Votre question

Attaquer par les virus!

Tags :
  • Virus
  • Sécurité
Dernière réponse : dans Sécurité et virus
4 Janvier 2009 13:22:45

bonjours me voila bien ambeter par ces maudit virus!!svp aider moi

j'ai plusieur probleme!le premier c'est que mon antivirus ne marche plus,en gros il ne s'ouvre plus tout seul et impossible de l'ouvrir manuelement il me dit:
antivir.exe n'est pas une application win32 valide
il me marque pareil pour spybot
j'ai donc voullu telecharger hijackthis pour pouvoir poser un post mais apres le telechargement de celui-cis il m'est impossible de l'executer c'est marquer encore une fois cette phrase de win32 non valide!!
je ne sais pas quoi faire aider moi vite svp j'ai besoin de mon ordi pour le travail merci d'avance

mon deuxieme probleme et je ne sais pas si c'est lier,est que mon ordi m'affiche souvent que tel ou tel programme ne repond plus ou que explorer lui meme ne repond plus!!

mon troisieme probleme est que lorsque j'ouvre certain dossier j'ai un message me disant:
COM Surrogate a cesse de fonctionner!!je ne sais pas ce qu'est ce COM Surrogate!!

enfin pour finir et c'est le moin grave,depuis que j'ai installer ultravnc j'ai un message me disant:
aucun mot de passe a ete fixer ppour cette machine et cette machine a ete configure pour ne pas permetre de choisir son propre mot de passe veuiller contacter l'edminstrateur du systeme pro
et la rien a faire j'ai bo essayer de mettre un code rien ne change


merci pour votre patience et je compte sur vous

Autres pages sur : attaquer virus

a b 8 Sécurité
4 Janvier 2009 17:47:04

Bonjour,

Télécharge FindyKill ([#ff0000]Chiquitine29[/#ff]) sur ton Bureau.

  • Lance l'installation du programme en exécutant le fichier téléchargé.
  • Double-clique maintenant sur le raccourci de FindyKill.
  • Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
  • Poste le rapport généré dans ta prochaine réponse.

    NB : La barre des tâches et les icônes vont disparaître pendant la recherche.
    4 Janvier 2009 19:07:06

    merci beaucoup de m'aider voici le rapport




    ----------------- FindyKill V4.710 ------------------

    * User : eden - PC-EDEN
    * Emplacement : C:\Program Files\FindyKill
    * Outils Mis a jours le 21/12/08 par Chiquitine29
    * Recherche effectuée à 20:01:14 le 04/01/2009
    * Windows Vista - Internet Explorer 7.0.6001.18000

    ((((((((((((((((( *** Recherche *** ))))))))))))))))))


    --------------- [ Processus actifs ] ----------------


    C:\Windows\System32\smss.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\services.exe
    C:\Windows\system32\lsass.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\winlogon.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\SLsvc.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\RtHDVCpl.exe
    C:\Program Files\Intel\AMT\atchk.exe
    C:\Program Files\FlashGet\flashget.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
    C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe
    C:\Users\eden\AppData\Roaming\drivers\winupgro.exe
    C:\Program Files\Belkin\Bluetooth Software\BTTray.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Intel\AMT\atchksrv.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
    C:\Program Files\Intel\AMT\LMS.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Intel\AMT\UNS.exe
    C:\Windows\System32\svchost.exe
    C:\Program Files\UltraVNC\WinVNC.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
    C:\Windows\system32\UI0Detect.exe
    C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
    C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
    C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
    C:\Windows\system32\UI0Detect.exe
    C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
    C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
    C:\Windows\system32\conime.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Windows\explorer.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Windows\system32\SearchProtocolHost.exe

    --------------- [ Processus infectieux stoppés ] ----------------


    "C:\Users\eden\AppData\Roaming\drivers\winupgro.exe" (1240)


    --------------- [ Fichiers/Dossiers infectieux ] ----------------


    »»»» Presence des fichiers dans C:


    »»»» Presence des fichiers dans C:\Windows


    »»»» Presence des fichiers dans C:\Windows\Prefetch

    Found ! - C:\Windows\prefetch\157499500.EXE-22E36BE0.pf
    Found ! - C:\Windows\prefetch\157625921.EXE-AAB59EF6.pf
    Found ! - C:\Windows\prefetch\189765.EXE-B62CCCAC.pf
    Found ! - C:\Windows\prefetch\31033281.EXE-338AA641.pf
    Found ! - C:\Windows\prefetch\589906.EXE-32EE40A1.pf
    Found ! - C:\Windows\prefetch\59867265.EXE-C5764B68.pf
    Found ! - C:\Windows\prefetch\9861328.EXE-3BCE3E79.pf
    Found ! - C:\Windows\prefetch\FLEC006.EXE-253126EA.pf
    Found ! - C:\Windows\prefetch\MDELK.EXE-288F7189.pf
    Found ! - C:\Windows\prefetch\WINTEMS.EXE-85AF748B.pf
    Found ! - C:\Windows\prefetch\WINUPGRO.EXE-8A82F92B.pf
    Found ! - C:\Windows\Prefetch\KEY_GEN.EXE-4D8940CD.pf

    »»»» Presence des fichiers dans C:\Windows\system32

    Found ! [04/01/2009 19:53] - C:\Windows\system32\mdelk.exe
    Found ! [04/01/2009 19:53] - C:\Windows\system32\wintems.exe
    Found ! [04/01/2009 19:54] - C:\Windows\system32\ban_list.txt

    »»»» Presence des fichiers dans C:\Windows\system32\config\systemprofile\AppData\Roaming


    »»»» Presence des fichiers dans C:\Windows\system32\drivers


    »»»» Presence des fichiers dans C:\Users\eden\AppData\Roaming

    Found ! [03/01/2009 10:03] - "C:\Users\eden\AppData\Roaming\m\flec006.exe"
    Found ! [04/01/2009 09:48] - "C:\Users\eden\AppData\Roaming\m\list.oct"
    Found ! [04/01/2009 09:48] - "C:\Users\eden\AppData\Roaming\m\data.oct"
    Found ! [04/01/2009 09:48] - "C:\Users\eden\AppData\Roaming\m\srvlist.oct"
    Found ! [04/01/2009 19:55] - "C:\Users\eden\AppData\Roaming\m\shared"
    Found ! [31/12/2008 16:12] - "C:\Users\eden\AppData\Roaming\m"
    Found ! [31/12/2008 16:01] - "C:\Users\eden\AppData\Roaming\drivers"
    Found ! [04/01/2009 19:51] - "C:\Users\eden\AppData\Roaming\drivers\srosa.sys"
    Found ! [04/01/2009 19:51] - "C:\Users\eden\AppData\Roaming\drivers\srosa2.sys"
    Found ! [16/04/2005 08:06] - "C:\Users\eden\AppData\Roaming\drivers\winupgro.exe"
    Found ! [04/01/2009 19:55] - "C:\Users\eden\AppData\Roaming\drivers\downld"
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112002781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112002796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112012812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112060468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112063390.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112064765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112175406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112202468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112208468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112208984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112209187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112271328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112271437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112290984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112292250.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112292796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112293734.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112294609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112295171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112342359.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112343062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112343515.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112352062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112360250.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112361640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112362765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112405890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112406500.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\112406640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\126810328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\126810343.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\126844234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\126903890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\126904984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\126905765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127011937.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127046843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127057890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127058484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127058703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127117828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127118406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127118906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127135812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127137062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127137828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127138750.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127139609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127140171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127197640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127198765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127199500.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127212437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127255015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127256375.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127257437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127311953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127312281.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\127312437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\141714859.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\141718359.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\141725078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\141846984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\141849531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\141852953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142332500.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142687515.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142689531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142689875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142837140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142838828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142838843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142869390.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142871640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142872187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142873578.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142874406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142875015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142928812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142930687.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142931718.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142940609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142986296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\142993031.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\143015640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\143083421.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\143084875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\143085093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14851562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14851578.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14859562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14865171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14910093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14911296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14912125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14956093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14956109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\14965953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15002515.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15006406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15006859.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15007046.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15017312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15018218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15019078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15038625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15065734.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15065906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15066062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15085609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15086671.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15087218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15088156.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15088984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15089546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15140890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15141812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15142703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15155437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15156875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15158234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15207781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15208296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15208406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15260109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15260187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15260203.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15267218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15276531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15299968.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15300015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15309171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15352875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15354546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15355625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15364750.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15368218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15368406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15420546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15421703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15422656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15449984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15473609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15476265.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15477984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15481343.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15482125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15482343.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15486031.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15486703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15488000.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15489109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15489890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15551421.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15551453.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15552093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15553234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15554140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\155625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15563562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15573984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15575109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15575890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15576968.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15577875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15578531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15593453.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15596953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15597093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15630609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15631640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15632593.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15650218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15650234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15665031.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15665546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15665781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15706953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15709968.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15711359.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15711484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15723796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15724578.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15725656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157487843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157487859.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157494765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157499500.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157566078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157575875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157582062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157625921.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157859.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157960312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157960984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\157961171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158071562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158074328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158074468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158102296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158103468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158104125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158105281.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158106390.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158107015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158163765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158167796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158169312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158181562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158210312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158210796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158210984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158285375.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158286078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\158286328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15840875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15840890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15888421.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15892875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15893593.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15896500.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15906468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\15907687.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\16049328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\16053875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\16057421.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\16115984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\16120109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\16121296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\16207328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\16208109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\16208453.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\163953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\166843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\167031.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\167703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172689625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172690109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172690125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172701968.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172778468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172780125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172781578.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\172843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173056296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173057906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173058109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173173390.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173173406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173173421.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173202203.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173204187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173204953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173207078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173208437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173209296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173289562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173290937.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173291562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173303640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173352640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173352984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173353234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173446343.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173448828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\173449062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\180140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\182062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\186546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\187656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\189765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\197562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\205312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\220937.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\223375.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\224078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\226484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\227812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\228562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\237656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\239687.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\240515.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\244687.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\246296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\252671.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\253234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\256390.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\259171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\260515.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\263765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\263937.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\265718.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\266843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\271468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\272000.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\272781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\273234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29611546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29613390.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29626546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29687921.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29690703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29691734.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29803234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29815078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29816609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29816812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29912500.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29914234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29914250.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29946703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29949531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29950281.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29951687.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29952750.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\29953375.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30020906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30025718.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30027015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30069640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30069656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30076031.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30078312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30082812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30114609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30114625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30122437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30174312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30175406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30175843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30214812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30217656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30221484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30276859.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30279234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30280125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30282406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30301296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30307375.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30308250.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30308453.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30382625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30382640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30399093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30400234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30400828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30401734.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30402531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30403171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30453125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30454046.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30454453.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30474781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30474796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30523000.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30524187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30524765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30611640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30611656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30623312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30683796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30685000.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30686125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30800546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30801203.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30801531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\308656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30882187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30882203.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30909843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30911343.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30912203.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30913312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30914218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30914812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30954187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30956687.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30956890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30973906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30975109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30976093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30993875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30995500.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\30996312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31053859.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31054406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31054546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31117562.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31117578.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31187765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31189140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31189796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31191437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31198468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31199406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31283453.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31284921.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31286640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31335015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31429656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31430187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31430500.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31556531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31557187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\31557359.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\325218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\327125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\327234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\343296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\345109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\345546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\346296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\346703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\346906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\347250.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\348593.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\349468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\375421.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\376578.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\376859.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\389812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\394328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\395093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\395609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\396218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\396906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\408140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\409328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\410140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\427812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\429437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\444531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\445625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\445640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44685625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44686250.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44686281.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44695484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\446968.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44703062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\447468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44841031.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\448437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44845781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44847093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\448765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\448953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\448968.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44928078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44928890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44935000.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\449656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44983281.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44985437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\44986265.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\449953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45012078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\450781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45085062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45085734.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45095234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45096812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45097218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45101734.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45101968.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\451312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45168390.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45170375.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45198812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45202312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45205078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45207593.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45210328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45210437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45210515.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45210625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45212078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45241156.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45242890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45243843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45245531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45246828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45249015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45266062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45267890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45268953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45293406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45293812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45318593.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45319937.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45321078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45322125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45322359.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45340484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45341406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45341640.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45412703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45413703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\45414171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\463234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\464984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\465234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\467203.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\468984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\469515.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\470468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\471453.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\472000.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\497281.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\498359.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\499031.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\504828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\515781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\516218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\516343.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\517843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\519062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\519687.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\526265.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\553109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\553781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\553906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\569046.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\569593.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\569718.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\589906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\59744578.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\59745109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\59774828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\59832875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\59834515.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\59836203.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\59867265.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60228140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60228812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60229062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60307484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60307500.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60307515.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\603078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60335593.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60337437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60338312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60339625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60340796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60341343.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60400390.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60403937.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60407437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\604156.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60416531.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60448125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60448140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60448156.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60502656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60503906.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\60504125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\605828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\606031.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\608984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\609000.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\612593.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\613734.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\613859.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\639218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\641703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\642796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\649296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\650625.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\651312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\696015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\699140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\699218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\721406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\725109.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\726078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\728390.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\731218.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\732015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\733078.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\734296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\735015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\74906843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\74906859.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\74915484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\74969343.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\74970921.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\74972000.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\764593.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\766687.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\768953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\792156.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\794656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\796031.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\81432343.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\81474750.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\815140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\815968.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\81893609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\81906187.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\81907000.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\81907234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82007812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82007828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82036734.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82038125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82038812.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82039750.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82040796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82042953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82101484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82102656.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82104437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82113015.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82433875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82433890.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82500968.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82502093.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\82502328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\853750.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\855281.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\855484.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\886359.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\892250.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\892671.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\96905312.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\96906171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\96935843.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\96983406.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\96985781.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\96987234.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97097875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97224796.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97234953.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97235984.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97236296.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97313062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97315437.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97337281.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97338703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97339250.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97340171.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97341140.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97341765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97392875.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97394703.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97395765.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97413062.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97547578.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97548828.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97549671.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97597671.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97599468.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\97599609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\9847125.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\9849687.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\9861328.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\9908609.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\9911546.exe
    Found ! [04/01/2009 19:55] - C:\Users\eden\AppData\Roaming\drivers\downld\9915062.exe

