|
|
|
Auteur
|
Message
|
1
|
|
|
|
Bonjours, j'utilise un xp service pack2 et j'ai un probleme au demarrage
quand je demarre mon pc tou se charge bien sauf que sa finit sur un écran noire avec la fleche ou a défois sa se redemarre avan de mettre la page noire
ps: la je suis en mode sans echec avec prise en charge du reseau
j'ai déja reformater mon pc et fai des restauration du systeme mais rien
|
|
La Mayenne-son calme -sa verdu
|
|
|
Tu as essayer de démarrer sans aucun périphériques de branchés pour voir si l'un deux n'est pas en cause.
Garde juste clavier et souris.
|
|
|
|
|
sa veut dire que je debranche sur la tour ou c par rapport a l ordi ?
Ps: je m'i connait pas trop
|
|
|
|
|
|
tu débranches imprimantes, scanneur ou tout qui est externe sauf souris, clavier et moniteur. Mais tu les débranches quand l'ordinateur est fermer.
|
|
|
|
|
ba j'ai juste la souris le clavier l'écran et la carte wifi ke j'ai mi ya longtemps( mais sa peut pas etre sa le probleme )
|
|
|
|
|
|
ok, redémarre en mode sans échec uniquement, ensuite redémarre mais en mode sans échec avec prise en charge réseau et finalement redémarre en mode normal pour voir.
|
|
|
|
|
j'ai essayé et sa fonctionne pas
sa se pourrai que sa soi des dossier .dll ou .exe du system32 qui soit endomagé ?
Ps: c'est normal quand mode sans echec et en mode sans echec prise en charge du reseau je n'ai pa de son ?
-->Message édité par kemar94310 le 19/11/2008 13:38:17<--
|
|
|
|
|
oui c'est tout à fait normal, il charge le minimum pour régler certaine chose comme tu as surement remarqué ton affichage n'est pas pareil non plus.
Peut-être tenté une réparation
http://forum.telecharger.01net.com/microhebdo/windows-linux-mac-et-les-autres(...)
Mais ça ne fera pas comme si tu venais de formaté ou réinstallé, mais par contre tu pourras sauvegardé tes documents importants et ensuite formaté et installé Windows.
|
|
|
|
|
|
ou enlève la carte réseau sans fil juste pour voir avant de passé à une réparation.
|
|
|
|
|
faut que je trouve un cd alors
|
|
|
|
|
on ma dit de faire executer » cmd » mrt
sa a fai une recherche des virus ( peut etre s avien de la le probleme )
et je vouderai savoir si yaurai un logiciel gratuit pour les suprimer en toute sécurité

-->Message édité par kemar94310 le 21/11/2008 05:02:27<--
|
|
La Mayenne-son calme -sa verdu
|
|
|
fait ceci.
Installe Malewarebytes' Antimalware,
Téléchargement et tuto
Met-le à jour puis passe en mode sans échec :
http://www.pcloisirs.eu/mode_sans_echec.htm
Choisi, Exécuter un examen complet (environ 1heure)
Si une infection est trouvée, coche la case a coté et valides avec l’Onglet Supprimer la sélection
Poste le rapport final.
il est conseillé de désactivé Tea-Timer si tu as Spybot-S&D juste le temps du scan.
|
|
|
|
|
Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1414
Windows 5.1.2600 Service Pack 2
21/11/2008 17:35:03
mbam-log-2008-11-21 (17-35-03).txt
Type de recherche: Examen complet (C:\|D:\|E:\|F:\|G:\|H:\|I:\|)
Eléments examinés: 46017
Temps écoulé: 2 minute(s), 56 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 1
Clé(s) du Registre infectée(s): 128
Valeur(s) du Registre infectée(s): 12
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 18
Fichier(s) infecté(s): 45
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
C:\WINDOWS\system32\crypts.dll (Trojan.Agent) -> Delete on reboot.
