage\updater.exe
C:\Program Files\DefenseNetSurfage\ver.dat
C:\WINDOWS\POTA777444.exe
C:\WINDOWS\system32\3107.bat
C:\WINDOWS\system32\acnwhrsf.ini
C:\WINDOWS\system32\alivatgt.dll
C:\WINDOWS\system32\bawfkfsf.dll
C:\WINDOWS\system32\bigfmnxp.dll
C:\WINDOWS\system32\bilroequ.dll
C:\WINDOWS\system32\bunvjdev.dll
C:\WINDOWS\system32\bwqbinlh.dll
C:\WINDOWS\system32\cpydvapy.ini
C:\WINDOWS\system32\fitvosrh.ini
C:\WINDOWS\system32\fsrhwnca.dll
C:\WINDOWS\system32\ggpfxutb.dll
C:\WINDOWS\system32\gvhbocdr.dll
C:\WINDOWS\system32\hhsncxbx.ini
C:\WINDOWS\system32\hjgnesuv.dll
C:\WINDOWS\system32\jeqcsybo.dll
C:\WINDOWS\system32\jfwyfwld.dll
C:\WINDOWS\system32\krphkvon.ini
C:\WINDOWS\system32\ldiohxrr.dll
C:\WINDOWS\system32\lkveatgu.dll
C:\WINDOWS\system32\momhvtua.dll
C:\WINDOWS\system32\mpkfvgxq.dll
C:\WINDOWS\system32\njsbrquw.ini
C:\WINDOWS\system32\obotfdrm.dll
C:\WINDOWS\system32\pjctwdwn.ini
C:\WINDOWS\system32\rtqarqus.dll
C:\WINDOWS\system32\sffnujkx.ini
C:\WINDOWS\system32\tgtavila.ini
C:\WINDOWS\system32\tppwforu.ini
C:\WINDOWS\system32\urmoexex.dll
C:\WINDOWS\system32\urofwppt.dll
C:\WINDOWS\system32\vnvexgyg.dll
C:\WINDOWS\system32\vtlgafsf.dll
C:\WINDOWS\system32\vusengjh.ini
C:\WINDOWS\system32\wovxiagk.ini
C:\WINDOWS\system32\wprfruayd.exe
C:\WINDOWS\system32\wqihcfji.dll
C:\WINDOWS\system32\xkqeingo.ini
.
---- Previous Run -------
.
C:\Documents and Settings\Administrateur\Application Data\DriveDefender
C:\Documents and Settings\Administrateur\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\All Users\Application Data\DriveDefender
C:\Documents and Settings\All Users\Application Data\DriveDefender\Abbr
C:\Documents and Settings\All Users\Application Data\DriveDefender\prod_code
C:\Documents and Settings\All Users\Application Data\Starware370
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\findit_music.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\Highlight.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\HighlightHot.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\highlighthotxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\highlightxp.png
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\lyrics.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\music_search.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\radio.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\buttons\starware_toolbar_icon.bmp
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\error.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\Related.xml
C:\Documents and Settings\All Users\Application Data\Starware370\contexts\travel.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\ProductMessagingConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\SimpleUpdateConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml
C:\Documents and Settings\All Users\Application Data\Starware370\SimpleUpdate\TimerManagerConfig.xml.backup
C:\Documents and Settings\All Users\Application Data\Starware370\Tem150.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem204.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem215.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem21A.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem232.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem244.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem261.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem270.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem30.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem32.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem339.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem54.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem541.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem71D.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem73.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem7B4.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\Tem96.tmp
C:\Documents and Settings\All Users\Application Data\Starware370\TemD7.tmp
C:\Documents and Settings\All Users\Application Data\storageprotector
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\ac
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\em
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\oid
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\StorageProtector.exe.cer
C:\Documents and Settings\All Users\Application Data\storageprotector\Data\user
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\Contact Customer Service.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\DriveDefender unregistered.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\DriveDefender web page.lnk
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\DriveDefender\Uninstall DriveDefender.lnk
C:\Documents and Settings\Manu.SN047852920098\Application Data\DriveDefender
C:\Documents and Settings\Manu.SN047852920098\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\#SharedObjects\PVRNHJCE\iforex.com
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\#SharedObjects\PVRNHJCE\iforex.com\Emerp\Events\flash_object.swf\user_data.sol
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#iforex.com
C:\Documents and Settings\Manu.SN047852920098\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#iforex.com\settings.sol
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\defaultPack.cab
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\languages.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\languages_v2.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\MessengerSkinner\Userdata\pack1.cab
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Configurator\Configurator.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Configurator\Configurator.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\GamesOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\GamesOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Games\images\active\Games0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Manager\ManagerOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\images\active\Marketing40.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Marketing4\Marketing4Options.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\MoviesOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Radio_FR\Radio_FROptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Radio_FR\Radio_FROptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Tem1A9.tmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Tem94.tmp
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Manu.SN047852920098\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner\MessengerSkinner.lnk
C:\Documents and Settings\Manu.SN047852920098\Menu Démarrer\Programmes\MessengerSkinner\Website.lnk
C:\Documents and Settings\Stephane\Application Data\DriveDefender
C:\Documents and Settings\Stephane\Application Data\DriveDefender\Logs\update.log
C:\Documents and Settings\Stephane\Application Data\Starware370
C:\Documents and Settings\Stephane\Application Data\Starware370\BrowserSearch\BrowserSearch.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\BrowserSearch\BrowserSearch.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Configurator\Configurator.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Configurator\Configurator.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ErrorSearch\ErrorSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\GamesOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\GamesOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Games\images\active\Games0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Layouts\ToolbarLayout.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Layouts\ToolbarLayout.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Lyrics_FR\Lyrics_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Manager\ManagerOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Manager\ManagerOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\images\active\Marketing40.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\Marketing4Options.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Marketing4\Marketing4Options.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\images\active\Movies0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\MoviesOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Movies\MoviesOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Music_Search_FR\Music_Search_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Radio_FR\Radio_FROptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Radio_FR\Radio_FROptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\RelatedSearch\RelatedSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\images\active\ScreensaversMarketingSitePager0.bmp
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ScreensaversMarketingSitePager\ScreensaversMarketingSitePagerOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\Toolbar\TBProductsOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\Toolbar\TBProductsOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarLogo\ToolbarLogoOptions.xml.backup
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml
C:\Documents and Settings\Stephane\Application Data\Starware370\ToolbarSearch\ToolbarSearchOptions.xml.backup
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo\Terms.lnk
C:\Documents and Settings\Stephane\Menu Démarrer\Programmes\Outerinfo\Uninstall.lnk
C:\install.exe
C:\Program Files\DriveDefender
C:\Program Files\DriveDefender\config.ini
C:\Program Files\DriveDefender\data\application\7-Zip Compression Pgm.scr
C:\Program Files\DriveDefender\data\application\AbsoluteFTP.scr
C:\Program Files\DriveDefender\data\application\ACDSee32.scr
C:\Program Files\DriveDefender\data\application\Acoustica CD Label Maker.scr
C:\Program Files\DriveDefender\data\application\Ad-aware SE.scr
C:\Program Files\DriveDefender\data\application\Adaptec's Audio CD.scr
C:\Program Files\DriveDefender\data\application\Adaptec Easy CD Creator v4.scr