    »»»» Presence des fichiers dans C:\Users\eden\AppData\Local\Temp

    Found ! - C:\Users\eden\AppData\Local\Temp\Rar$DI00.344\serial.txt
    Found ! - C:\Users\eden\AppData\Local\Temp\Rar$DR01.297\Alcohol 120% v1.9.2.1705 Multilanguage + serial (OK)
    Found ! - C:\Users\eden\AppData\Local\Temp\Rar$DR01.297\Alcohol 120% v1.9.2.1705 Multilanguage + serial (OK)\crack

    »»»» Presence des fichiers dans C:\Users\eden\Local Settings\Temporary Internet Files\Content.IE5

    Found ! [17/06/2008 00:27] - C:\Mes Sites Web\000\www.uploadfileyou.com\files\2eh6vr85qvhekmxdoi60_thumb.jpg
    Found ! [10/12/2008 07:06] - C:\Mes Sites Web\000\www.uploadfileyou.com\files\bha6e28e68pmxdz4ojje.jpg
    Found ! [10/12/2008 07:06] - C:\Mes Sites Web\000\www.uploadfileyou.com\files\bha6e28e68pmxdz4ojje_thumb.jpg
    Found ! [04/01/2009 19:56] - C:\Users\eden\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3FKGKX8S\b64_1[1].jpg
    Found ! [04/01/2009 19:53] - C:\Users\eden\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LHY6ZHGD\b64
    Contenus similaires
    a b 8 Sécurité
    5 Janvier 2009 17:07:14

    Re,

    Relance FindyKill en double-cliquant sur le raccourci. Tape sur "2" puis valide en appuyant sur "Entrée".
    [#ff0000]! Ne ferme pas la fenêtre lors de la suppression ! [/#f]
    Un rapport sera généré, poste son contenu ici.

    NB : Un redémarrage est parfois nécessaire, FindyKill t'enverra un message si cela est nécessaire.
    5 Janvier 2009 19:58:27

    bonsoir j'ai essayer de faire ce que tu ma dit mais des que j'ai taper 2 et quee le programme a marquer supression en cours un message d'erreur a aparut disant:
    impossible de trouver le moteur de script ''VBScript''pour le script
    ''C:\programme Files\findykill\tools\avert.vbs''

    que dois je faire??
    5 Janvier 2009 20:39:23

    j'ai finalement lancer la supression mais l'ordi a beugger et c'est etteint tt seul en me marquan une feuille toute bleu avec la raison mais je n'ai pas eu le temps de lire!!en ce rallumant j'ai eu ce message:

    Signature du problème :
    Nom d’événement de problème: BlueScreen
    Version du système: 6.0.6001.2.1.0.256.1
    Identificateur de paramètres régionaux: 1036

    Informations supplémentaires sur le problème :
    BCCode: 50
    BCP1: 8E0180BA
    BCP2: 00000000
    BCP3: 82A01B51
    BCP4: 00000000
    OS Version: 6_0_6001
    Service Pack: 1_0
    Product: 256_1

    Fichiers aidant à décrire le problème :
    C:\Windows\Minidump\Mini010509-01.dmp
    C:\Users\eden\AppData\Local\Temp\WER-50093-0.sysdata.xml
    C:\Users\eden\AppData\Local\Temp\WER965F.tmp.version.txt


    (ce n'ai pas la premiere fois que ca arrive ca m'arrive depuis une semaine)
    je ne pense pas que la supression c'est passer comme il le fallait!!
    QUE DOIS JE FAIRE!!
    a b 8 Sécurité
    6 Janvier 2009 13:17:01

    Bizarre. Refais un scan Findykill option 1.
    6 Janvier 2009 20:52:47

    voici le rapport:




    ----------------- FindyKill V4.710 ------------------

    * User : eden - PC-EDEN
    * Emplacement : C:\Program Files\FindyKill
    * Outils Mis a jours le 21/12/08 par Chiquitine29
    * Recherche effectuée à 21:45:56 le 06/01/2009
    * Windows Vista - Internet Explorer 7.0.6001.18000

    ((((((((((((((((( *** Recherche *** ))))))))))))))))))


    --------------- [ Processus actifs ] ----------------


    C:\Windows\System32\smss.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\csrss.exe
    C:\Windows\system32\services.exe
    C:\Windows\system32\lsass.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\winlogon.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\System32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\SLsvc.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Windows\system32\taskeng.exe
    C:\Windows\RtHDVCpl.exe
    C:\Program Files\Intel\AMT\atchk.exe
    C:\Program Files\FlashGet\flashget.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
    C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe
    C:\Users\eden\AppData\Roaming\drivers\winupgro.exe
    C:\Program Files\Belkin\Bluetooth Software\BTTray.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Intel\AMT\atchksrv.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
    C:\Program Files\Intel\AMT\LMS.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
    C:\Windows\system32\svchost.exe
    C:\Program Files\Intel\AMT\UNS.exe
    C:\Windows\System32\svchost.exe
    C:\Program Files\UltraVNC\WinVNC.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
    C:\Windows\system32\UI0Detect.exe
    C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    C:\Windows\system32\UI0Detect.exe
    C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
    C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
    C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
    C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Windows\system32\conime.exe
    C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Program Files\Internet Explorer\iexplore.exe

    --------------- [ Processus infectieux stoppés ] ----------------


    "C:\Users\eden\AppData\Roaming\drivers\winupgro.exe" (1164)


    --------------- [ Fichiers/Dossiers infectieux ] ----------------


    »»»» Presence des fichiers dans C:


