Tom's Guide > Forum > Sécurité - Virus > clicks.smartbizsearch.com comment s'en debarasser ?

clicks.smartbizsearch.com comment s'en debarasser ?

Forum Sécurité - Virus : clicks.smartbizsearch.com comment s'en debarasser ?

TomsGuide.com : 800 000 inscrits répondent à toutes vos questions high-tech et informatique. Pour obtenir de l'aide, inscrivez-vous gratuitement !
Mot :    Pseudo :           
 

Bonjour,
Depuis quelques mois déjà un un virus ou spyware. Quand je vais sur google et je fais des recherches je clique sur un lien pour ouvrir une page trouvée, en général en haut de la liste et là je suis renvoyé vers clicks.smartbizsearch.com .
ça arrive environ 1 fois sur 5.
Je n'arrive pas à m'en debarasser. J'ai essayé des progmammes comme Spybot, Ad aware... mais rien à faire ils ne detectent rien d'anormal.

Voici un rapport HijackThis:

C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\netdde.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\IDM\IDMan.exe
C:\IDM\IEMonitor.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.free.fr:3128
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\IDM\IDMIECC.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {100EB1FD-D03E-47FD-81F3-EE91287F9465} - (no file)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {6D7B211A-88EA-490c-BAB9-3600D8D7C503} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE" C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: AutorunsDisabled
O4 - Startup: MiniMinder.lnk = D:\Program Files\MiniMind\MiniMind.exe
O4 - Global Startup: -
O4 - Global Startup: HotKeyPlus.Lnk = C:\Hotkey plus\HotKeyPlus.exe
O4 - Global Startup: Wireless Configuration Utility HW.15.lnk = C:\Program Files\TRENDnet1\TRENDnet TEW-421PC_TEW-423PI\WlanCU.exe
O8 - Extra context menu item: Download all links with IDM - C:\IDM\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\IDM\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\IDM\IEExt.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro7\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: *.hotmail.com
O15 - Trusted Zone: *.live.com
O15 - Trusted Zone: *.msn.com
O15 - Trusted Zone: *.passport.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://www.touslesdrivers.com/fich [...] b?version=
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} - http://acs.pandasoftware.com/activ [...] asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O16 - DPF: {C7C7152F-6E85-44F3-A14B-A7F85FDDEA3B} (InstallerCtrl Class) - http://www.tellmemore-online.com/bin/tol7inst.cab
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O24 - Desktop Component AutorunsDisabled: (no name) - (no file)

--
End of file - 6830 bytes

Que dois-je fais svp ?


Message édité par sniperbond le 09-04-2008 à 18:08:22
Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

:hello:

Ton windows est-il cracké/légal ?

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Oui mon windows est légal pourquoi ?

Répondre à sniperbond

Re,

Car il n'est pas à jour. On le mettra à jour à la fin de la désinfection :)

Enlève le lien que tu as mis dans ton premier message.

Télécharge Deckard's System Scanner (DSS) (ou DSS) sur ton Bureau.
NB : Tu dois être connecté avec des droits d'Administrateur.

  • ferme toutes les applications et fenêtres
  • double-clique sur dss.exe pour le lancer et suis les instructions ci-dessous

Attention, il est conseillé de stopper temporairement les logiciels résidents de protection (pare-feu, antivirus, etc.)

  • s'il s'agit d'une première utilisation ou d'une nouvelle version de DSS :
  • tu devras cliquer 2 fois sur le OK des boîtes de dialogue

Attention, si tu tardes trop, la réponse Abandon sera automatiquement validée

  • quand le traitement est terminé (clique sur OK), deux fichiers texte s'affichent :

main.txt <- ouvert en premier plan et en plein écran
extra.txt <- ouvert en second plan et en fenêtré (regarde la barre des taches)
S'il s'agit d'une utilisation supplémentaire de DSS :

  • tu n'auras pas de boîte de dialogue (pas de OK)
  • quand le traitement est terminé, un fichier texte s'affiche :

main.txt <- ouvert en premier plan et en plein écran

  • copie (Ctrl+A puis Ctrl+C) et colle (Ctrl+V) le contenu de main.txt dans ton prochain post
  • copie de même le contenu de extra.txt dans ton prochain post, si tu as ce fichier (première utilisation)
  • n'oublie pas de réactiver les protections si elles ont été stoppées.




Ce que fait DSS :

  • crée un point de restauration dans Windows XP et Vista
  • nettoie les fichiers temporaires, DPF-Downloaded Program Files et le Cache Internet, vide la Corbeille de tous les lecteurs
  • vérifie quelques zones importantes de ton système et établit un rapport pour examen par ton conseiller en sécurité. DSS lance automatiquement HijackThis pour toi; il va aussi créer un raccourci HijackThis sur ton Bureau si tu n'as pas déjà HijackThis d'installé.


;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Voici le contenu du main.txt

Deckard's System Scanner v20071014.68
Run by Pavel on 2008-04-09 17:54:42
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

Successfully created a Deckard's System Scanner Restore Point.


-- Last 5 Restore Point(s) --
30: 2008-04-09 15:54:48 UTC - RP627 - Deckard's System Scanner Restore Point
29: 2008-04-09 10:01:26 UTC - RP626 - fixwareout
28: 2008-04-08 10:23:41 UTC - RP625 - Point de vérification système
27: 2008-04-06 18:47:41 UTC - RP624 - Removed PlayLinc
26: 2008-04-06 18:30:00 UTC - RP623 - Google Earth a été supprimé.


-- First Restore Point --
1: 2008-03-25 17:13:20 UTC - RP598 - Removed Alpha Prime DEMO


Backed up registry hives.
Performed disk cleanup.



-- HijackThis (run as Pavel.exe) -----------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:56:57, on 09/04/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\netdde.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Eset\nod32kui.exe
C:\Hotkey plus\HotKeyPlus.exe
C:\Program Files\TRENDnet1\TRENDnet TEW-421PC_TEW-423PI\WlanCU.exe
C:\IDM\IEMonitor.exe
C:\Documents and Settings\Pavel\Bureau\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Pavel.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.free.fr:3128
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\IDM\IDMIECC.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {100EB1FD-D03E-47FD-81F3-EE91287F9465} - (no file)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {6D7B211A-88EA-490c-BAB9-3600D8D7C503} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE" C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Startup: AutorunsDisabled
O4 - Startup: MiniMinder.lnk = D:\Program Files\MiniMind\MiniMind.exe
O4 - Global Startup: -
O4 - Global Startup: HotKeyPlus.Lnk = C:\Hotkey plus\HotKeyPlus.exe
O4 - Global Startup: Wireless Configuration Utility HW.15.lnk = C:\Program Files\TRENDnet1\TRENDnet TEW-421PC_TEW-423PI\WlanCU.exe
O8 - Extra context menu item: Download all links with IDM - C:\IDM\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\IDM\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\IDM\IEExt.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro7\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: *.hotmail.com
O15 - Trusted Zone: *.live.com
O15 - Trusted Zone: *.msn.com
O15 - Trusted Zone: *.passport.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activ [...] stubie.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://www.touslesdrivers.com/fich [...] b?version=
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} - http://acs.pandasoftware.com/activ [...] asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O16 - DPF: {C7C7152F-6E85-44F3-A14B-A7F85FDDEA3B} (InstallerCtrl Class) - http://www.tellmemore-online.com/bin/tol7inst.cab
O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O24 - Desktop Component AutorunsDisabled: (no name) - (no file)

--
End of file - 6993 bytes

-- File Associations -----------------------------------------------------------

All associations okay.


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

R0 sfdrv01 (StarForce Protection Environment Driver (version 1.x)) - c:\windows\system32\drivers\sfdrv01.sys <Not Verified; Protection Technology; StarForce Protection System>
R0 sfhlp02 (StarForce Protection Helper Driver (version 2.x)) - c:\windows\system32\drivers\sfhlp02.sys <Not Verified; Protection Technology; StarForce Protection System>
R0 sfsync02 (StarForce Protection Synchronization Driver (version 2.x)) - c:\windows\system32\drivers\sfsync02.sys <Not Verified; Protection Technology; StarForce Protection System>
R0 sfsync03 (StarForce Protection Synchronization Driver (version 3.x)) - c:\windows\system32\drivers\sfsync03.sys <Not Verified; Protection Technology; StarForce Protection System>
R1 ISODrive (ISO DVD/CD-ROM Device Driver) - c:\program files\ultraiso\drivers\isodrive.sys <Not Verified; EZB Systems, Inc.; ISODrive>
R2 AegisP (AEGIS Protocol (IEEE 802.1x) v3.5.2.0) - c:\windows\system32\drivers\aegisp.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 3.5.2.0>
R2 lirsgt - c:\windows\system32\drivers\lirsgt.sys
R3 cmuda (C-Media WDM Audio Interface) - c:\windows\system32\drivers\cmuda.sys <Not Verified; C-Media Inc; C-Media Audio Driver (WDM)>
R3 rtl8185 (Realtek RTL8185 54M Wireless LAN Network Adapter Driver) - c:\windows\system32\drivers\rtl8185.sys <Not Verified; Realtek Semiconductor Corporation; Realtek RTL8185 54M Wireless LAN Network Adapter>
R3 SjyPkt - c:\windows\system32\drivers\sjypkt.sys <Not Verified; Windows (R) 2000 DDK provider; Windows (R) 2000 DDK driver>

S1 prodrv04 (Star Force copy protection driver v4) - c:\windows\system32\drivers\prodrv04.sys
S1 SASDIFSV - c:\program files\superantispyware\sasdifsv.sys (file missing)
S1 SASKUTIL - c:\program files\superantispyware\saskutil.sys (file missing)
S2 EAPPkt (Realtek EAPPkt Protocol) - c:\windows\system32\drivers\eappkt.sys (file missing)
S3 EagleNT - c:\windows\system32\drivers\eaglent.sys <Not Verified; AhnLab, Inc.; AhnLab, Inc.>
S3 hamachi (Hamachi Network Interface) - c:\windows\system32\drivers\hamachi.sys <Not Verified; Applied Networking Inc.; Hamachi Virtual Network Interface Driver>
S3 hamachi_oem (PlayLinc Adapter) - c:\windows\system32\drivers\gan_adapter.sys <Not Verified; Applied Networking Inc.; Hamachi Virtual Network Interface Driver, OEM>
S3 MEMSWEEP2 - c:\windows\system32\21.tmp (file missing)
S3 NPPTNT2 - c:\windows\system32\npptnt2.sys <Not Verified; INCA Internet Co., Ltd.; nProtect NPSC Kernel Mode Driver for NT>
S3 pcouffin (VSO Software pcouffin) - c:\windows\system32\drivers\pcouffin.sys <Not Verified; VSO Software; Patin couffin engine>
S3 PID_08A0 (Labtec WebCam Pro(PID_08A0)) - c:\windows\system32\drivers\lv302av.sys <Not Verified; Labtec Inc.; Labtec WebCam>
S3 SASENUM - c:\program files\superantispyware\sasenum.sys (file missing)
S3 SDTHOOK - c:\windows\system32\drivers\sdthook.sys <Not Verified; Panda Software; Panda® Antivirus>
S3 XDva032 - c:\windows\system32\xdva032.sys (file missing)
S4 DSDrv4 - c:\progra~1\k!tv\plugins\s_bt8x8\dsdrv4.sys (file missing)
S4 EAGLE2RC (Analog/DVB-T Hybrid Tv Infrared Receiver) - c:\windows\system32\drivers\eagle2rc.sys (file missing)
S4 Eagle2TV (TV tuner device) - c:\windows\system32\drivers\eagle2tv_b.sys (file missing)


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

S2 aspnet_state (ASP.NET State Service) - c:\windows\microsoft.net\framework\v2.0.50727\aspnet_state.exe (file missing)
S3 NBService - c:\program files\nero\nero 7\nero backitup\nbservice.exe
S4 InCDsrv (InCD Helper) - c:\program files\nero\nero 7\incd\incdsrv.exe (file missing)
S4 ProtexisLicensing - c:\windows\system32\psiservice.exe <Not Verified; ; PSIService>
S4 StarWindServiceAE (StarWind AE Service) - c:\program files\alcohol soft\alcohol 52\starwind\starwindserviceae.exe <Not Verified; Rocket Division Software; StarWind Alcohol Edition>


-- Device Manager: Disabled ----------------------------------------------------

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Contrôleur vidéo multimédia
Device ID: PCI\VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11\3&267A616A&0&58
Manufacturer:
Name: Contrôleur vidéo multimédia
PNP Device ID: PCI\VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11\3&267A616A&0&58
Service:

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Contrôleur multimédia
Device ID: PCI\VEN_109E&DEV_0878&SUBSYS_13EB0070&REV_11\3&267A616A&0&59
Manufacturer:
Name: Contrôleur multimédia
PNP Device ID: PCI\VEN_109E&DEV_0878&SUBSYS_13EB0070&REV_11\3&267A616A&0&59
Service:

Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: Carte Fast Ethernet compatible VIA
Device ID: PCI\VEN_1106&DEV_3065&SUBSYS_30651849&REV_78\3&267A616A&0&90
Manufacturer: VIA Technologies, Inc.
Name: Carte Fast Ethernet compatible VIA
PNP Device ID: PCI\VEN_1106&DEV_3065&SUBSYS_30651849&REV_78\3&267A616A&0&90
Service: FETNDIS

Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: Hamachi Network Interface
Device ID: ROOT\NET\0000
Manufacturer: Applied Networking Inc.
Name: Hamachi Network Interface
PNP Device ID: ROOT\NET\0000
Service: hamachi


-- Files created between 2008-03-09 and 2008-04-09 -----------------------------

2008-04-09 17:11:38 0 d-------- C:\WINDOWS\LastGood
2008-04-08 21:02:16 298104 --a------ C:\WINDOWS\system32\imon.dll <Not Verified; Eset; NOD32 Antivirus System>
2008-04-08 15:57:00 0 d-------- C:\Program Files\Panda Security
2008-04-08 15:36:45 0 d-------- C:\Program Files\Trend Micro
2008-04-07 23:26:06 0 dr-h----- C:\Documents and Settings\Pavel\Recent
2008-04-05 23:45:59 399616 --a------ C:\WINDOWS\system32\drivers\EagleNt.sys <Not Verified; AhnLab, Inc.; AhnLab, Inc.>
2008-04-05 18:56:58 1728 --a------ C:\WINDOWS\system32\tmp.reg
2008-04-03 20:30:20 0 d-------- C:\Program Files\1C
2008-04-03 18:28:01 0 d-------- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-04-03 18:27:46 0 d-------- C:\Program Files\SUPERAntiSpyware
2008-03-30 00:53:46 68096 --a------ C:\WINDOWS\system32\zip.exe
2008-03-30 00:53:46 98816 --a------ C:\WINDOWS\system32\sed.exe
2008-03-30 00:53:46 80412 --a------ C:\WINDOWS\system32\grep.exe
2008-03-30 00:53:45 73728 --a------ C:\WINDOWS\system32\fdsv.exe <Not Verified; Smallfrogs Studio; >
2008-03-29 19:53:04 0 d-------- C:\Program Files\Nival Interactive
2008-03-29 19:52:56 1 --a------ C:\WINDOWS\system32\SI.bin
2008-03-29 19:28:10 0 d-------- C:\Program Files\Microsoft Silverlight
2008-03-26 16:22:27 0 d-------- C:\Program Files\DAEMON Tools Lite
2008-03-26 16:15:32 0 d-------- C:\Program Files\Alcohol Soft
2008-03-25 20:44:25 0 d-------- C:\Program Files\Common Files
2008-03-25 19:40:44 0 d-------- C:\Documents and Settings\All Users\Application Data\CCP
2008-03-25 19:20:17 0 d-------- C:\Program Files\GOA
2008-03-25 19:15:19 0 d-------- C:\Program Files\DreamCatcher
2008-03-25 18:21:23 0 d-------- C:\Program Files\Black Element Software
2008-03-24 11:59:09 0 d-------- C:\WINDOWS\system32\AGEIA
2008-03-24 11:59:08 0 d-------- C:\Program Files\AGEIA Technologies
2008-03-24 11:58:47 0 d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard
2008-03-24 11:55:10 0 d-------- C:\Program Files\Spellbound
2008-03-24 00:57:57 0 d-------- C:\Documents and Settings\Pavel\Application Data\Talkback
2008-03-20 22:58:51 0 d-------- C:\Program Files\Veoh Networks
2008-03-18 20:30:44 4096 --a------ C:\WINDOWS\d3dx.dat
2008-03-17 20:30:54 0 d-------- C:\Program Files\3000AD
2008-03-17 18:24:05 0 d-------- C:\Program Files\THQ
2008-03-17 17:54:58 0 d-------- C:\Program Files\Savage 2 - A Tortured Soul
2008-03-16 23:15:27 1 --a------ C:\Documents and Settings\Pavel\SI.bin
2008-03-16 14:48:09 0 d-------- C:\Program Files\Miclone
2008-03-16 14:48:00 299520 --a------ C:\WINDOWS\uninst.exe <Not Verified; InstallShield Corporation, Inc.; InstallShield unInstaller>
2008-03-16 12:30:08 0 d-------- C:\Documents and Settings\Pavel\Application Data\Ulead Systems
2008-03-16 01:26:23 0 d-------- C:\Documents and Settings\Pavel\Application Data\Deckadance
2008-03-14 16:29:44 38160 --a------ C:\WINDOWS\system32\LMRTREND.dll <Not Verified; Microsoft Corporation; Microsoft® Windows(TM) Operating System>
2008-03-14 16:29:42 182032 --a------ C:\WINDOWS\system32\dxtmsft3.dll <Not Verified; Microsoft Corporation; Microsoft® Windows(TM) Operating System>
2008-03-14 16:29:36 63488 --a------ C:\WINDOWS\system32\unam4ie.exe <Not Verified; Microsoft Corporation; DirectShow>
2008-03-14 16:29:34 10240 --a------ C:\WINDOWS\system32\vidx16.dll
2008-03-14 16:29:33 194320 --a------ C:\WINDOWS\system32\qcut.dll <Not Verified; Microsoft Corporation; DirectShow>
2008-03-14 16:29:32 4608 --a------ C:\WINDOWS\system32\w95inf32.dll <Not Verified; Microsoft Corporation; Microsoft® Plus! for Windows® 95>
2008-03-14 16:29:32 2272 --a------ C:\WINDOWS\system32\w95inf16.dll <Not Verified; Microsoft Corporation; Microsoft® Plus! for Windows® 95>
2008-03-14 16:29:10 0 d-------- C:\Program Files\Auralog
2008-03-12 21:45:08 0 d-------- C:\WINDOWS\system32\Auralog
2008-03-09 15:10:08 0 d-------- C:\Documents and Settings\Pavel\Application Data\acccore