C:\Program Files\DriveDefender\data\application\Addsoft.scr
C:\Program Files\DriveDefender\data\application\AddWeb 3.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v3.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v3.1.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v4.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v5.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v6.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Acrobat Reader v7.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v5.0 LE.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v5.5.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v6.0.scr
C:\Program Files\DriveDefender\data\application\Adobe Photoshop v7.0.scr
C:\Program Files\DriveDefender\data\application\Advanced Disk Catalog.scr
C:\Program Files\DriveDefender\data\application\Advanced MP3 Catalog.scr
C:\Program Files\DriveDefender\data\application\Advanced Password Recovery.scr
C:\Program Files\DriveDefender\data\application\ahead cover designer.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGaspect.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGpano.scr
C:\Program Files\DriveDefender\data\application\Albatros ADGview.scr
C:\Program Files\DriveDefender\data\application\Alcohol MRU List.scr
C:\Program Files\DriveDefender\data\application\Animation Shop 1.x.scr
C:\Program Files\DriveDefender\data\application\Animation Shop 3.x.scr
C:\Program Files\DriveDefender\data\application\AOL - Spool.scr
C:\Program Files\DriveDefender\data\application\ASPack.scr
C:\Program Files\DriveDefender\data\application\Avant Browser.scr
C:\Program Files\DriveDefender\data\application\AX-Icons 4.x.scr
C:\Program Files\DriveDefender\data\application\Axialis Icon Workshop 5.x.scr
C:\Program Files\DriveDefender\data\application\Axialis Media Browser.scr
C:\Program Files\DriveDefender\data\application\Babylon Builder 2.2.scr
C:\Program Files\DriveDefender\data\application\Babylon Translator.scr
C:\Program Files\DriveDefender\data\application\BlazeDVD 2.0.scr
C:\Program Files\DriveDefender\data\application\Bookreader.scr
C:\Program Files\DriveDefender\data\application\C++ Builder.scr
C:\Program Files\DriveDefender\data\application\Cabinet Manager.scr
C:\Program Files\DriveDefender\data\application\Chameleon Web Browser.scr
C:\Program Files\DriveDefender\data\application\Classify 98.scr
C:\Program Files\DriveDefender\data\application\Clicktionary 2000.scr
C:\Program Files\DriveDefender\data\application\CoffeeCup DirectFTP.scr
C:\Program Files\DriveDefender\data\application\CoffeeCup GIF Animator.scr
C:\Program Files\DriveDefender\data\application\Cool Edit 2000 1.1.scr
C:\Program Files\DriveDefender\data\application\Cool Edit Pro.scr
C:\Program Files\DriveDefender\data\application\Corel PhotoPaint 8.scr
C:\Program Files\DriveDefender\data\application\CrissCross.scr
C:\Program Files\DriveDefender\data\application\CRT 2.x.scr
C:\Program Files\DriveDefender\data\application\Cute FTP v3.0.scr
C:\Program Files\DriveDefender\data\application\Cute FTP v4.0.scr
C:\Program Files\DriveDefender\data\application\Cute MX.scr
C:\Program Files\DriveDefender\data\application\CuteFTP.scr
C:\Program Files\DriveDefender\data\application\CuteHTML.scr
C:\Program Files\DriveDefender\data\application\DataRescue_IDA.scr
C:\Program Files\DriveDefender\data\application\Delphi v3.scr
C:\Program Files\DriveDefender\data\application\Delphi v4.scr
C:\Program Files\DriveDefender\data\application\Delphi v5.scr
C:\Program Files\DriveDefender\data\application\Delphi v7.scr
C:\Program Files\DriveDefender\data\application\Disk Explorer Professional 3.scr
C:\Program Files\DriveDefender\data\application\Diskeeper 5.0.scr
C:\Program Files\DriveDefender\data\application\DivX Player.scr
C:\Program Files\DriveDefender\data\application\Download Accelerator.scr
C:\Program Files\DriveDefender\data\application\Ebay Toolbar.scr
C:\Program Files\DriveDefender\data\application\EditPad.scr
C:\Program Files\DriveDefender\data\application\EditPlus 2.scr
C:\Program Files\DriveDefender\data\application\edonkey2000.scr
C:\Program Files\DriveDefender\data\application\eMule.scr
C:\Program Files\DriveDefender\data\application\Enfish Onespace.scr
C:\Program Files\DriveDefender\data\application\Enigma Browser.scr
C:\Program Files\DriveDefender\data\application\F-Secure SSH 2.x.scr
C:\Program Files\DriveDefender\data\application\Fix-It 2000.scr
C:\Program Files\DriveDefender\data\application\FlashGet.scr
C:\Program Files\DriveDefender\data\application\FotoCanvas 2.0.scr
C:\Program Files\DriveDefender\data\application\Fotostation 4.0.scr
C:\Program Files\DriveDefender\data\application\foxit reader.scr
C:\Program Files\DriveDefender\data\application\Free Download Manager 1.x.scr
C:\Program Files\DriveDefender\data\application\FTP Explorer.scr
C:\Program Files\DriveDefender\data\application\FTP Voyager.scr
C:\Program Files\DriveDefender\data\application\Fun CD.scr
C:\Program Files\DriveDefender\data\application\Gator.scr
C:\Program Files\DriveDefender\data\application\GeoVid Video to Flash Batch Converter.scr
C:\Program Files\DriveDefender\data\application\GetRight ExplorerBar.scr
C:\Program Files\DriveDefender\data\application\GetRight.scr
C:\Program Files\DriveDefender\data\application\Go!Zilla.scr
C:\Program Files\DriveDefender\data\application\Google Deskbar.scr
C:\Program Files\DriveDefender\data\application\Google Desktop Search History.scr
C:\Program Files\DriveDefender\data\application\Google Toolbar.scr
C:\Program Files\DriveDefender\data\application\Google Video Player 1.x.scr
C:\Program Files\DriveDefender\data\application\GoZilla.scr
C:\Program Files\DriveDefender\data\application\Gravity Newsreader.scr
C:\Program Files\DriveDefender\data\application\hardcopy.scr
C:\Program Files\DriveDefender\data\application\Helios TextPad v3.scr
C:\Program Files\DriveDefender\data\application\Helios TextPad v4.scr
C:\Program Files\DriveDefender\data\application\HelpWriter.scr
C:\Program Files\DriveDefender\data\application\hexworkshop.scr
C:\Program Files\DriveDefender\data\application\Homesite 4.0.scr
C:\Program Files\DriveDefender\data\application\Hotbar 3.0.scr
C:\Program Files\DriveDefender\data\application\HotJava Browser.scr
C:\Program Files\DriveDefender\data\application\HTML Help Workshop.scr
C:\Program Files\DriveDefender\data\application\Icon Extractor.scr
C:\Program Files\DriveDefender\data\application\iMesh.scr
C:\Program Files\DriveDefender\data\application\InoculatelT PE Antivirus.scr
C:\Program Files\DriveDefender\data\application\InstallShield Express.scr
C:\Program Files\DriveDefender\data\application\InterQuick.scr
C:\Program Files\DriveDefender\data\application\Irfanview.scr
C:\Program Files\DriveDefender\data\application\Iso Buster.scr
C:\Program Files\DriveDefender\data\application\Jasc Animation Shop 3.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v5.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v6.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v7.scr
C:\Program Files\DriveDefender\data\application\JASC Paintshop Pro v8.scr
C:\Program Files\DriveDefender\data\application\Jet Photo Shell.scr
C:\Program Files\DriveDefender\data\application\juno.scr
C:\Program Files\DriveDefender\data\application\K-Lite Codec Pack.scr
C:\Program Files\DriveDefender\data\application\Kazaa Media Desktop.scr
C:\Program Files\DriveDefender\data\application\Kodak Imaging.scr
C:\Program Files\DriveDefender\data\application\LeapFTP 2.6.scr
C:\Program Files\DriveDefender\data\application\LeechFTP.scr
C:\Program Files\DriveDefender\data\application\Letterbox.scr
C:\Program Files\DriveDefender\data\application\LViewPro 2.x.scr
C:\Program Files\DriveDefender\data\application\Macromedia Dreamweaver MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Dreamweaver Ultradev 4.scr
C:\Program Files\DriveDefender\data\application\Macromedia Firework MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Fireworks 3.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash MX.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash Player.scr
C:\Program Files\DriveDefender\data\application\Macromedia Flash v4.0.scr
C:\Program Files\DriveDefender\data\application\Magic ISO Maker 4.6.scr
C:\Program Files\DriveDefender\data\application\mapinfo mapmarker.scr
C:\Program Files\DriveDefender\data\application\Mass Download.scr
C:\Program Files\DriveDefender\data\application\MasterSplitter v2.1.scr
C:\Program Files\DriveDefender\data\application\McAfee Virus Scan.scr
C:\Program Files\DriveDefender\data\application\MEDA MP3 Splitter.scr
C:\Program Files\DriveDefender\data\application\Metapad.scr
C:\Program Files\DriveDefender\data\application\MGI PHOTOSUITE SE 1.x.scr
C:\Program Files\DriveDefender\data\application\MGUSOFT Setup Builder.scr
C:\Program Files\DriveDefender\data\application\Microangelo 98.scr
C:\Program Files\DriveDefender\data\application\MicroAngelo.scr
C:\Program Files\DriveDefender\data\application\Micrografx Picture Publisher v7.scr
C:\Program Files\DriveDefender\data\application\Micrografx Picture Publisher v8.scr
C:\Program Files\DriveDefender\data\application\Microsoft FrontPage Express.scr
C:\Program Files\DriveDefender\data\application\Microsoft FrontPage.scr
C:\Program Files\DriveDefender\data\application\Microsoft Help Workshop.scr
C:\Program Files\DriveDefender\data\application\Microsoft HTML Help.scr
C:\Program Files\DriveDefender\data\application\Microsoft Imaging.scr
C:\Program Files\DriveDefender\data\application\Microsoft Managemant Console.scr
C:\Program Files\DriveDefender\data\application\Microsoft Netmeeting.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 2003.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office 97.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office InfoPath 2003.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office XP.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office.scr
C:\Program Files\DriveDefender\data\applic