    »»»» Presence des fichiers dans C:\Windows


    »»»» Presence des fichiers dans C:\Windows\Prefetch

    Found ! - C:\Windows\prefetch\157499500.EXE-22E36BE0.pf
    Found ! - C:\Windows\prefetch\157625921.EXE-AAB59EF6.pf
    Found ! - C:\Windows\prefetch\189765.EXE-B62CCCAC.pf
    Found ! - C:\Windows\prefetch\31033281.EXE-338AA641.pf
    Found ! - C:\Windows\prefetch\589906.EXE-32EE40A1.pf
    Found ! - C:\Windows\prefetch\59867265.EXE-C5764B68.pf
    Found ! - C:\Windows\prefetch\9861328.EXE-3BCE3E79.pf
    Found ! - C:\Windows\prefetch\FLEC006.EXE-253126EA.pf
    Found ! - C:\Windows\prefetch\MDELK.EXE-288F7189.pf
    Found ! - C:\Windows\prefetch\WINTEMS.EXE-85AF748B.pf
    Found ! - C:\Windows\prefetch\WINUPGRO.EXE-8A82F92B.pf
    Found ! - C:\Windows\Prefetch\KEY_GEN.EXE-4D8940CD.pf

    »»»» Presence des fichiers dans C:\Windows\system32

    Found ! [06/01/2009 21:16] - C:\Windows\system32\mdelk.exe
    Found ! [06/01/2009 21:16] - C:\Windows\system32\wintems.exe
    Found ! [06/01/2009 21:17] - C:\Windows\system32\ban_list.txt

    »»»» Presence des fichiers dans C:\Windows\system32\config\systemprofile\AppData\Roaming


    »»»» Presence des fichiers dans C:\Windows\system32\drivers


    »»»» Presence des fichiers dans C:\Users\eden\AppData\Roaming

    Found ! [06/01/2009 21:19] - "C:\Users\eden\AppData\Roaming\m\flec006.exe"
    Found ! [06/01/2009 21:19] - "C:\Users\eden\AppData\Roaming\m\list.oct"
    Found ! [06/01/2009 21:22] - "C:\Users\eden\AppData\Roaming\m\data.oct"
    Found ! [06/01/2009 21:22] - "C:\Users\eden\AppData\Roaming\m\srvlist.oct"
    Found ! [06/01/2009 21:25] - "C:\Users\eden\AppData\Roaming\m\shared"
    Found ! [31/12/2008 16:12] - "C:\Users\eden\AppData\Roaming\m"
    Found ! [31/12/2008 16:01] - "C:\Users\eden\AppData\Roaming\drivers"
    Found ! [06/01/2009 21:15] - "C:\Users\eden\AppData\Roaming\drivers\srosa.sys"
    Found ! [06/01/2009 21:15] - "C:\Users\eden\AppData\Roaming\drivers\srosa2.sys"
    Found ! [16/04/2005 08:06] - "C:\Users\eden\AppData\Roaming\drivers\winupgro.exe"
    Found ! [06/01/2009 21:31] - "C:\Users\eden\AppData\Roaming\drivers\downld"
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\1008843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\1024156.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\1029265.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\1029578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\1085406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\1087968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\1089328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112002781.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112002796.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112012812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112060468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112063390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112064765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112175406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112202468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112208468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112208984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112209187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112271328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112271437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112290984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112292250.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112292796.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112293734.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112294609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112295171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112342359.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112343062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112343515.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112352062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112360250.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112361640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112362765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112405890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112406500.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\112406640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\1250421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\1251281.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\126810328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\126810343.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\126844234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\126903890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\126904984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\126905765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127011937.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127046843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127057890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127058484.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127058703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127117828.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127118406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127118906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127135812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127137062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127137828.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127138750.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127139609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127140171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127197640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127198765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127199500.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127212437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127255015.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127256375.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127257437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127311953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127312281.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\127312437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\135125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\140781.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\141714859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\141718359.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\141725078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\141846984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\141849531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\141852953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142332500.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142687515.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142689531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142689875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142837140.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142838828.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142838843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142869390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142871640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142872187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142873578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142874406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142875015.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142928812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142930687.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142931718.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142940609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142986296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\142993031.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\143015640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\143083421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\143084875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\143085093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14851562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14851578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14859562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14865171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14910093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14911296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14912125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14956093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14956109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\14965953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15002515.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15006406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15006859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15007046.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15017312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15018218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15019078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15038625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15065734.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15065906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15066062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15071921.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15072625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15079000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15085609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15086671.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15087218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15088156.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15088984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15089546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15137296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15138843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15139609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15140890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15141812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15142703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15155437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15156875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15158234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15160421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15163453.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15163812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15164062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15168875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15168890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15198312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15207781.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15208296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15208406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15218046.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15219281.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15219812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15260109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15260187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15260203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15266890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15267218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15271484.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15276531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15278234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15299968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15300015.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15306234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15309171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15326234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15327343.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15327531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15341843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15346859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15347984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15348171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15352875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15354546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15355625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15364750.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15365421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15368218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15368406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15381000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15382531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15392468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15394968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15395234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15401171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15402687.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15403203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15404000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15404812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15405312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15411218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15413703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15413718.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15420546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15421703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15422656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15433421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15434734.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15435421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15436390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15437234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15437812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15449984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15453843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15455406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15456156.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15470984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15472062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15472828.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15473609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15476265.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15477984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15481343.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15482125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15482343.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15486031.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15486250.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15486703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15487375.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15487984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15488000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15489109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15489890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15496875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\155031.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15509937.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15510656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15510765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15513078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15514203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15514218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15516750.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15517906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15519000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15549640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15551015.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15551421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15551453.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15551703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15552093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15552593.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15553234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15553500.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15554140.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15556250.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15557234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15557359.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\155625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15563562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15573984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15575109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15575890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15576968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15577875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15578531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15593453.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15596953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15597093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15621296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15625828.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15626703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15630609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15631640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15632593.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15636000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15650218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15650234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15665031.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15665546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15665781.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15706953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15709968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15711359.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15711484.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15723796.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15724578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15725656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157487843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157487859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157494765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157499500.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15753125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15754468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157566078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15756640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157575875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157582062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157625921.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157960312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157960984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\157961171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158071562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158074328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158074468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158102296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158103468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158104125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158105281.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158106390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158107015.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158163765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158167796.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158169312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158181562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158210312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158210796.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158210984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158285375.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158286078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\158286328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15840875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15840890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15865140.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15868484.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15868671.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15888421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15892875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15893593.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15896500.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15906468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\15907687.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\16049328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\16053875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\16057421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\16115984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\16120109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\16121296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\16207328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\16208109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\16208453.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\163953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\166843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\167031.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\167703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\168718.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\171078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172015.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172689625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172690109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172690125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172701968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172778468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172780125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172781578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172828.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\172843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173056296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173057906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173058109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173173390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173173406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173173421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173202203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173204187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173204953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173207078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173208437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173209296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173289562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173290937.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173291562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173303640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173352640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173352984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173353234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173446343.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173448828.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173449062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\173750.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\175718.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\175812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\176062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\176078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\180140.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\182062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\182765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\186546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\186875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\187656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\189765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\192437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\195859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\195875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\197562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\203093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\205312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\220937.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\223375.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\224078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\226484.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\227812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\228562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\231656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\233046.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\233531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\236625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\237656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\238203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\238734.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\239687.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\240515.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\241890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\243937.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\244687.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\245109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\246296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\250203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\252671.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\253234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\256390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\259125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\259171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\260515.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\262875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\263765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\263937.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\265140.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\265718.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\266421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\266843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\266859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\267171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\267296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\271468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\272000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\272781.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\273234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\286718.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\286765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\289750.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\290156.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\290843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29611546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29613390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29626546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29687921.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29690703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29691734.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\296968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29803234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29815078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29816609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29816812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\299109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29912500.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29913890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29914234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29914250.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29914531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29938687.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29946703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29949531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29950281.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29951687.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29952750.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\29953375.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\299578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30020906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30025718.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30027015.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30033750.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30039578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30041125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30069640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30069656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30076031.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30078312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30082812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30114609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30114625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30122437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30141812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30174312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30175406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30175843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30214812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30217656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30221484.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30276859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30279234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30280125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30282406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30301296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30307375.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30308250.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30308453.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30382625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30382640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30399093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30400234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30400828.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30401734.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30402531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30403171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30453125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30454046.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30454453.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30474781.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30474796.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30523000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30524187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30524765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\305578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\306062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30611640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30611656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30623312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30683796.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30685000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30686125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30695359.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30698375.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30699546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30800546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30801203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30801531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\308656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30882187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30882203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30909843.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30911343.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30912203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30913312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30914218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30914812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30954187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30956687.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30956890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30973906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30975109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30976093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30993875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30995500.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\30996312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\309968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31048328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31048359.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31048390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31053859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31054406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31054546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31113203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31117562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31117578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31119171.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31127312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31130921.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31132921.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31136593.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31187765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31189140.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31189796.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31191437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31198468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31199406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31255484.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31261031.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31262390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31283453.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31284921.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31286640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31287187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31335015.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31429656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31430187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31430500.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31556531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31557187.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31557359.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31560531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31561703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31690640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31694875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\31696406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\323046.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\323906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\324718.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\324953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\325218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\327125.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\327234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\328203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\343296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\345109.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\345546.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\346296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\346703.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\346906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\347250.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\348593.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\349468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\351375.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\353093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\353140.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\374984.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\375421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\376578.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\376859.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\377406.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\379421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\379437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\380625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\382296.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\383281.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\383812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\389812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\393531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\394328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\395093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\395421.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\395609.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\396218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\396906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\397218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\397906.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\398203.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\398812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\398875.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\404625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\405562.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\408140.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\409328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\410140.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\426531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\427328.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\427625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\427812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\428015.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\429437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\433484.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\436000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\444531.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\445625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\445640.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44685625.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44686250.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44686281.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44695484.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\446968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44703062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\447468.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44841031.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\448437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44845781.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44847093.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\448765.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\448953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\448968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44928078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44928890.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44935000.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\449656.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44983281.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44985437.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\44986265.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\449953.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45012078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\450781.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45085062.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45085734.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45095234.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45096812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45097218.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45101734.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45101968.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\451312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45168390.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45170375.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45198812.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45202312.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45205078.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45207593.exe
    Found ! [06/01/2009 21:31] - C:\Users\eden\AppData\Roaming\drivers\downld\45210328.exe
    Found ! [06/01/2009 21:3
    a b 8 Sécurité
    6 Janvier 2009 20:54:01

    Retente l'option 2 pour voir.
    6 Janvier 2009 22:19:13

    non ca marche toujours pas!j'ai toujours le premier message apres il me dit d'appuyer sur une touche pour passer a la supression et la paf il beug et redemarre!!je suis de plus en plus inquiet, ya de quoi??
    a b 8 Sécurité
    7 Janvier 2009 18:35:41

    On fait essayer autre chose.