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\coresrv.lfgax (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{0729f461-8054-47dc-8d39-a31b61cc0119} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{40ca90f3-4098-4877-ae87-23eb612b18c7} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{4c3b62af-ca25-4fba-8405-32e44f83bb6f} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{5a635a91-c303-45c9-8db9-f759d98a3b9d} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7e335d04-2e6e-4d0e-a921-c3d9192e7121} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{99ccfb8c-6380-4a14-8fdd-ef3e7e95335d} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b20d7add-989c-4bc0-a797-f6fe7998efd7} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{bfc20a15-b0ac-44cc-a25a-a7039014ba9f} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f019aec4-4c95-46de-a107-e302473e3b9a} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2d00aa2a-69ef-487a-8a40-b3e27f07c91e} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{86c5840b-80c4-4c30-a655-37344a542009} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{b0cb585f-3271-4e42-88d9-ae5c9330d554} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.lfgax.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbax (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{e343edfc-1e6c-4cb5-aa29-e9c922641c80} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d8560ac2-21b5-4c1a-bdd4-bd12bc83b082} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{20ea9658-6bc3-4599-a87d-6371fe9295fc} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a16ad1e9-f69a-45af-9462-b1c286708842} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c9ccbb35-d123-4a31-affc-9b2933132116} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbax.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbinfoband (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbinfoband.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebutton (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebutton.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebuttona (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebuttona.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.rprtctrl (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.rprtctrl.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8ad9ad05-36be-4e40-ba62-5422eb0d02fb} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{aebf09e2-0c15-43c8-99bf-928c645d98a0} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{cdca70d8-c6a6-49ee-9bed-7429d6c477a2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{d136987f-e1c4-4ccc-a220-893df03ec5df} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eddbb5ee-bb64-4bfc-9dbe-e7c85941335b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{148e1447-c728-48fd-beec-a7d06c5fff58} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8ee46f55-1ce1-4db9-811a-68938ec7f3dd} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a87dfd99-cf81-4241-85ce-881e0026b686} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{c96b9fae-a032-4100-bb47-32ef05e28be4} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{14113b47-d59c-4f0f-9d10-ff1730265584} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a9c42a57-421c-4572-8b12-249c59183d1c} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{a57470de-14c7-4fcd-9d4c-e5711f24f0ed} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2557dd3f-23a0-477c-bcd8-90fd0aecc4b8} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2893116c-a176-42b1-8794-da8c9fc45564} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{99fdca0c-7380-4e9c-8d99-5dc4750334ef} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b1d9f4b1-b9ff-463f-bf15-ab9cb26160f7} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2aa2fbf8-9c76-4e97-a226-25c5f4ab6358} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2aa2fbf8-9c76-4e97-a226-25c5f4ab6358} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2aa2fbf8-9c76-4e97-a226-25c5f4ab6358} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{71f731b3-008b-4052-9ea4-4145acce40c3} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{8292078f-f6e9-412b-8eb1-360c05c5ece5} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2447e305-5e90-42a8-bd1e-0bc333b807e1} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{50d2fdcc-2707-49cb-8223-7fe0424909aa} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{878ce013-7ba9-4650-a78c-b2234c0c1648} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a5b6fa30-d317-41ca-9cb1-c898d3c7f34e} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{cc19a5f2-b4ad-41d5-a5c9-0680904c1483} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{03d7ff6e-9781-40b5-bb7f-94291a361604} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3ceb04ab-08af-45f4-81b4-70d13c1f7b85} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a7213d71-47e1-4832-92d7-d61dfe9f231f} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{cf82f350-e1c4-4916-ac12-ba73db60afb7} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c62a9e79-2b52-439b-af57-2e60bb06e86c} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{15fd8424-d12a-4c51-8c6c-d5d57b80f781} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{67b3becf-7b6f-42b2-99f0-f7656f89cffa} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{715ffd42-4e05-4eab-9513-c8daa5395ae2} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{759d6f7c-8d30-45b6-abea-fa51c190eed5} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{9a4a64a4-a2fb-48fa-9bba-1ac50267695d} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{62906e60-bce2-4e1b-9ed0-8b9042ee15e4} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{f9bfa98d-9935-4ea4-a05a-72c7f0778f02} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{abec1835-3181-4abd-8dde-875aec4df6d2} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{0af9a087-0cbf-46b2-9dc9-52d0d16b5ab6} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{69725738-cd68-4f36-8d02-8c43722ee5da} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{69725738-cd68-4f36-8d02-8c43722ee5da} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{a56fe01c-77c4-4f5e-8198-e4b72207890a} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{af55160d-cde1-4a8b-8001-66da06bee740} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{89085678-632d-4deb-bda0-cd912c63203e} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{30b15818-e110-4527-9c05-46ace5a3460d} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{618aad04-921f-44c2-be38-c0818af69861} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b5d2ed96-62f9-4c2c-956d-e425b1f67337} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d3a412e8-1e4b-47d2-9b12-f88291f5afbb} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3788e535-897b-463d-b6d6-fee5b86ec144} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3788e535-897b-463d-b6d6-fee5b86ec144} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d3f940ea-4e87-423b-9091-934e1e4fceae} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{d3f940ea-4e87-423b-9091-934e1e4fceae} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\shoppingreport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\fci (Rootkit.