Répondre à titou600

la suite excuse pour les manipulations



C:\Program Files\DriveDefender\data\application\Microsoft Office InfoPath 2003.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office XP.scr
C:\Program Files\DriveDefender\data\application\Microsoft Office.scr
C:\Program Files\DriveDefender\data\application\Microsoft Outlook Express 5.0.scr
C:\Program Files\DriveDefender\data\application\Microsoft Photo Editor 3.x.scr
C:\Program Files\DriveDefender\data\application\MicroSoft PhotoDraw.scr
C:\Program Files\DriveDefender\data\application\Microsoft Picture It Publishing.scr
C:\Program Files\DriveDefender\data\application\Microsoft Publisher 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Visual Studio 6.scr
C:\Program Files\DriveDefender\data\application\Microsoft Windows Paint.scr
C:\Program Files\DriveDefender\data\application\Microsoft Windows WordPad.scr
C:\Program Files\DriveDefender\data\application\Microsoft Word 2000.scr
C:\Program Files\DriveDefender\data\application\Microsoft Word Backup Files.scr
C:\Program Files\DriveDefender\data\application\Microsoft Works 4.0.scr
C:\Program Files\DriveDefender\data\application\Mijenix Powerdesk 4.0.scr
C:\Program Files\DriveDefender\data\application\MIRC.scr
C:\Program Files\DriveDefender\data\application\miroMEDIA PCTV.scr
C:\Program Files\DriveDefender\data\application\mixmeister.scr
C:\Program Files\DriveDefender\data\application\Morpheus.scr
C:\Program Files\DriveDefender\data\application\MovieXone 1.0.scr
C:\Program Files\DriveDefender\data\application\Mozart 4.0.scr
C:\Program Files\DriveDefender\data\application\ms autoroute express.scr
C:\Program Files\DriveDefender\data\application\MS WORD.scr
C:\Program Files\DriveDefender\data\application\MSE.scr
C:\Program Files\DriveDefender\data\application\MSN Toolbar.scr
C:\Program Files\DriveDefender\data\application\Music Match Jukebox.scr
C:\Program Files\DriveDefender\data\application\MyWay Advertising.scr
C:\Program Files\DriveDefender\data\application\Napster Music Community.scr
C:\Program Files\DriveDefender\data\application\Naviscope.scr
C:\Program Files\DriveDefender\data\application\NEATO Labels.scr
C:\Program Files\DriveDefender\data\application\nero burning rom.scr
C:\Program Files\DriveDefender\data\application\Nero Vision.scr
C:\Program Files\DriveDefender\data\application\Net Vampire 3.x.scr
C:\Program Files\DriveDefender\data\application\netants.scr
C:\Program Files\DriveDefender\data\application\NetCaptor.scr
C:\Program Files\DriveDefender\data\application\netmeeting.scr
C:\Program Files\DriveDefender\data\application\Netsonic.scr
C:\Program Files\DriveDefender\data\application\Netzip Download Demon 3.x.scr
C:\Program Files\DriveDefender\data\application\NewsBin Pro 4.scr
C:\Program Files\DriveDefender\data\application\Norton AntiVirus 2000 (v6).scr
C:\Program Files\DriveDefender\data\application\Norton AntiVirus 2003.scr
C:\Program Files\DriveDefender\data\application\Norton Commander.scr
C:\Program Files\DriveDefender\data\application\Norton File Manager.scr
C:\Program Files\DriveDefender\data\application\Norton Firewall.scr
C:\Program Files\DriveDefender\data\application\Norton Internet Security.scr
C:\Program Files\DriveDefender\data\application\Norton LiveUpdate.scr
C:\Program Files\DriveDefender\data\application\Norton Utilities 2000.scr
C:\Program Files\DriveDefender\data\application\NotePad Plus.scr
C:\Program Files\DriveDefender\data\application\notetab lite.scr
C:\Program Files\DriveDefender\data\application\NoteTab Pro.scr
C:\Program Files\DriveDefender\data\application\Object Rescue.scr
C:\Program Files\DriveDefender\data\application\OmniPage 10.0.scr
C:\Program Files\DriveDefender\data\application\OnTrack Powerdesk 4.scr
C:\Program Files\DriveDefender\data\application\Ontrack PowerDesk 5.scr
C:\Program Files\DriveDefender\data\application\PackageForTheWeb.scr
C:\Program Files\DriveDefender\data\application\Paint Shop Pro 5.0.scr
C:\Program Files\DriveDefender\data\application\Paint Shop Pro 7.0.scr
C:\Program Files\DriveDefender\data\application\Password Safe.scr
C:\Program Files\DriveDefender\data\application\PE Explorer 1.95.scr
C:\Program Files\DriveDefender\data\application\Personal Ancestral File.scr
C:\Program Files\DriveDefender\data\application\photo magic 4.0.scr
C:\Program Files\DriveDefender\data\application\PhotoCanvas 2.0.scr
C:\Program Files\DriveDefender\data\application\Photodex Compupic Pro.scr
C:\Program Files\DriveDefender\data\application\PhotoDraw 2000.scr
C:\Program Files\DriveDefender\data\application\PhotoImpact 8.0.scr
C:\Program Files\DriveDefender\data\application\PhotoImpact Viewer 4.0.scr
C:\Program Files\DriveDefender\data\application\PicoZip.scr
C:\Program Files\DriveDefender\data\application\PictureIt Digital Image Pro 7.0.scr
C:\Program Files\DriveDefender\data\application\PKZip for Windows v2.60.03+.scr
C:\Program Files\DriveDefender\data\application\PolyView.scr
C:\Program Files\DriveDefender\data\application\Popup Purger.scr
C:\Program Files\DriveDefender\data\application\PopUpCop.scr
C:\Program Files\DriveDefender\data\application\Power archiver.scr
C:\Program Files\DriveDefender\data\application\PowerArc.scr
C:\Program Files\DriveDefender\data\application\PowerDVD.scr
C:\Program Files\DriveDefender\data\application\PowerZip.scr
C:\Program Files\DriveDefender\data\application\Privacy Eraser Pro.scr
C:\Program Files\DriveDefender\data\application\Putty hostkeys.scr
C:\Program Files\DriveDefender\data\application\PYTHON.scr
C:\Program Files\DriveDefender\data\application\QuickTime.scr
C:\Program Files\DriveDefender\data\application\Real Audio Player v6 v7 v8.scr
C:\Program Files\DriveDefender\data\application\Real Download v4.scr
C:\Program Files\DriveDefender\data\application\RealNetworks Real Download.scr
