Virus qui me deconnecte toutes les 5sec sur Vista: tmpXXXX.tmp.exe - Virus/Spywares - Windows & Software
Marsh Posté le 10-11-2007 à 16:21:50
Un log hijackthis pourra y voir plus clair, mais il est exclus que tu le postes ici.
Poste-le là : http://www.hijackthis.de/fr
C'est prévu pour ça.
Et mets uniquement le lien ici (le lien de la page après "The following analyses has been stored temporarily" ).
Marsh Posté le 10-11-2007 à 17:03:35
Dans le log, je ne vois rien de potentiellement dangereux.
Tu peux faire une capture de la fenêtre du contrôle de compte utilisateur avec ces fichiers tmp, avec l'Outil Capture ?
Sinon, lance msconfig à partir d'exécuter, et dans l'onglet services, coche "masquer tous les services microsoft" et liste les services que tu vois. Dans l'onglet "démarrage" de msconfig, décoche tout ce qui te parait non vital (c'est à dire tout sauf avast, nv truc machin bidule (panneau de contrôle nVidia), les trucs realtek (audio) et sidebar. Puis redémarre.
Marsh Posté le 10-11-2007 à 19:12:36
Tu peux également rechercher ces fichiers et faire une analyse ici: http://www.virustotal.com/fr/
Fait également une analyse du fichier C:\Windows\system32\nszA5B5.dll
Marsh Posté le 10-11-2007 à 19:29:06
oui virus total, j'avais fait, mais je me souviensplus du nommais c'etait un trojan qqchose
Marsh Posté le 10-11-2007 à 19:46:52
Analyse le fichier nszA5B5.dll et si tu vois le nom du trojan, note le.
Ensuite tu pourras faire une recherche avec google.
Marsh Posté le 10-11-2007 à 19:50:48
ha ok, moi j'avais analysé le fichier tmpXXXX.tmp.exe, et ca m'indiquais aussi un trojan. MAis ok je vais le faire et je te dirai le nom du trojan
Marsh Posté le 11-11-2007 à 17:10:39
lance hijackthis et coche la ligne correspondant à
O2 - BHO: dcads - {C7C90A5E-BE0A-44DD-83D2-1BE138460BAC} - C:\Windows\system32\nszA5B5.dll
Puis clique sur fix checked et redémarre.
Marsh Posté le 11-11-2007 à 23:03:17
le "Trojan.Agent.AFRM" c'était le fichier type tmpXXXX.tmp.exe sinon j'ai fais analyser le C:\Windows\system32\nszA5B5.dll sur virustotal qui analyse bien le fichier mais à la fin de la recherche j'ai rien de détécté.
Pour la capture d'écran je peux pas la faire car lorsque le fichier tmpXXXX.tmp.exe s'affiche, il me bloque l'accés a la barre de window(seul endroit ou je peux faire une capture d'écran). ça serait peut être possible de créer une touche de capture d'écran(la touche "print Screen" ne marche pas) comme raccourci mais je sais pas comment on fait.
Marsh Posté le 19-11-2007 à 13:00:02
denayze a écrit : le "Trojan.Agent.AFRM" c'était le fichier type tmpXXXX.tmp.exe sinon j'ai fais analyser le C:\Windows\system32\nszA5B5.dll sur virustotal qui analyse bien le fichier mais à la fin de la recherche j'ai rien de détécté. |
j' ai aussi fait analyser C:\Windows\system32\nszA5B5.dll sur hijackthis mais il ne veut pas l'analyser, il met "erreur" si je me souvient bien ou un truc dans le genre. par contre j'ai pas trouvé de ligne a cocher correspondant à O2 - BHO: dcads - {C7C90A5E-BE0A-44DD-83D2-1BE138460BAC}.
Marsh Posté le 30-11-2007 à 15:27:37
Est ce que qulqu'un pourait m'aider svp??..
J'ai lancer AVG Anti spyware qui mes donne ceci:
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 15:25:19 30/11/2007
+ Résultat de l'analyse:
C:\Users\Denis\AppData\Roaming\install_fr[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.au : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@adtech[1].txt -> TrackingCookie.Adtech : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@advertising[2].txt -> TrackingCookie.Advertising : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@bluestreak[2].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@overture[1].txt -> TrackingCookie.Overture : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\Low\denis@weborama[1].txt -> TrackingCookie.Weborama : Aucune action entreprise.