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ICF (Rootkit.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\zangosa (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Zango (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZangoSA (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.clientdetector (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.clientdetector.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.userprofiles (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.userprofiles.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\wallpaper.wallpapermanager (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\wallpaper.wallpapermanager.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.toolbarctl (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.toolbarctl.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.htmlmenuui (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.htmlmenuui.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\srv.coreservices (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\srv.coreservices.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.webmailsend (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.webmailsend.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.mailanim (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.mailanim.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostie.bho (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostie.bho.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbr.hbmain (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbr.hbmain.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbmain.commband (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbmain.commband.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.coreservices (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.coreservices.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\zango (Adware.180Solutions) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ljhdea (Adware.Navipromo.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\rs32net (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\reader (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\zangooe (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\weatherdpa (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\zangosa (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\Zango@Zango.com (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\zango 10.3.75.0 (Adware.Zango) -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
C:\Program Files\Zango (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0 (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\components (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\plugins (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport\Bin (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport\Bin\2.5.0 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\db (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\dwld (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\report (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\res1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 (Adware.Seekmo) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Application Data\ljhdea_navps.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Application Data\ljhdea_nav.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Application Data\ljhdea.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Application Data\ljhdea.exe (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\rs32net.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\reader.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\CoreSrv.dll (Adware.Zango) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport\Bin\2.5.0\ShoppingReport.dll (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\arrow.ico (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\CntntCntr.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\copyright.txt (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\HostIE.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\HostOE.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\HostOL.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\link.ico (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\OEAddOn.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\Srv.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\Toolbar.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\Wallpaper.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\Weather.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\WeSkin.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoSA.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoSAAX.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoSADF.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoSAHook.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\ZangoUninstaller.exe (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\chrome.manifest (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\install.rdf (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\components\npclntax.xpt (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\plugins\npclntax_ZangoSA.dll (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport\Uninst.exe (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\Config.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\db\Aliases.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\db\Sites.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\dwld\WhiteList.xip (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\report\aggr_storage.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\report\send_storage.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\Compaq_Propriétaire\Application Data\ShoppingReport\cs\res1\WhiteList.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSA.dat (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSAAbout.mht (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSAau.dat (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSAEula.mht (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA\ZangoSA_kyf.dat (Adware.Zango) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\crypts.dll (Trojan.Agent) -> Delete on reboot.
C:\WINDOWS\system32\icf.exe.exe (Worm.Zhelatin) -> Quaran
|
|
La Mayenne-son calme -sa verdu
|
|
|
bon bizarre que tu viens de formater et que tu te retrouves avec autant d'intrus sur ton pc.
bon tu as tout bien supprimer.
Est ce que cette fois cela vas mieux
|
|
|
|
|
non sa fait toujour la meme choze
moi aussi sa ma étonné d'avoir tout sa alors que sa doit soit disant remettre le pc comme en sortit d'usine
il me reste plus qu'a trouver un cd d'installation
et si je dois changer une piece pour qu'il refonctionne sa serait quoi et sa couterais combien ?