C:\Program Files\DriveDefender\data\application\RealOne & RealPlayer.scr
C:\Program Files\DriveDefender\data\application\RealVNC.scr
C:\Program Files\DriveDefender\data\application\RegEdit.scr
C:\Program Files\DriveDefender\data\application\Roxio Easy CD Creator.scr
C:\Program Files\DriveDefender\data\application\Save Now.scr
C:\Program Files\DriveDefender\data\application\Scour Exchange.scr
C:\Program Files\DriveDefender\data\application\Seal Module Mlayer.scr
C:\Program Files\DriveDefender\data\application\SearchAndBrowse.scr
C:\Program Files\DriveDefender\data\application\SearchAnt.scr
C:\Program Files\DriveDefender\data\application\SearchV.scr
C:\Program Files\DriveDefender\data\application\SearchWolf.scr
C:\Program Files\DriveDefender\data\application\SearchWWW.scr
C:\Program Files\DriveDefender\data\application\SideStep.scr
C:\Program Files\DriveDefender\data\application\Skype.scr
C:\Program Files\DriveDefender\data\application\Smart Explorer.scr
C:\Program Files\DriveDefender\data\application\SmartDraw 6.scr
C:\Program Files\DriveDefender\data\application\smartftp.scr
C:\Program Files\DriveDefender\data\application\SmartPops.scr
C:\Program Files\DriveDefender\data\application\Sonic Foundry's Acid 2.0.scr
C:\Program Files\DriveDefender\data\application\Sonique Player.scr
C:\Program Files\DriveDefender\data\application\Spinner Plus.scr
C:\Program Files\DriveDefender\data\application\SpotOn Browser plugin.scr
C:\Program Files\DriveDefender\data\application\Staff-FTP.scr
C:\Program Files\DriveDefender\data\application\Star Downloader.scr
C:\Program Files\DriveDefender\data\application\Stardialer.scr
C:\Program Files\DriveDefender\data\application\StarOffice 5.x.scr
C:\Program Files\DriveDefender\data\application\SubmitWolf Pro.scr
C:\Program Files\DriveDefender\data\application\Sun Java Cache.scr
C:\Program Files\DriveDefender\data\application\SureThing CD Labeler.scr
C:\Program Files\DriveDefender\data\application\SVAPlayer.scr
C:\Program Files\DriveDefender\data\application\SWiSH 2.0.scr
C:\Program Files\DriveDefender\data\application\Teleport Pro.scr
C:\Program Files\DriveDefender\data\application\Telnet.scr
C:\Program Files\DriveDefender\data\application\Text Pad 4.x.scr
C:\Program Files\DriveDefender\data\application\The Playa.scr
C:\Program Files\DriveDefender\data\application\Third Voice 1.x.scr
C:\Program Files\DriveDefender\data\application\Thumbs Plus 4.scr
C:\Program Files\DriveDefender\data\application\Timesink.scr
C:\Program Files\DriveDefender\data\application\TinyBar.scr
C:\Program Files\DriveDefender\data\application\TOPicks.scr
C:\Program Files\DriveDefender\data\application\Total Commander.scr
C:\Program Files\DriveDefender\data\application\transponder.scr
C:\Program Files\DriveDefender\data\application\Trellians Classify 98.scr
C:\Program Files\DriveDefender\data\application\Tribal Voice's PowWow.scr
C:\Program Files\DriveDefender\data\application\Trojan Remover.scr
C:\Program Files\DriveDefender\data\application\TSADBOT.scr
C:\Program Files\DriveDefender\data\application\UCmore toolbar.scr
C:\Program Files\DriveDefender\data\application\Ulead Gif Animator v4.0.scr
C:\Program Files\DriveDefender\data\application\Ulead GIF Animator v5.0.scr
C:\Program Files\DriveDefender\data\application\Ulead Photo Explorer v4.2.scr
C:\Program Files\DriveDefender\data\application\Ulead Photo Express.scr
C:\Program Files\DriveDefender\data\application\Ulead PhotoImpact v5.scr
C:\Program Files\DriveDefender\data\application\Ulead VideoStudio 4.0.scr
C:\Program Files\DriveDefender\data\application\Ultimate Paint.scr
C:\Program Files\DriveDefender\data\application\ULTImate Technology BV v5.5.scr
C:\Program Files\DriveDefender\data\application\UltraEdit v4.scr
C:\Program Files\DriveDefender\data\application\UltraEdit v7.scr
C:\Program Files\DriveDefender\data\application\UltraEdit.scr
C:\Program Files\DriveDefender\data\application\UltraISO 7.x.scr
C:\Program Files\DriveDefender\data\application\uTorrent 1.x.scr
C:\Program Files\DriveDefender\data\application\VBoxEdit.scr
C:\Program Files\DriveDefender\data\application\VirtualDub.scr
C:\Program Files\DriveDefender\data\application\VMWARE.scr
C:\Program Files\DriveDefender\data\application\Vueprint.scr
C:\Program Files\DriveDefender\data\application\VX2 Respondmiter.scr
C:\Program Files\DriveDefender\data\application\W32Dasm.scr
C:\Program Files\DriveDefender\data\application\Web Ferret v3.scr
C:\Program Files\DriveDefender\data\application\WebFerret.scr
C:\Program Files\DriveDefender\data\application\webhancer.scr
C:\Program Files\DriveDefender\data\application\Wildstylz.scr
C:\Program Files\DriveDefender\data\application\WildTangent.scr
C:\Program Files\DriveDefender\data\application\WinAce.scr
C:\Program Files\DriveDefender\data\application\winamp.scr
C:\Program Files\DriveDefender\data\application\Windows Commander.scr
C:\Program Files\DriveDefender\data\application\WinHTTrack Website Copier.scr
C:\Program Files\DriveDefender\data\application\WinOnCD.scr
C:\Program Files\DriveDefender\data\application\WinRar.scr
C:\Program Files\DriveDefender\data\application\Winshow.scr
C:\Program Files\DriveDefender\data\application\WinUAE.scr
C:\Program Files\DriveDefender\data\application\Winupie.scr
C:\Program Files\DriveDefender\data\application\WinVNC.scr
C:\Program Files\DriveDefender\data\application\WinZip v8.scr
C:\Program Files\DriveDefender\data\application\Wise Installer.scr
C:\Program Files\DriveDefender\data\application\Worm.Sobig.scr
C:\Program Files\DriveDefender\data\application\WurldMedia.scr
C:\Program Files\DriveDefender\data\application\Xara 3D v4.x.scr
C:\Program Files\DriveDefender\data\application\Xara Webstyle.scr
C:\Program Files\DriveDefender\data\application\XDialer.scr
C:\Program Files\DriveDefender\data\application\XING MP3 PLAYER.scr