    Télécharge ELIBAGLA en bas de cette page.
    Clique sur le bouton Descargar Elibagla, cela va télécharger le fichier, place-le sur ton Bureau.
    Double-clique dessus pour l'ouvrir.
    Assure-toi que dans le menu déroulant Unidad, vous ayez bien C:\
    Vérifie aussi aussi que l'option en bas de la fenêtre Eliminar Ficheros Automaticamente soit bien cochée.
    Clique sur le bouton Explorar pour lancer l'analyse.
    Poste le rapport généré en fin fin d'analyse.

    AIDE : Comment supprimer Bagle ?
    8 Janvier 2009 00:00:55

    trop bizzard
    je l'ai lancer et l'ordinateur a beugger apres 1minute il s'est donc rallumer et la avant de voir apparaitre mon bureau il c'est relancer tt seul il a fait le scan et voici le rapport:


    Thu Jan 08 00:30:07 2009
    EliBagle v12.07 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 30 de Diciembre del 2008)
    ----------------------------------------------
    Lista de Acciones (por Acción Directa):
    C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
    C:\WINDOWS\SYSTEM32\MDELK.EXE --> Bagle Acceso Denegado.
    C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
    C:\USERS\EDEN\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle.dldr Acceso Denegado.
    C:\USERS\EDEN\APPDATA\ROAMING\M\LIST.OCT --> Eliminado Bagle
    Reinicie para Completar la Limpieza.

    Thu Jan 08 00:32:34 2009
    EliBagle v12.07 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 30 de Diciembre del 2008)
    ----------------------------------------------
    Lista de Acciones (por Acción Directa):
    C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
    C:\WINDOWS\SYSTEM32\MDELK.EXE --> Bagle Acceso Denegado.
    C:\USERS\EDEN\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle.dldr Acceso Denegado.
    Reinicie para Completar la Limpieza.

    Thu Jan 08 00:33:22 2009
    EliBagle v12.07 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 30 de Diciembre del 2008)
    ----------------------------------------------
    Lista de Acciones (por Acción Directa):
    C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
    C:\WINDOWS\SYSTEM32\MDELK.EXE --> Bagle Acceso Denegado.
    C:\USERS\EDEN\APPDATA\ROAMING\M\FLEC006.EXE --> Bagle.dldr Acceso Denegado.
    Reinicie para Completar la Limpieza.

    Thu Jan 08 00:33:35 2009
    EliBagle v12.07 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 30 de Diciembre del 2008)
    ----------------------------------------------
    Lista de Acciones (por Exploración):
    Explorando "C:\"

    Thu Jan 08 00:36:17 2009
    EliBagle v12.07 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 30 de Diciembre del 2008)
    ----------------------------------------------
    Lista de Acciones (por Acción Directa):
    C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Eliminado Bagle
    C:\WINDOWS\SYSTEM32\MDELK.EXE --> Eliminado Bagle
    C:\USERS\EDEN\APPDATA\ROAMING\M\FLEC006.EXE --> Eliminado Bagle.dldr
    Eliminada Carpeta "%AppData%\M"

    Thu Jan 08 00:36:40 2009
    EliBagle v12.07 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 30 de Diciembre del 2008)
    ----------------------------------------------
    Lista de Acciones (por Exploración):
    Explorando "C:\"
    C:\Users\eden\AppData\Roaming\drivers\SROSA.SYS --> Eliminado Bagle(rootkit)
    C:\Users\eden\AppData\Roaming\drivers\downld\112012812.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\112202468.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\126844234.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\127046843.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\141725078.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\14865171.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\14965953.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\15002515.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\15079000.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\15168984.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\15262093.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\15276531.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\15309171.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\15341843.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\15365421.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\15476265.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\15706953.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\157406.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\157499500.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\166843.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\170218.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\172015.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\172701968.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\182765.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\186546.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\186875.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\189765.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\203093.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\205312.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\205703.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\263937.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\272000.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\290156.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\29626546.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\29803234.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\29938687.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\30122437.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\30301296.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\305578.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\30623312.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\323906.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\340828.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\374984.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\379437.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\44703062.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\44935000.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\449656.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\45012078.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\45052750.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\45085062.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\582781.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\589906.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\59774828.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\59821656.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\74475515.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\74638484.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\74915484.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\81893609.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\89528000.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\89624875.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\96935843.EXE --> Eliminado Bagle
    C:\Users\eden\AppData\Roaming\drivers\downld\97224796.EXE --> Eliminado Bagle.dldr
    C:\Users\eden\AppData\Roaming\drivers\downld\9861328.EXE --> Eliminado Bagle

    Nº Total de Directorios: 26422
    Nº Total de Ficheros: 214927
    Nº de Ficheros Analizados: 20306
    Nº de Ficheros Infectados: 64
    Nº de Ficheros Limpiados: 64
    8 Janvier 2009 13:33:32

    rebonjours suite a ce scan des choses se sont mis a remarcher:
    spybot(mais pas la protection permanente)
    ccleaner

    cela dit antivir et hijacthis ne marche toujours pas

    j'ai donc pu faire un scan avec spybot dont voici le rapport:

    --- Search result list ---
    Le conseil du jour: Cliquez sur la barre située à droite pour voir plus d'informations! ()


    Microsoft.WindowsSecurityCenter_disabled: [SBI $2E20C9A9] Réglages (Modification du Registre, nothing done)
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wscsvc\Start

    Win32.Bagle.hi: [SBI $CD1D5200] Réglages (Clé du Registre, nothing done)
    HKEY_USERS\S-1-5-21-451587228-3902340606-587438435-1000\Software\FirtR

    ISearchTechnology.WinButler: [SBI $B2F21FCD] Réglages désinstallation (Clé du Registre, nothing done)
    HKEY_USERS\S-1-5-21-451587228-3902340606-587438435-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinButler

    ISearchTechnology.WinButler: [SBI $2671BD0C] Réglages (Clé du Registre, nothing done)
    HKEY_USERS\S-1-5-21-451587228-3902340606-587438435-1000\Software\WinButler


    --- Spybot - Search & Destroy version: 1.6.0 (build: 20080729) ---

    2009-01-06 blindman.exe (1.0.0.8)
    2008-01-28 SDDelFile.exe (1.0.2.4)
    2008-08-14 SDFiles.exe (1.6.0.4)
    2008-08-14 SDMain.exe (1.0.0.6)
    2008-08-14 SDShred.exe (1.0.2.3)
    2008-08-14 SDUpdate.exe (1.6.0.9)
    2008-08-14 SDWinSec.exe (1.0.0.12)
    2008-07-30 SpybotSD.exe (1.6.0.31)
    2009-01-08 TeaTimer.exe (3.87.0.0)
    2008-10-23 unins000.exe (51.49.0.0)
    2009-01-06 Update.exe (1.6.0.7)
    2008-10-22 advcheck.dll (1.6.2.13)
    2007-04-02 aports.dll (2.1.0.0)
    2008-06-14 DelZip179.dll (1.79.11.1)
    2008-09-15 SDHelper.dll (1.6.2.14)
    2008-06-19 sqlite3.dll
    2008-10-22 Tools.dll (2.1.6.8)
    2008-11-04 Includes\Adware.sbi (*)
    2008-12-29 Includes\AdwareC.sbi (*)
    2008-06-03 Includes\Cookies.sbi (*)
    2008-09-02 Includes\Dialer.sbi (*)
    2008-09-09 Includes\DialerC.sbi (*)
    2008-07-23 Includes\HeavyDuty.sbi (*)
    2008-11-18 Includes\Hijackers.sbi (*)
    2008-12-22 Includes\HijackersC.sbi (*)
    2008-12-09 Includes\Keyloggers.sbi (*)
    2008-12-22 Includes\KeyloggersC.sbi (*)
    2004-11-29 Includes\LSP.sbi (*)
    2008-11-18 Includes\Malware.sbi (*)
    2008-12-29 Includes\MalwareC.sbi (*)
    2008-12-16 Includes\PUPS.sbi (*)
    2008-12-16 Includes\PUPSC.sbi (*)
    2007-11-07 Includes\Revision.sbi (*)
    2008-06-18 Includes\Security.sbi (*)
    2008-12-29 Includes\SecurityC.sbi (*)
    2008-06-03 Includes\Spybots.sbi (*)
    2008-06-03 Includes\SpybotsC.sbi (*)
    2008-12-10 Includes\Spyware.sbi (*)
    2008-12-10 Includes\SpywareC.sbi (*)
    2008-06-03 Includes\Tracks.uti
    2008-12-29 Includes\Trojans.sbi (*)
    2008-12-29 Includes\TrojansC.sbi (*)
    2008-03-04 Plugins\Chai.dll
    2008-03-05 Plugins\Fennel.dll
    2008-02-26 Plugins\Mate.dll
    2007-12-24 Plugins\TCPIPAddress.dll



    --- Browser helper object list ---
    {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (Aide pour le lien d'Adobe PDF Reader)
    location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    BHO name:
    CLSID name: Aide pour le lien d'Adobe PDF Reader
    description: Adobe Acrobat reader
    classification: Legitimate
    known filename: AcroIEhelper.ocx<br>AcroIEhelper.dll
    info link: http://www.adobe.com/products/acrobat/readstep2.html
    info source: TonyKlein
    Path: C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\
    Long name: AcroIEHelper.dll
    Short name: ACROIE~1.DLL
    Date (created): 22/10/2006 23:08:42
    Date (last access): 11/11/2008 21:12:46
    Date (last write): 22/10/2006 23:08:42
    Filesize: 62080
    Attributes: archive
    MD5: C11F6A1F61481E24BE3FDC06EA6F7D2A
    CRC32: E388508F
    Version: 8.0.0.456