-- Find3M Report ---------------------------------------------------------------

2008-04-09 17:54:29 0 d-------- C:\Documents and Settings\Pavel\Application Data\DMCache
2008-04-08 21:17:53 0 d-------- C:\Program Files\adslTV
2008-04-06 13:47:53 0 d-------- C:\Documents and Settings\Pavel\Application Data\Babylon
2008-03-30 10:19:24 506796 --a------ C:\WINDOWS\system32\perfh00C.dat
2008-03-30 10:19:24 84354 --a------ C:\WINDOWS\system32\perfc00C.dat
2008-03-29 19:53:03 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-03-28 22:24:58 0 d-------- C:\Program Files\TM FilePacker
2008-03-26 15:34:09 0 d-------- C:\Program Files\Image-Line
2008-03-24 11:58:47 0 d-------- C:\Program Files\Fichiers communs
2008-03-08 16:44:03 0 d-------- C:\Program Files\ADS Tech
2008-03-06 21:40:10 0 d-------- C:\Program Files\Ulead Systems
2008-03-06 21:38:35 0 d-------- C:\Program Files\Fichiers communs\Ulead Systems
2008-03-06 21:36:16 0 d-------- C:\Documents and Settings\Pavel\Application Data\Eltima Software
2008-03-06 21:33:25 0 d-------- C:\Program Files\Pinnacle
2008-03-01 15:57:14 0 d-------- C:\Documents and Settings\Pavel\Application Data\IDM
2008-02-29 00:19:26 0 d-------- C:\Program Files\WinMerge
2008-02-27 23:42:58 0 d-------- C:\Program Files\Visicom Media
2008-02-25 01:11:43 105542 --a------ C:\WINDOWS\War3Unin.dat
2008-02-23 16:38:04 0 d-------- C:\Program Files\Hamachi
2008-02-23 16:33:35 0 d-------- C:\Documents and Settings\Pavel\Application Data\Hamachi
2008-02-21 21:44:33 0 d-------- C:\Documents and Settings\Pavel\Application Data\ma-config.com
2008-02-21 21:05:49 0 d-------- C:\Program Files\Enigma Software Group
2008-02-12 21:33:44 0 d-------- C:\Program Files\Tweak-XP Pro 4
2008-02-11 21:20:32 0 d-------- C:\Program Files\DAEMON Tools Pro1
2008-02-10 21:38:05 0 d-------- C:\Program Files\Sophos
2008-02-09 20:44:45 0 d-------- C:\Documents and Settings\Pavel\Application Data\LimeWire


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{100EB1FD-D03E-47FD-81F3-EE91287F9465}]

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{6D7B211A-88EA-490c-BAB9-3600D8D7C503}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="RUNDLL32.exe" [19/08/2004 16:10 C:\WINDOWS\system32\rundll32.exe]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [29/03/2008 19:37]
"NvMediaCenter"="RUNDLL32.exe" [19/08/2004 16:10 C:\WINDOWS\system32\rundll32.exe]
"nod32kui"="C:\Program Files\Eset\nod32kui.exe" [08/04/2008 21:01]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [19/08/2004 16:09]
"SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" []

C:\Documents and Settings\Pavel\Menu D‚marrer\Programmes\D‚marrage\
MiniMinder.lnk - D:\Program Files\MiniMind\MiniMind.exe [13/07/2007 12:17:42]

C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
HotKeyPlus.Lnk [02/11/2007 14:41:57]
Wireless Configuration Utility HW.15.lnk - C:\Program Files\TRENDnet1\TRENDnet TEW-421PC_TEW-423PI\WlanCU.exe [30/01/2007 15:57:42]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=1 (0x1)
"HideStartupScripts"=0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=1 (0x1)
"HideStartupScripts"=0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoRecentDocsMenu"=01000000
"ClearRecentDocsOnExit"=0 (0x0)
"NoLowDiskSpaceChecks"=1 (0x1)
"NoInstrumentation"=1 (0x1)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^TV Remote Control.lnk.disabled]
backup=C:\WINDOWS\pss\TV Remote Control.lnk.disabledCommon Startup

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Skype"="C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" /background
"DAEMON Tools"="d:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
"BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"="C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
"OpAgent"="OpAgent.exe" /agent
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
"<NO NAME>"=
"BoostSpeed"="C:\Program Files\AusLogics BoostSpeed\boostspeed.exe" /Q
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe
"Veoh"="C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
"AlcoholAutomount"="C:\Program Files\Alcohol Soft\Alcohol 52\axcmd.exe" /automount
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Cmaudio"=RunDll32 cmicnfg.cpl,CMICtrlWnd
"ADS TVR Agent"=C:\Program Files\ADS Tech\INSTANT TV PVR\Scheduled.exe
"SMSystemAnalyzer"="C:\Program Files\iolo\System Mechanic Professional\SMSystemAnalyzer.exe"
"SecurDisc"=C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
"NeroFilterCheck"=C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
"Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" -hide
"Ulead AutoDetector"=C:\Program Files\Fichiers communs\Ulead Systems\AutoDetector\Monitor.exe
"LingvoTraining"="d:\Program Files\ABBYY Lingvo 11 Trial\Tutor.exe" /ND /NW /AS
"Lingvo Launcher"="d:\Program Files\ABBYY Lingvo 11 Trial\Lvagent.exe" /STARTUP
"ScanSoft OmniPage 16-reminder"="D:\Program Files\ScanSoft\OmniPage16\Ereg\Ereg.exe" -r "C:\Documents and Settings\All Users\Application Data\ScanSoft\OmniPage 16\Ereg\Ereg.ini"
"USB Storage Toolbox"=C:\Program Files\USB Disk Win98 Driver\Res.EXE
"ISUSPM Startup"="C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -startup
"ISUSScheduler"="C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
"Babylon Client"=c:\Program Files\Babylon\Babylon-Pro7\Babylon.exe -AutoStart
"nwiz"=nwiz.exe /install
"Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
"TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
"IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
"LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
"InCD"=C:\Program Files\Nero\Nero 7\InCD\InCD.exe
"<NO NAME>"=
"Ulead Calendar Checker"=C:\Program Files\Ulead Systems\Ulead Photo Express 6\CalCheck.exe
"UVS11 Preload"=C:\Program Files\Ulead Systems\Ulead VideoStudio 11\uvPL.exe

HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
crvdll

*Newly Created Service* - SJYPKT



-- End of Deckard's System Scanner: finished at 2008-04-09 18:01:31 ------------

***********************************************************

Et du extra.txt

Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information ----------------------------------------------------------

Microsoft Windows XP Professionnel (build 2600) SP 2.0
Architecture: X86; Language: French

CPU 0: Intel(R) Pentium(R) 4 CPU 3.00GHz
CPU 1: Intel(R) Pentium(R) 4 CPU 3.00GHz
Percentage of Memory in Use: 25%
Physical Memory (total/avail): 2047.23 MiB / 1516.2 MiB
Pagefile Memory (total/avail): 5944.16 MiB / 5580.38 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1917.25 MiB

A: is Removable (Unformatted)
C: is Fixed (NTFS) - 19.53 GiB total, 5.03 GiB free.
D: is Fixed (NTFS) - 108.46 GiB total, 4.65 GiB free.
E: is CDROM (No Media)
F: is CDROM (No Media)
G: is CDROM (No Media)
H: is CDROM (No Media)
J: is CDROM (No Media)

\\.\PHYSICALDRIVE0 - HDS722516VLAT80 - 153.38 GiB - 2 partitions
\PARTITION0 (bootable) - Système de fichiers installable - 19.53 GiB - C:
\PARTITION1 - Étendu avec Inter. 13 étendue - 108.46 GiB - D:



-- Security Center -------------------------------------------------------------

AUOptions is scheduled to auto-install.
Windows Internal Firewall is enabled.

AV: avast! antivirus 4.8.1169 [VPS 080409-0] v4.8.1169 (ALWIL Software) [COLOR=RED]Disabled[/COLOR]
AV: ESET NOD32 antivirus system 2.70 v2.70 (ESET, spol. s r.o.)

[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\adslTV\\adsltv.exe"="C:\\Program Files\\adslTV\\adsltv.exe:*:Enabled:adsltv"
"C:\\Program Files\\adslTV\\vlc.exe"="C:\\Program Files\\adslTV\\vlc.exe:*:Enabled:VLC media player"
"D:\\Program Files\\Warcraft III\\FrozenThrone.exe"="D:\\Program Files\\Warcraft III\\FrozenThrone.exe:*:Enabled:FrozenThrone.exe"
"C:\\WINDOWS\\system32\\dpnsvr.exe"="C:\\WINDOWS\\system32\\dpnsvr.exe:*:Enabled:Microsoft DirectPlay8 Server"
"D:\\Program Files\\Steam\\steamapps\\sniperbond\\day of defeat source\\hl2.exe"="D:\\Program Files\\Steam\\steamapps\\sniperbond\\day of defeat source\\hl2.exe:*:Enabled:hl2"
"D:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"="D:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe:*:Enabled:iw3mp"
"D:\\Codemasters\\Severance\\Bin\\Blade.exe"="D:\\Codemasters\\Severance\\Bin\\Blade.exe:*:Enabled:Blade"
"C:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe"="C:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe:*:Enabled:Veoh Client"
"D:\\Program Files\\Steam\\steamapps\\sniperbond\\source sdk base\\hl2.exe"="D:\\Program Files\\Steam\\steamapps\\sniperbond\\source sdk base\\hl2.exe:*:Enabled:hl2"
"D:\\Program Files\\Steam\\steamapps\\sniperbond\\team fortress 2\\hl2.exe"="D:\\Program Files\\Steam\\steamapps\\sniperbond\\team fortress 2\\hl2.exe:*:Enabled:hl2"
"D:\\Program Files\\Steam\\steamapps\\sniperbond\\source 2007 dedicated server\\srcds.exe"="D:\\Program Files\\Steam\\steamapps\\sniperbond\\source 2007 dedicated server\\srcds.exe:*:Enabled:srcds"


-- Environment Variables -------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Pavel\Application Data
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Fichiers communs
COMPUTERNAME=PAVEL-XP
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Pavel
LOGONSERVER=\\PAVEL-XP
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\wbem;C:\Program Files\Fichiers communs\Ulead Systems\MPEG;C:\Program Files\Fichiers communs\Ahead\Lib\;C:\Program Files\Fichiers communs\Ahead\Lib\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 2 Stepping 9, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0209
ProgramFiles=C:\Program Files
PROMPT=$P$G
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\Pavel\LOCALS~1\Temp
TMP=C:\DOCUME~1\Pavel\LOCALS~1\Temp
USERDOMAIN=PAVEL-XP
USERNAME=Pavel
USERPROFILE=C:\Documents and Settings\Pavel
windir=C:\WINDOWS


-- User Profiles ---------------------------------------------------------------

Pavel [I](admin)[/I]
Administrateur [I](admin)[/I]