C:\Program Files\DriveDefender\data\application\XLoader.scr
C:\Program Files\DriveDefender\data\application\Xolox.scr
C:\Program Files\DriveDefender\data\application\Xrenoder.scr
C:\Program Files\DriveDefender\data\application\Xupiter toolbar.scr
C:\Program Files\DriveDefender\data\application\Xzoomy.scr
C:\Program Files\DriveDefender\data\application\Yahoo Player.scr
C:\Program Files\DriveDefender\data\application\Yahoo! Toolbar.scr
C:\Program Files\DriveDefender\data\application\Yamaha S-YXG100.scr
C:\Program Files\DriveDefender\data\application\ZeroPopup.scr
C:\Program Files\DriveDefender\data\application\ZipMagic 2000.scr
C:\Program Files\DriveDefender\data\application\Zone Alarm.scr
C:\Program Files\DriveDefender\data\brand.dat
C:\Program Files\DriveDefender\data\firefox\Firefox - cache.scr
C:\Program Files\DriveDefender\data\firefox\Firefox - cookies.scr
C:\Program Files\DriveDefender\data\firefox\Firefox - history.scr
C:\Program Files\DriveDefender\data\GDCW.exe
C:\Program Files\DriveDefender\data\ie\ie cookies.scr
C:\Program Files\DriveDefender\data\ie\ie internet cache.scr
C:\Program Files\DriveDefender\data\ie\ie privacy history.scr
C:\Program Files\DriveDefender\data\ie\ie typed urls.scr
C:\Program Files\DriveDefender\data\ie\ie url history.scr
C:\Program Files\DriveDefender\data\ie\windows autocomplete.scr
C:\Program Files\DriveDefender\data\ie\windows downloaded files.scr
C:\Program Files\DriveDefender\data\ie\windows favorites order.scr
C:\Program Files\DriveDefender\data\ie\windows passwords.scr
C:\Program Files\DriveDefender\data\IH.exe
C:\Program Files\DriveDefender\data\messanger\aim.scr
C:\Program Files\DriveDefender\data\messanger\AOL Bart.scr
C:\Program Files\DriveDefender\data\messanger\AOL Instant Messenger.scr
C:\Program Files\DriveDefender\data\messanger\aolim.scr
C:\Program Files\DriveDefender\data\messanger\icq - download.scr
C:\Program Files\DriveDefender\data\messanger\icq - logs.scr
C:\Program Files\DriveDefender\data\messanger\Miranda ICQ.scr
C:\Program Files\DriveDefender\data\messanger\MSN Messenger User Account.scr
C:\Program Files\DriveDefender\data\messanger\Trillian cache.scr
C:\Program Files\DriveDefender\data\messanger\trillian downloads.scr
C:\Program Files\DriveDefender\data\messanger\trillian logs.scr
C:\Program Files\DriveDefender\data\messanger\yahoo messenger logs.scr
C:\Program Files\DriveDefender\data\messanger\Yahoo! Messenger.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - autocomplete.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - cache.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - cookies.scr
C:\Program Files\DriveDefender\data\mozilla\Mozilla - history.scr
C:\Program Files\DriveDefender\data\mozilla\mozilla - saved passwords.scr
C:\Program Files\DriveDefender\data\mozilla\Mozilla - typed urls.scr
C:\Program Files\DriveDefender\data\netscape\netscape - cache.scr
C:\Program Files\DriveDefender\data\netscape\netscape - cookies.scr
C:\Program Files\DriveDefender\data\netscape\netscape - history.scr
C:\Program Files\DriveDefender\data\netscape\Netscape Navigator - last trusted apps.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - cache.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - cookies.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - Download.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - history.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - misc.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - mru.scr
C:\Program Files\DriveDefender\data\opera\Opera Browser - visited.scr
C:\Program Files\DriveDefender\data\sfl.dat
C:\Program Files\DriveDefender\data\skin.skn
C:\Program Files\DriveDefender\data\sr.log
C:\Program Files\DriveDefender\data\srl.dat
C:\Program Files\DriveDefender\data\windows\Direct Draw.scr
C:\Program Files\DriveDefender\data\windows\direct input.scr
C:\Program Files\DriveDefender\data\windows\last files.scr
C:\Program Files\DriveDefender\data\windows\Microsoft Send-To Extensions.scr
C:\Program Files\DriveDefender\data\windows\windows applog.scr
C:\Program Files\DriveDefender\data\windows\windows documents.scr
C:\Program Files\DriveDefender\data\windows\Windows Downloaded Installations.scr
C:\Program Files\DriveDefender\data\windows\Windows Empty Recycle Bin.scr
C:\Program Files\DriveDefender\data\windows\Windows Explorer User Assistant history.scr
C:\Program Files\DriveDefender\data\windows\windows findfile.scr
C:\Program Files\DriveDefender\data\windows\Windows FTP Accounts.scr
C:\Program Files\DriveDefender\data\windows\windows hotfix uninstall.scr
C:\Program Files\DriveDefender\data\windows\windows logfiles.scr
C:\Program Files\DriveDefender\data\windows\Windows Mapped Drives.scr
C:\Program Files\DriveDefender\data\windows\windows media player 7.scr
C:\Program Files\DriveDefender\data\windows\windows minidump.scr
C:\Program Files\DriveDefender\data\windows\windows MUICache.scr
C:\Program Files\DriveDefender\data\windows\windows network links.scr
C:\Program Files\DriveDefender\data\windows\windows opensave.scr
C:\Program Files\DriveDefender\data\windows\windows openwith.scr
C:\Program Files\DriveDefender\data\windows\windows prefetch.scr
C:\Program Files\DriveDefender\data\windows\windows reg history.scr
C:\Program Files\DriveDefender\data\windows\windows run history.scr
C:\Program Files\DriveDefender\data\windows\windows search.scr
C:\Program Files\DriveDefender\data\windows\windows start menu order.scr
C:\Program Files\DriveDefender\data\windows\windows stream history.scr
C:\Program Files\DriveDefender\data\windows\windows temp.scr
C:\Program Files\DriveDefender\data\windows\windows update.scr
C:\Program Files\DriveDefender\data\windows\Windows XP Unread Mail Count.scr
C:\Program Files\DriveDefender\default.ini
C:\Program Files\DriveDefender\diagnosis.dat