Fin du rapport
Et avec ccleaner:
ANALYSE COMPLETE - (16.775 secs)
------------------------------------------------------------------------------------------
47,0MB ont été supprimés. (Taille approximative)
------------------------------------------------------------------------------------------
Détails des fichiers à supprimer (Note: AUCUN fichier n'a pour l'instant été supprimé)
------------------------------------------------------------------------------------------
Fichiers Temporaires d'Internet Explorer (fichiers 803) 45,0MB
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@atdmt[2].txt 101 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@c.msn[1].txt 67 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@doubleclick[1].txt 101 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@edt02[2].txt 316 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@live[1].txt 100 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@mediaplex[1].txt 85 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@messenger.msn[1].txt 96 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@msn[1].txt 429 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@onlinestores.metaservices.microsoft[1].txt 146 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@rad.msn[1].txt 702 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@t.msn[1].txt 79 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\denis@yourmedia[1].txt 99 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@404.online[1].txt 343 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@ad.uk.tangozebra[1].txt 100 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@adtech[1].txt 102 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@adtrgt[2].txt 544 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@advertising[2].txt 194 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@atdmt[2].txt 102 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@bluestreak[2].txt 435 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@cybermonitor[1].txt 94 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@dailymotion[2].txt 266 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@doctissimo[1].txt 320 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@doubleclick[1].txt 89 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@estat[1].txt 86 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@fixthemnow[1].txt 327 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@forum.hardware[1].txt 838 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@forum.pcastuces[2].txt 188 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@forum.telecharger.01net[1].txt 86 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@forum.telecharger[1].txt 198 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@google[1].txt 130 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@google[2].txt 131 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@h.live[1].txt 69 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@hotmail.msn[1].txt 70 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@i2as.idregie[1].txt 107 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@iapref.orange[1].txt 101 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@idregie[2].txt 160 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@ke.voila[1].txt 79 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@live[1].txt 400 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@login.live[2].txt 182 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@mediaplex[1].txt 85 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@msn[2].txt 450 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@overture[1].txt 102 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@p.live[1].txt 104 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@pcastuces.fr.intellitxt[1].txt 133 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@pctools[2].txt 646 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@quantserve[1].txt 102 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@rad.live[2].txt 700 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@research.sunbelt-software[1].txt 419 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@safe.sansendommagement[1].txt 590 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@sansendommagement[1].txt 1,10KB
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@sc.intellitxt[1].txt 123 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@schneider-electric[1].txt 391 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@sdv[2].txt 316 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@search.ke.voila[1].txt 76 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@smartadserver[1].txt 403 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@tf1[1].txt 83 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@weborama[1].txt 91 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@webscanner.kaspersky[1].txt 115 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@www.01net[2].txt 72 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@www.adverdaemon[1].txt 288 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@www.dailymotion[2].txt 175 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@www.googleadservices[1].txt 328 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@xiti[1].txt 106 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@yahoo[1].txt 86 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@yourmedia[1].txt 99 bytes
C:\Users\Denis\AppData\Roaming\Microsoft\Windows\Cookies\low\denis@youtube[1].txt 350 bytes
C:\Users\Denis\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012007112920071130\index.dat 32,00KB
C:\Users\Denis\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012007113020071201\index.dat 32,00KB
C:\Users\Denis\AppData\Local\Microsoft\Windows\History\Low\History.IE5\MSHist012007112920071130\index.dat 64,00KB
Marqué pour l'effacement: C:\Users\Denis\Local Settings\Temporary Internet Files\Content.IE5\index.dat
C:\Windows\TEMP\fwtsqmfile00.sqm 608 bytes
C:\Windows\TEMP\lpksetup-20071129-131100-0.log 8,29KB
C:\Windows\TEMP\lpksetup-20071129-131109-0.log 622 bytes
C:\Windows\TEMP\lpksetup-20071129-192539-0.log 8,29KB
C:\Windows\TEMP\lpksetup-20071129-192552-0.log 622 bytes
C:\Windows\TEMP\lpksetup-20071129-203335-0.log 8,29KB
C:\Windows\TEMP\lpksetup-20071129-203343-0.log 622 bytes
C:\Windows\TEMP\MpSigStub.log 4,70KB
C:\Windows\TEMP\tmp7055.tmp 39,72KB
C:\Users\Denis\AppData\Local\Temp\Denis.bmp 31,09KB
C:\Users\Denis\AppData\Local\Temp\jusched.log 180 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp1A58.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp1A58.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp1F9.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp1F9.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp21F3.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp21F3.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp2202.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp23A9.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp23A9.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp2444.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp2444.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp270D.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp2919.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp2919.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp2FAD.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp2FAD.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp30E5.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp3411.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp362B.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp365B.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp3777.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp3958.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp3969.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp3C76.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp3CB6.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp3F72.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp3F72.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp3F94.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp3FB4.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4029.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4108.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4108.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp42B1.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp42D2.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4346.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp45DF.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp45EF.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4662.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp490C.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp491C.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4980.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4980.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp498F.