-- Add/Remove Programs ---------------------------------------------------------

--> C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
--> C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
--> C:\Program Files\Nero\Nero 7\\nero\uninstall\UNNERO.exe /UNINSTALL
--> C:\WINDOWS\NuNInst.exe /UNINSTALL
--> C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
--> C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
--> C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
--> C:\WINDOWS\UNNeroVision.exe /UNINSTALL
--> C:\WINDOWS\UNRecode.exe /UNINSTALL
--> MsiExec /X{E2BE1618-AF5F-4F7D-8484-42E080EDF609}
--> MsiExec.exe /X{69495273-FCDC-4A86-BCB7-49B504D3FB0E}
"Ñìåðòü øïèîíàì" (Òîëüêî Óäàëåíèå) --> "d:\Program Files\1C\Ñìåðòü øïèîíàì\unins000.exe" /SILENT
?????? ????????? II --> D:\PROGRA~1\igiant2b\UNWISE.EXE D:\PROGRA~1\igiant2b\INSTALL.LOG
7-Zip 4.57 --> "C:\Program Files\7-Zip\Uninstall.exe"
Adobe Flash Player 9 ActiveX --> C:\WINDOWS\System32\Macromed\Flash\FlashUtil9c.exe -uninstallUnlock
Adobe Flash Player Plugin --> C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 8.1.2 - Français --> MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81200000003}
Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
adsl TV --> C:\Program Files\adslTV\Uninstal.exe
AGEIA PhysX v7.01.12 --> MsiExec.exe /X{E2BE1618-AF5F-4F7D-8484-42E080EDF609}
Çâåçäíûå Âîëêè 2 --> "d:\Program Files\1C\X-bow Software\Çâåçäíûå Âîëêè 2\unins000.exe"
Çâåçäíûå Âîëêè 2 --> "d:\Program Files\1C\X-bow Software\Çâåçäíûå Âîëêè 2\unins001.exe"
Archiveur WinRAR --> C:\Program Files\WinRAR\uninstall.exe
AusLogics BoostSpeed --> "C:\Program Files\AusLogics BoostSpeed\unins000.exe"
AusLogics Disk Defrag --> "C:\Program Files\AusLogics Disk Defrag\unins000.exe"
avast! Antivirus --> C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
AVS DVD Player version 2.4 --> "d:\Program Files\AVSMedia\DVDPlayer\unins000.exe"
Babylon --> c:\Program Files\Babylon\Babylon-Pro7\Utils\uninstbb.exe
C-Media 3D Audio --> C:\WINDOWS\CMIUnInstall.exe
Call of Duty(R) 4 - Modern Warfare(TM) --> C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217}\setup.exe -runfromtemp -l0x040c
Call of Duty(R) 4 - Modern Warfare(TM) 1.3 Patch --> C:\Program Files\InstallShield Installation Information\{050C1C8E-4A4D-4C2F-B9AE-67E60EE91B7F}\setup.exe -runfromtemp -l0x0409
Call of Duty(R) 4 - Modern Warfare(TM) 1.4 Patch --> C:\Program Files\InstallShield Installation Information\{3BD633E0-4BF8-4499-9149-88F0767D449C}\setup.exe -runfromtemp -l0x0409
Call of Duty(R) 4 - Modern Warfare(TM) 1.5 Multiplayer Patch --> C:\Program Files\InstallShield Installation Information\{8503C901-85D7-4262-88D2-8D8B2A7B08B8}\setup.exe -runfromtemp -l0x0409
Capitalism II --> RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EF581945-BBE9-11D5-A7FE-50275FC10000}\Setup.exe" -uninst
CCleaner (remove only) --> "d:\Program Files\CCleaner\uninst.exe"
CDBurnerXP --> "C:\Program Files\CDBurnerXP\unins000.exe"
Codec Pack - All In 1 6.0.3.0 --> C:\WINDOWS\iun6002.exe "C:\Program Files\Codec Pack - All In 1\irunin.ini"
Correctif pour Lecteur Windows Media 11 (KB939683) --> "C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB914440) --> "C:\WINDOWS\$NtUninstallKB914440$\spuninst\spuninst.exe"
Correctif Windows XP - KB873339 --> C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
Correctif Windows XP - KB885835 --> C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
Correctif Windows XP - KB885836 --> C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
Correctif Windows XP - KB885884 --> C:\WINDOWS\$NtUninstallKB885884$\spuninst\spuninst.exe
Correctif Windows XP - KB886185 --> C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
Correctif Windows XP - KB887472 --> C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
Correctif Windows XP - KB888302 --> C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
Correctif Windows XP - KB890859 --> "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
Correctif Windows XP - KB891781 --> C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
DivX Codec --> C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Converter --> C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player --> C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player --> C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
DScaler 5 Mpeg Decoders --> "C:\Program Files\DScaler5\unins000.exe"
DVB Dream version 1.4i --> "d:\dvbdream\unins000.exe"
Entropia Universe --> d:\Program Files\MindArk\Entropia Universe\Uninstall.exe
FL Studio 7 --> D:\Program Files\Image-Line\FL Studio 7\uninstall.exe
Half-Life 2 --> "D:\Program Files\Steam\steam.exe" steam://uninstall/220
Half-Life 2: Deathmatch --> "D:\Program Files\Steam\steam.exe" steam://uninstall/320
Hamachi 0.9.9.9 --> C:\Program Files\Hamachi\uninstall.exe
Heroes of Might and Magic V --> RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{CB9A636A-AF2D-4B03-AE8B-8FE99AC197E8}\setup.exe" -l0x19
HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows Media Format 11 SDK (KB929399) --> "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Internet Download Manager --> C:\IDM\Uninstall.exe
InterVideo AVControlSDK --> "C:\Program Files\InstallShield Installation Information\{BB8AE808-F003-4C7F-B56B-8C80EEAFFE23}\setup.exe"
InterVideo DeviceService --> MsiExec.exe /I{521AAD14-5030-44BB-8B0E-5CE65FCE57E0}
Java(TM) 6 Update 2 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
K-Lite Codec Pack 3.5.0 Full --> "C:\Program Files\K-Lite Codec Pack\unins000.exe"
Logitech Audio Echo Cancellation Component --> MsiExec.exe /X{BEF726DD-4037-4214-8C6A-E625C02D2870}
Logitech Video Enumerator --> MsiExec.exe /X{EA516024-D84D-41F1-814F-83175A6188F2}
Ma-Config.com plugin --> MsiExec.exe /I{D2D7529F-6B55-4C1C-BC9C-D6F1BCC066B6}
Microsoft AppLocale --> MsiExec.exe /I{394BE3D9-7F57-4638-A8D1-1D88671913B7}
Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Office Access MUI (French) 2007 --> MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
Microsoft Office Excel MUI (French) 2007 --> MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (French) 2007 --> MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
Microsoft Office Outlook MUI (French) 2007 --> MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (French) 2007 --> MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
Microsoft Office Professional Plus 2007 --> "C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2007 --> MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (Arabic) 2007 --> MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
Microsoft Office Proof (Dutch) 2007 --> MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007 --> MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007 --> MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007 --> MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007 --> MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (French) 2007 --> MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
Microsoft Office Publisher MUI (French) 2007 --> MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
Microsoft Office Shared MUI (French) 2007 --> MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
Microsoft Office Word MUI (French) 2007 --> MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
Microsoft Silverlight --> MsiExec.exe /I{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Windows Application Compatibility Database --> C:\WINDOWS\system32\sdbinst.exe -u "C:\WINDOWS\AppPatch\Custom\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb"
MiniMinder 7.27 --> "d:\Program Files\MiniMind\unins000.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB911564) --> "C:\WINDOWS\$NtUninstallKB911564$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782) --> "C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398) --> "C:\WINDOWS\$NtUninstallKB925398_WMP64$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 8 (KB917734) --> "C:\WINDOWS\$NtUninstallKB917734_WMP8$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 9 (KB911565) --> "C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 9 (KB917734) --> "C:\WINDOWS\$NtUninstallKB917734_WMP9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB890046) --> "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB893756) --> "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896358) --> "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896423) --> "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896424) --> "C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896428) --> "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899587) --> "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899589) --> "C:\WINDOWS\$NtUninstallKB899589$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899591) --> "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB900725) --> "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB901017) --> "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB901214) --> "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB902400) --> "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB904706) --> "C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905414) --> "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905749) --> "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB908519) --> "C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB911562) --> "C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB911927) --> "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB912919) --> "C:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB913580) --> "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB914388) --> "C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB914389) --> "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB917344) --> "C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB917422) --> "C:\WINDOWS\$NtUninstallKB917422$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB917953) --> "C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB918118) --> "C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB919007) --> "C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB920213) --> "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB920670) --> "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB920683) --> "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB920685) --> "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB921398) --> "C:\WINDOWS\$NtUninstallKB921398$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB921503) --> "C:\WINDOWS\$NtUninstallKB921503$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB921883) --> "C:\WINDOWS\$NtUninstallKB921883$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB922616) --> "C:\WINDOWS\$NtUninstallKB922616$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB922819) --> "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923191) --> "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923414) --> "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923689) --> "C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923980) --> "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB924191) --> "C:\WINDOWS\$NtUninstallKB924191$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB924270) --> "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB924496) --> "C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB924667) --> "C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB925902) --> "C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB926255) --> "C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB926436) --> "C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB927779) --> "C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB927802) --> "C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB928255) --> "C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB928843) --> "C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB929123) --> "C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB929969) --> "C:\WINDOWS\$NtUninstallKB929969$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB930178) --> "C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB931261) --> "C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB931784) --> "C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB932168) --> "C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB933566) --> "C:\WINDOWS\$NtUninstallKB933566$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB933729) --> "C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB935839) --> "C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB935840) --> "C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB936021) --> "C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB937143) --> "C:\WINDOWS\$NtUninstallKB937143$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB937894) --> "C:\WINDOWS\$NtUninstallKB937894$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938127) --> "C:\WINDOWS\$NtUninstallKB938127$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB938829) --> "C:\WINDOWS\$NtUninstallKB938829$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB939653) --> "C:\WINDOWS\$NtUninstallKB939653$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941202) --> "C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941568) --> "C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569) --> "C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941644) --> "C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB943055) --> "C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB943460) --> "C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB943485) --> "C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB944653) --> "C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946026) --> "C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB898461) --> "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB900485) --> "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB904942) --> "C:\WINDOWS\$NtUninstallKB904942$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB908531) --> "C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB910437) --> "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB911280) --> "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB916595) --> "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB920872) --> "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB922582) --> "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB925720) --> "C:\WINDOWS\$NtUninstallKB925720$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB927891) --> "C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB930916) --> "C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB931836) --> "C:\WINDOWS\$NtUninstallKB931836$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB933360) --> "C:\WINDOWS\$NtUninstallKB933360$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB936357) --> "C:\WINDOWS\$NtUninstallKB936357$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB938828) --> "C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB942763) --> "C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"
Mozilla Firefox (2.0.0.13) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 6.0 Parser (KB933579) --> MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
MVision --> MsiExec.exe /I{35725FBC-A136-4A46-9F29-091759D9BB93}
MySQL Connector/ODBC 3.51 --> MsiExec.exe /I{0CB3C535-1171-4A20-B549-E2CB5DEB9723}
Nero 7 Premium --> MsiExec.exe /X{CF097717-F174-4144-954A-FBC4BF301036}
neroxml --> MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NOD32 Antivirus System --> C:\Program Files\Eset\Setup\setup.exe /UNINSTALL
NVIDIA Drivers --> C:\WINDOWS\system32\nvuninst.exe UninstallGUI
OpenAL --> "C:\Program Files\OpenAL\oalinst.exe" /U
Panda ActiveScan --> C:\WINDOWS\system32\ASUninst.exe Panda ActiveScan
Panda ActiveScan 2.0 --> C:\Program Files\Panda Security\ActiveScan 2.0\as2uninst.exe
Pcsx2 0.9.4 Watermoose --> "d:\Program Files\Pcsx2_0.9.4\unins000.exe"
Rappelz --> RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{01A8838A-9469-425F-A5FB-FC14D4CF93B9}\setup.exe" -l0x40c -removeonly
RealPlayer --> C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
ScanSoft OmniPage 16 --> MsiExec.exe /I{CDEB0E46-1FCA-4398-875C-93410209937D}
Security Task Manager 1.7e --> C:\Program Files\Security Task Manager\Uninstal.exe "C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Security Task Manager"
Security Update for CAPICOM (KB931906) --> MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906) --> MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Excel 2007 (KB946974) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {85E83E2E-AF9B-439B-B4F9-EB9B7EF6A00E}
Security Update for Office 2007 (KB934062) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {305D509B-F194-4638-9F0F-D9E4C05F9D33}
Security Update for Office 2007 (KB947801) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {02B5A17B-01BE-4BA6-95F1-1CBB46EBC76E}
Security Update for Outlook 2007 (KB946983) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {66B9496E-C0C3-4065-9868-85CCA92126C3}
Security Update for Publisher 2007 (KB936646) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A32E4BAF-6477-45FA-B8AB-E743FA8D63FF}
Security Update for the 2007 Microsoft Office System (KB936960) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {5E5BD655-7AA9-47F9-BB6D-A1D8CE29AC86}
Shutdown-IT --> d:\Program Files\CHRYOPROD\Shutdown-IT\Uninstal.exe
Spybot - Search & Destroy --> "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
StartPro v2.0 --> C:\PROGRA~1\DAEDAL~1\STARTP~1\UNWISE.EXE C:\PROGRA~1\DAEDAL~1\STARTP~1\INSTALL.LOG
Startup Manager 2.0 --> C:\WINDOWS\uninst.exe -f"C:\Program Files\Miclone\Startup Manager 2.0\DeIsL1.isu" -c"C:\Program Files\Miclone\Startup Manager 2.0\_ISREG32.DLL"
Super Blank 3.01 --> "C:\Program Files\SuperBlank\unins000.exe"
System Requirements Lab --> C:\Program Files\SystemRequirementsLab\Uninstall.exe
Team Fortress 2 --> "D:\Program Files\Steam\steam.exe" steam://uninstall/440
Team Fortress 2 Dedicated Server --> "D:\Program Files\Steam\steam.exe" steam://uninstall/310
TeamSpeak 2 RC2 --> "d:\Program Files\Teamspeak2_RC2\unins000.exe"
TELL ME MORE --> "C:\Program Files\Auralog\TELL ME MORE 8.0\Bin\unsetup.exe" -file "C:\Program Files\Auralog\TELL ME MORE 8.0\unsetup.aui"
The KMPlayer (remove only) --> "D:\PROGRA~1\THEKMP~1\uninstall.exe"
The Witcher --> "C:\Program Files\InstallShield Installation Information\{F138762F-5A1F-4CF0-A5E1-1588EF6088A4}\setup.exe" -runfromtemp -l0x040c -removeonly
TRENDnet TEW-421PC or TEW-423PI --> C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe /M{F266A90C-3F4A-4F65-9901-3DBBB0D77D80}
Tweak-XP Pro 4 --> C:\WINDOWS\iun6002.exe "C:\Program Files\Tweak-XP Pro 4\irunin.ini"
Ulead Photo Express 6 --> RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{760B29F2-8663-419B-A025-5A55066E130B}\setup.exe" -l0x9
UltraISO Premium V8.63 --> "C:\Program Files\UltraISO\unins000.exe"
Update for Office 2007 (KB932080) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {EDC9CA29-6BC1-471C-828C-7A36109005D7}
Update for Office 2007 (KB934391) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B3091818-7C56-4C45-BE7D-CA23027A5EA5}
Update for Office 2007 (KB934393) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {92FBAD46-E7F6-49FA-89B5-C39FC5BFAD15}
Update for Outlook 2007 Junk Email Filter (kb947945) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {E397056B-7AE5-4FF1-8B13-276BF8201847}
Update for Word 2007 (KB934173) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C6A89125-5473-45E3-B413-ED8186437475}
USB Disk Win98 Driver --> RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4E79A62F-7A2D-4058-BCE0-94E6B9E2F162}\Setup.exe"
VeohTV BETA --> C:\Program Files\InstallShield Installation Information\{D1B11537-EA51-4DD8-BF1E-098BEE48868D}\setup.exe -runfromtemp -l0x0409
VIA Gestionnaire de périphériques de plate-forme --> C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
VideoLAN VLC media player 0.8.6c --> C:\Program Files\VideoLAN\VLC\uninstall.exe
Vitetel --> d:\Program Files\Sorres_jm\Vitetel\Uninstal.exe
Warcraft III: All Products --> C:\WINDOWS\War3Unin.exe C:\WINDOWS\War3Unin.dat
Windows Communication Foundation --> MsiExec.exe /X{491DD792-AD81-429C-9EB4-86DD3D22E333}
Windows Imaging Component --> "C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Live Messenger --> MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Presentation Foundation --> MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows Workflow Foundation --> MsiExec.exe /I{7D1B85BD-AA07-48B8-808D-67A4067FC6BD}
XML Paper Specification Shared Components Pack 1.0 -->


-- Application Event Log -------------------------------------------------------

Event Record #/Type4227 / Error
Event Submitted/Written: 04/08/2008 05:23:22 PM
Event ID/Source: 1000 / Application Error
Event Description:
Application défaillante starwolves2.exe, version 0.0.0.0, module défaillant ntdll.dll, version 5.1.2600.2180, adresse de défaillance 0x000106c3.
Traitement de l'événement propre au support pour [starwolves2.exe!ws!]

Event Record #/Type4222 / Success
Event Submitted/Written: 04/08/2008 03:39:56 PM
Event ID/Source: 12001 / usnjsvc
Event Description:
The Messenger Sharing USN Journal Reader service started successfully.

Event Record #/Type4215 / Success
Event Submitted/Written: 04/08/2008 00:45:04 PM
Event ID/Source: 12001 / usnjsvc
Event Description:
The Messenger Sharing USN Journal Reader service started successfully.

Event Record #/Type4205 / Error
Event Submitted/Written: 04/06/2008 00:08:47 PM
Event ID/Source: 1000 / Application Error
Event Description:
Application défaillante starwolves2.exe, version 0.0.0.0, module défaillant starwolves2.exe, version 0.0.0.0, adresse de défaillance 0x001a537b.
Traitement de l'événement propre au support pour [starwolves2.exe!ws!]

Event Record #/Type4204 / Error
Event Submitted/Written: 04/06/2008 00:00:06 PM
Event ID/Source: 1000 / Application Error
Event Description:
Application défaillante starwolves2.exe, version 0.0.0.0, module défaillant starwolves2.exe, version 0.0.0.0, adresse de défaillance 0x0024f390.
Traitement de l'événement propre au support pour [starwolves2.exe!ws!]



-- Security Event Log ----------------------------------------------------------

No Errors/Warnings found.


-- System Event Log ------------------------------------------------------------

Event Record #/Type28964 / Error
Event Submitted/Written: 04/09/2008 00:03:58 PM
Event ID/Source: 7026 / Service Control Manager
Event Description:
Le pilote de démarrage système ou d'amorçage suivant n'a pas pu se charger :
SASDIFSV
SASKUTIL

Event Record #/Type28959 / Error
Event Submitted/Written: 04/09/2008 00:03:52 PM
Event ID/Source: 7001 / Service Control Manager
Event Description:
Le service Gestionnaire de l'Album dépend du service DDE réseau qui n'a pas pu démarrer en raison de l'erreur :
%%1058

Event Record #/Type28958 / Error
Event Submitted/Written: 04/09/2008 00:03:52 PM
Event ID/Source: 7000 / Service Control Manager
Event Description:
Le service ASP.NET State Service n'a pas pu démarrer en raison de l'erreur :
%%2

Event Record #/Type28957 / Error
Event Submitted/Written: 04/09/2008 00:03:52 PM
Event ID/Source: 7000 / Service Control Manager
Event Description:
Le service Realtek EAPPkt Protocol n'a pas pu démarrer en raison de l'erreur :
%%2

Event Record #/Type28956 / Warning
Event Submitted/Written: 04/09/2008 00:03:46 PM
Event ID/Source: 10 / SimpTcp
Event Description:
Les services TCP/IP simples n'ont pas pu trouver le port UDP QOTD.
Le service UDP QOTD n'a pas été démarré.



-- End of Deckard's System Scanner: finished at 2008-04-09 18:01:31 ------------

Répondre à sniperbond

Re,

Télécharge MalwareByte's Anti-Malware sur ton Bureau.
Installe-le en double-cliquant sur le fichier Download_mbam-setup.exe.

Une fois l'installation et la mise à jour effectuées, redémarre en mode sans échec.
AIDE : Redémarrer en mode sans échec

  • Exécute maintenant MalwareByte's Anti-Malware. Si cela n'est pas déjà fait, sélectionne "Exécuter un examen complet".
  • Afin de lancer la recherche, clic sur"Rechercher".
  • Une fois le scan terminé, une fenêtre s'ouvre, clic sur OK. Deux possibilités s'offrent à toi :

-- si le programme n'a rien trouvé, appuie sur OK. Un rapport va apparaître, ferme-le.
-- si des infections sont présentes, clic sur "Afficher les résultats" puis sur "Supprimer la sélection". Enregistre le rapport sur ton Bureau afin de le poster dans ta prochaine réponse.
REMARQUE : Si MalwareByte's Anti-Malware a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok.

AIDE : Tuto en images sur MBAM

;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

J'ai fait le scan complet il m'a trouvé des malwares mais mon trojan est toujours là...

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6d7b211a-88ea-490c-bab9-3600d8d7c503} (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8cb0d898-a6a2-48c3-bbd7-862f85b18d46} (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{431d251c-b43a-47d7-b4f4-07a101b432d6} (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{50ccd00a-66b6-4d95-aaef-8ee959498f92} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Il est peut être sur cette liste et n'a pas été supprimé ?

Répondre à sniperbond

Le rapport de MBAM est incomplet :)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Malwarebytes' Anti-Malware 1.11
Version de la base de données: 603

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 17863
Temps écoulé: 3 minute(s), 16 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 6
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6d7b211a-88ea-490c-bab9-3600d8d7c503} (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8cb0d898-a6a2-48c3-bbd7-862f85b18d46} (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{431d251c-b43a-47d7-b4f4-07a101b432d6} (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{50ccd00a-66b6-4d95-aaef-8ee959498f92} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

Voilà :)

Répondre à sniperbond

Re,

Télécharge BTFix (Bibi26).
Dézippe l'archive sur ton Bureau.

  • Ouvre le dossier BTFix.
  • Double clique sur BTFix.exe.
  • Clique sur Rechercher.
  • Un rapport va apparaître, copie/colle-le dans ta prochaine réponse.


;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

rien du tout...

BTFix 1.098 (par bibi26) - 21/04/2008 19:16:46 - Analyse
Lancé depuis C:\Documents and Settings\Pavel\Bureau\BTFix\BTFix.exe

---> Fichiers/Dossiers trouvés


---> Analyse terminée le 21/04/2008 19:16:47

Répondre à sniperbond

Re,

Poste un nouveau rapport hijackthis.