C:\Program Files\DriveDefender\errors.log
C:\Program Files\DriveDefender\GDC.exe
C:\Program Files\DriveDefender\GDC.url
C:\Program Files\DriveDefender\gfx\button_arrow.bmp
C:\Program Files\DriveDefender\gfx\button_arrow2.bmp
C:\Program Files\DriveDefender\gfx\buy.bmp
C:\Program Files\DriveDefender\gfx\checked.bmp
C:\Program Files\DriveDefender\gfx\custom.bmp
C:\Program Files\DriveDefender\gfx\customcleanup.bmp
C:\Program Files\DriveDefender\gfx\header.bmp
C:\Program Files\DriveDefender\gfx\icon.ico
C:\Program Files\DriveDefender\gfx\icon_about.ico
C:\Program Files\DriveDefender\gfx\icon_checked.ico
C:\Program Files\DriveDefender\gfx\icon_grayed.ico
C:\Program Files\DriveDefender\gfx\icon_link.ico
C:\Program Files\DriveDefender\gfx\icon_manual.ico
C:\Program Files\DriveDefender\gfx\icon_quit.ico
C:\Program Files\DriveDefender\gfx\icon_support.ico
C:\Program Files\DriveDefender\gfx\icon_unchecked.ico
C:\Program Files\DriveDefender\gfx\icon_uncheked.ico
C:\Program Files\DriveDefender\gfx\icon_uninstall.ico
C:\Program Files\DriveDefender\gfx\icon_update.ico
C:\Program Files\DriveDefender\gfx\log.bmp
C:\Program Files\DriveDefender\gfx\logo.bmp
C:\Program Files\DriveDefender\gfx\register.bmp
C:\Program Files\DriveDefender\gfx\settings.bmp
C:\Program Files\DriveDefender\gfx\sign_green.bmp
C:\Program Files\DriveDefender\gfx\sign_green_big.bmp
C:\Program Files\DriveDefender\gfx\sign_red.bmp
C:\Program Files\DriveDefender\gfx\sign_red_big.bmp
C:\Program Files\DriveDefender\gfx\sign_yellow.bmp
C:\Program Files\DriveDefender\gfx\splash.bmp
C:\Program Files\DriveDefender\gfx\status_good.bmp
C:\Program Files\DriveDefender\gfx\status_risk.bmp
C:\Program Files\DriveDefender\gfx\support.bmp
C:\Program Files\DriveDefender\gfx\sys_shield.bmp
C:\Program Files\DriveDefender\gfx\sys_update.bmp
C:\Program Files\DriveDefender\gfx\sysstatus.bmp
C:\Program Files\DriveDefender\gfx\unchecked.bmp
C:\Program Files\DriveDefender\gfx\update.bmp
C:\Program Files\DriveDefender\lang\Arabic.lng
C:\Program Files\DriveDefender\lang\Brazilian.lng
C:\Program Files\DriveDefender\lang\Catalan.lng
C:\Program Files\DriveDefender\lang\Chinese.lng
C:\Program Files\DriveDefender\lang\Czech.lng
C:\Program Files\DriveDefender\lang\Danish.lng
C:\Program Files\DriveDefender\lang\Dutch.lng
C:\Program Files\DriveDefender\lang\English.lng
C:\Program Files\DriveDefender\lang\Finnish.lng
C:\Program Files\DriveDefender\lang\French.lng
C:\Program Files\DriveDefender\lang\German.lng
C:\Program Files\DriveDefender\lang\Greek.lng
C:\Program Files\DriveDefender\lang\Hebrew.lng
C:\Program Files\DriveDefender\lang\Italian.lng
C:\Program Files\DriveDefender\lang\Japanese.lng
C:\Program Files\DriveDefender\lang\Malayan.lng
C:\Program Files\DriveDefender\lang\Norwegian.lng
C:\Program Files\DriveDefender\lang\Polish.lng
C:\Program Files\DriveDefender\lang\Portuguese.lng
C:\Program Files\DriveDefender\lang\Russian.lng
C:\Program Files\DriveDefender\lang\Slovenian.lng
C:\Program Files\DriveDefender\lang\Spanish.lng
C:\Program Files\DriveDefender\lang\Swedish.lng
C:\Program Files\DriveDefender\lang\Thai.lng
C:\Program Files\DriveDefender\lang\Turkish.lng
C:\Program Files\DriveDefender\License.rtf
C:\Program Files\DriveDefender\plug\GDCPatch.exe
C:\Program Files\DriveDefender\plug\stpHlpr.dll
C:\Program Files\DriveDefender\Readme.rtf
C:\Program Files\DriveDefender\runtime
C:\Program Files\DriveDefender\Scan_report.htm
C:\Program Files\DriveDefender\support.url
C:\Program Files\DriveDefender\unins000.dat
C:\Program Files\DriveDefender\unins000.exe
C:\Program Files\DriveDefender\upd_cr.log
C:\Program Files\DriveDefender\updater.dat
C:\Program Files\DriveDefender\updater.exe
C:\Program Files\DriveDefender\ver.dat
C:\Program Files\Fichiers communs\DriveDefender
C:\Program Files\Fichiers communs\DriveDefender\stm.exe
C:\Program Files\Fichiers communs\StorageProtector
C:\Program Files\Fichiers communs\StorageProtector\strpmon.exe
C:\Program Files\FunWebProducts
C:\Program Files\MyWebSearch
C:\Program Files\MyWebSearch\bar\History\search2
C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat
C:\Program Files\outerinfo
C:\Program Files\outerinfo\FF\chrome.manifest
C:\Program Files\outerinfo\FF\components\OuterinfoAds.xpt
C:\Program Files\outerinfo\FF\install.rdf
C:\Program Files\outerinfo\Terms.rtf
C:\Program Files\Starware370
C:\Program Files\Starware370\brand.bmp
C:\Program Files\Starware370\icons\star_16.ico
C:\Program Files\Starware370\Starware370Config.xml
C:\Program Files\Starware370\Starware370Uninstall.exe
C:\WINDOWS\BM5fba1451.xml
C:\WINDOWS\curity~1
C:\WINDOWS\curity~1\j?vaw.exe
C:\WINDOWS\dobe~1
C:\WINDOWS\dobe~1\?dobe\
C:\WINDOWS\dobe~1\winlogon.exe
C:\WINDOWS\pskt.ini
C:\WINDOWS\system32\autvhmom.ini
C:\WINDOWS\system32\awtttst.dll
C:\WINDOWS\system32\cbeeg.ini
C:\WINDOWS\system32\cbeeg.ini2
C:\WINDOWS\system32\cbxxxuv.dll
C:\WINDOWS\system32\ddcawts.dll
C:\WINDOWS\system32\ddccyab.dll
C:\WINDOWS\system32\ddcdaby.dll
C:\WINDOWS\system32\fcccyvw.dll
C:\WINDOWS\system32\fccyvvs.dll
C:\WINDOWS\system32\gebccaa.dll
C:\WINDOWS\system32\gebyxvw.dll
C:\WINDOWS\system32\geebc.dll
C:\WINDOWS\system32\jkkjijk.dll
C:\WINDOWS\system32\jkklkhg.dll
C:\WINDOWS\system32\ljjhfdb.dll
C:\WINDOWS\system32\mljghec.dll
C:\WINDOWS\system32\mljhghe.dll
C:\WINDOWS\system32\mljji.dll
C:\WINDOWS\system32\mnnmp.ini
C:\WINDOWS\system32\mnnmp.ini2
C:\WINDOWS\system32\nGpxx18
C:\WINDOWS\system32\pmnnm.dll
C:\WINDOWS\system32\qomjhif.dll
C:\WINDOWS\system32\qomllkl.dll
C:\WINDOWS\system32\tuvvuut.dll
C:\WINDOWS\system32\UpMedia
C:\WINDOWS\system32\UpMedia\ContentTool.dll
C:\WINDOWS\system32\UpMedia\SearchTool.dll
C:\WINDOWS\system32\UpMedia\uninstallSE.exe
C:\WINDOWS\system32\wvurrpp.dll
C:\WINDOWS\system32\wyadd.ini
C:\WINDOWS\system32\wyadd.ini2
C:\WINDOWS\system32\xxyyxvw.dll
C:\winlogo.exe