|
|
La Mayenne-son calme -sa verdu
|
|
|
|
|
Logfile of random's system information tool 1.04 (written by random/random)
Run by Compaq_Propriétaire at 2008-11-26 20:50:59
Microsoft Windows XP Édition familiale Service Pack 2
System drive C: has 138 GB (94%) free of 146 GB
Total RAM: 958 MB (72% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:51:10, on 26/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Safe mode with network support
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hercules\WiFi Station\WiFiStation.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Compaq_Propriétaire\Bureau\RSIT.exe
C:\Program Files\trend micro\Compaq_Propriétaire.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.live.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.live.com/sphome.aspx
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [PCDrProfiler] "C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe" -r
O4 - HKLM\..\Run: [SSC_UserPrompt] c:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [IS CfgWiz] c:\Program Files\Norton Internet Security\cfgwiz.exe /GUID {257BBC47-1B26-432e-9F84-188603799DD3} /MODE CfgWiz /CMDLINE "REBOOT"
O4 - HKLM\..\Run: [URLLSTCK.exe] c:\Program Files\Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\Run: [CamWizard] C:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\CamWizard.exe
O4 - HKLM\..\Run: [LogitechRegisterVideoApplications] "C:\Program Files\Logitech\Video\InstallHelper.exe" /register /runnow
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\RunOnce: [InstallShieldSetup] C:\PROGRA~1\INSTAL~1\{C191B~1\setup.exe -rebootC:\PROGRA~1\INSTAL~1\{C191B~1\reboot.ini -l0x40c
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [rs32net] C:\WINDOWS\System32\rs32net.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [rs32net] C:\WINDOWS\System32\rs32net.exe (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: WiFi Station.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: bw+0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {B900DB1C-4A67-4E2E-A3C6-3229F0FC05BB} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: lbrasggn - lbrasggn.dll (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: IS Service (ISSVC) - Symantec Corporation - c:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\Logitech\srvLnch.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
--
End of file - 20788 bytes
======Scheduled tasks folder======
C:\WINDOWS\tasks\NSSstub.job
C:\WINDOWS\tasks\Symantec NetDetect.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14 63136]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]
Click-to-Call BHO - C:\Program Files\Windows Live\Messenger\wlchtc.dll [2008-09-02 75272]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-02-22 401968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2005-01-02 716800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDF3E430-B101-42AD-A544-FADC6B084872}]
CNavExtBho Class - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2004-08-31 218240]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2005-01-02 716800]
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - Norton AntiVirus - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll [2004-08-31 218240]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.5.0\bin\jusched.exe [2005-01-02 49260]
"hpsysdrv"=c:\windows\system\hpsysdrv.exe [1998-05-07 61440]
"ATIPTA"=C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe [2005-06-08 356352]
"KBD"=C:\HP\KBD\KBD.EXE [2005-02-03 73728]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2005-05-05 290816]
"Recguard"=C:\WINDOWS\SMINST\RECGUARD.EXE [2004-04-14 245760]
"PCDrProfiler"=C:\Program Files\PC-Doctor 5 for Windows\RunProfiler.exe [2005-05-10 69565]
"SSC_UserPrompt"=c:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe [2004-08-16 218240]