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4C77.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4CAB.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4D2E.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4D2E.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp4F0E.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4F0E.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp4F36.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4F57.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp4FC8.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5219.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5219.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp5264.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5284.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp52E4.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5591.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp55A1.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5611.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp568B.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp568B.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp58AE.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp58BF.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp592D.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5BCC.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5BDD.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5BE7.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5BE7.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp5C4A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5CB1.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5CB1.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp5EEA.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5F.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5F0A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp5F76.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp600D.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6207.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6227.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6293.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6534.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6545.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp65AF.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6846.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6852.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6872.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp68CC.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6B70.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6B90.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6BCE.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6BF8.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6E8D.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6EAD.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp6F15.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp71AB.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp71CB.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7231.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp74D8.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp74F8.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp755D.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp77F6.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7816.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp787A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp78E9.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp78E9.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp7B13.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7B33.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7B4.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7B97.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7E38.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7E40.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7E49.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7E61.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp7EB3.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp815E.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp817E.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp81BF.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp81DF.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp823D.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp847C.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp849C.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp86C.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp86C.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp8799.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp87B9.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp8AC6.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp8AE7.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp8C2C.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp8C2C.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp8DE4.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp8E04.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp8F0A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9102.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9122.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9227.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9227.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp936.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp942F.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp944F.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp96B5.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp974C.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp976D.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp98F7.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp98F7.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp9A6A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9A8A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9B68.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9B68.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmp9BB6.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9D88.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9EA1.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmp9FEA.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpA1BE.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpA2.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpA4EA.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpA665.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpA665.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpA807.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAA1A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAA3A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAB50.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAB51.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAB61.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAB62.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAB63.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAD38.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAD58.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAD9E.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpAD9F.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB055.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB076.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB170.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB251.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB251.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpB48D.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB4F2.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB4F2.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpB6A0.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB6AA.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB6D0.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB7AB.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB9B3.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpB9B3.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpBAD7.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpBDF3.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC110.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC3DC.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC42D.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC4DE.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC4DE.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpC61F.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC61F.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpC6BA.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC6BA.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpC759.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC816.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC826.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC827.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC857.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC858.