A demain :hello:

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:21:21, on 21/04/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Hotkey plus\HotKeyPlus.exe
C:\Program Files\TRENDnet\TRENDnet TEW-421PC_TEW-423PI\WlanCU.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\netdde.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\IDM\IEMonitor.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.free.fr:3128
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\IDM\IDMIECC.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: AutorunsDisabled
O4 - Startup: MiniMinder.lnk = D:\Program Files\MiniMind\MiniMind.exe
O4 - Global Startup: AutorunsDisabled
O4 - Global Startup: HotKeyPlus.Lnk = C:\Hotkey plus\HotKeyPlus.exe
O4 - Global Startup: Wireless Configuration Utility HW.15.lnk = C:\Program Files\TRENDnet\TRENDnet TEW-421PC_TEW-423PI\WlanCU.exe
O8 - Extra context menu item: Download all links with IDM - C:\IDM\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\IDM\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\IDM\IEExt.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro7\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - (no file)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} - http://acs.pandasoftware.com/activ [...] stubie.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://www.touslesdrivers.com/fich [...] b?version=
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} - http://acs.pandasoftware.com/activ [...] asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - http://messenger.zone.msn.com/bina [...] b56907.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O24 - Desktop Component AutorunsDisabled: (no name) - (no file)

--
End of file - 6127 bytes

Répondre à sniperbond

Re,

Quand tu dis "mon trojan" est toujours là, tu as son chemin d'accès ? ( = son emplacement )

;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

sur un autre forum on m'a dit que s'était un trojan. et quand je dis qu'il est toujours là, je voulais dire que quan je fais des recherches sur google en cliquant sur un des sites trouvés je continue à être dirrigé sur un site de spam...(ça change tout le temps mais ça passe à chaque fois par clicks.smartbizsearch.com avant de s'afficher.
Et malheuresement je ne connais pas son chemin d'acces ni son nom ;( ça aurait été plus simple :)


Message édité par sniperbond le 22-04-2008 à 18:24:14
Répondre à sniperbond

Citation :

sur un autre forum on m'a dit que s'était un trojan



Tu es pris en charge sur un autre forum ?

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Ben ils n'ont pas de solution apparemment alors j'espère qu'ici il y en aura une.

Répondre à sniperbond

Re,

Je peux avoir le lien de la discussion ?

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

http://www.clubic.com/forum/micros [...] page1.html

ça va pas t'empecher d'avoir des idées brillantes hien ?

Répondre à sniperbond

Re,

Oui bien sûr que je peux t'en débarrasser, mais je te demanderais de ne pas aller voir ailleurs. Soit tu vas voir ailleurs et tu y restes, soit tu restes ici et tu ne vas pas ailleurs. Car si tu fais des manip' dans mon dos, tu risques de réduire mon efficacité... :/

Si tu veux continuer avec moi, on va reprendre depuis le début : décris-moi précisément tes problèmes :)

Sinon bonne continuation :hello:

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Ok je continue ici :)

 

Mon problème est donc le suivant: quand je fais des recherches sur google et je clique sur un des résultats je suis une fois sur 3 dévié sur un site différent que celui qui est marché sur la page de recherche. il se trouve que c'est toujours le même site clicks.smartbizsearch.com

 

Mon navigateur passe par ce site pour aller sur les autres pages de recherches bidons (www.searchexplorer.com par exemple)

 

Comment s'en debarasser svp ?

 



Message édité par sniperbond le 25-04-2008 à 23:19:34
Répondre à sniperbond

:hello: Bonsoir,

Oups, ce sujet a été oublié, mes excuses :)

Télécharge Deckard's System Scanner (DSS) (ou DSS) sur ton Bureau.
NB : Tu dois être connecté avec des droits d'Administrateur.

  • ferme toutes les applications et fenêtres
  • double-clique sur dss.exe pour le lancer et suis les instructions ci-dessous

Attention, il est conseillé de stopper temporairement les logiciels résidents de protection (pare-feu, antivirus, etc.)

  • s'il s'agit d'une première utilisation ou d'une nouvelle version de DSS :
  • tu devras cliquer 2 fois sur le OK des boîtes de dialogue

Attention, si tu tardes trop, la réponse Abandon sera automatiquement validée

  • quand le traitement est terminé (clique sur OK), deux fichiers texte s'affichent :

main.txt <- ouvert en premier plan et en plein écran
extra.txt <- ouvert en second plan et en fenêtré (regarde la barre des taches)
S'il s'agit d'une utilisation supplémentaire de DSS :

  • tu n'auras pas de boîte de dialogue (pas de OK)
  • quand le traitement est terminé, un fichier texte s'affiche :

main.txt <- ouvert en premier plan et en plein écran

  • copie (Ctrl+A puis Ctrl+C) et colle (Ctrl+V) le contenu de main.txt dans ton prochain post
  • copie de même le contenu de extra.txt dans ton prochain post, si tu as ce fichier (première utilisation)
  • n'oublie pas de réactiver les protections si elles ont été stoppées.




Ce que fait DSS :

  • crée un point de restauration dans Windows XP et Vista
  • nettoie les fichiers temporaires, DPF-Downloaded Program Files et le Cache Internet, vide la Corbeille de tous les lecteurs
  • vérifie quelques zones importantes de ton système et établit un rapport pour examen par ton conseiller en sécurité. DSS lance automatiquement HijackThis pour toi; il va aussi créer un raccourci HijackThis sur ton Bureau si tu n'as pas déjà HijackThis d'installé.


;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

main.txt:


Deckard's System Scanner v20071014.68
Run by Moi on 2008-05-02 19:13:00
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

Successfully created a Deckard's System Scanner Restore Point.


-- Last 5 Restore Point(s) --
7: 2008-05-02 17:13:03 UTC - RP58 - Deckard's System Scanner Restore Point
6: 2008-05-02 17:07:50 UTC - RP57 - Configuré Gears of War
5: 2008-05-02 10:54:40 UTC - RP56 - Point de vérification système
4: 2008-04-30 18:09:42 UTC - RP55 - Installé Gears of War
3: 2008-04-30 18:07:02 UTC - RP54 - SPTD setup V1.55


-- First Restore Point --
1: 2008-04-30 14:49:36 UTC - RP52 - Removed Exteel


Backed up registry hives.
Performed disk cleanup.



-- HijackThis (run as Moi.exe) -------------------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:14:16, on 02/05/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TRENDnet\TRENDnet TEW-421PC_TEW-423PI\WlanCU.exe
C:\WINDOWS\System32\nvsvc32.exe
d:\Mes documents\Downloads\Logiciels\Pro\HotKeyPlus.exe
C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Moi\Bureau\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\Moi.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [Babylon Client] C:\Program Files\Babylon\Babylon-Pro\Babylon.exe -AutoStart
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 52\axcmd.exe" /automount
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: HotKeyPlus.Lnk = d:\Mes documents\Downloads\Logiciels\Pro\HotKeyPlus.exe
O4 - Startup: MiniMinder.lnk = C:\Program Files\MiniMind\MiniMind.exe
O4 - Global Startup: Wireless Configuration Utility HW.15.lnk = C:\Program Files\TRENDnet\TRENDnet TEW-421PC_TEW-423PI\WlanCU.exe
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/wi [...] 9205197342
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mi [...] 9218854296
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://sniperbond.spaces.live.com/ [...] nPUpld.cab
O16 - DPF: {E85362EF-40D4-4E5D-BE07-D6B036CCA277} (GoPets Control) - https://secure.gopetslive.com/dev/gopets.cab
O16 - DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} (GoPetsWeb Control) - https://secure.gopetslive.com/dev/GoPetsWeb.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe

--
End of file - 7177 bytes

-- File Associations -----------------------------------------------------------

All associations okay.


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

R2 AegisP (AEGIS Protocol (IEEE 802.1x) v3.5.2.0) - c:\windows\system32\drivers\aegisp.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 3.5.2.0>
R3 rtl8185 (Realtek RTL8185 54M Wireless LAN Network Adapter Driver) - c:\windows\system32\drivers\rtl8185.sys <Not Verified; Realtek Semiconductor Corporation; Realtek RTL8185 54M Wireless LAN Network Adapter>
R3 SjyPkt - c:\windows\system32\drivers\sjypkt.sys <Not Verified; Windows (R) 2000 DDK provider; Windows (R) 2000 DDK driver>

S3 ALCXWDM (Service for Realtek AC97 Audio (WDM)) - c:\windows\system32\drivers\alcxwdm.sys (file missing)
S3 catchme - c:\combofix\catchme.sys (file missing)


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

R2 StarWindServiceAE (StarWind AE Service) - c:\program files\alcohol soft\alcohol 52\starwind\starwindserviceae.exe <Not Verified; Rocket Division Software; StarWind Alcohol Edition>


-- Device Manager: Disabled ----------------------------------------------------

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Contrôleur multimédia
Device ID: PCI\VEN_1131&DEV_7133&SUBSYS_03511421&REV_F0\3&267A616A&0&50
Manufacturer:
Name: Contrôleur multimédia
PNP Device ID: PCI\VEN_1131&DEV_7133&SUBSYS_03511421&REV_F0\3&267A616A&0&50
Service:

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Contrôleur vidéo multimédia
Device ID: PCI\VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11\3&267A616A&0&58
Manufacturer:
Name: Contrôleur vidéo multimédia
PNP Device ID: PCI\VEN_109E&DEV_036E&SUBSYS_13EB0070&REV_11\3&267A616A&0&58
Service:

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Contrôleur multimédia
Device ID: PCI\VEN_109E&DEV_0878&SUBSYS_13EB0070&REV_11\3&267A616A&0&59
Manufacturer:
Name: Contrôleur multimédia
PNP Device ID: PCI\VEN_109E&DEV_0878&SUBSYS_13EB0070&REV_11\3&267A616A&0&59
Service:

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: USB Device
Device ID: USB\VID_046D&PID_08A2&MI_00\6&29CA7D0&0&0000
Manufacturer:
Name: USB Device
PNP Device ID: USB\VID_046D&PID_08A2&MI_00\6&29CA7D0&0&0000
Service:

Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: VIA Rhine II Fast Ethernet Adapter
Device ID: PCI\VEN_1106&DEV_3065&SUBSYS_30651849&REV_78\3&267A616A&0&90
Manufacturer: VIA Technologies, Inc.
Name: VIA Rhine II Fast Ethernet Adapter
PNP Device ID: PCI\VEN_1106&DEV_3065&SUBSYS_30651849&REV_78\3&267A616A&0&90
Service: FET5X86V