    {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} (flashget urlcatch)
    location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    BHO name: flashget urlcatch
    CLSID name: FGCatchUrl
    Path: C:\Program Files\FlashGet\
    Long name: jccatch.dll
    Short name:
    Date (created): 06/08/2007 11:11:58
    Date (last access): 12/12/2008 10:47:04
    Date (last write): 06/08/2007 11:11:58
    Filesize: 94308
    Attributes: archive
    MD5: F75511A4E8C213D088BA7E53BA0CC4DA
    CRC32: FABB6089
    Version: 1.8.4.1007

    {53707962-6F74-2D53-2644-206D7942484F} (Spybot-S&D IE Protection)
    location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    BHO name:
    CLSID name: Spybot-S&D IE Protection
    description: Spybot-S&D IE Browser plugin
    classification: Legitimate
    known filename: SDhelper.dll
    info link: http://spybot.eon.net.au/
    info source: Patrick M. Kolla
    Path: C:\PROGRA~1\SPYBOT~1\
    Long name: SDHelper.dll
    Short name:
    Date (created): 14/02/2008 19:50:42
    Date (last access): 24/10/2008 00:17:38
    Date (last write): 15/09/2008 14:25:44
    Filesize: 1562960
    Attributes: readonly hidden sysfile archive
    MD5: 35F73F1936BDE91F1B6995510A61E7A8
    CRC32: BE6A5D15
    Version: 1.6.2.14

    {5C255C8A-E604-49b4-9D64-90988571CECB} ()
    location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    BHO name:
    CLSID name:

    {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
    location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    BHO name:
    CLSID name: SSVHelper Class
    Path: C:\Program Files\Java\jre1.6.0_07\bin\
    Long name: ssv.dll
    Short name:
    Date (created): 18/08/2008 11:26:28
    Date (last access): 10/06/2072 01:32:34
    Date (last write): 10/06/2008 03:27:02
    Filesize: 509328
    Attributes: archive
    MD5: F921D875A1CBD69A6A462BA2514BC831
    CRC32: 38AC9EE2
    Version: 6.0.70.6

    {9030D464-4C02-4ABF-8ECC-5164760863C6} (Programme d'aide de l'Assistant de connexion Windows Live)
    location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    BHO name:
    CLSID name: Programme d'aide de l'Assistant de connexion Windows Live
    Path: C:\Program Files\Common Files\Microsoft Shared\Windows Live\
    Long name: WindowsLiveLogin.dll
    Short name: WINDOW~1.DLL
    Date (created): 18/11/2008 13:47:06
    Date (last access): 17/12/2008 14:18:00
    Date (last write): 18/11/2008 13:47:06
    Filesize: 408952
    Attributes: archive
    MD5: 4B9CBC54FA3A846649F59BC185DF63DF
    CRC32: 0402898F
    Version: 5.0.817.1

    {AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
    location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    BHO name:
    CLSID name: Google Toolbar Helper
    description: Google toolbar
    classification: Open for discussion
    known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
    info link: http://toolbar.google.com/
    info source: TonyKlein
    Path: c:\program files\google\
    Long name: GoogleToolbar1.dll
    Short name: GOOGLE~1.DLL
    Date (created): 16/12/2007 01:33:44
    Date (last access): 16/12/2007 01:33:44
    Date (last write): 16/12/2007 01:33:44
    Filesize: 2436160
    Attributes: readonly archive
    MD5: 6D44E0C3B43D27484FBB355E470C4188
    CRC32: 2DE875CD
    Version: 4.0.1601.4978

    {F156768E-81EF-470C-9057-481BA8380DBA} (FlashGet GetFlash Class)
    location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
    BHO name:
    CLSID name: FlashGet GetFlash Class
    Path: C:\Program Files\FlashGet\
    Long name: getflash.dll
    Short name:
    Date (created): 18/05/2007 18:13:10
    Date (last access): 12/12/2008 10:47:04
    Date (last write): 18/05/2007 18:13:10
    Filesize: 163840
    Attributes: archive
    MD5: 42CB9A71788338483537F36A00318D00
    CRC32: AC7D29D0
    Version: 1.8.4.1003



    --- ActiveX list ---
    CabBuilder (CabBuilder)
    DPF name: CabBuilder
    CLSID name:
    Installer:
    Codebase: http://kiw.imgag.com/imgag/kiw/toolbar/download/Install...

    {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object)
    DPF name:
    CLSID name: CKAVWebScan Object
    Installer: C:\Windows\Downloaded Program Files\kavwebscan.inf
    Codebase: http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
    description:
    classification: Legitimate
    known filename:
    info link:
    info source: Safer Networking Ltd.
    Path: C:\Windows\system32\Kaspersky Lab\Kaspersky Online Scanner\
    Long name: kavwebscan.dll
    Short name: KAVWEB~1.DLL
    Date (created): 20/03/2006 13:17:20
    Date (last access): 19/02/2008 14:52:56
    Date (last write): 20/03/2006 13:17:20
    Filesize: 798720
    Attributes: archive
    MD5: F74B09086C2097BC535C5DCCCD3402AC
    CRC32: 01AA9D3D
    Version: 5.0.83.0

    {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool)
    DPF name:
    CLSID name: Windows Genuine Advantage Validation Tool
    Installer: C:\Windows\Downloaded Program Files\LegitCheckControl.inf
    Codebase: http://download.microsoft.com/download/8/b/d/8bd77752-5...
    description:
    classification: Legitimate
    known filename: LegitCheckControl.DLL
    info link:
    info source: Safer Networking Ltd.
    Path: C:\Windows\system32\
    Long name: LegitCheckControl.DLL
    Short name: LEGITC~1.DLL
    Date (created): 20/03/2008 17:06:36
    Date (last access): 20/03/2008 17:06:36
    Date (last write): 20/03/2008 17:06:36
    Filesize: 1480232
    Attributes: archive
    MD5: E058C4821D48E0A67F6069CB50818D44
    CRC32: 3513AE02
    Version: 1.7.69.2

    {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class)
    DPF name:
    CLSID name: Checkers Class
    Installer:
    Codebase: http://messenger.zone.msn.com/binary/msgrchkr.cab56986....
    Path: C:\Windows\Downloaded Program Files\
    Long name: msgrchkr.dll
    Short name:
    Date (created): 28/02/2007 13:21:04
    Date (last access): 28/02/2007 13:21:04
    Date (last write): 28/02/2007 13:21:04
    Filesize: 131472
    Attributes: archive
    MD5: 1E5CFDF9AEBDD84305A4C8154277A269
    CRC32: 73C871D0
    Version: 9.5.7087.1

    {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control)
    DPF name:
    CLSID name: Facebook Photo Uploader 4 Control
    Installer: C:\Windows\Downloaded Program Files\ImageUploader4.1.inf
    Codebase: http://upload.facebook.com/controls/FacebookPhotoUpload...
    Path: C:\Windows\Downloaded Program Files\
    Long name: ImageUploader4.1.ocx
    Short name: IMAGEU~1.OCX
    Date (created): 25/11/2007 23:43:08
    Date (last access): 25/11/2007 23:43:08
    Date (last write): 25/11/2007 23:43:08
    Filesize: 2663944
    Attributes: archive
    MD5: DA18FD0966274164F4AC1797282BA479
    CRC32: 41EA81A4
    Version: 4.5.57.0

    {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object)
    DPF name:
    CLSID name: DivXBrowserPlugin Object
    Installer: C:\Windows\Downloaded Program Files\DivXPlugin.inf
    Codebase: http://download.divx.com/player/DivXBrowserPlugin.cab
    description:
    classification: Legitimate
    known filename: npdivx32.dll
    info link:
    info source: Safer Networking Ltd.
    Path: C:\Program Files\DivX\DivX Web Player\
    Long name: npdivx32.dll
    Short name:
    Date (created): 21/11/2008 23:45:04
    Date (last access): 09/12/2008 13:36:52
    Date (last write): 21/11/2008 23:45:04
    Filesize: 1332224
    Attributes: archive
    MD5: D19163C4794227D953AF0F136A59DE85
    CRC32: 63D55368
    Version: 1.4.2.7

    {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0)
    DPF name: Java Runtime Environment 1.6.0
    CLSID name: Java Plug-in 1.6.0_07
    Installer:
    Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-wind...
    description: Sun Java
    classification: Legitimate
    known filename: %PROGRAM FILES%\JabaSoft\JRE\*\Bin\npjava131.dll
    info link:
    info source: Patrick M. Kolla
    Path: C:\Program Files\Java\jre1.6.0_07\bin\
    Long name: npjpi160_07.dll
    Short name: NPJPI1~1.DLL
    Date (created): 10/06/2008 01:32:34
    Date (last access): 10/06/2072 01:32:34
    Date (last write): 10/06/2008 03:27:02
    Filesize: 132496
    Attributes: archive
    MD5: 7C83A2809E13950359189767AC9D5DB8
    CRC32: 925C2A88
    Version: 6.0.70.6

    {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} ()
    DPF name:
    CLSID name:
    Installer: C:\Windows\Downloaded Program Files\erma.inf
    Codebase: http://fpdownload.macromedia.com/get/flashplayer/curren...
    description:
    classification: Open for discussion
    known filename:
    info link:
    info source: Safer Networking Ltd.