"ccApp"=c:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe [2004-09-07 58488]
"IS CfgWiz"=c:\Program Files\Norton Internet Security\cfgwiz.exe [2004-08-24 132248]
"URLLSTCK.exe"=c:\Program Files\Norton Internet Security\UrlLstCk.exe [2004-08-31 33936]
"AlcxMonitor"=C:\WINDOWS\ALCXMNTR.EXE [2004-09-07 69632]
"PS2"=C:\WINDOWS\system32\ps2.exe [2004-10-25 102400]
"LSBWatcher"=c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe [2005-05-11 266240]
"Reminder"=C:\Windows\Creator\Remind_XP.exe [2004-12-14 675840]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPwuSchd2.exe [2005-02-17 61440]
"Malwarebytes Anti-Malware (reboot)"=C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2008-10-22 1273488]
"CamWizard"=C:\Program Files\Fichiers communs\Logitech\QCDRV\BIN\CamWizard.exe [2005-12-07 139264]
"LogitechRegisterVideoApplications"=C:\Program Files\Logitech\Video\InstallHelper.exe /register /runnow []
"LVCOMSX"=C:\WINDOWS\system32\LVCOMSX.EXE [2005-12-09 237568]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"InstallShieldSetup"=C:\PROGRA~1\INSTAL~1\{C191B~1\setup.exe -rebootC:\PROGRA~1\INSTAL~1\{C191B~1\reboot.ini -l0x40c []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2008-09-09 3513344]
"Steam"=C:\Program Files\Steam\Steam.exe [2008-11-16 1410296]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-05 24064]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2004-10-14 1702912]
"eMuleAutoStart"=C:\Program Files\eMule\emule.exe [2008-09-16 5492736]
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Logitech Desktop Messenger.lnk - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
WiFi Station.lnk - C:\Program Files\Hercules\WiFi Station\WifiStation.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2005-06-08 46080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\lbrasggn]
lbrasggn.dll []
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=
scecli
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ati6hoxx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ati6hoxx.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\AOL 9.0\waol.exe"="C:\Program Files\AOL 9.0\waol.exe:*:Enabled:AOL France"
"\??\C:\WINDOWS\system32\winlogon.exe"="\??\C:\WINDOWS\system32\winlogon.exe:*:enabled:@shell32.dll,-1"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\Steam\steamapps\zhou_tai94\condition zero\hl.exe"="C:\Program Files\Steam\steamapps\zhou_tai94\condition zero\hl.exe:*:Enabled:Half-Life Launcher"
"C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Disabled:Logitech Desktop Messenger"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%ProgramFiles%\iTunes\iTunes.exe"="%ProgramFiles%\iTunes\iTunes.exe:*:enabled:iTunes"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe"="C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe:*:Enabled:Logitech Desktop Messenger"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\D]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\E]
shell\AutoRun\command - E:\setup.exe
shell\LVIPCAP\command - E:\techsupt\CaptureTest\Amcap8.exe
======List of files/folders created in the last 1 months======
2008-11-26 20:50:59 ----D---- C:\rsit
2008-11-26 20:50:59 ----D---- C:\Program Files\trend micro
2008-11-25 03:07:26 ----A---- C:\WINDOWS\system32\12.tmp
2008-11-25 03:07:24 ----A---- C:\WINDOWS\system32\F.tmp
2008-11-25 02:48:17 ----A---- C:\WINDOWS\system32\D.tmp
2008-11-25 02:48:09 ----A---- C:\WINDOWS\system32\A.tmp
2008-11-25 00:58:50 ----RA---- C:\WINDOWS\system32\lvcoinst.ini
2008-11-25 00:58:50 ----RA---- C:\WINDOWS\system32\lvcoinst.dll
2008-11-25 00:58:49 ----RA---- C:\WINDOWS\system32\LVUI2RC.dll
2008-11-25 00:58:49 ----RA---- C:\WINDOWS\system32\LVUI2.dll
2008-11-25 00:58:49 ----RA---- C:\WINDOWS\system32\lvcodec2.dll
2008-11-24 23:22:54 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2008-11-24 23:20:48 ----RA---- C:\WINDOWS\Instexec.exe