-- Files created between 2008-04-02 and 2008-05-02 -----------------------------

2008-05-02 19:14:08 0 d-------- C:\Program Files\Trend Micro
2008-05-02 02:15:15 0 dr-h----- C:\Documents and Settings\Moi\Recent
2008-05-01 00:08:17 0 d-------- C:\Documents and Settings\Moi\Application Data\teamspeak2
2008-04-30 21:11:35 0 d-------- C:\WINDOWS\system32\xlive
2008-04-30 20:14:43 0 d-------- C:\Program Files\SystemRequirementsLab
2008-04-30 20:14:22 0 d-------- C:\Documents and Settings\Moi\Application Data\SystemRequirementsLab
2008-04-30 20:13:58 0 d-------- C:\WINDOWS\Sun
2008-04-30 20:08:39 0 d-------- C:\Program Files\Alcohol Soft
2008-04-30 20:07:03 716272 --a------ C:\WINDOWS\system32\drivers\sptd.sys
2008-04-30 16:55:48 0 d-------- C:\Documents and Settings\Moi\Application Data\InstallShield
2008-04-30 16:42:20 0 d-------- C:\WINDOWS\system32\NtmsData
2008-04-30 16:34:33 0 d-------- C:\WINDOWS\pss
2008-04-30 13:28:03 0 d-------- C:\Documents and Settings\Moi\Application Data\Babylon
2008-04-30 13:28:03 0 d-------- C:\Documents and Settings\All Users\Application Data\Babylon
2008-04-30 12:06:59 0 d-------- C:\Program Files\Daedalus Software
2008-04-30 11:57:58 0 d-------- C:\Mp3 Output
2008-04-30 11:57:54 4762112 --a------ C:\WINDOWS\system32\NCMedia.dll
2008-04-30 11:57:54 383238 --a------ C:\WINDOWS\system32\libmp3lame-0.dll
2008-04-30 11:57:53 0 d-------- C:\Program Files\Smallvideosoft
2008-04-29 12:24:03 68096 --a------ C:\WINDOWS\zip.exe
2008-04-29 12:24:03 49152 --a------ C:\WINDOWS\VFind.exe
2008-04-29 12:24:03 212480 --a------ C:\WINDOWS\swxcacls.exe <Not Verified; SteelWerX; SteelWerX Extended Configurator ACLists>
2008-04-29 12:24:03 136704 --a------ C:\WINDOWS\swsc.exe <Not Verified; SteelWerX; SteelWerX Service Controller>
2008-04-29 12:24:03 161792 --a------ C:\WINDOWS\swreg.exe <Not Verified; SteelWerX; SteelWerX Registry Editor>
2008-04-29 12:24:03 80412 --a------ C:\WINDOWS\grep.exe
2008-04-29 12:24:03 73728 --a------ C:\WINDOWS\fdsv.exe <Not Verified; Smallfrogs Studio; >
2008-04-29 11:41:49 0 d-------- C:\Program Files\C-Media
2008-04-29 00:59:16 0 d-------- C:\Program Files\CCleaner
2008-04-28 23:11:22 164352 --a------ C:\WINDOWS\system32\unrar.dll
2008-04-28 23:11:20 217088 --a------ C:\WINDOWS\system32\yv12vfw.dll <Not Verified; www.helixcommunity.org; Helix YV12 YUV Codec>
2008-04-28 23:11:19 3596288 --a------ C:\WINDOWS\system32\qt-dx331.dll
2008-04-28 23:11:19 81920 --a------ C:\WINDOWS\system32\dpl100.dll <Not Verified; DivX, Inc.; DivX, Inc. dpl100>
2008-04-28 23:11:19 682496 --a------ C:\WINDOWS\system32\divx.dll <Not Verified; DivX, Inc.; DivX®>
2008-04-28 23:11:18 7680 --a------ C:\WINDOWS\system32\ff_vfw.dll
2008-04-28 23:11:16 0 d-------- C:\Program Files\K-Lite Codec Pack
2008-04-28 23:07:28 765952 --a------ C:\WINDOWS\system32\xvidcore.dll
2008-04-28 23:07:27 159839 --a------ C:\WINDOWS\system32\xvidvfw.dll
2008-04-28 23:07:27 0 d-------- C:\Program Files\Xvid
2008-04-28 23:04:26 0 d-------- C:\Documents and Settings\Moi\Application Data\Media Player Classic
2008-04-28 20:45:24 212992 --a------ C:\WINDOWS\UnVt.exe
2008-04-28 11:28:04 45056 --a------ C:\WINDOWS\system32\vusetup.dll
2008-04-28 11:27:57 308224 --a------ C:\WINDOWS\IsUn040c.exe <Not Verified; InstallShield Software Corporation; InstallShield® unInstaller>
2008-04-27 21:47:41 0 d-------- C:\Program Files\directx
2008-04-27 21:23:44 0 d-------- C:\de63bd8b12b690a8f7ddc1846e8792
2008-04-27 12:28:46 0 d-------- C:\Program Files\Microsoft Games
2008-04-27 00:55:33 0 d-------- C:\Documents and Settings\Moi\Application Data\DivX
2008-04-27 00:54:15 0 d-------- C:\Program Files\DivX
2008-04-26 23:54:29 4682 --a------ C:\WINDOWS\system32\npptNT2.sys <Not Verified; INCA Internet Co., Ltd.; nProtect NPSC Kernel Mode Driver for NT>
2008-04-26 15:59:55 0 d-------- C:\Program Files\MiniMind
2008-04-26 15:26:58 0 d-------- C:\Documents and Settings\Moi\Application Data\Sun
2008-04-26 15:14:01 0 d-------- C:\Program Files\adslTV1
2008-04-26 15:13:11 0 d-------- C:\Documents and Settings\LocalService\Application Data\iolo
2008-04-26 15:12:32 74703 --a------ C:\WINDOWS\system32\mfc45.dll
2008-04-26 15:10:06 0 d-------- C:\WINDOWS\system32\fr-fr
2008-04-26 15:10:00 0 d-------- C:\Documents and Settings\Moi\Application Data\iolo
2008-04-26 15:10:00 0 d-------- C:\Documents and Settings\All Users\Application Data\iolo
2008-04-26 15:08:30 0 d-------- C:\Documents and Settings\Moi\Application Data\Malwarebytes
2008-04-26 15:08:24 0 d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-04-26 15:08:23 0 d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-04-26 15:07:36 0 d-------- C:\Documents and Settings\Moi\Application Data\vlc
2008-04-26 15:07:34 0 d-------- C:\Program Files\adslTV
2008-04-26 15:07:06 0 d-------- C:\WINDOWS\network diagnostic
2008-04-26 15:06:35 0 d-------- C:\Program Files\VideoLAN
2008-04-26 15:05:13 0 d-------- C:\Program Files\The KMPlayer
2008-04-26 15:01:36 0 d-------- C:\Program Files\Windows Media Connect 2
2008-04-26 15:00:29 0 d-------- C:\WINDOWS\system32\LogFiles
2008-04-26 15:00:29 0 d-------- C:\WINDOWS\system32\drivers\UMDF
2008-04-26 14:56:49 0 d-------- C:\Program Files\Microsoft Works
2008-04-26 14:56:37 0 d-------- C:\Program Files\MSBuild
2008-04-26 14:51:26 0 d-------- C:\WINDOWS\SHELLNEW
2008-04-26 14:50:53 0 d-------- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-04-26 14:46:17 0 d-------- C:\Program Files\UltraISO
2008-04-26 14:45:56 0 d-------- C:\Program Files\Babylon
2008-04-26 14:39:50 306688 --a------ C:\WINDOWS\IsUninst.exe <Not Verified; InstallShield Software Corporation; InstallShield® unInstaller>
2008-04-26 14:35:58 0 d-------- C:\Documents and Settings\All Users\Application Data\Adobe
2008-04-26 14:35:40 0 d-------- C:\Program Files\Fichiers communs\Adobe
2008-04-26 14:33:57 0 d-------- C:\Program Files\Java
2008-04-26 14:33:16 0 d-------- C:\Program Files\Fichiers communs\Java
2008-04-26 14:31:00 0 d-------- C:\WINDOWS\system32\PreInstall
2008-04-26 14:30:58 0 d--h----- C:\WINDOWS\$hf_mig$
2008-04-26 14:21:21 266240 --a------ C:\WINDOWS\CMIUninstall.exe <Not Verified; ; GeneralUninstall Application>
2008-04-26 14:21:21 28672 --a------ C:\WINDOWS\CMIRmDriver.dll
2008-04-26 14:19:57 0 d-------- C:\Program Files\Microsoft IntelliPoint
2008-04-26 14:19:43 0 d-------- C:\Program Files\MSXML 6.0
2008-04-26 14:18:05 0 d-------- C:\Program Files\VIA
2008-04-26 14:08:00 0 d-------- C:\Documents and Settings\Moi\Contacts
2008-04-26 14:07:28 0 d------c- C:\WINDOWS\system32\DRVSTORE
2008-04-26 13:57:50 0 d-------- C:\Program Files\Ref Hotkey
2008-04-26 13:56:07 0 d--hs--c- C:\Program Files\Fichiers communs\WindowsLiveInstaller
2008-04-26 13:56:02 0 d-------- C:\Program Files\Windows Live
2008-04-26 13:55:56 0 d-------- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-04-26 13:49:49 0 d-------- C:\Documents and Settings\LocalService\Menu Démarrer
2008-04-26 13:49:06 0 d-------- C:\WINDOWS\Prefetch
2008-04-26 13:44:29 0 d-------- C:\WINDOWS\peernet
2008-04-26 13:44:28 0 d-------- C:\WINDOWS\provisioning
2008-04-26 13:43:26 0 d-------- C:\WINDOWS\ServicePackFiles
2008-04-26 13:41:11 0 d-------- C:\WINDOWS\system32\ReinstallBackups
2008-04-26 13:39:08 0 d-------- C:\WINDOWS\EHome
2008-04-26 13:33:24 0 d-------- C:\4d300fc0b7a4bb557f5730311f2a
2008-04-26 13:32:44 0 d-------- C:\ba5c80b6e79535886
2008-04-26 13:26:49 0 d-------- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2008-04-26 13:26:18 25600 --a------ C:\WINDOWS\system32\xpsp1hfm.exe <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
2008-04-26 13:26:18 0 d--h---c- C:\WINDOWS\$xpsp1hfm$
2008-04-26 13:26:07 0 d-------- C:\Documents and Settings\All Users\Application Data\Google
2008-04-26 13:22:59 0 d-------- C:\Documents and Settings\All Users\Application Data\nView_Profiles
2008-04-26 13:17:00 1692 --a------ C:\WINDOWS\mozver.dat
2008-04-26 13:15:06 0 d-------- C:\Program Files\Alwil Software
2008-04-26 13:10:28 0 d-------- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-04-26 13:09:03 0 d-------- C:\Program Files\ma-config.com
2008-04-26 13:09:03 0 d-------- C:\Documents and Settings\Moi\Application Data\ma-config.com
2008-04-26 13:04:25 0 --a------ C:\WINDOWS\nsreg.dat
2008-04-26 13:04:21 0 d-------- C:\Documents and Settings\Moi\Application Data\Mozilla
2008-04-26 12:58:16 0 d-------- C:\WINDOWS\nview
2008-04-26 12:53:04 552 --a------ C:\WINDOWS\system32\d3d8caps.dat
2008-04-26 12:50:55 0 d-------- C:\Documents and Settings\Moi\Application Data\IDM
2008-04-26 12:50:55 0 d-------- C:\Documents and Settings\Moi\Application Data\DMCache
2008-04-26 12:50:53 0 d-------- C:\Program Files\Internet Download Manager
2008-04-26 12:50:47 0 d-------- C:\Documents and Settings\Moi\Application Data\WinRAR
2008-04-26 12:50:14 0 d-------- C:\WINDOWS
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\WinSxS
2008-04-26 12:50:14 0 dr------- C:\WINDOWS\Web
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\twain_32
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\wins
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\wbem
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\usmt
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\spool
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\ShellExt
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\Setup
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\ras
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\oobe
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\npp
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\mui
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\inetsrv
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\IME
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\icsxml
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\ias
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\export
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\drivers
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\drivers\etc
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\drivers\disdn
2008-04-26 12:50:14 0 dr-hs--c- C:\WINDOWS\system32\dllcache
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\dhcp
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\config
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\3com_dmi
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\3076
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\2052
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\1054
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\1042
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\1041
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\1037
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\1036
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\1033
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\1031
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\1028
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system32\1025
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\system
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\security
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\Resources
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\repair
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\mui
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\msapps
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\msagent
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\Media
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\java
2008-04-26 12:50:14 0 d--h----- C:\WINDOWS\inf
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\ime
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\Help
2008-04-26 12:50:14 0 dr--s---- C:\WINDOWS\Fonts
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\Driver Cache
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\Debug
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\Cursors
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\Connection Wizard
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\Config
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\AppPatch
2008-04-26 12:50:14 0 d-------- C:\WINDOWS\addins
2008-04-26 12:49:38 0 d-------- C:\Documents and Settings\Moi\Application Data\Macromedia
2008-04-26 12:49:38 0 d-------- C:\Documents and Settings\Moi\Application Data\Adobe
2008-04-26 12:21:48 0 d-------- C:\WINDOWS\system32\bits
2008-04-26 12:20:02 0 d-------- C:\WINDOWS\SoftwareDistribution
2008-04-26 12:18:36 0 d--hs---- C:\Documents and Settings\Moi\UserData
2008-04-26 12:13:39 0 d---s---- C:\WINDOWS\system32\Microsoft
2008-04-26 12:13:38 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-04-26 12:13:30 21419 --a------ C:\WINDOWS\system32\drivers\AegisP.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 3.5.2.0>
2008-04-26 12:13:13 0 d-------- C:\WINDOWS\OPTIONS
2008-04-26 12:13:13 0 d-------- C:\Program Files\TRENDnet
2008-04-26 12:13:03 0 d-------- C:\Program Files\Fichiers communs\InstallShield
2008-04-26 12:11:44 0 d--hs---- C:\WINDOWS\Installer
2008-04-26 12:11:42 0 d-------- C:\Documents and Settings\Moi\Application Data\Identities
2008-04-26 12:11:30 0 d--h----- C:\Documents and Settings\Moi\Voisinage réseau
2008-04-26 12:11:30 0 d--h----- C:\Documents and Settings\Moi\Voisinage d'impression
2008-04-26 12:11:30 0 dr-h----- C:\Documents and Settings\Moi\SendTo
2008-04-26 12:11:30 3407872 --ah----- C:\Documents and Settings\Moi\NTUSER.DAT
2008-04-26 12:11:30 0 d--h----- C:\Documents and Settings\Moi\Modèles
2008-04-26 12:11:30 0 dr------- C:\Documents and Settings\Moi\Menu Démarrer
2008-04-26 12:11:30 0 d--h----- C:\Documents and Settings\Moi\Local Settings
2008-04-26 12:11:30 0 dr------- C:\Documents and Settings\Moi\Favoris
2008-04-26 12:11:30 0 d--hs---- C:\Documents and Settings\Moi\Cookies
2008-04-26 12:11:30 0 d-------- C:\Documents and Settings\Moi\Bureau
2008-04-26 12:11:30 0 dr-h----- C:\Documents and Settings\Moi\Application Data
2008-04-26 12:09:35 0 d--hs---- C:\System Volume Information
2008-04-26 12:09:34 237568 --ah----- C:\Documents and Settings\NetworkService\NTUSER.DAT
2008-04-26 12:09:34 0 d--h----- C:\Documents and Settings\NetworkService\Local Settings
2008-04-26 12:09:34 0 d---s---- C:\Documents and Settings\NetworkService\Cookies
2008-04-26 12:09:34 0 d-------- C:\Documents and Settings\NetworkService\Application Data
2008-04-26 12:09:34 0 d---s---- C:\Documents and Settings\NetworkService\Application Data\Microsoft
2008-04-26 12:09:34 237568 --ah----- C:\Documents and Settings\LocalService\NTUSER.DAT
2008-04-26 12:09:34 0 d--h----- C:\Documents and Settings\LocalService\Local Settings
2008-04-26 12:09:34 0 d--hs---- C:\Documents and Settings\LocalService\Cookies
2008-04-26 12:09:34 0 d-------- C:\Documents and Settings\LocalService\Application Data
2008-04-26 12:09:34 0 d---s---- C:\Documents and Settings\LocalService\Application Data\Microsoft
2008-04-26 12:07:02 0 d-------- C:\WINDOWS\system32\xircom
2008-04-26 12:07:02 0 d-------- C:\Program Files\microsoft frontpage
2008-04-26 12:06:50 237568 ---h----- C:\Documents and Settings\Default User\NTUSER.DAT
2008-04-26 12:06:40 0 -rahs---- C:\MSDOS.SYS
2008-04-26 12:06:40 0 -rahs---- C:\IO.SYS
2008-04-26 12:06:40 0 --a------ C:\CONFIG.SYS
2008-04-26 12:06:40 0 --a------ C:\AUTOEXEC.BAT
2008-04-26 12:06:00 0 d--hs---- C:\Documents and Settings\All Users\DRM
2008-04-26 12:05:54 0 dr------- C:\WINDOWS\Offline Web Pages
2008-04-26 12:05:54 0 d---s---- C:\WINDOWS\Downloaded Program Files
2008-04-26 12:05:37 0 d-------- C:\WINDOWS\srchasst
2008-04-26 12:05:32 0 d-------- C:\WINDOWS\system32\Macromed
2008-04-26 12:05:32 0 d-------- C:\WINDOWS\system32\DirectX
2008-04-26 12:05:22 0 d-------- C:\Program Files\Movie Maker
2008-04-26 12:05:01 0 d-------- C:\WINDOWS\system32\Restore
2008-04-26 12:04:57 0 d-------- C:\WINDOWS\PCHEALTH
2008-04-26 12:04:52 0 d---s---- C:\WINDOWS\Tasks
2008-04-26 12:04:50 0 d-------- C:\Program Files\Fichiers communs\MSSoap
2008-04-26 12:04:24 21892 --a------ C:\WINDOWS\system32\emptyregdb.dat
2008-04-26 12:04:13 0 d-------- C:\WINDOWS\Registration
2008-04-26 12:04:09 0 d--h----- C:\Program Files\WindowsUpdate
2008-04-26 12:04:09 0 d-------- C:\Program Files\Services en ligne
2008-04-26 12:04:04 0 d-------- C:\Program Files\Messenger
2008-04-26 12:03:57 0 d-------- C:\Program Files\MSN Gaming Zone
2008-04-26 12:03:50 0 d-------- C:\Program Files\Windows NT
2008-04-26 12:03:42 0 d-------- C:\WINDOWS\system32\MsDtc
2008-04-26 12:03:40 0 d-------- C:\WINDOWS\system32\Com
2008-04-26 11:55:15 0 d-------- C:\Program Files\Fichiers communs\ODBC
2008-04-26 11:55:13 0 d-------- C:\Program Files\Fichiers communs\SpeechEngines
2008-04-26 11:55:12 0 dr------- C:\Program Files
2008-04-26 11:55:12 0 d-------- C:\Program Files\Fichiers communs
2008-04-26 11:54:53 0 d--h----- C:\Documents and Settings\Default User\Voisinage réseau
2008-04-26 11:54:53 0 d--h----- C:\Documents and Settings\Default User\Voisinage d'impression
2008-04-26 11:54:53 0 dr-h----- C:\Documents and Settings\Default User\SendTo
2008-04-26 11:54:53 0 d--h----- C:\Documents and Settings\Default User\Recent
2008-04-26 11:54:53 0 d--h----- C:\Documents and Settings\Default User\Modèles
2008-04-26 11:54:53 0 d-------- C:\Documents and Settings\Default User\Mes documents
2008-04-26 11:54:53 0 dr------- C:\Documents and Settings\Default User\Menu Démarrer
2008-04-26 11:54:53 0 dr-h----- C:\Documents and Settings\Default User\Local Settings
2008-04-26 11:54:53 0 d-------- C:\Documents and Settings\Default User\Favoris
2008-04-26 11:54:53 0 d---s---- C:\Documents and Settings\Default User\Cookies
2008-04-26 11:54:53 0 d-------- C:\Documents and Settings\Default User\Bureau
2008-04-26 11:54:53 0 d--h----- C:\Documents and Settings\All Users\Modèles
2008-04-26 11:54:53 0 dr------- C:\Documents and Settings\All Users\Menu Démarrer
2008-04-26 11:54:53 0 d-------- C:\Documents and Settings\All Users\Favoris
2008-04-26 11:54:53 0 dr------- C:\Documents and Settings\All Users\Documents
2008-04-26 11:54:53 0 d-------- C:\Documents and Settings\All Users\Bureau
2008-04-26 11:54:19 0 d-------- C:\WINDOWS\system32\CatRoot2
2008-04-26 11:54:19 0 d-------- C:\WINDOWS\system32\CatRoot
2008-04-26 11:54:13 0 dr-h----- C:\Documents and Settings\Default User\Application Data
2008-04-26 11:54:13 0 d---s---- C:\Documents and Settings\Default User\Application Data\Microsoft
2008-04-26 11:54:13 0 dr-h----- C:\Documents and Settings\All Users\Application Data
2008-04-26 11:54:13 0 d---s---- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-04-26 11:54:01 0 d-------- C:\Documents and Settings


-- Find3M Report ---------------------------------------------------------------

2008-04-28 09:45:03 464474 --a------ C:\WINDOWS\system32\perfh00C.dat
2008-04-28 09:45:03 73020 --a------ C:\WINDOWS\system32\perfc00C.dat
2008-04-26 11:54:53 62 --ahs---- C:\Documents and Settings\Moi\Application Data\desktop.ini
2008-03-21 22:28:54 196608 --a------ C:\WINDOWS\system32\dtu100.dll <Not Verified; DivX, Inc.; DivX, Inc. dtu100>


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="C:\WINDOWS\System32\NvCpl.dll" [05/12/2007 01:41]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [29/03/2008 19:37]
"Cmaudio"="cmicnfg.cpl" []
"Babylon Client"="C:\Program Files\Babylon\Babylon-Pro\Babylon.exe" [30/04/2008 13:28]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [19/08/2004 16:09]
"IDMan"="C:\Program Files\Internet Download Manager\IDMan.exe" [26/04/2008 12:51]
"AlcoholAutomount"="C:\Program Files\Alcohol Soft\Alcohol 52\axcmd.exe" [20/03/2008 18:39]

C:\Documents and Settings\Moi\Menu D‚marrer\Programmes\D‚marrage\
HotKeyPlus.Lnk [30/04/2008 18:15:03]
MiniMinder.lnk - C:\Program Files\MiniMind\MiniMind.exe [26/04/2008 15:59:56]

C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\
Wireless Configuration Utility HW.15.lnk - C:\Program Files\TRENDnet\TRENDnet TEW-421PC_TEW-423PI\WlanCU.exe [30/01/2007 14:57:42]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=0 (0x0)
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=1 (0x1)
"HideStartupScripts"=0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"HideLegacyLogonScripts"=0 (0x0)
"HideLogoffScripts"=0 (0x0)
"RunLogonScriptSync"=1 (0x1)
"RunStartupScriptSync"=1 (0x1)
"HideStartupScripts"=0 (0x0)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vds]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
@="Volume shadow copy"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe /onboot
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" /background

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"Babylon Client"=C:\Program Files\Babylon\Babylon-Pro\Babylon.exe -AutoStart
"nwiz"=nwiz.exe /install
"IntelliPoint"="c:\Program Files\Microsoft IntelliPoint\ipoint.exe"


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E]
AutoRun\command- E:\autorun.exe
directx\command- E:\DirectX9\dxsetup.exe
setup\command- E:\setup.exe

*Newly Created Service* - SJYPKT



-- Hosts -----------------------------------------------------------------------

127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com

8300 more entries in hosts file.


-- End of Deckard's System Scanner: finished at 2008-05-02 19:15:42 ------------


extra.txt :

Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information ----------------------------------------------------------

Microsoft Windows XP Professionnel (build 2600) SP 2.0
Architecture: X86; Language: French

CPU 0: Intel(R) Pentium(R) 4 CPU 3.00GHz
CPU 1: Intel(R) Pentium(R) 4 CPU 3.00GHz
Percentage of Memory in Use: 19%
Physical Memory (total/avail): 2047.23 MiB / 1641.5 MiB
Pagefile Memory (total/avail): 3943.14 MiB / 3686.02 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1915.39 MiB

A: is Removable (No Media)
C: is Fixed (NTFS) - 19.53 GiB total, 8.23 GiB free.
D: is Fixed (NTFS) - 108.46 GiB total, 23.57 GiB free.
E: is CDROM (No Media)
F: is CDROM (No Media)
G: is CDROM (No Media)
H: is Removable (FAT32)
I: is Removable (FAT)

\\.\PHYSICALDRIVE0 - HDS722516VLAT80 - 153.38 GiB - 2 partitions
\PARTITION0 (bootable) - Système de fichiers installable - 19.53 GiB - C:
\PARTITION1 - Étendu avec Inter. 13 étendue - 108.46 GiB - D:

\\.\PHYSICALDRIVE1 - Audio Player USB Device - 972.69 MiB - 1 partition
\PARTITION0 (bootable) - Unknown - 979.23 MiB - H:

\\.\PHYSICALDRIVE2 - SD/MMC Card USB Device - 972.69 MiB - 1 partition
\PARTITION0 - MS-DOS V4 Huge - 976.38 MiB - I:



-- Security Center -------------------------------------------------------------

AUOptions is scheduled to auto-install.
Windows Internal Firewall is enabled.