    {A903E5AB-C67E-40FB-94F1-E1305982F6E0} (KooPlayer Control)
    DPF name:
    CLSID name: KooPlayer Control
    Installer:
    Codebase: http://www.tvkoo.com/update/UKooPlayer.ocx
    Path: C:\Windows\DOWNLO~1\
    Long name: UKooPlayer.ocx
    Short name: UKOOPL~1.OCX
    Date (created): 16/09/2008 19:45:46
    Date (last access): 16/09/2008 19:45:46
    Date (last write): 16/09/2008 19:45:44
    Filesize: 293648
    Attributes: archive
    MD5: D55BF8BBE60C31481C84F27C91F7EA10
    CRC32: 444EE25A
    Version: 1.0.0.90

    {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer)
    DPF name:
    CLSID name: MSN Games - Installer
    Installer:
    Codebase: http://messenger.zone.msn.com/binary/ZIntro.cab56649.ca...
    description:
    classification: Legitimate
    known filename: ZIntro.ocx
    info link:
    info source: Safer Networking Ltd.
    Path: C:\Windows\Downloaded Program Files\
    Long name: ZIntro.ocx
    Short name:
    Date (created): 19/02/2007 10:26:28
    Date (last access): 19/02/2007 10:26:28
    Date (last write): 19/02/2007 10:26:28
    Filesize: 159128
    Attributes: archive
    MD5: E681AC948003CCA59C6C00D3F5EC3D4B
    CRC32: C8723760
    Version: 9.5.6649.1

    {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class)
    DPF name:
    CLSID name: CBreakshotControl Class
    Installer:
    Codebase: http://messenger.zone.msn.com/binary/Bankshot.cab57213....
    description:
    classification: Legitimate
    known filename: Banksht2.dll
    info link:
    info source: Safer Networking Ltd.
    Path: C:\Windows\Downloaded Program Files\
    Long name: banksht2.dll
    Short name:
    Date (created): 02/03/2007 13:49:36
    Date (last access): 02/03/2007 13:49:36
    Date (last write): 02/03/2007 13:49:36
    Filesize: 1443408
    Attributes: archive
    MD5: 6B90E09E732669E5A53C97D04BC98D2B
    CRC32: C1B7249C
    Version: 1.7.302.1

    {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class)
    DPF name:
    CLSID name: MessengerStatsClient Class
    Installer:
    Codebase: http://messenger.zone.msn.com/binary/MessengerStatsPACl...
    description:
    classification: Legitimate
    known filename: MessengerStatsPAClient.dll
    info link:
    info source: Safer Networking Ltd.
    Path: C:\Windows\Downloaded Program Files\
    Long name: MessengerStatsPAClient.dll
    Short name: MESSEN~1.DLL
    Date (created): 22/02/2007 22:41:12
    Date (last access): 22/02/2007 22:41:12
    Date (last write): 22/02/2007 22:41:12
    Filesize: 304544
    Attributes: archive
    MD5: 8945CCA5FC4F25168E8B6F401EFAF51F
    CRC32: 0F12FD23
    Version: 9.5.6907.1

    {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} (Java Runtime Environment 1.6.0)
    DPF name: Java Runtime Environment 1.6.0
    CLSID name: Java Plug-in 1.6.0_07
    Installer:
    Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-wind...
    Path: C:\Program Files\Java\jre1.6.0_07\bin\
    Long name: npjpi160_07.dll
    Short name: NPJPI1~1.DLL
    Date (created): 10/06/2008 01:32:34
    Date (last access): 10/06/2072 01:32:34
    Date (last write): 10/06/2008 03:27:02
    Filesize: 132496
    Attributes: archive
    MD5: 7C83A2809E13950359189767AC9D5DB8
    CRC32: 925C2A88
    Version: 6.0.70.6

    {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Runtime Environment 1.6.0)
    DPF name: Java Runtime Environment 1.6.0
    CLSID name: Java Plug-in 1.6.0_07
    Installer:
    Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-wind...
    description:
    classification: Legitimate
    known filename: npjpi150_06.dll
    info link:
    info source: Safer Networking Ltd.
    Path: C:\Program Files\Java\jre1.6.0_07\bin\
    Long name: npjpi160_07.dll
    Short name: NPJPI1~1.DLL
    Date (created): 10/06/2008 01:32:34
    Date (last access): 10/06/2072 01:32:34
    Date (last write): 10/06/2008 03:27:02
    Filesize: 132496
    Attributes: archive
    MD5: 7C83A2809E13950359189767AC9D5DB8
    CRC32: 925C2A88
    Version: 6.0.70.6

    {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
    DPF name:
    CLSID name: Shockwave Flash Object
    Installer: C:\Windows\Downloaded Program Files\CONFLICT.1\swflash.inf
    Codebase: http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
    description: Macromedia Shockwave Flash Player
    classification: Legitimate
    known filename:
    info link:
    info source: Patrick M. Kolla
    Path: C:\Windows\system32\Macromed\Flash\
    Long name: Flash10a.ocx
    Short name:
    Date (created): 05/10/2008 05:16:26
    Date (last access): 26/10/2008 14:28:22
    Date (last write): 05/10/2008 05:16:26
    Filesize: 3789728
    Attributes: readonly archive
    MD5: 466C1355934925768822E380DA6E6E4A
    CRC32: 48EC1E52
    Version: 10.0.12.36



    --- Process list ---
    PID: 1904 (1084) C:\Windows\system32\taskeng.exe
    size: 169472
    MD5: 5F109032CE46B7184ED9E50F9FE8489E
    PID: 1956 (1068) C:\Windows\system32\Dwm.exe
    size: 81920
    MD5: 59903071D7ACE6A02093C47E9E38AF97
    PID: 2020 (1944) C:\Windows\Explorer.EXE
    size: 2927104
    MD5: FFA764631CB70A30065C12EF8E174F9F
    PID: 2136 (2020) C:\Windows\RtHDVCpl.exe
    size: 4435968
    MD5: 8D0C8187D3D2BEFBDF76E35E5855C5A1
    PID: 3708 (2020) C:\Program Files\Intel\AMT\atchk.exe
    size: 404248
    MD5: 2B3B686413539C28414AAB3FFA158480
    PID: 2948 (2020) C:\Program Files\Windows Sidebar\sidebar.exe
    size: 1233920
    MD5: FD278E51A7D6F52D22FCE6C67E037AD6
    PID: 2084 (2020) C:\Windows\ehome\ehtray.exe
    size: 125952
    MD5: BF08674925F151BD4537B89A493E3E0C
    PID: 3012 (2020) C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    size: 3882312
    MD5: 6CE9CD3BDCA8209051C037D1859AF5E9
    PID: 3164 (2020) C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
    size: 1124352
    MD5: 67576EBBAD86E5F92B327A9F83443628
    PID: 708 (2020) C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe
    size: 1249280
    MD5: 457C3DD5F4655EB0F1A564110319B9D0
    PID: 600 (2020) C:\Program Files\Belkin\Bluetooth Software\BTTray.exe
    size: 715568
    MD5: FAA1AD70DA329768FA53041733EB4B57
    PID: 3180 ( 916) C:\Windows\ehome\ehmsas.exe
    size: 37376
    MD5: 0F4195B9B348DE5CF9B822F81704B20E
    PID: 3520 (2948) C:\Program Files\Windows Sidebar\sidebar.exe
    size: 1233920
    MD5: FD278E51A7D6F52D22FCE6C67E037AD6
    PID: 1600 ( 916) C:\Program Files\Belkin\Bluetooth Software\BtStackServer.exe
    size: 1600304
    MD5: 850D23F943C391B0DEBC0D9E071A7989
    PID: 3224 ( 916) C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
    size: 474624
    MD5: 57A6F9C77D22A01735075BEAE21BF26B
    PID: 2580 (2020) C:\Program Files\Windows Media Player\wmpnscfg.exe
    size: 202240
    MD5: 35937EAD711207544E219C2A19A78A7D
    PID: 1784 (1216) C:\Windows\system32\conime.exe
    size: 69120
    MD5: F96EBC5A624349D81DCC7600A3C5DC43
    PID: 3412 (2192) C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
    size: 126976
    MD5: 2A24DA3E53C591726C91744A6006A3A7
    PID: 4076 (1084) C:\Windows\system32\wuauclt.exe
    size: 51224
    MD5: E654B78D2F1D791B30D0ED9A8195EC22
    PID: 3448 ( 916) C:\Program Files\Windows Live\Contacts\wlcomm.exe
    size: 27496
    MD5: 45F04E44C0ECAE49CEA6525FB12D428A
    PID: 5628 (1116) C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe
    size: 341616
    MD5: 80660C611B596FFE8AF4074B31AA6FB7
    PID: 4824 (2020) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
    size: 4891984
    MD5: 9C8F0F34F66BB845B42F70E92A972B5F
    PID: 0 ( 0) [System Process]
    PID: 4 ( 0) System
    PID: 516 ( 4) smss.exe
    size: 64000
    PID: 596 ( 584) csrss.exe
    size: 6144
    PID: 648 ( 584) wininit.exe
    size: 96768
    PID: 660 ( 640) csrss.exe
    size: 6144
    PID: 696 ( 648) services.exe
    size: 279040
    PID: 724 ( 648) lsass.exe
    size: 9728
    PID: 732 ( 648) lsm.exe
    size: 229888
    PID: 896 ( 640) winlogon.exe
    size: 314880
    PID: 916 ( 696) svchost.exe
    size: 21504
    PID: 980 ( 696) svchost.exe
    size: 21504
    PID: 1044 ( 696) svchost.exe
    size: 21504
    PID: 1068 ( 696) svchost.exe
    size: 21504
    PID: 1084 ( 696) svchost.exe
    size: 21504
    PID: 1208 (1044) audiodg.exe
    size: 88064
    PID: 1232 ( 696) svchost.exe
    size: 21504
    PID: 1248 ( 696) SLsvc.exe
    size: 2623488
    PID: 1400 ( 696) svchost.exe
    size: 21504
    PID: 1580 ( 696) svchost.exe
    size: 21504
    PID: 1768 ( 696) spoolsv.exe
    size: 125952
    PID: 1792 ( 696) svchost.exe
    size: 21504
    PID: 576 (1084) taskeng.exe
    size: 169472
    PID: 1528 ( 696) atchksrv.exe
    PID: 1616 ( 696) BlueSoleilCS.exe
    PID: 860 ( 696) mDNSResponder.exe
    PID: 1896 ( 696) BsMobileCS.exe
    PID: 2008 ( 696) svchost.exe
    size: 21504
    PID: 380 ( 696) btwdins.exe
    PID: 720 ( 696) LMS.exe
    PID: 1876 ( 696) MDM.EXE
    PID: 1364 ( 696) NBService.exe
    PID: 2236 ( 696) svchost.exe
    size: 21504
    PID: 2260 ( 696) svchost.exe
    size: 21504
    PID: 2316 ( 696) UNS.exe
    PID: 2408 ( 696) svchost.exe
    size: 21504
    PID: 2480 ( 696) SearchIndexer.exe
    size: 439808
    PID: 2748 ( 696) BsHelpCS.exe
    PID: 2764 ( 696) UI0Detect.exe
    size: 35840
    PID: 2192 ( 696) ServiceLayer.exe
    PID: 2120 ( 696) wmpnetwk.exe
    PID: 1812 (2192) NclUSBSrv.exe
    PID: 2564 (2192) NclRSSrv.exe