2008-11-24 23:20:45 ----RA---- C:\WINDOWS\system32\InstExec.ini
2008-11-24 23:20:45 ----RA---- C:\WINDOWS\system32\InstExec.exe
2008-11-24 23:19:27 ----D---- C:\Program Files\Fichiers communs\Logitech
2008-11-24 23:19:07 ----A---- C:\WINDOWS\system32\msxml4a.dll
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71KOR.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71JPN.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71ITA.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71ESP.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71ENU.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71DEU.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71CHT.DLL
2008-11-24 23:19:06 ----A---- C:\WINDOWS\system32\MFC71CHS.DLL
2008-11-24 23:19:05 ----A---- C:\WINDOWS\system32\gdiplus.dll
2008-11-24 23:18:46 ----R---- C:\WINDOWS\bwUnin-7.2.0.137-8876480SL.exe
2008-11-24 23:18:37 ----D---- C:\Program Files\Logitech
2008-11-21 17:36:15 ----D---- C:\Avenger
2008-11-21 17:36:15 ----A---- C:\avenger.txt
2008-11-21 17:29:10 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Malwarebytes
2008-11-21 17:29:04 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2008-11-21 17:29:04 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-11-21 16:58:08 ----A---- C:\WINDOWS\system32\11C.tmp
2008-11-21 16:58:06 ----A---- C:\WINDOWS\system32\11B.tmp
2008-11-21 16:57:57 ----A---- C:\WINDOWS\system32\119.tmp
2008-11-21 16:23:06 ----A---- C:\WINDOWS\system32\113.tmp
2008-11-21 16:23:05 ----A---- C:\WINDOWS\system32\112.tmp
2008-11-21 16:22:56 ----A---- C:\WINDOWS\system32\110.tmp
2008-11-21 13:49:51 ----A---- C:\WINDOWS\vgwtdeth.exe
2008-11-21 13:49:51 ----A---- C:\WINDOWS\system32\FA.tmp
2008-11-21 13:49:47 ----A---- C:\WINDOWS\system32\F9.tmp
2008-11-21 13:49:43 ----A---- C:\WINDOWS\system32\F7.tmp
2008-11-19 13:31:40 ----RHD---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\SecuROM
2008-11-19 13:31:39 ----A---- C:\WINDOWS\system32\CmdLineExt.dll
2008-11-19 13:31:27 ----D---- C:\WINDOWS\LastGood
2008-11-19 13:31:25 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2008-11-19 00:42:29 ----D---- C:\WINDOWS\Sun
2008-11-19 00:41:51 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Sun
2008-11-18 16:46:20 ----A---- C:\WINDOWS\bndsqokf.exe
2008-11-18 11:55:11 ----D---- C:\WINDOWS\system32\Adobe
2008-11-18 11:21:23 ----D---- C:\WINDOWS\SoftwareDistribution
2008-11-18 11:20:11 ----D---- C:\WINDOWS\system32\CatRoot2
2008-11-18 11:19:42 ----D---- C:\WINDOWS\temp
2008-11-18 10:44:11 ----A---- C:\WINDOWS\system32\7.tmp
2008-11-18 10:44:04 ----A---- C:\WINDOWS\system32\4.tmp
2008-11-18 10:44:03 ----A---- C:\WINDOWS\system32\3.tmp
2008-11-18 00:18:59 ----D---- C:\Program Files\Hercules
2008-11-17 22:57:07 ----D---- C:\WINDOWS\pss
2008-11-16 23:26:31 ----A---- C:\WINDOWS\ntbtlog.txt
2008-11-16 18:50:10 ----D---- C:\WINDOWS\system32\CatRoot_bak
2008-11-16 18:40:37 ----HDC---- C:\WINDOWS\$NtUninstallKB899587$
2008-11-16 18:40:29 ----HDC---- C:\WINDOWS\$NtUninstallKB927779$
2008-11-16 18:40:24 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-11-16 18:40:19 ----HDC---- C:\WINDOWS\$NtUninstallKB927802$
2008-11-16 18:40:11 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-11-16 18:40:03 ----HDC---- C:\WINDOWS\$NtUninstallKB943460$
2008-11-16 18:39:56 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-11-16 18:39:49 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
2008-11-16 18:39:41 ----HDC---- C:\WINDOWS\$NtUninstallKB928255$
2008-11-16 18:39:35 ----HDC---- C:\WINDOWS\$NtUninstallKB911927$
2008-11-16 18:39:30 ----HDC---- C:\WINDOWS\$NtUninstallKB901017$
2008-11-16 18:39:24 ----HDC---- C:\WINDOWS\$NtUninstallKB899591$
2008-11-16 18:39:19 ----HDC---- C:\WINDOWS\$NtUninstallKB923723$
2008-11-16 18:39:03 ----D---- C:\WINDOWS\WBEM