AV: avast! antivirus 4.8.1169 [VPS 080502-0] v4.8.1169 (ALWIL Software) [COLOR=RED]Disabled[/COLOR]

[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\NCsoft\\Exteel\\System\\Exteel.exe"="d:\\Program Files\\NCsoft\\Exteel\\System\\Exteel.exe:*:Enabled:Exteel"
"d:\\Program Files\\NCsoft\\Exteel\\System\\Exteel.exe"="d:\\Program Files\\NCsoft\\Exteel\\System\\Exteel.exe:*:Enabled:Exteel"

[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"D:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="D:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\adslTV\\adsltv.exe"="C:\\Program Files\\adslTV\\adsltv.exe:*:Enabled:adsltv"
"C:\\Program Files\\NCsoft\\Exteel\\System\\Exteel.exe"="d:\\Program Files\\NCsoft\\Exteel\\System\\Exteel.exe:*:Enabled:Exteel"
"C:\\Program Files\\Internet Download Manager\\IDMan.exe"="C:\\Program Files\\Internet Download Manager\\IDMan.exe:*:Enabled:Internet Download Manager (IDM)"
"C:\\Program Files\\adslTV\\vlc.exe"="C:\\Program Files\\adslTV\\vlc.exe:*:Enabled:VLC media player"
"d:\\Program Files\\NCsoft\\Exteel\\System\\Exteel.exe"="d:\\Program Files\\NCsoft\\Exteel\\System\\Exteel.exe:*:Enabled:Exteel"


-- Environment Variables -------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Moi\Application Data
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Fichiers communs
COMPUTERNAME=PAVEL
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Moi
LOGONSERVER=\\PAVEL
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 2 Stepping 9, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0209
ProgramFiles=C:\Program Files
PROMPT=$P$G
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\Moi\LOCALS~1\Temp
TMP=C:\DOCUME~1\Moi\LOCALS~1\Temp
USERDOMAIN=PAVEL
USERNAME=Moi
USERPROFILE=C:\Documents and Settings\Moi
windir=C:\WINDOWS


-- User Profiles ---------------------------------------------------------------

Moi [I](admin)[/I]


-- Add/Remove Programs ---------------------------------------------------------

--> C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0015-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0016-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0018-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0019-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001A-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001B-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0401-0000-0000000FF1CE} /uninstall {5A2F65A4-808F-4A1E-973E-92E17824982D}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0407-0000-0000000FF1CE} /uninstall {2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0413-0000-0000000FF1CE} /uninstall {B3F4DC34-7F60-4B7C-A79F-1C13012D99D4}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
2007 Microsoft Office Suite Service Pack 1 (SP1) --> msiexec /package {90120000-0044-040C-0000-0000000FF1CE} /uninstall {A0353900-21A2-42CF-B973-883500A027F7}
Adobe Flash Player ActiveX --> C:\WINDOWS\System32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 8.1.2 - Français --> MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A81200000003}
adsl TV --> C:\Program Files\adslTV\Uninstal.exe
Archiveur WinRAR --> C:\Program Files\WinRAR\uninstall.exe
avast! Antivirus --> C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
Babylon --> C:\Program Files\Babylon\Babylon-Pro\Utils\uninstbb.exe
Big Biz Tycoon --> C:\WINDOWS\UnVt.exe C:\Program Files\Activision Value\BBT\Uninstall.log
Business Tycoon --> "D:\Games\Business Tycoon\unins000.exe"
C-Media WDM Audio Driver --> C:\WINDOWS\system32\cmirmdrv.exe
CCleaner (remove only) --> "C:\Program Files\CCleaner\uninst.exe"
Correctif pour Lecteur Windows Media 11 (KB939683) --> "C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Correctif pour Windows XP (KB914440) --> "C:\WINDOWS\$NtUninstallKB914440$\spuninst\spuninst.exe"
Correctif Windows XP - KB873339 --> C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
Correctif Windows XP - KB885835 --> C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
Correctif Windows XP - KB885836 --> C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
Correctif Windows XP - KB886185 --> C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
Correctif Windows XP - KB887472 --> C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
Correctif Windows XP - KB888302 --> C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
Correctif Windows XP - KB890859 --> "C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
Correctif Windows XP - KB891781 --> C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
DivX Converter --> C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player --> C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player --> C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Exteel --> C:\Program Files\InstallShield Installation Information\{DD8AAA98-FE8E-47AE-909D-2DF54D6DE485}\setup.exe -runfromtemp -l0x0009 -removeonly
Fable - The Lost Chapters --> C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe /M{C3C9EB3D-24FA-4462-B784-0EC6AAFCD2DD}
Freez FLV to MP3 Converter --> "C:\Program Files\Smallvideosoft\Freez FLV to MP3 Converter\unins000.exe"
Hotfix for Windows Media Format 11 SDK (KB929399) --> "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Internet Download Manager --> C:\Program Files\Internet Download Manager\Uninstall.exe
Java(TM) 6 Update 5 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160050}
K-Lite Codec Pack 3.9.0 Full --> "C:\Program Files\K-Lite Codec Pack\unins000.exe"
Ma-Config.com plugin --> MsiExec.exe /I{6F06A42D-525C-49ED-8622-E16790956CD8}
Malwarebytes' Anti-Malware --> "C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Games for Windows - LIVE Redistributable --> MsiExec.exe /X{D1B01DC9-CBAF-45F9-A387-7D00C11B630E}
Microsoft Office Access MUI (French) 2007 --> MsiExec.exe /X{90120000-0015-040C-0000-0000000FF1CE}
Microsoft Office Excel MUI (French) 2007 --> MsiExec.exe /X{90120000-0016-040C-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (French) 2007 --> MsiExec.exe /X{90120000-0044-040C-0000-0000000FF1CE}
Microsoft Office Language Pack 2007 Service Pack 1 (SP1) --> msiexec /package {90120000-006E-040C-0000-0000000FF1CE} /uninstall {EC50B538-CBE1-42E6-B7FE-87AA540AADFB}
Microsoft Office Outlook MUI (French) 2007 --> MsiExec.exe /X{90120000-001A-040C-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (French) 2007 --> MsiExec.exe /X{90120000-0018-040C-0000-0000000FF1CE}
Microsoft Office Professional Plus 2007 --> "C:\Program Files\Fichiers communs\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2007 --> MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (Arabic) 2007 --> MsiExec.exe /X{90120000-001F-0401-0000-0000000FF1CE}
Microsoft Office Proof (Dutch) 2007 --> MsiExec.exe /X{90120000-001F-0413-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007 --> MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007 --> MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (German) 2007 --> MsiExec.exe /X{90120000-001F-0407-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007 --> MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (French) 2007 --> MsiExec.exe /X{90120000-002C-040C-0000-0000000FF1CE}
Microsoft Office Publisher MUI (French) 2007 --> MsiExec.exe /X{90120000-0019-040C-0000-0000000FF1CE}
Microsoft Office Shared MUI (French) 2007 --> MsiExec.exe /X{90120000-006E-040C-0000-0000000FF1CE}
Microsoft Office Word MUI (French) 2007 --> MsiExec.exe /X{90120000-001B-040C-0000-0000000FF1CE}
Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
MiniMinder 8.1 --> "C:\Program Files\MiniMind\unins000.exe"
Mise à jour de sécurité pour Lecteur Windows Media (KB911564) --> "C:\WINDOWS\$NtUninstallKB911564$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782) --> "C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398) --> "C:\WINDOWS\$NtUninstallKB925398_WMP64$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB890046) --> "C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB893756) --> "C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896358) --> "C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896423) --> "C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB896428) --> "C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899587) --> "C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB899591) --> "C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB900725) --> "C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB901017) --> "C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB901214) --> "C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB902400) --> "C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905414) --> "C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB905749) --> "C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB908519) --> "C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB911562) --> "C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB911927) --> "C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB913580) --> "C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB914388) --> "C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB914389) --> "C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB918118) --> "C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB918439) --> "C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB919007) --> "C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB920213) --> "C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB920670) --> "C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB920683) --> "C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB920685) --> "C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB922819) --> "C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923191) --> "C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923414) --> "C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923980) --> "C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB924270) --> "C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB924667) --> "C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB925902) --> "C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB926255) --> "C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB926436) --> "C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB927779) --> "C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB927802) --> "C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB928255) --> "C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB928843) --> "C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB929123) --> "C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB930178) --> "C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB931261) --> "C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB931784) --> "C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB932168) --> "C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB933729) --> "C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB935839) --> "C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB935840) --> "C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB936021) --> "C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB937894) --> "C:\WINDOWS\$NtUninstallKB937894$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941202) --> "C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941568) --> "C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569) --> "C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941644) --> "C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941693) --> "C:\WINDOWS\$NtUninstallKB941693$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB943055) --> "C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB943460) --> "C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB943485) --> "C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB944653) --> "C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB945553) --> "C:\WINDOWS\$NtUninstallKB945553$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946026) --> "C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB948590) --> "C:\WINDOWS\$NtUninstallKB948590$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB948881) --> "C:\WINDOWS\$NtUninstallKB948881$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB894391) --> "C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB898461) --> "C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB900485) --> "C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB904942) --> "C:\WINDOWS\$NtUninstallKB904942$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB908531) --> "C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB910437) --> "C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB911280) --> "C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB916595) --> "C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB920872) --> "C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB922582) --> "C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB927891) --> "C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB930916) --> "C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB936357) --> "C:\WINDOWS\$NtUninstallKB936357$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB938828) --> "C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB942763) --> "C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"
MSXML 6.0 Parser (KB933579) --> MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
NVIDIA Drivers --> C:\WINDOWS\System32\nvuninst.exe UninstallGUI
PlayNC Launcher --> C:\Program Files\InstallShield Installation Information\{5F8E2CBB-949D-4175-AC98-5ADE7F6C9697}\setup.exe -runfromtemp -l0x0009 -removeonly
Security Update for Excel 2007 (KB946974) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {85E83E2E-AF9B-439B-B4F9-EB9B7EF6A00E}
Security Update for Office 2007 (KB947801) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {02B5A17B-01BE-4BA6-95F1-1CBB46EBC76E}
Security Update for Outlook 2007 (KB946983) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {66B9496E-C0C3-4065-9868-85CCA92126C3}
Spybot - Search & Destroy --> "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
StartPro v2.0 --> C:\PROGRA~1\DAEDAL~1\STARTP~1\UNWISE.EXE C:\PROGRA~1\DAEDAL~1\STARTP~1\INSTALL.LOG
System Requirements Lab --> C:\Program Files\SystemRequirementsLab\Uninstall.exe
The KMPlayer (remove only) --> "C:\Program Files\The KMPlayer\uninstall.exe"
TRENDnet TEW-421PC or TEW-423PI --> C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\1150\INTEL3~1\IDriver.exe /M{F266A90C-3F4A-4F65-9901-3DBBB0D77D80}
Update for Office 2007 (KB946691) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
Update for Outlook 2007 Junk Email Filter (kb949037) --> msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B4F188C6-6DBF-42A5-A8A3-3086D1A384F2}
VIA Gestionnaire de périphériques de plate-forme --> C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
VIA Rhine-Family Fast-Ethernet Adapter --> Rundll32.exe vuins32.dll,vuins32Ex $Rhine $VIA
VideoLAN VLC media player 0.8.6f --> C:\Program Files\VideoLAN\VLC\uninstall.exe
Windows Live installer --> MsiExec.exe /X{FD44E544-E7D0-4DBA-9FA0-8AE1A1300390}
Windows Live Messenger --> MsiExec.exe /X{BADF6744-3787-48F6-B8C9-4C4995401D65}
Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Wurm Online 2.4.3 --> C:\WINDOWS\system32\javaws.exe -uninstall -prompt "http://www.wurmonline.com/client/wurmclient.jnlp"
Xvid 1.1.3 final uninstall --> "C:\Program Files\Xvid\unins000.exe"


-- Application Event Log -------------------------------------------------------

Event Record #/Type272 / Success
Event Submitted/Written: 04/27/2008 00:35:16 PM
Event ID/Source: 1102 / .NET Runtime Optimization Service
Event Description:
.NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Succesfully compiled: System.Deployment, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

Event Record #/Type270 / Success
Event Submitted/Written: 04/27/2008 00:35:10 PM
Event ID/Source: 1102 / .NET Runtime Optimization Service
Event Description:
.NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Succesfully compiled: System.Configuration, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

Event Record #/Type268 / Success
Event Submitted/Written: 04/27/2008 00:35:06 PM
Event ID/Source: 1102 / .NET Runtime Optimization Service
Event Description:
.NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Succesfully compiled: Microsoft.VisualBasic, Version=8.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

Event Record #/Type266 / Success
Event Submitted/Written: 04/27/2008 00:34:58 PM
Event ID/Source: 1102 / .NET Runtime Optimization Service
Event Description:
.NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Succesfully compiled: Microsoft.Build.Utilities, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a

Event Record #/Type264 / Success
Event Submitted/Written: 04/27/2008 00:34:57 PM
Event ID/Source: 1102 / .NET Runtime Optimization Service
Event Description:
.NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Succesfully compiled: Microsoft.Build.Tasks, Version=2.0.0.0, Culture=neutral, PublicKeyToken=b03f5f7f11d50a3a



-- Security Event Log ----------------------------------------------------------

No Errors/Warnings found.


-- System Event Log ------------------------------------------------------------

Event Record #/Type1151 / Error
Event Submitted/Written: 04/28/2008 09:22:58 AM
Event ID/Source: 20 / Windows Update Agent
Event Description:
Échec de l'installation : l'installation de la mise à jour suivante a échoué avec l'erreur 0x80070643 : Microsoft .NET Framework 2.0 Service Pack 1 (KB110806).

Event Record #/Type1109 / Warning
Event Submitted/Written: 04/27/2008 11:31:46 PM
Event ID/Source: 1073 / USER32
Event Description:
Échec de la tentative de se mettre hors tension. PAVEL

Event Record #/Type1108 / Warning
Event Submitted/Written: 04/27/2008 11:31:03 PM
Event ID/Source: 1073 / USER32
Event Description:
Échec de la tentative de se mettre hors tension. PAVEL

Event Record #/Type1107 / Warning
Event Submitted/Written: 04/27/2008 11:30:52 PM
Event ID/Source: 1073 / USER32
Event Description:
Échec de la tentative de se mettre hors tension. PAVEL

Event Record #/Type1106 / Warning
Event Submitted/Written: 04/27/2008 11:30:36 PM
Event ID/Source: 1073 / USER32
Event Description:
Échec de la tentative de se mettre hors tension. PAVEL



-- End of Deckard's System Scanner: finished at 2008-05-02 19:15:42 ------------



Répondre à sniperbond

Re,

Désinstalle avast, redémarre et supprime ~~>C:\Program Files\Alwil Software

Télécharge ccleaner (>>tuto à lire !<<), tu download «the latest version » puis installe le en décochant - Ajouter la Barre d'Outils Yahoo! CCleaner
Puis lance le nettoyage, puis fais chercher des erreurs et sauvegardes si tu le souhaites.

Télécharge et installe Antivir. (tuto)
Pourquoi changer ? : Avast! vs Antivir
mais aussi:
14 antivirus au banc d'essai

Citation :

Antivir : le plus efficace des gratuits


Vérifie qu’il soit bien à jour ! Fais une analyse complète en mode sans échec, sauvegarde le rapport et poste le moi.

;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

Voilà. Les fichiers infectés reviennent à chaque scan.



Avira AntiVir Personal
Report file date: mercredi 14 mai 2008 13:48

Scanning for 1265410 virus strains and unwanted programs.

Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Save mode
Username: Administrateur
Computer name: PAVEL

Version information:
BUILD.DAT : 8.1.00.295 16479 Bytes 09/04/2008 16:24:00
AVSCAN.EXE : 8.1.2.12 311553 Bytes 18/03/2008 09:02:56
AVSCAN.DLL : 8.1.1.0 53505 Bytes 07/02/2008 08:43:37
LUKE.DLL : 8.1.2.9 151809 Bytes 28/02/2008 08:41:23
LUKERES.DLL : 8.1.2.1 12033 Bytes 21/02/2008 08:28:40
ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 10:33:34
ANTIVIR1.VDF : 7.0.3.2 5447168 Bytes 07/03/2008 13:08:58
ANTIVIR2.VDF : 7.0.4.0 1554432 Bytes 05/05/2008 11:40:14
ANTIVIR3.VDF : 7.0.4.36 181248 Bytes 14/05/2008 11:39:58
Engineversion : 8.1.0.42
AEVDF.DLL : 8.1.0.5 102772 Bytes 25/02/2008 09:58:21
AESCRIPT.DLL : 8.1.0.31 262522 Bytes 09/05/2008 11:39:39
AESCN.DLL : 8.1.0.16 119156 Bytes 08/05/2008 11:39:39
AERDL.DLL : 8.1.0.20 418165 Bytes 03/05/2008 08:32:18
AEPACK.DLL : 8.1.1.4 364918 Bytes 03/05/2008 08:32:16
AEOFFICE.DLL : 8.1.0.18 192890 Bytes 03/05/2008 08:32:15
AEHEUR.DLL : 8.1.0.26 1237366 Bytes 09/05/2008 11:39:38
AEHELP.DLL : 8.1.0.14 115063 Bytes 03/05/2008 08:32:11
AEGEN.DLL : 8.1.0.20 299380 Bytes 08/05/2008 11:39:38
AEEMU.DLL : 8.1.0.6 430451 Bytes 08/05/2008 11:39:37
AECORE.DLL : 8.1.0.28 168310 Bytes 08/05/2008 11:39:36
AVWINLL.DLL : 1.0.0.7 14593 Bytes 23/01/2008 17:07:53
AVPREF.DLL : 8.0.0.1 25857 Bytes 18/02/2008 10:37:50
AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:26:47
AVREG.DLL : 8.0.0.0 30977 Bytes 23/01/2008 17:07:49
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:23
AVEVTLOG.DLL : 8.0.0.11 114945 Bytes 28/02/2008 08:31:31
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
SMTPLIB.DLL : 1.2.0.19 28929 Bytes 23/01/2008 17:08:39
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:10
RCIMAGE.DLL : 8.0.0.35 2371841 Bytes 10/03/2008 14:37:25
RCTEXT.DLL : 8.0.32.0 86273 Bytes 06/03/2008 12:02:11

Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: C:\Program Files\Avira\AntiVir PersonalEdition Classic\sysscan.avp
Logging..........................: low
Primary action...................: quarantine
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:, D:,
Scan memory......................: on
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: Intelligent file selection
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Macro heuristic..................: on
File heuristic...................: high

Start of the scan: mercredi 14 mai 2008 13:48

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
11 processes with 11 modules were scanned

Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!

Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Boot sector 'D:\'
[INFO] No virus was found!

Starting to scan the registry.
The registry was scanned ( '28' files ).


Starting the file scan:

Begin scan in 'C:\'
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\DeleteTemp.exe
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\dlmgr.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\GenComp.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\HtmlLite.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\Setup.EXE
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1025.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1028.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1029.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1030.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1031.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1032.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1035.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1036.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1037.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1038.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1040.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1041.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1042.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1043.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1044.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1045.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1046.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1049.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1053.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.1055.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.2052.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.2070.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.3082.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\setupres.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\SitSetup.DLL
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\VS70UIMgr.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\VSBaseReqs.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\VSScenario.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\VS_Setup.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1025.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1028.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1029.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1030.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1031.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1032.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1035.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1036.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1037.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1038.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1040.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1041.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1042.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1043.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1044.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1045.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1046.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1049.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1053.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.1055.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.2052.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.2070.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.3082.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapRes.dll
[WARNING] The file could not be opened!
C:\de63bd8b12b690a8f7ddc1846e8792\WapUI.dll
[WARNING] The file could not be opened!
C:\System Volume Information\_restore{262B4E8A-492F-48E6-8F6D-58C4F30B33A9}\RP64\A0018436.exe
[DETECTION] Is the Trojan horse TR/Gendal.134656
[NOTE] The file was moved to '485ad611.qua'!
C:\System Volume Information\_restore{262B4E8A-492F-48E6-8F6D-58C4F30B33A9}\RP71\A0018709.exe
[DETECTION] Is the Trojan horse TR/Gendal.134656
[NOTE] The file was moved to '485ad621.qua'!
C:\System Volume Information\_restore{262B4E8A-492F-48E6-8F6D-58C4F30B33A9}\RP74\A0019136.exe
[DETECTION] Is the Trojan horse TR/Gendal.134656
[NOTE] The file was moved to '485ad630.qua'!
C:\WINDOWS\system32\drivers\sptd.sys
[WARNING] The file could not be opened!
Begin scan in 'D:\'
D:\383c596ef54840c031ef6bd218effad\61883.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ac97ali.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ac97via.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\admin.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\admin.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\admjoy.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\aec.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\amdk6.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\amdk7.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\an983.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\arp1394.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\author.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\author.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\autochk.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\avc.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\cabinet.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ccdecode.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\cfgwiz.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\cmbatt.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\crusoe.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\dbghelp.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\drmk.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\drmkaud.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\essm2e.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4amsft.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4anscp.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4apws.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4areg.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4atxt.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4autl.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4avnb.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4avss.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4awebs.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp4awel.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp98sadm.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fp98swin.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fpadmcgi.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fpadmdll.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fpcount.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fpencode.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fpexedll.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fpmmc.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fpmmcsat.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fpremadm.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\fpsrvadm.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\gameenum.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\gckernel.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\hidserv.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\imagehlp.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ipevlpid.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ipselpid.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\irmon.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\kmixer.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ks.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\licdll.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ltmdmnt.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ltmdmntt.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ltotape.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\lwadihid.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\memstpci.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\mouclass.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\msdaipp.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\msgsc.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\msgslang.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\msjavx86.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\mskssrv.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\msmsgs.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\msmsgsin.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\mstee.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ndisuio.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\netsetup.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\netwlan5.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\nic1394.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ntdetect.com
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ntdll.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ntfs.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ntkrnlpa.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ntkrpamp.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\nv4_disp.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\nv4_mini.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\p3.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\parport.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\pcx500.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\perm2.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\perm2dll.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\perm3.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\perm3dd.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\pid.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\portcls.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ppa3.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\processr.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ps5ui.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\pscript5.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\ptpusd.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\rdpdr.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\redbook.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\regedit.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\shtml.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\shtml.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\sla30nd5.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\smbali.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\smbbatt.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\smbclass.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\sonydcam.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\spcmdcon.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\splitter.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\spmsg.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\spuninst.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\storprop.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\stream.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\stub_fpsrvadm.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\stub_fpsrvwin.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\sysaudio.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\tcptest.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\tcptsat.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\telnet.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\termdd.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\tunmp.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\unidrv.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\unidrvui.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\usb101et.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\usbaudio.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\usbintel.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\usbprint.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\usbscan.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\vfwwdm32.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\wdmaud.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\winnt.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\winnt32.exe
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\winnt32a.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\winnt32u.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\wlluc48.sys
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\wsdueng.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\wzcsapi.dll
[WARNING] The file could not be opened!
D:\383c596ef54840c031ef6bd218effad\wzcsvc.dll
[WARNING] The file could not be opened!
D:\9ce\61883.sys
[WARNING] The file could not be opened!
D:\9ce\ac97ali.sys
[WARNING] The file could not be opened!
D:\9ce\ac97via.sys
[WARNING] The file could not be opened!
D:\9ce\admin.dll
[WARNING] The file could not be opened!
D:\9ce\admin.exe
[WARNING] The file could not be opened!
D:\9ce\admjoy.sys
[WARNING] The file could not be opened!
D:\9ce\aec.sys
[WARNING] The file could not be opened!
D:\9ce\amdk6.sys
[WARNING] The file could not be opened!
D:\9ce\amdk7.sys
[WARNING] The file could not be opened!
D:\9ce\an983.sys
[WARNING] The file could not be opened!
D:\9ce\arp1394.sys
[WARNING] The file could not be opened!
D:\9ce\author.dll
[WARNING] The file could not be opened!
D:\9ce\author.exe
[WARNING] The file could not be opened!
D:\9ce\autochk.exe
[WARNING] The file could not be opened!
D:\9ce\avc.sys
[WARNING] The file could not be opened!
D:\9ce\cabinet.dll
[WARNING] The file could not be opened!
D:\9ce\ccdecode.sys
[WARNING] The file could not be opened!
D:\9ce\cfgwiz.exe
[WARNING] The file could not be opened!
D:\9ce\cmbatt.sys
[WARNING] The file could not be opened!
D:\9ce\crusoe.sys
[WARNING] The file could not be opened!
D:\9ce\dbghelp.dll
[WARNING] The file could not be opened!
D:\9ce\drmk.sys
[WARNING] The file could not be opened!
D:\9ce\drmkaud.sys
[WARNING] The file could not be opened!
D:\9ce\essm2e.sys
[WARNING] The file could not be opened!
D:\9ce\fp4amsft.dll
[WARNING] The file could not be opened!
D:\9ce\fp4anscp.dll
[WARNING] The file could not be opened!
D:\9ce\fp4apws.dll
[WARNING] The file could not be opened!
D:\9ce\fp4areg.dll
[WARNING] The file could not be opened!
D:\9ce\fp4atxt.dll
[WARNING] The file could not be opened!
D:\9ce\fp4autl.dll
[WARNING] The file could not be opened!
D:\9ce\fp4avnb.dll
[WARNING] The file could not be opened!
D:\9ce\fp4avss.dll
[WARNING] The file could not be opened!
D:\9ce\fp4awebs.dll
[WARNING] The file could not be opened!
D:\9ce\fp4awel.dll
[WARNING] The file could not be opened!
D:\9ce\fp98sadm.exe
[WARNING] The file could not be opened!
D:\9ce\fp98swin.exe
[WARNING] The file could not be opened!
D:\9ce\fpadmcgi.exe
[WARNING] The file could not be opened!
D:\9ce\fpadmdll.dll
[WARNING] The file could not be opened!
D:\9ce\fpcount.exe
[WARNING] The file could not be opened!
D:\9ce\fpencode.dll
[WARNING] The file could not be opened!
D:\9ce\fpexedll.dll
[WARNING] The file could not be opened!
D:\9ce\fpmmc.dll
[WARNING] The file could not be opened!
D:\9ce\fpmmcsat.dll
[WARNING] The file could not be opened!
D:\9ce\fpremadm.exe
[WARNING] The file could not be opened!
D:\9ce\fpsrvadm.exe
[WARNING] The file could not be opened!
D:\9ce\gameenum.sys
[WARNING] The file could not be opened!
D:\9ce\gckernel.sys
[WARNING] The file could not be opened!
D:\9ce\hidserv.dll
[WARNING] The file could not be opened!
D:\9ce\imagehlp.dll
[WARNING] The file could not be opened!
D:\9ce\ipevlpid.dll
[WARNING] The file could not be opened!
D:\9ce\ipselpid.dll
[WARNING] The file could not be opened!
D:\9ce\irmon.dll
[WARNING] The file could not be opened!
D:\9ce\kmixer.sys
[WARNING] The file could not be opened!
D:\9ce\ks.sys
[WARNING] The file could not be opened!
D:\9ce\licdll.dll
[WARNING] The file could not be opened!
D:\9ce\ltmdmnt.sys
[WARNING] The file could not be opened!
D:\9ce\ltmdmntt.sys
[WARNING] The file could not be opened!
D:\9ce\ltotape.sys
[WARNING] The file could not be opened!
D:\9ce\lwadihid.sys
[WARNING] The file could not be opened!
D:\9ce\memstpci.sys
[WARNING] The file could not be opened!
D:\9ce\mouclass.sys
[WARNING] The file could not be opened!
D:\9ce\msdaipp.dll
[WARNING] The file could not be opened!
D:\9ce\msgsc.dll
[WARNING] The file could not be opened!
D:\9ce\msgslang.dll
[WARNING] The file could not be opened!
D:\9ce\msjavx86.exe
[WARNING] The file could not be opened!
D:\9ce\mskssrv.sys
[WARNING] The file could not be opened!
D:\9ce\msmsgs.exe
[WARNING] The file could not be opened!
D:\9ce\msmsgsin.exe
[WARNING] The file could not be opened!
D:\9ce\mstee.sys
[WARNING] The file could not be opened!
D:\9ce\ndisuio.sys
[WARNING] The file could not be opened!
D:\9ce\netsetup.exe
[WARNING] The file could not be opened!
D:\9ce\netwlan5.sys
[WARNING] The file could not be opened!
D:\9ce\nic1394.sys
[WARNING] The file could not be opened!
D:\9ce\ntdetect.com
[WARNING] The file could not be opened!
D:\9ce\ntdll.dll
[WARNING] The file could not be opened!
D:\9ce\ntfs.sys
[WARNING] The file could not be opened!
D:\9ce\ntkrnlpa.exe
[WARNING] The file could not be opened!
D:\9ce\ntkrpamp.exe
[WARNING] The file could not be opened!
D:\9ce\nv4_disp.dll
[WARNING] The file could not be opened!
D:\9ce\nv4_mini.sys
[WARNING] The file could not be opened!
D:\9ce\p3.sys
[WARNING] The file could not be opened!
D:\9ce\parport.sys
[WARNING] The file could not be opened!
D:\9ce\pcx500.sys
[WARNING] The file could not be opened!
D:\9ce\perm2.sys
[WARNING] The file could not be opened!
D:\9ce\perm2dll.dll
[WARNING] The file could not be opened!
D:\9ce\perm3.sys
[WARNING] The file could not be opened!
D:\9ce\perm3dd.dll
[WARNING] The file could not be opened!
D:\9ce\pid.dll
[WARNING] The file could not be opened!
D:\9ce\portcls.sys
[WARNING] The file could not be opened!
D:\9ce\ppa3.sys
[WARNING] The file could not be opened!
D:\9ce\processr.sys
[WARNING] The file could not be opened!
D:\9ce\ps5ui.dll
[WARNING] The file could not be opened!
D:\9ce\pscript5.dll
[WARNING] The file could not be opened!
D:\9ce\ptpusd.dll
[WARNING] The file could not be opened!
D:\9ce\rdpdr.sys
[WARNING] The file could not be opened!
D:\9ce\redbook.sys
[WARNING] The file could not be opened!
D:\9ce\regedit.exe
[WARNING] The file could not be opened!
D:\9ce\shtml.dll
[WARNING] The file could not be opened!
D:\9ce\shtml.exe
[WARNING] The file could not be opened!
D:\9ce\sla30nd5.sys
[WARNING] The file could not be opened!
D:\9ce\smbali.sys
[WARNING] The file could not be opened!
D:\9ce\smbbatt.sys
[WARNING] The file could not be opened!
D:\9ce\smbclass.sys
[WARNING] The file could not be opened!
D:\9ce\sonydcam.sys
[WARNING] The file could not be opened!
D:\9ce\spcmdcon.sys
[WARNING] The file could not be opened!
D:\9ce\splitter.sys
[WARNING] The file could not be opened!
D:\9ce\spmsg.dll
[WARNING] The file could not be opened!
D:\9ce\spuninst.exe
[WARNING] The file could not be opened!
D:\9ce\storprop.dll
[WARNING] The file could not be opened!
D:\9ce\stream.sys
[WARNING] The file could not be opened!
D:\9ce\stub_fpsrvadm.exe
[WARNING] The file could not be opened!
D:\9ce\stub_fpsrvwin.exe
[WARNING] The file could not be opened!
D:\9ce\sysaudio.sys
[WARNING] The file could not be opened!
D:\9ce\tcptest.exe
[WARNING] The file could not be opened!
D:\9ce\tcptsat.dll
[WARNING] The file could not be opened!
D:\9ce\telnet.exe
[WARNING] The file could not be opened!
D:\9ce\termdd.sys
[WARNING] The file could not be opened!
D:\9ce\tunmp.sys
[WARNING] The file could not be opened!
D:\9ce\unidrv.dll
[WARNING] The file could not be opened!
D:\9ce\unidrvui.dll
[WARNING] The file could not be opened!
D:\9ce\usb101et.sys
[WARNING] The file could not be opened!
D:\9ce\usbaudio.sys
[WARNING] The file could not be opened!
D:\9ce\usbintel.sys
[WARNING] The file could not be opened!
D:\9ce\usbprint.sys
[WARNING] The file could not be opened!
D:\9ce\usbscan.sys
[WARNING] The file could not be opened!
D:\9ce\vfwwdm32.dll
[WARNING] The file could not be opened!
D:\9ce\wdmaud.sys
[WARNING] The file could not be opened!
D:\9ce\winnt.exe
[WARNING] The file could not be opened!
D:\9ce\winnt32.exe
[WARNING] The file could not be opened!
D:\9ce\winnt32a.dll
[WARNING] The file could not be opened!
D:\9ce\winnt32u.dll
[WARNING] The file could not be opened!
D:\9ce\wlluc48.sys
[WARNING] The file could not be opened!
D:\9ce\wsdueng.dll
[WARNING] The file could not be opened!
D:\9ce\wzcsapi.dll
[WARNING] The file could not be opened!
D:\9ce\wzcsvc.dll
[WARNING] The file could not be opened!


End of the scan: mercredi 14 mai 2008 14:44
Used time: 56:28 min


4770 Scanning directories
165335 Files were scanned
3 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
3 files were moved to quarantine
0 files were renamed
331 Files cannot be scanned
165332 Files not concerned
930 Archives were scanned
331 Warnings
3 Notes

Répondre à sniperbond

:hello: Bonjour,

Je ne pense pas qu'ils soient infectieux :)

  • Fais un scan en ligne Kaspersky avec Internet Explorer :
  • Clique sur http://pictures.kaspersky.fr/bouton-scann1.jpg
  • Clique maintenant sur J'accepte.
  • Valide l'installation d'un ou de plusieurs ActiveX si c'est nécessaire.
  • Patiente pendant l'installation des Mises à jour.
  • Choisis par la suite l'analyse du Poste de travail
  • Sauvegarde puis colle le rapport généré en fin d'analyse.


AIDE : Tuto sur le scan en ligne

NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.