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC859.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC86A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpC86B.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpCB7B.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpCB7B.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpCE2A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpCE2A.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpD034.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpD034.tmp.exe 22,67KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpD0A9.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpD0A9.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpD1F3.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpD204.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpD4C.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpD4C.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpD520.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpD54B.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpD9A.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpD9A.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpDAE7.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpDAE7.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpDE7F.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpDE7F.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpE029.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpE155.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpE471.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpE4F3.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpE571.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpE79E.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpE7B2.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpEA83.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpEA83.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpEABA.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpECC2.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpECC2.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpECEF.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpEDD7.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpEFEE.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpEFEE.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpF0F3.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpF420.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpF69F.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpF73C.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpF809.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpF809.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\tmpFA59.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpFD85.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpFDB.tmp 0 bytes
C:\Users\Denis\AppData\Local\Temp\Low\tmpFDB.tmp.exe 39,72KB
C:\Users\Denis\AppData\Local\Temp\Low\WLTB Custom Button Feeds\microsoft.msn.mymsn.btn upgrade status 109 bytes
C:\Users\Denis\AppData\Local\Temp\Low\WLTB Custom Button Feeds\microsoft.windowslive.addbtn.btn upgrade status 109 bytes
C:\Users\Denis\AppData\Local\Temp\Low\WLTB Custom Button Feeds\microsoft.windowslive.news.btn feed 0 6,25KB
C:\Users\Denis\AppData\Local\Temp\Low\WLTB Custom Button Feeds\microsoft.windowslive.news.btn upgrade status 109 bytes
C:\Users\Denis\AppData\Local\Temp\MessengerCache\5bQ06NTmRWBryeFxtZh3slDbqw8= 23,16KB
C:\Users\Denis\AppData\Local\Temp\MessengerCache\E5EIE21fVK4dfwfm2bFkuU4+27c= 2,42KB
C:\Users\Denis\AppData\Local\Temp\MessengerCache\pQVjvk1ZiYjJy+1BXK6TRXscuu8= 2,49KB
C:\Users\Denis\AppData\Local\Temp\sv3bd.tmp\sv3cm.tmp 5,21KB
C:\Users\Denis\AppData\Local\Temp\wmplog00.sqm 2,78KB
C:\Users\Denis\AppData\Local\Temp\wmplog01.sqm 1,48KB
C:\Users\Denis\AppData\Local\Temp\wmsetup.log 491 bytes
C:\Windows\system32\wbem\Logs\wmiprov.log 6,01KB
C:\Windows\Debug\UserMode\ChkAcc.log 0 bytes
C:\Windows\Debug\UserMode\ChkAcc.bak 0 bytes
C:\Users\Denis\AppData\Roaming\Google\Local Search History\google%2Eweb.w 2,23KB
C:\Users\Denis\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\95G8MFN2\fr.youtube.com\soundData.sol 58 bytes
C:\Users\Denis\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\95G8MFN2\fr.youtube.com\videostats.sol 199 bytes
C:\Users\Denis\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\95G8MFN2\www.youtube.com\soundData.sol 58 bytes
C:\Users\Denis\AppData\Roaming\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#fr.youtube.com\settings.sol 84 bytes
C:\Users\Denis\AppData\Roaming\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\settings.sol 85 bytes
C:\Users\Denis\AppData\Roaming\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol 399 bytes
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\logfile.txt 492 bytes
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{0045681B-1BAE-42A1-862F-FFF097503E5A} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{08254A3C-2F88-437A-AD00-0FA8DEDB6751} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{08AA3720-F044-4540-9446-5B8090749718} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{15AFF293-F9E2-42A9-9937-43E08DE78F41} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{16B82EA2-9647-4817-950D-ABC520A6C494} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{2FEC580C-3D70-4E23-BE7B-6B28ED4D68D7} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{38D2CA13-C8F0-4F62-B854-BA3CB8E6B29E} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{3CF79167-6BE6-49B3-8AF2-2BA92D6257A6} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{43DA6643-D85F-4BB7-A96F-F4C63A451442} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{48DFE8BE-A3D4-4691-9688-3F4D2BFB218C} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{53C78DEB-5B1F-4CE0-B29D-46C0C156223E} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{651E3265-92A9-4456-91B5-67C097DCA6CD} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{666176CE-5A05-477D-83FA-A1A22CB00D05} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{6F28824C-32AA-4244-B53B-5DC6B96CF84A} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{85106636-5018-4179-8840-499D3E219B3C} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{89F6DE43-9500-4264-B93B-4CE19CA02633} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{9001D374-D139-464B-9409-124F217A977E} 5,49KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{A2AF8AAF-4B4D-4D51-9A9B-C2217C097BD7} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{B21A8A47-1D0A-48D7-8EE0-B46250DDF89C} 5,49KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{BA40427B-7014-413B-846B-8ED2F93B46AE} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{C2685A41-B4B1-4CF5-99D5-3A16480D4903} 5,49KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{C3F463F7-2125-429E-B9D0-151F317A0940} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{C640E78E-5EF4-4140-9C57-467848BA138C} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{C9E4019D-84B6-4A13-B435-CA2C7F29216E} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{CD4C22BE-8DCB-402A-B509-D8EDBFA5493C} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{D0091A9F-CE9F-4F0E-B2F3-095D60A5D016} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{D3F59F9F-4F65-491F-8004-665A19A1D4AF} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{D4AAC3D4-046A-4C2B-9161-1E76179AC874} 5,39KB
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource\{F339B601-1CCB-4C20-94ED-599DF1510F82} 5,49KB
------------------------------------------------------------------------------------------
Je ne sais plus quoi faire d'autre...tout aide est bienvenue. merci d'avance.
Marsh Posté le 10-11-2007 à 15:10:27
Bonjour, j'ai depuis peu vista, et je l'ai acheté en OEM, donc, j'ai pas lemode d'enploi pour le configurer comme il faut..
Je ne sais pas si c'est du a ca ou pas, mais j'ai vu des sujets ressemblants au mien sur d'autres forums, mais aucun ne parle du meme fichier que moi.
Voila mon Pb: (je tourne sous vista premium 32)
jemeconnecte au reseau privé de ma résidence qui me demande un nom et login, et des que mon identification est faite et que je me redirige vers google, là une fenetre de notification s'ouvre et dit :"fenetre de controle de compte d'utilisateur" "n'utilisez ce programme que si vous savez d'ou il provient ou si vousl'avez deja utilisé" le programme est: "tmpXXXX.tmp.exe" (les XXXX peuvent etre des chiffres ou des lettres, soit par 4,3 ou 2)
Si je fais anuller le meme message reviens avec un autre nom (des XXXX différents) toutes les 5secondes.
Si je fais accepter, il me ferme toutes mes fenetres et me déconnecte de mon reseau.
Je suis obligé d'emprunter l'ordi d'un ami pour pouvoir vous ecrire, pq la frequence de ces alertes m'empeche toute navigation sur mon ordi.
j'ai deja utilisé avast, adaware, ccleaner, avg... mais apres chaque nettoyage ca reviens. j'ai essayé en mode sans echec aussi (enfin en mode "diagnostic" sous vista) et rien n' a changé.
Merci de me preciser si un log hijackthis est necessaire ou non, dans ce cas demandez et je le poste.