2008-11-16 18:39:02 ----D---- C:\WINDOWS\system32\fr-fr
2008-11-16 18:37:46 ----HDC---- C:\WINDOWS\ie7
2008-11-16 18:37:35 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2008-11-16 18:37:23 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2008-11-16 18:37:07 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2008-11-16 18:37:05 ----N---- C:\WINDOWS\system32\xmllite.dll
2008-11-16 18:35:49 ----HDC---- C:\WINDOWS\$NtUninstallKB904942$
2008-11-16 18:32:09 ----HDC---- C:\WINDOWS\$NtUninstallKB933729$
2008-11-16 18:32:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956391$
2008-11-16 18:31:56 ----HDC---- C:\WINDOWS\$NtUninstallKB957095$
2008-11-16 18:31:48 ----HDC---- C:\WINDOWS\$NtUninstallKB920685$
2008-11-16 18:31:43 ----HDC---- C:\WINDOWS\$NtUninstallKB893756$
2008-11-16 18:31:37 ----HDC---- C:\WINDOWS\$NtUninstallKB923980$
2008-11-16 18:31:31 ----HDC---- C:\WINDOWS\$NtUninstallKB911280$
2008-11-16 18:31:25 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2008-11-16 18:31:17 ----HDC---- C:\WINDOWS\$NtUninstallKB938828$
2008-11-16 18:31:12 ----HDC---- C:\WINDOWS\$NtUninstallKB924667$
2008-11-16 18:31:07 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$
2008-11-16 18:31:02 ----HDC---- C:\WINDOWS\$NtUninstallKB900485$
2008-11-16 18:30:55 ----HDC---- C:\WINDOWS\$NtUninstallKB924270$
2008-11-16 18:30:50 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$
2008-11-16 18:30:43 ----HDC---- C:\WINDOWS\$NtUninstallKB924496$
2008-11-16 18:30:37 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-11-16 18:30:31 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-11-16 18:30:21 ----HDC---- C:\WINDOWS\$NtUninstallKB954211$
2008-11-16 18:28:33 ----A---- C:\WINDOWS\system32\MRT.exe
2008-11-16 18:28:27 ----HDC---- C:\WINDOWS\$NtUninstallKB946026$
2008-11-16 18:28:16 ----HDC---- C:\WINDOWS\$NtUninstallKB956841$
2008-11-16 18:28:08 ----HDC---- C:\WINDOWS\$NtUninstallKB925398_WMP64$
2008-11-16 18:27:46 ----HDC---- C:\WINDOWS\$NtUninstallKB910437$
2008-11-16 18:27:35 ----HDC---- C:\WINDOWS\$NtUninstallKB911564$
2008-11-16 18:27:22 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$
2008-11-16 18:27:15 ----HDC---- C:\WINDOWS\$NtUninstallKB929123$
2008-11-16 18:27:09 ----HDC---- C:\WINDOWS\$NtUninstallKB920670$
2008-11-16 18:27:04 ----HDC---- C:\WINDOWS\$NtUninstallKB918439$
2008-11-16 18:26:44 ----HDC---- C:\WINDOWS\$NtUninstallKB902400$
2008-11-16 18:25:52 ----SHD---- C:\Config.Msi
2008-11-16 18:25:24 ----HDC---- C:\WINDOWS\$NtUninstallKB890046$
2008-11-16 18:25:19 ----HDC---- C:\WINDOWS\$NtUninstallKB926436$
2008-11-16 18:25:14 ----HDC---- C:\WINDOWS\$NtUninstallKB920872$
2008-11-16 18:25:06 ----HDC---- C:\WINDOWS\$NtUninstallKB930178$
2008-11-16 18:25:01 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2008-11-16 18:24:49 ----HDC---- C:\WINDOWS\$NtUninstallKB914388$
2008-11-16 18:24:43 ----HDC---- C:\WINDOWS\$NtUninstallKB905414$
2008-11-16 18:24:37 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-11-16 18:24:33 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$
2008-11-16 18:24:26 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2008-11-16 18:24:18 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
2008-11-16 18:24:10 ----HDC---- C:\WINDOWS\$NtUninstallKB901214$
2008-11-16 18:24:05 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2008-11-16 18:23:51 ----HDC---- C:\WINDOWS\$NtUninstallKB923191$
2008-11-16 18:23:45 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-11-16 18:23:37 ----HDC---- C:\WINDOWS\$NtUninstallKB918118$
2008-11-16 18:23:32 ----HDC---- C:\WINDOWS\$NtUninstallKB926255$
2008-11-16 18:23:26 ----HDC---- C:\WINDOWS\$NtUninstallKB888302$
2008-11-16 18:23:21 ----HDC---- C:\WINDOWS\$NtUninstallKB948590$
2008-11-16 18:23:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-11-16 18:23:08 ----HDC---- C:\WINDOWS\$NtUninstallKB900725$