;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene

-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Wednesday, May 21, 2008 12:13:59 PM
Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 21/05/2008
Kaspersky Anti-Virus database records: 704367
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\
J:\

Scan Statistics:
Total number of scanned objects: 118430
Number of viruses found: 0
Number of infected objects: 0
Number of suspicious objects: 0
Duration of the scan process: 02:52:19

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Avira\Avira Premium Security Suite\EVENTDB\usettings.db Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Avira\Avira Premium Security Suite\LOGFILES\antispam.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Moi\Application Data\Mozilla\Firefox\Profiles\anr42x6q.default\cert8.db Object is locked skipped
C:\Documents and Settings\Moi\Application Data\Mozilla\Firefox\Profiles\anr42x6q.default\history.dat Object is locked skipped
C:\Documents and Settings\Moi\Application Data\Mozilla\Firefox\Profiles\anr42x6q.default\key3.db Object is locked skipped
C:\Documents and Settings\Moi\Application Data\Mozilla\Firefox\Profiles\anr42x6q.default\parent.lock Object is locked skipped
C:\Documents and Settings\Moi\Application Data\Mozilla\Firefox\Profiles\anr42x6q.default\urlclassifier2.sqlite Object is locked skipped
C:\Documents and Settings\Moi\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Application Data\Mozilla\Firefox\Profiles\anr42x6q.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Application Data\Mozilla\Firefox\Profiles\anr42x6q.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Application Data\Mozilla\Firefox\Profiles\anr42x6q.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Application Data\Mozilla\Firefox\Profiles\anr42x6q.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Temp\Perflib_Perfdata_184.dat Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Temp\Perflib_Perfdata_354.dat Object is locked skipped
C:\Documents and Settings\Moi\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Moi\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\Moi\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Avira\Avira Premium Security Suite\global_words.db Object is locked skipped
C:\Program Files\Avira\Avira Premium Security Suite\KProcessHlpr_756.txt Object is locked skipped
C:\Program Files\Avira\Avira Premium Security Suite\settings.db Object is locked skipped
C:\System Volume Information\_restore{262B4E8A-492F-48E6-8F6D-58C4F30B33A9}\RP85\change.log Object is locked skipped
C:\WINDOWS\CSC\00000001 Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\RTacDbg.txt Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\default Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\ODiag.evt Object is locked skipped
C:\WINDOWS\system32\config\OSession.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\software Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\system Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\1394bus.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\61883.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\6to4svc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ac97ali.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ac97via.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\acgenral.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\aclayers.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\aclua.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\acpi.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\acspecfc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\activ.ht_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\activsvc.ht_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\actlan.ht_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\actshell.ht_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\acverfyr.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\acxtrnal.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\adeskerr.ht_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\admin.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\admin.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\admjoy.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\adsldp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\adsldpc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\adsmsext.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\adsnt.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\advapi32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\advpack.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\aec.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\afd.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ahui.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\alg.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\amdk6.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\amdk7.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\an983.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\apphelp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\apphelp.sd_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\apps.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\appwiz.cp_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\arial.tt_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\arp1394.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asctrls.oc_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asferror.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asfsipc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\10100\msft\windows\gdiplus\gdiplus.cat Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\10100\msft\windows\gdiplus\gdiplus.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\10100\msft\windows\gdiplus\gdiplus.man Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\10100\policy\msft\windows\gdiplus\gdiplus.cat Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\10100\policy\msft\windows\gdiplus\gdiplus.man Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\60100\msft\windows\common\controls\comctl32.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\60100\msft\windows\common\controls\controls.cat Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\60100\msft\windows\common\controls\controls.man Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\60100\policy\60100\comctl\comctl.cat Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\60100\policy\60100\comctl\comctl.man Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\70100\msft\windows\mswincrt\msvcirt.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\70100\msft\windows\mswincrt\msvcrt.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\70100\msft\windows\mswincrt\mswincrt.cat Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\70100\msft\windows\mswincrt\mswincrt.man Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\70100\policy\msft\mswincrt\mswincrt.cat Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\asms\70100\policy\msft\mswincrt\mswincrt.man Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\at.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\atapi.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\atiradn1.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\atl.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\atmlane.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\audiosrv.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\author.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\author.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\autochk.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\autolfn.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\auupdate.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\avc.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\avifil32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\basesrv.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\batt.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\bridge.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\browselc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\browser.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\browseui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\browsewm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cabinet.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\callcont.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\catsrvut.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ccdecode.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cdfs.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cdm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cdrom.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\certcli.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cewmdm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cfgbkend.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cfgwiz.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cimwin32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ciodm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\classpnp.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\clipbrd.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\clusapi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cmbatt.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cmdial32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cmdl32.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\comadmin.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\comctl32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\comdlg32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\compatui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\compdata\drvmain.chm Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\compdata\drvmain.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\compdata\krnlchk.htm Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\compdata\krnlchk.txt Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\compdata\nv_agp.htm Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\compdata\nv_agp.txt Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\comsvcs.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\conf.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\conime.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\copymar.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\courtney.ac_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\credui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\crusoe.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\crypt32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cryptdlg.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cryptsvc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cryptui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\cscui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\csrsrv.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ctfmon.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\custdial.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\d3d8.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\danim.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dbghelp.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dbmsadsn.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dbmsrpcn.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dbmsvinn.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dbnetlib.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dbnmpntw.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dcache.bi_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dcap32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ddraw.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\defrag.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\desk.cp_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\devmgr.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dfrgfat.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dfrgntfs.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dfrgsnap.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dfrgui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dfsshlex.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dgnet.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dhcpcsvc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dhtmled.oc_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\digest.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dinput.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dinput8.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\disk.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\diskdump.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dlimport.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dmband.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dmcompos.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dmime.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dmloader.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dmscript.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dmstyle.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dmusic.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dnsapi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\docprop2.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dpnet.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dpnhpast.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dpnhupnp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dpvoice.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dpvsetup.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dpwsockx.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\drmclien.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\drmk.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\drmkaud.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\drmstor.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\drmv2clt.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\drvmain.sdb Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\drw\dwwin.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ds32gt.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dshowext.ax Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dsprop.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dsquery.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dssenh.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dumprep.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\duser.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dw.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dwwin.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dxdiag.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dxg.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dxmasf.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dxmrtp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dxtmsft.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\dxtrans.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\earl.ac_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\els.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ersvc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\es.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\esscli.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\essm2e.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\eudcedit.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\eventlog.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\evntrprv.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\explorer.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\expsrv.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fastfat.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fastprox.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\faultrep.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\filelist.xm_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fldrclnr.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\flpydisk.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fontview.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4.ca_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp40ext.cab Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp40ext.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp40ext.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4amsft.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4anscp.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4apws.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4areg.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4atxt.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4autl.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4avnb.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4avss.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4awebs.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp4awel.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp98sadm.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fp98swin.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fpadmcgi.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fpadmdll.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fpcount.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fpencode.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fpexedll.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fpmmc.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fpmmcsat.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fpremadm.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fpsrvadm.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\framebuf.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ftp.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsapi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsclnt.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxscomex.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxscover.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsdrv.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsext32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsocm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsocm.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsperf.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsres.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsst.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxssvc.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxst30.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxstiff.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxswzrd.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\fxsxp32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\g400.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\gameenum.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\gckernel.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\gdi32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\georgia.tt_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\guitrn.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\guitrn_a.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\h323cc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\hal.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\halaacpi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\halacpi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\halapic.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\halmacpi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\halmps.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\helpctr.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\helpsvc.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\hh.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\hhctrl.oc_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\hhsetup.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\hidclass.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\hidserv.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\highcont.ma_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\hmmapi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\hnetcfg.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\homepage.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\i8042prt.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\acpi.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\au.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\battery.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\bda.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\biosinfo.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\cdrom.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\compdata\drvmain.chm Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\compdata\drvmain.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\compdata\ntcompat.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\cpu.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\disk.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\dosnet.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\dpcdll.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\dpup.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\drvindex.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\hiddigi.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\hidserv.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\hivedef.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\hivesft.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\hivesys.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\ie.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\ieaccess.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\iis.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\input.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\intl.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\keyboard.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\kscaptur.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\layout.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\miscp.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\mshdc.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\msoe50.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\netip6.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\netoc.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\netrass.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\nt5inf.ca_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\ntprint.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\pchdt_p3.ca_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\pchealth.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\pidgen.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\pnpscsi.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\rinorprt.si_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\ristndrd.si_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\scsi.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\setupreg.hiv Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\swflash.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\sysoc.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\syssetup.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\tape.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\tsoc.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\txtsetup.sif Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\usbport.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\whatnewp.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\win9xupg\migdb.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\win9xupg\vscandb.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\win9xupg\win95upg.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\winnt32.msi Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ic\wkstamig.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\icaapi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\icm32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\icsmgr.js_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\icwconn1.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\idq.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ie4uinit.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ieakeng.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ieaksie.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\iedkcs32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\iepeers.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\iesetup.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ieuinit.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\iexplore.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\iis.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ils.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\imaadp32.ac_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\imagehlp.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\imapi.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\imapi.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\imeshare.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\imgutil.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\imm32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ims.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\inetcomm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\inetcpl.cp_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\input.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\inseng.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\instcat.sq_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\intelide.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\intl.cp_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\acpi.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\adsiis51.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\appmgmts.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\appmgr.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\asp51.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\asr_pfu.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\au.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\battery.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\bda.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\biosinfo.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\cdrom.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\coadmin.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\compdata\drvmain.chm Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\compdata\drvmain.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\compdata\ntcompat.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\cpu.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\default.as_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\disk.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\dosnet.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\dpcdll.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\drvindex.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\dwup.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\fdeploy.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\ftpsv251.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\gprslt.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\gptext.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\hiddigi.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\hidserv.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\hivedef.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\hivesft.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\hivesys.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\httpext.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\httpod51.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\ie.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\ieaccess.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\iis.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\iislog51.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\inetres.ad_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\infocomm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\input.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\intl.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\irbus.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\keyboard.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\kscaptur.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\layout.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\login.cm_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\md5filt.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\medctroc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\miscw.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mqac.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mqad.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mqise.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mqqm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mqrt.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mqsec.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mqsnap.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mqtrig.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mqutil.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\mshdc.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\msmqocm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\msoe50.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\netfxocm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\netfxocm.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\netip6.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\netoc.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\netrass.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\nt5inf.ca_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\ntprint.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\nwrdr.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\nwwks.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\pchdt_w3.ca_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\pchealth.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\pidgen.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\pnpscsi.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\policman.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\query.as_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\rinorprt.si_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\ristndrd.si_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\rsnotify.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\scsi.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\sctasks.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\search.as_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\setupreg.hiv Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\spiisupd.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\ssinc51.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\swflash.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\sysoc.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\syssetup.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\system.ad_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\system.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tabletoc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tabletpc.ca_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tabletpc.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tape.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\termcap._ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tlntadmn.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tlntsess.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tlntsvr.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tlntsvrp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tracerpt.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\tsoc.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\txtsetup.sif Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\usbport.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\w3svc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\whatneww.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\win9xupg\migdb.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\win9xupg\vscandb.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\win9xupg\win95upg.inf Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\winnt32.msi Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\wkstamig.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\wmic.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ip\wsecedit.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipconfig.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipevldpc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipevlpid.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\iphlpapi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipmntdpc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipnat.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipnathlp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ippromon.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipp_0001.as_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipp_0002.as_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipp_0004.as_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipp_0006.as_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipp_0013.as_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipp_0014.as_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipp_util.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipsec.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipsecsvc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipseldpc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipselpid.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipv6.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ipv6mon.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\irmon.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\itircl.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\itss.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\iuctl.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\iuengine.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ixsso.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\joy.cp_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\kbdclass.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\kd1394.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\kerberos.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\kernel32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\keyboard.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\kmixer.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ks.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ksxbar.ax Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\l3codeca.ac_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\chajei.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\chtmbx.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\chtskdic.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\chtskf.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\cintime.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\cintlgnt.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\cintsetp.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\cplexe.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\dayi.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imekr61.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imekrcic.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjp81.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjp81k.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjpcd.di_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjpcic.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjpcus.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjpdct.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjpdct.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjpdsvr.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjpinst.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjpinst.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjpmig.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjprw.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjputy.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imjputyc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imlang.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\imscinst.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\miniime.tp_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\padrs404.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\padrs804.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\phon.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlcsa.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlcsd.di_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlcsd.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlcsk.di_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgc.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgd.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgdx.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgi.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgix.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgl.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgne.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgnt.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgnt.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgr.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlgs.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pintlphr.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\pmigrate.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\quick.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\romanime.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\tintlgnt.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\tintlphr.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\tintsetp.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\tmigrate.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\unicdime.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\uniime.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\voicepad.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\voicesub.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\winar30.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lang\winime.im_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\laprxy.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lcladvd.xm_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lcldocs.xm_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\licdll.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\licdll.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\license.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\licmgr10.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\licwmi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\licwmi.mf_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\licwmi.mof Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\licwmi.mo_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lmrt.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\locale.nl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\localspl.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\localui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\log.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\logagent.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\logon.sc_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\logonmgr.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\logonui.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lsasrv.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lsass.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ltmdmnt.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ltmdmntt.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ltotape.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lvback.gif Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\lwadihid.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mail.ma_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mailtmpl.txt Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\manifest.xm_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\market.ma_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mdmetech.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mdmlt3.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mdmrpci.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mdmsuprv.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\memstpci.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migapp.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migism.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migism.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migism_a.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migload.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migrate.js_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migrate.ob_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migsys.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migwiz.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migwiz.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\migwiz_a.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mindex.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mmcndmgr.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mmssetup.cab Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mnmdd.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mobsync.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mofcomp.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mofd.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\moricons.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mouclass.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\moviemk.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mpg2splt.ax_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mpg4dmod.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mpg4ds32.ax_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mplay32.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mplayer2.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mrxsmb.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadce.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadcf.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadco.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadcs.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadds.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadds32.ax_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msado15.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msado20.tl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msado21.tl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msado25.tl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msado26.tl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadomd.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msador15.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadox.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadp32.ac_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msadrh15.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msaud32.ac_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mscandui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mscms.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msconf.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msconfig.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mscpx32r.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msctf.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msctfp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdadc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdaenum.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdaer.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdaipp.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdaora.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdaosp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdaprst.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdaps.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdarem.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdart.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdasc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdasql.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdatl3.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdatsrc.tl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdatt.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdaurl.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdbx.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdfmap.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdtcprx.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdtctr.mo_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdxm.oc_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msdxmlc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msexch40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msexcl40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msgina.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msgrocm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msgsc.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msgslang.dll Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msh261.dr_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msh263.drv Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mshtml.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mshtml.tl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mshtmled.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mshtmler.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msieftp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msiexec.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msihnd.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msimain.sd_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msimg32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msimn.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msimtf.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msisam11.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msjavx86.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msjet40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msjetol1.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msjro.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msjtes40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mskssrv.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mslbui.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msltus40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msmom.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msmsgs.ca_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msmsgs.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msmsgs.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msmsgsin.exe Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msn.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msn36.ma_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msn6.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnetobj.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnmetal.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnmigr.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnmsn.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnmtllc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnntmig.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnspell.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnsspc.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnunin.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msnupgrd.in_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msobcomm.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msobmain.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msobshel.ht_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msoe.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msoeacct.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msoert2.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msorcl32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mspaint.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mspbde40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mspmsp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msrating.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msrd2x40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msrdp.ca_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msrdp.ocx Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msrepl40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msrle32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msscds32.ax_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msscp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msscript.oc_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mst120.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mst123.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mstask.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mstee.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mstext40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mstime.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mstinit.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mstsc.ch_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mstsc.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mstscax.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mstsweb.ca_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msuni11.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msutb.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msv1_0.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msvcp60.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msvcrt.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msvfw32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msvidctl.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mswebdvd.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msxactps.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msxbde40.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msxml2.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\msxml3.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\muisetup.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\mup.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\nac.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ncobjapi.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ncprov.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\nddenb32.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ndis.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ndisnpp.dl_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ndisuio.sys Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\ndiswan.sy_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\net.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\net1.ex_ Object is locked skipped
D:\383c596ef54840c031ef6bd218effad\netapi32.dl_ Object is locked skipped
D:\383c596ef54840c0

Répondre à sniperbond

:hello: Bonjour et toutes mes excuses pour ce délais de réponse.

Rien d'alarmant sur ce rapport ?

Tu as toujours des problèmes ? Si oui...

Télécharge Deckard's System Scanner (DSS) (ou DSS) sur ton Bureau.
NB : Tu dois être connecté avec des droits d'Administrateur.

  • ferme toutes les applications et fenêtres
  • double-clique sur dss.exe pour le lancer et suis les instructions ci-dessous

Attention, il est conseillé de stopper temporairement les logiciels résidents de protection (pare-feu, antivirus, etc.)

  • s'il s'agit d'une première utilisation ou d'une nouvelle version de DSS :
  • tu devras cliquer 2 fois sur le OK des boîtes de dialogue

Attention, si tu tardes trop, la réponse Abandon sera automatiquement validée

  • quand le traitement est terminé (clique sur OK), deux fichiers texte s'affichent :

main.txt <- ouvert en premier plan et en plein écran
extra.txt <- ouvert en second plan et en fenêtré (regarde la barre des taches)
S'il s'agit d'une utilisation supplémentaire de DSS :

  • tu n'auras pas de boîte de dialogue (pas de OK)
  • quand le traitement est terminé, un fichier texte s'affiche :

main.txt <- ouvert en premier plan et en plein écran

  • copie (Ctrl+A puis Ctrl+C) et colle (Ctrl+V) le contenu de main.txt dans ton prochain post
  • copie de même le contenu de extra.txt dans ton prochain post, si tu as ce fichier (première utilisation)
  • n'oublie pas de réactiver les protections si elles ont été stoppées.




Ce que fait DSS :

  • crée un point de restauration dans Windows XP et Vista
  • nettoie les fichiers temporaires, DPF-Downloaded Program Files et le Cache Internet, vide la Corbeille de tous les lecteurs
  • vérifie quelques zones importantes de ton système et établit un rapport pour examen par ton conseiller en sécurité. DSS lance automatiquement HijackThis pour toi; il va aussi créer un raccourci HijackThis sur ton Bureau si tu n'as pas déjà HijackThis d'installé.


N.B : Je suis totalement indisponible jusqu'à samedi prochain.

;)

------------------------------ Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité / Prévention
Répondre à Egwene
Tom's Guide > Forum > Sécurité - Virus > clicks.smartbizsearch.com comment s'en debarasser ?
Aller à :

Il y a 1865 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.

Attention

Vous allez répondre sur un sujet resté inactif pendant plus de 6 mois.
Assurez-vous d'apporter des éléments nouveaux à la discussion avant de poursuivre.

Répondre Annuler
Liens