    --- Winsock Layered Service Provider list ---
    Protocol 0: MSAFD Tcpip [TCP/IP]
    GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP IP protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD Tcpip


  • Protocol 1: MSAFD Tcpip [UDP/IP]
    GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP IP protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD Tcpip


  • Protocol 2: MSAFD Tcpip [RAW/IP]
    GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP IP protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD Tcpip


  • Protocol 3: MSAFD Tcpip [TCP/IPv6]
    GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP IPv6 protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD Tcpip


  • Protocol 4: MSAFD Tcpip [UDP/IPv6]
    GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP IPv6 protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD Tcpip


  • Protocol 5: MSAFD Tcpip [RAW/IPv6]
    GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP IPv6 protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD Tcpip


  • Protocol 6: Fournisseur de services RSVP TCPv6
    GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP RVSP
    DB filename: %SystemRoot%\system32\rsvpsp.dll
    DB protocol: RSVP * Service Provider

    Protocol 7: Fournisseur de services RSVP TCP
    GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP RVSP
    DB filename: %SystemRoot%\system32\rsvpsp.dll
    DB protocol: RSVP * Service Provider

    Protocol 8: Fournisseur de services RSVP UDPv6
    GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP RVSP
    DB filename: %SystemRoot%\system32\rsvpsp.dll
    DB protocol: RSVP * Service Provider

    Protocol 9: Fournisseur de services RSVP UDP
    GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP RVSP
    DB filename: %SystemRoot%\system32\rsvpsp.dll
    DB protocol: RSVP * Service Provider

    Protocol 10: MSAFD RfComm [Bluetooth]
    GUID: {9FC48064-7298-43E4-B7BD-181F2089792A}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Bluetooth
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD RfComm [Bluetooth]

    Protocol 11: MSAFD NetBIOS [\Device\NetBT_Tcpip_{16ECC9DF-FAB1-48A8-AB13-1D81935D1117}] SEQPACKET 9
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 12: MSAFD NetBIOS [\Device\NetBT_Tcpip_{16ECC9DF-FAB1-48A8-AB13-1D81935D1117}] DATAGRAM 9
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 13: MSAFD NetBIOS [\Device\NetBT_Tcpip_{AD012E3C-752D-42D2-86FA-D7F60CA37F8A}] SEQPACKET 6
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 14: MSAFD NetBIOS [\Device\NetBT_Tcpip_{AD012E3C-752D-42D2-86FA-D7F60CA37F8A}] DATAGRAM 6
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 15: MSAFD NetBIOS [\Device\NetBT_Tcpip_{B8DB9C8B-50CE-41FA-9683-282C7E2B2EF7}] SEQPACKET 4
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 16: MSAFD NetBIOS [\Device\NetBT_Tcpip_{B8DB9C8B-50CE-41FA-9683-282C7E2B2EF7}] DATAGRAM 4
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 17: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{CADDA9F7-7DB3-41E5-BE67-74FD0145314B}] SEQPACKET 2
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 18: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{CADDA9F7-7DB3-41E5-BE67-74FD0145314B}] DATAGRAM 2
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 19: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{AC4FBD35-5FB5-4D4F-BE12-A5D67721B4F5}] SEQPACKET 11
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 20: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{AC4FBD35-5FB5-4D4F-BE12-A5D67721B4F5}] DATAGRAM 11
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 21: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{DF79508B-5856-4A91-BC9A-712626D6BDD2}] SEQPACKET 3
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 22: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{DF79508B-5856-4A91-BC9A-712626D6BDD2}] DATAGRAM 3
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 23: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{16ECC9DF-FAB1-48A8-AB13-1D81935D1117}] SEQPACKET 10
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 24: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{16ECC9DF-FAB1-48A8-AB13-1D81935D1117}] DATAGRAM 10
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 25: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{B91F2340-BD19-4055-9991-0D9BC250DCB3}] SEQPACKET 8
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 26: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{B91F2340-BD19-4055-9991-0D9BC250DCB3}] DATAGRAM 8
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 27: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{AD012E3C-752D-42D2-86FA-D7F60CA37F8A}] SEQPACKET 7
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 28: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{AD012E3C-752D-42D2-86FA-D7F60CA37F8A}] DATAGRAM 7
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 29: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{6BEE2338-2E47-44D5-94A8-5F3DEA9807AB}] SEQPACKET 0
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 30: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{6BEE2338-2E47-44D5-94A8-5F3DEA9807AB}] DATAGRAM 0
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 31: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{8CE62D02-CC54-48CF-9891-5C381CCF6D05}] SEQPACKET 1
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 32: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{8CE62D02-CC54-48CF-9891-5C381CCF6D05}] DATAGRAM 1
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 33: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{B8DB9C8B-50CE-41FA-9683-282C7E2B2EF7}] SEQPACKET 5
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 34: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{B8DB9C8B-50CE-41FA-9683-282C7E2B2EF7}] DATAGRAM 5
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Namespace Provider 0: Espace de noms NLAv1 (Network Location Awareness Legacy)
    GUID: {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83}
    Filename:
    Description: Microsoft Windows NT/2k/XP name space provider
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: NLA-Namespace

    Namespace Provider 1: Fournisseur Shim d'affectation de noms de messagerie
    GUID: {964ACBA2-B2BC-40EB-8C6A-A6DB40161CAE}
    Filename:

    Namespace Provider 2: Fournisseur d'espace de noms du nuage PNRP
    GUID: {03FE89CE-766D-4976-B9C1-BB9BC42C7B4D}
    Filename:

    Namespace Provider 3: Fournisseur d'espace de noms du nom PNRP
    GUID: {03FE89CD-766D-4976-B9C1-BB9BC42C7B4D}
    Filename:

    Namespace Provider 4: mdnsNSP
    GUID: {B600E6E9-553B-4A19-8696-335E5C896153}
    Filename: C:\Program Files\Bonjour\mdnsNSP.dll
    Description: Apple Rendezvous protocol
    DB filename: %ProgramFiles%\Rendezvous\bin\mdnsNSP.dll
    DB protocol: mdnsNSP

    Namespace Provider 5: TCP/IP
    GUID: {22059D40-7E9E-11CF-AE5A-00AA00A7112B}
    Filename:
    Description: Microsoft Windows NT/2k/XP TCP/IP name space provider
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: TCP/IP

    Namespace Provider 6: NTDS
    GUID: {3B2637EE-E580-11CF-A555-00C04FD8D4AC}
    Filename: %SystemRoot%\System32\winrnr.dll
    Description: Microsoft Windows NT/2k/XP name space provider
    DB filename: %SystemRoot%\system32\winrnr.dll
    DB protocol: NTDS

    Namespace Provider 7: Espace de noms Bluetooth
    GUID: {06AA63E0-7D60-41FF-AFB2-3EE6D2D9392D}
    Filename: %SystemRoot%\system32\wshbth.dll
    Description: Bluetooth
    DB filename: %SystemRoot%\system32\wshbth.dll
    DB protocol: Bluetooth-Namespace


    8 Janvier 2009 13:51:39

    apar ca il ma trouver trois problemes:
    win32.bagle.hi
    microsoft security center disabled
    isearchTechnology.winbutler

    voila que dois je faire??
    a b 8 Sécurité
    8 Janvier 2009 15:12:58

    EliBAGLA a supprimé une partie de l'infection (c'est normal pour les reboot ;) )

    [#ff0000]! Désactive tes protections résidentes (antivirus, Spybot-S&D, etc.) ![/#f]

  • Télécharge ComboFix ([#ff0000]sUBs[/#f]) sur ton Bureau.
  • Double clique sur ComboFix.exe (le .exe n'est pas forcément visible) afin de le lancer.
  • Lorsque la recherche sera terminée, un rapport apparaîtra. Poste ce rapport (C:\combofix.txt*) dans ta prochaine réponse.

    AIDE : Un guide et un tutoriel sur l'utilisation de ComboFix
    * le nom de la partition peut changer
    8 Janvier 2009 22:26:49

    dois je faire tout ca?


    Lorsque la fenêtre "Enregistrer sous" est configurée pour enregistrer ComboFix.exe sur le Bureau, cliquez sur le bouton Enregistrer. Le téléchargement de ComboFix sur votre ordinateur va commencer. Si votre connexion est lente, cela peut prendre quelques minutes. Lorsque le téléchargement de ComboFix est terminé, vous verrez sur votre Bureau une icône semblable à celle-ci:




    Icône de ComboFix

    Pour l'instant, ne lancez pas ComboFix car il reste quelques opérations préliminaires qui doivent être réalisées.

    Vous devriez maintenant installer la Console de Récupération Windows. La Console de Récupération Windows vous permettra de démarrer votre PC dans un mode spécial de récupération qui donnera à votre assistant la possibilité de vous aider si votre ordinateur rencontre des problèmes après une tentative de nettoyage de nuisibles. Si vous utilisez Windows XP et si vous possédez un CD Windows, vous pouvez suivre les instructions données dans l'un des tutoriels listés ci-dessous:

    How to install and use the Windows XP Recovery Console (en anglais)

    Installation de la console de récupération sur le disque (en français, sur Zebulon)

    Les utilisateurs de Windows Vista peuvent utiliser leur DVD Windows pour démarrer en mode Vista Recovery Environment (Environnement de réparation Vista).

    a b 8 Sécurité
    9 Janvier 2009 18:33:03

    Ne l'installe pas, ton cas ne le nécessite pas.
    10 Janvier 2009 17:38:27

    voici le rapport:


    ComboFix 09-01-08.01 - eden 2009-01-10 18:21:04.1 - NTFSx86
    Microsoft® Windows Vista™ Édition Intégrale 6.0.6001.1.1252.1.1036.18.2010.1105 [GMT 2:00]
    Lancé depuis: c:\users\eden\Desktop\ComboFix.exe
    * Un nouveau point de restauration a été créé
    .

    (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
    .