2008-11-16 18:23:01 ----HDC---- C:\WINDOWS\$NtUninstallKB938127$
2008-11-16 18:22:54 ----HDC---- C:\WINDOWS\$NtUninstallKB920213$
2008-11-16 18:22:48 ----HDC---- C:\WINDOWS\$NtUninstallKB935840$
2008-11-16 18:22:42 ----HDC---- C:\WINDOWS\$NtUninstallKB943485$
2008-11-16 18:22:37 ----HDC---- C:\WINDOWS\$NtUninstallKB945553$
2008-11-16 18:22:32 ----HDC---- C:\WINDOWS\$NtUninstallKB916595$
2008-11-16 18:22:27 ----HDC---- C:\WINDOWS\$NtUninstallKB930916$
2008-11-16 18:22:15 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-11-16 18:22:02 ----HDC---- C:\WINDOWS\$NtUninstallKB950749$
2008-11-16 18:21:55 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-11-16 18:21:46 ----HDC---- C:\WINDOWS\$NtUninstallKB908531$
2008-11-16 18:21:40 ----HDC---- C:\WINDOWS\$NtUninstallKB905749$
2008-11-16 18:21:34 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
2008-11-16 18:21:27 ----HDC---- C:\WINDOWS\$NtUninstallKB913580$
2008-11-16 18:21:19 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2008-11-16 18:21:02 ----HDC---- C:\WINDOWS\$NtUninstallKB956390$
2008-11-16 18:20:51 ----HDC---- C:\WINDOWS\$NtUninstallKB896428$
2008-11-16 18:20:48 ----D---- C:\Program Files\MSXML 4.0
2008-11-16 18:20:38 ----HDC---- C:\WINDOWS\$NtUninstallKB935839$
2008-11-16 18:20:30 ----HDC---- C:\WINDOWS\$NtUninstallKB943055$
2008-11-16 18:20:23 ----HDC---- C:\WINDOWS\$NtUninstallKB894391$
2008-11-16 18:20:18 ----HDC---- C:\WINDOWS\$NtUninstallKB908519$
2008-11-16 18:20:12 ----HDC---- C:\WINDOWS\$NtUninstallKB920683$
2008-11-16 18:20:07 ----HDC---- C:\WINDOWS\$NtUninstallKB953356$
2008-11-16 18:19:59 ----HDC---- C:\WINDOWS\$NtUninstallKB914389$
2008-11-16 18:19:47 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2008-11-16 18:19:43 ----HDC---- C:\WINDOWS\$NtUninstallKB944653$
2008-11-16 18:19:35 ----HDC---- C:\WINDOWS\$NtUninstallKB890859$
2008-11-16 18:19:28 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2008-11-16 18:19:11 ----HDC---- C:\WINDOWS\$NtUninstallKB928843$
2008-11-16 17:53:12 ----D---- C:\Program Files\Steam
2008-11-16 17:40:19 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Adobe
2008-11-16 17:27:56 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\WeatherDPA
2008-11-16 17:27:53 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Zango
2008-11-16 17:26:27 ----D---- C:\Program Files\eMule
2008-11-16 17:16:17 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2008-11-16 17:15:51 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2008-11-16 17:15:28 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2008-11-16 16:56:20 ----D---- C:\Program Files\Microsoft
2008-11-16 16:55:49 ----D---- C:\Program Files\Windows Live
2008-11-16 16:45:59 ----D---- C:\WINDOWS\LastGood.Tmp
2008-11-16 16:45:56 ----D---- C:\Program Files\Fichiers communs\Windows Live
2008-11-16 16:45:24 ----RASH---- C:\BOOT.BAK
2008-11-16 16:45:17 ----RSHD---- C:\cmdcons
2008-11-16 16:45:17 ----A---- C:\WINDOWS\UPGRADE.TXT
2008-11-16 16:45:16 ----D---- C:\WINDOWS\setup.pss
2008-11-16 16:44:55 ----D---- C:\WINDOWS\setupupd
2008-11-16 16:41:17 ----D---- C:\WINDOWS\system32\PreInstall
2008-11-16 16:41:16 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2008-11-16 16:40:24 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2008-11-16 16:33:04 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Mozilla
2008-11-16 16:32:55 ----D---- C:\Program Files\Mozilla Firefox
2008-11-16 16:29:56 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2008-11-16 16:28:13 ----A---- C:\WINDOWS\system32\results.txt
2008-11-16 16:24:55 ----D---- C:\Documents and Settings\Compaq_Propriétaire\Application Data\Macromedia
2008-11-16 16:24:14 ----SHD---- C:\WINDOWS\ftpcache
2008-11-16 16:24:10 ----SHD---- C:\RECYCLER
2008-11-16 16:23:07 ----A---- C:\WINDOWS\system32\wmpns.dll
2008-11-16 11:35:42 ----D---- C:\WINDOWS\I386
| |