.
((((((((((((((((((((((((((((( Fichiers créés 2008-02-21 to 2008-03-21 ))))))))))))))))))))))))))))))))))))
.

2008-03-18 22:15 . 2008-03-18 22:15 273,680 --a------ C:\catchme2008-03-21_105627.32.zip
2008-03-18 21:04 . 2008-03-18 22:09 <REP> d-------- C:\Program Files\Navilog1
2008-03-18 20:54 . 2008-03-18 20:54 <REP> d-------- C:\WINDOWS\ERUNT
2008-03-18 20:53 . 2008-03-18 21:02 <REP> d-------- C:\SDFix
2008-03-16 09:06 . 2008-03-16 11:03 <REP> d-------- C:\VundoFix Backups
2008-03-16 09:05 . 2008-03-16 09:05 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-03-16 00:23 . 2008-03-16 00:23 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\DefenseNetSurfage
2008-03-15 23:37 . 2008-03-15 23:37 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\BitDefender
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage r‚seau
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\Voisinage d'impression
2008-03-15 18:29 . 2004-08-16 16:55 <REP> d--h----- C:\Documents and Settings\Administrateur\ModŠles
2008-03-15 18:29 . 2004-08-16 17:19 <REP> dr------- C:\Documents and Settings\Administrateur\Mes documents
2008-03-15 18:29 . 2004-08-16 16:55 <REP> dr------- C:\Documents and Settings\Administrateur\Menu D‚marrer
2008-03-15 18:29 . 2006-05-18 19:29 <REP> dr------- C:\Documents and Settings\Administrateur\Favoris
2008-03-15 18:29 . 2008-03-21 11:00 <REP> dr------- C:\Documents and Settings\Administrateur\Bureau
2008-03-15 18:29 . 2006-05-18 19:29 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver
2008-03-15 18:29 . 2006-05-18 19:32 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\Symantec
2008-03-03 15:08 . 2008-03-03 15:08 <REP> d-------- C:\Documents and Settings\Manu.SN047852920098\Application Data\DefenseNetSurfage
2008-03-03 15:01 . 2008-03-03 15:01 <REP> d-------- C:\Documents and Settings\Manu.SN047852920098\Application Data\BitDefender
2008-03-02 21:56 . 2008-03-18 22:36 121 --a------ C:\WINDOWS\bdagent.INI
2008-03-02 18:36 . 2008-03-02 18:36 <REP> d-------- C:\Documents and Settings\Stephane\Application Data\BitDefender
2008-03-02 15:23 . 2008-03-02 15:23 <REP> d-------- C:\Program Files\BitDefender
2008-03-02 15:23 . 2008-03-02 15:23 <REP> d-------- C:\Documents and Settings\All Users\Application Data\BitDefender
2008-03-02 15:22 . 2008-03-02 15:23 <REP> d-------- C:\Program Files\Fichiers communs\BitDefender
2008-03-02 14:02 . 2008-03-02 14:02 52,736 --a------ C:\app.MSNFix
2008-03-02 14:02 . 2008-03-02 14:02 223 --a------ C:\7892.bat
2008-02-29 18:07 . 2008-03-16 16:41 143 --a------ C:\WINDOWS\system32\mcrh.MSNFix
2008-02-29 17:58 . 2008-02-29 17:58 <REP> d-------- C:\Documents and Settings\Stephane\Application Data\DefenseNetSurfage
2008-02-29 11:44 . 2008-02-29 11:44 <REP> d-------- C:\Program Files\Fichiers communs\DefenseNetSurfage
2008-02-29 11:44 . 2008-02-29 11:44 <REP> d-------- C:\Documents and Settings\All Users\Application Data\DefenseNetSurfage
2008-02-29 11:44 . 2007-02-13 08:09 388,126 --a------ C:\WINDOWS\system32\sqlite3.dll
2008-02-27 19:29 . 2008-02-27 19:29 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Messenger Plus!
2008-02-25 10:40 . 2008-03-15 19:24 <REP> d-------- C:\WINDOWS\system32\iDlo18
2008-02-24 12:40 . 2008-03-15 19:24 <REP> d-------- C:\WINDOWS\system32\fr3
2008-02-24 12:40 . 2008-03-16 15:37 <REP> d-------- C:\WINDOWS\system32\br1
2008-02-24 12:40 . 2008-03-02 15:39 <REP> d-------- C:\WINDOWS\system32\bev4
2008-02-24 12:40 . 2008-02-24 12:40 <REP> d-------- C:\WINDOWS\system32\auz9
2008-02-24 12:39 . 2008-02-24 12:39 36,864 --a------ C:\WINDOWS\system32\hgghhgf.dll.vir

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-15 19:41 --------- d-----w C:\Program Files\eMule
2008-03-15 18:26 --------- d-----w C:\Program Files\Circle Developement
2008-03-15 18:24 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\great scr logo
2008-03-15 16:50 --------- d-----w C:\Program Files\Fichiers communs\Symantec Shared
2008-03-04 12:33 --------- d-----w C:\Documents and Settings\Stephane\Application Data\VMNTOOLBAR
2008-03-03 14:22 374 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb6334.dat
2008-03-02 19:24 --------- d-----w C:\Program Files\Lavasoft
2008-03-02 19:19 --------- d-----w C:\Program Files\Micro Application
2008-02-28 16:16 --------- d-----w C:\Program Files\Windows Live
2008-02-27 19:13 --------- d-----w C:\Program Files\Java
2008-02-27 18:31 --------- d-----w C:\Program Files\Winamp
2008-02-27 18:14 --------- d-----w C:\Documents and Settings\All Users\Application Data\Readme Live Axis Tons
2008-02-27 18:13 --------- d-----w C:\Program Files\LimeWire
2008-02-26 17:20 18,432 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb41.dat
2008-02-26 17:15 555 ----a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\internaldb8467.dat
2008-02-26 17:15 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\VMNTOOLBAR
2008-02-26 17:08 --------- d-----w C:\Documents and Settings\Manu.SN047852920098\Application Data\LimeWire
2008-02-26 17:00 --------- d-----w C:\Documents and Settings\Stephane\Application Data\LimeWire
2008-02-23 12:11 --------- d-----w C:\Program Files\Messenger Plus! Live
2008-02-14 18:15 --------- d-----w C:\Program Files\Windows Media Components
2008-02-14 18:13 --------- d-----w C:\Program Files\NRJ
2008-02-01 10:17 587,264 ----a-w C:\WINDOWS\WLXPGSS.SCR
2008-01-28 15:57 --------- d-----w C:\Documents and Settings\Stephane\Application Data\MAGIX
2008-01-13 17:32 231,872 ----a-w C:\WINDOWS\EasyGifAnimator_Toolbar_Uninstaller_5781.exe
2007-10-04 09:46 142 ----a-w C:\Program Files\Fichiers communs\rtepre.html
2006-11-05 17:03 60,240 -c--a-w C:\Documents and Settings\Manu.SN047852920098\Application Data\GDIPFONTCACHEV1.DAT
.

------- Sigcheck -------

2004-08-05 13:00 14336 1bd6c2f707a275cb7c16fd99fe0f31ca C:\WINDOWS\system32\svchost.exe

2005-03-02 19:20 578048 c34920eb988ce98910bd6b0417f334eb C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\user32.dll
2007-03-08 16:50 579072 4d88aaf39adabfe45958ea1384e2c4ff C:\WINDOWS\$hf_mig$\KB925902\SP2QFE\user32.dll
2004-08-05 13:00 578048 e46fb493e3b33704f0715020cf52106b C:\WINDOWS\$NtUninstallKB890859$\user32.dll
2005-03-02 19:10 578048 0df75fb73f705b011630159a43d7c354 C:\WINDOWS\$NtUninstallKB925902$\user32.dll
2007-03-08 16:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\user32.dll
2007-03-08 16:37 578560 753354f594809a9b96f73999b435a533 C:\WINDOWS\system32\dllcache\user32.dll

2004-08-05 13:00 82944 bc41f51a39d3b255805fdb759b7814ae C:\WINDOWS\system32\ws2_32.dll

2004-08-05 13:00 506368 d2de785aeab0bb8ca4c14a8a199dbe4e C:\WINDOWS\system32\winlogon.exe

2004-08-05 13:00 182912 558635d3af1c7546d26067d5d9b6959e C:\WINDOWS\system32\drivers\ndis.sys

2004-08-05 13:00 29056 4448006b6bc60e6c027932cfc38d6855 C:\WINDOWS\system32\drivers\ip6fw.sys

2005-03-02 09:13 2059008 5311776074b6c13f983dc75baeac9c0c C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntkrnlpa.exe
2006-12-19 19:45 2061440 8b039efbe4c9aa23f152ffa0e238b8fa C:\WINDOWS\$hf_mig$\KB929338\SP2QFE\ntkrnlpa.exe
2007-02-28 17:08 2061440 7a56a64eb50399613587e90292dd2aab C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ntkrnlpa.exe
2004-08-05 13:00 2058880 f252fae094c54572ece38a039f2103c4 C:\WINDOWS\$NtUninstallKB890859$\ntkrnlpa.exe
2005-03-02 19:07 2058880 73fa9c95d235844a36968c7852c7dbdd C:\WINDOWS\$NtUninstallKB929338$\ntkrnlpa.exe
2006-12-19 19:22 2059648 06015d137b02542f07d5cd7b144df942 C:\WINDOWS\$NtUninstallKB931784$\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\Driver Cache\i386\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\system32\ntkrnlpa.exe
2007-02-28 17:02 2059648 a1d5231403329478ae4fe2778c55c77f C:\WINDOWS\system32\dllcache\ntkrnlpa.exe

2005-03-02 19:13 2181632 3e2a0a4a0c0b19fc113618a9562a3b2a C:\WINDOWS\$hf_mig$\KB890859\SP2QFE\ntoskrnl.exe
2006-12-19 19:45 2184064 1f3fa2065e6e043a1d82a487b5da309c C:\WINDOWS\$hf_mig$\KB929338\SP2QFE\ntoskrnl.exe
2007-02-28 17:08 2184192 8e244108562e0e452eb68dff64cb08a9 C:\WINDOWS\$hf_mig$\KB931784\SP2QFE\ntoskrnl.exe
2004-08-05 13:00 2183040 7d38ce4398e6aa6339b4644feadcc0d8 C:\WINDOWS\$NtUninstallKB890859$\ntoskrnl.exe
2005-03-02 19:08 2181376 63729dd0f2aae36cc52b89c05505146c C:\WINDOWS\$NtUninstallKB929338$\ntoskrnl.exe
2006-12-19 19:22 2182400 d27929db7b7f92f9d0f8ec9ba01c601c C:\WINDOWS\$NtUninstallKB931784$\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\Driver Cache\i386\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\system32\ntoskrnl.exe
2007-02-28 17:02 2182400 7d6d19aac51a4325f6039f083c22303c C:\WINDOWS\system32\dllcache\ntoskrnl.exe

2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\explorer.exe
2007-06-13 14:10 1037312 b795475444d6d57a572c14b9e1a29839 C:\WINDOWS\$hf_mig$\KB938828\SP2QFE\explorer.exe
2004-08-05 13:00 1036288 4c33e5b9a6197b6ed215f6cfba0a2daa C:\WINDOWS\$NtUninstallKB938828$\explorer.exe
2007-06-13 14:22 1037312 d0288319660edcfed07c7e74c4ea38a5 C:\WINDOWS\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 13:00 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [2004-08-05 13:00 208952]
"PHIME2002ASync"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-05 13:00 455168]
"PHIME2002A"="C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.exe" [2004-08-05 13:00 455168]
"NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [2005-04-01 15:16 5562368]
"nwiz"="nwiz.exe" [2005-04-01 15:16 1495040 C:\WINDOWS\system32\nwiz.exe]
"NvMediaCenter"="NvMCTray.dll" [2005-04-01 15:16 86016 C:\WINDOWS\system32\nvmctray.dll]
"SoundMan"="SOUNDMAN.EXE" [2005-01-20 19:04 77824 C:\WINDOWS\SOUNDMAN.EXE]
"ccApp"="C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" [2005-04-12 12:39 58992]
"PCMService"="c:\Apps\Powercinema\PCMService.exe" [2005-04-29 08:07 127118]
"Symantec NetDriver Monitor"="C:\PROGRA~1\SYMNET~1\SNDMon.exe" [2006-05-19 14:00 100056]
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2006-05-18 19:34 180269]
"EPSON Stylus C66 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.exe" [2003-11-26 14:00 99840]
"DownloadAccelerator"="C:\Program Files\DAP\DAP.exe" [2006-09-27 18:09 2864128]
"BluetoothAuthenticationAgent"="bthprops.cpl" [2004-08-05 13:00 110592 C:\WINDOWS\system32\bthprops.cpl]
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [2007-07-28 11:38 1836544]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-12-04 14:00 79224]
"YeppStudioAgent"="C:\Program Files\Samsung\SamsungMediaStudio4.1\SamsungMediaStudioAgent.exe" [ ]
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-12-11 10:56 286720]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-12-11 12:10 267048]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 00:11 132496]
"BitDefender Antiphishing Helper"="C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe" [2007-08-27 15:24 49152]
"BDAgent"="C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe" [2007-10-01 15:23 294912]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 13:00 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\AOL 9.0\\aol.exe"=
"C:\\WINDOWS\\system32\\sessmgr.exe"=
"C:\\APPS\\Inventime\\my.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=

S3 Bdfndisf;BitDefender Firewall NDIS Filter Service;C:\WINDOWS\system32\DRIVERS\bdfndisf.sys [2007-09-25 11:01]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
bdx REG_MULTI_SZ scan

.
Contenu du dossier 'Scheduled Tasks/Tâches planifiées'
"2008-02-25 19:00:03 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
"2008-03-15 23:00:40 C:\WINDOWS\Tasks\B1090D53913EB403.job"
- c:\docume~1\manu~1.sn0\applic~1\greats~1\Once Bleh Cdrom.exe
"2008-03-05 19:10:15 C:\WINDOWS\Tasks\Symantec NetDetect.job"
- C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE
"2008-03-13 17:54:02 C:\WINDOWS\Tasks\Vérifier les mises à jour de Windows Live Toolbar.job"

a+
Titou600

Répondre à titou600

:hello: Bonjour,

Je te réponds en fin de soirée ! :super:

;)

N.B : On a déjà bien avancé, mais tu es encore infecté(e). Cela dit, quand on en aura fini tout les deux, ton pc sera tout propre :D

Bonne soirée :hello:

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Egwene a écrit :

:hello: Bonjour,

Je te réponds en fin de soirée ! :super:

;)

N.B : On a déjà bien avancé, mais tu es encore infecté(e). Cela dit, quand on en aura fini tout les deux, ton pc sera tout propre :D

Bonne soirée :hello:



:hello:

ok je verrais ca pour demain matin avec tes réponses car ma fille veux squatter le pc

a+
Titou600
J'espere qu'il sera tout propre car franchement tu m'aide vraiment bien et ca me permet de voir autre chose.
:pt1cable:


Répondre à titou600