    C:\InfoSat.txt
    c:\program files\Spybot - Search & Destroy\TeaTimer.exe
    c:\users\eden\AppData\Roaming\drivers\downld
    c:\users\eden\AppData\Roaming\drivers\downld\1008843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\1024156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\1029265.exe
    c:\users\eden\AppData\Roaming\drivers\downld\1029578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\1085406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\1087968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\1089328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112002781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112002796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112060468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112063390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112064765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112175406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112208468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112208984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112209187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112271328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112271437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112290984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112292250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112292796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112293734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112294609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112295171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112342359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112343062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112343515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112352062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112360250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112361640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112362765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112405890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112406500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\112406640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\1250421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\1251281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\126810328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\126810343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\126903890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\126904984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\126905765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127011937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127057890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127058484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127058703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127117828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127118406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127118906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127135812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127137062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127137828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127138750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127139609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127140171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127197640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127198765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127199500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127212437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127255015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127256375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127257437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127311953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127312281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\127312437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\135125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\140781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\141714859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\141718359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\141846984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\141849531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\141852953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142332500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142687515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142689531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142689875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142837140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142838828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142838843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142869390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142871640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142872187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142873578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142874406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142875015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142928812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142930687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142931718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142940609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142986296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\142993031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\143015640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\143083421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\143084875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\143085093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\147609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\14851562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\14851578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\14859562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\14910093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\14911296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\14912125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\14956093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\14956109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15006406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15006859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15007046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15017312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15018218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15019078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15038625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15065734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15065906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15066062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15071921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15072625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15085609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15086671.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15087218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15088156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15088984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15089546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15137296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15138843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15139609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15140890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15141812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15142703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15155437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15156875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15158234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15159671.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15159937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15159953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15160421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15163453.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15163812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15164062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15168875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15168890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15198312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15207781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15208296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15208406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15218046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15219281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15219812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15220218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15221375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15221750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15237281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15260109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15260187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15260203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15266890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15267218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15267828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15270015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15270218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15271484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15278234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15299968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15300015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15306234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15326234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15327343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15327531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15328218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15330093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15346859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15347984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15348171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15348562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15349843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15350375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15351187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15352000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15352515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15352875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15354546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15355625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15364750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15368218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15368406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15381000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15382531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15392468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15394968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15395234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15401171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15402687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15403203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15404000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15404812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15405312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15408546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15409875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15410250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15411218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15413703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15413718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15420546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15421703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15422656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15424578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15428671.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15433421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15433921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15434734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15435421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15436390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15437234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15437812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15449984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15453843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15455406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15456156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15470984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15472062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15472828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15473609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15477468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15477984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15478296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15478453.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15481343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15482125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15482343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15486031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15486250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15486703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15487375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15487984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15488000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15489109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15489890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15496875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\155031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15509937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15510656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15510765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15513078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15514203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15514218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15516750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15517906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15519000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15549640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15551015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15551421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15551453.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15551703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15552093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15552593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15553234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15553500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15554140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15556250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15557234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15557359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\155625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15563562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15573984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15575109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15575890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15576968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15577875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15578531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15593453.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15596953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15597093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\156046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15621296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15625828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15626703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15630609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15631640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15632593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15636000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15650218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15650234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15665031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15665546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15665781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15709968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15711359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15711484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15723796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15724578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15725656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157487843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157487859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157494765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15753125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15754468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157566078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15756640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157575875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157582062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157625921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157960312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157960984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\157961171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158071562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158074328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158074468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158102296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158103468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158104125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158105281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158106390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158107015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158163765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158167796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158169312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158181562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158210312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158210796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158210984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158285375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158286078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\158286328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15840875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15840890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15865140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15868484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15868671.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15888421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15892875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15893593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15896500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15906468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\15907687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\16049328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\16053875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\16057421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\16115984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\16120109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\16121296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\16207328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\16208109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\16208453.exe
    c:\users\eden\AppData\Roaming\drivers\downld\163953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\167031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\167703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\168718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\171078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\172689625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\172690109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\172690125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\172778468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\172780125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\172781578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\172828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\172843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173056296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173057906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173058109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173173390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173173406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173173421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173202203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173204187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173204953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173207078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173208437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173209296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173289562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173290937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173291562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173303640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173352640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173352984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173353234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173446343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173448828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173449062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\173750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\175718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\175812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\176062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\176078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\180140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\182062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\187656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\190000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\192437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\193171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\193187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\195859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\195875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\197562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\220937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\223375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\224078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\226109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\226484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\227812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\228515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\228562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\229515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\231656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\233046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\233531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\236625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\237656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\238203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\238734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\239687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\240515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\241890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\243937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\244687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\245109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\246296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\250203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\252671.exe
    c:\users\eden\AppData\Roaming\drivers\downld\253234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\256390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\259125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\259171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\260515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\262875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\263765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\265140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\265718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\266421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\266843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\266859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\267171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\267296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\271468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\272781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\273171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\273234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\274968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\275843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\286718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\286765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\289750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\290843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\291437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29611546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29613390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\296796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29687921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29690703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29691734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\296968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29815078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29816609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29816812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29880640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29880656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\299109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29912500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29913890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29914234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29914250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29914531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29946703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29949531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29950281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29951687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29952750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\29953375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\299578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30020906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30025718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30027015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30033750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30039578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30041125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30061156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30061828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30062203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30069640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30069656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30076031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30078312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30082812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30103500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30104093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30104281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30114609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30114625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30141812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30158312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30158328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30174312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30175406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30175843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30206484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30208984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30209546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30210375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30214156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30214671.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30214812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30217656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30221484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\302296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30276859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30279234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30280125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30282406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30307375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30308250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30308453.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30382625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30382640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30388375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30388937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30389328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30396921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30399093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30400234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30400828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30401734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30402531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30403171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30424296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\304281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30432640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30438015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30453125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30454046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30454453.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30470984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30471234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30471328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30474781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30474796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\304781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30523000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30524187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30524765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\306062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30611640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30611656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30683796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30685000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30686125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30695359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30698375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30699546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30800546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30801203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30801531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\308656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30882187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30882203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30909843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30911343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30912203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30913312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30914218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30914812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30954187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30956687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30956890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30973906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30975109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30976093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30993875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30995500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\30996312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\309968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31048328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31048359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31048390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31053859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31054406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31054546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31113203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31117562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31117578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31119171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31127312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31130921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31132921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31136593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31187765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31189140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31189796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31191437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31198468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31199406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31255484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31261031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31262390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31283453.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31284921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31286640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31287187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31335015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31429656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31430187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31430500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31556531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31557187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31557359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31560531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31561703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31690640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31694875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\31696406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\323046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\324718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\324953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\325218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\327125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\327234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\328203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\343296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\345109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\345546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\346296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\346703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\346906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\347250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\348593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\349468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\351375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\353093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\353140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\363703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\365000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\365203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\370546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\372125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\372140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\375421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\376578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\376859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\377406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\379421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\380625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\382296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\383281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\383812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\389812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\390062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\392312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\393000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\393531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\393921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\394328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\394937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\395093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\395421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\395593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\395609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\396218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\396906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\397218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\397906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\398203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\398812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\398875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\404625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\405562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\408140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\409328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\410140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\426531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\427328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\427625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\427812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\428015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\429437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\433093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\433484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\435015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\435093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\436000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\444531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\445625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\445640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44685625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44686250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44686281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44695484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\446968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\447156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\447468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44841031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\448437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44845781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44847093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\448609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44875328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44876421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44876437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\448765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\448953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\448968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44928078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44928890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\449406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44983281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44985437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\44986265.exe
    c:\users\eden\AppData\Roaming\drivers\downld\449953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45021062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45021640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45022031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45060640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45061078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45061265.exe
    c:\users\eden\AppData\Roaming\drivers\downld\450781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45085734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45095234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45096812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45097218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45101734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45101968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45108781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45108796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45108812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45127843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45128875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45129437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45130296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45131156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\451312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45131656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45168390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45170375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45180593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45181171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45181625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45190515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45198812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45202312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45205078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45207593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45210328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45210437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45210515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45210625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45212078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45241156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45242062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45242593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45242687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45242890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45243843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45245531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45246828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45249015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45266062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45267890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45268953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45293406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45293812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45318593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45319937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45321078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45322125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45322359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45340484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45341406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45341640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45412703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45413703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\45414171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\455609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\459937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\461375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\461953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\462765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\463093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\463234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\463609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\464140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\464312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\464500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\464984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\465234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\467203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\468984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\469515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\470468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\471453.exe
    c:\users\eden\AppData\Roaming\drivers\downld\472000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\473296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\473484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\476421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\478484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\478796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\479046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\480921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\485968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\486718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\495640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\495984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\497281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\497609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\498359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\499031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\501531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\503359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\504828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\511812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\513609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\514218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\515546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\515562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\515781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\516218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\516343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\517062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\517843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\519062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\519687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\523125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\523375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\523953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\524078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\526265.exe
    c:\users\eden\AppData\Roaming\drivers\downld\534656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\536500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\537031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\537859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\538921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\539437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\541468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\546328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\546875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\547781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\548984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\549593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\549781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\551937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\552515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\553109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\553421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\553781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\553828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\553906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\554468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\554984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\557031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\557984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\569046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\569593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\569718.exe
    c:\users\eden\AppData\Roaming\drivers\downld\570734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\577000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\577437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\583312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\584562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\585062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\591421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59645468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59646906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59646921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59709234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59710625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59711421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59730859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59744578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59745109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59828171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59829468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59829703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59832875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59834515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59836203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59867265.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59890859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59892375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59892390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59912593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59914093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59914687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59915578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59916437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59916953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59966156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59967484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59968312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\59976984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60009093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60012125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60019671.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60063625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60065656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60065921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60228140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60228812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60229062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60307484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60307500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60307515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\603078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60335593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60337437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60338312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60339625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60340796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60341343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60400390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60403937.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60407437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\604156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60416531.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60448125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60448140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60448156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60502656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60503906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\60504125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\605828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\606031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\608984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\609000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\612593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\613734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\613859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\619796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\622468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\623000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\625046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\625421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\625859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\625890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\627031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\628000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\628328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\628578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\629125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\629984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\633046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\639125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\639218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\639312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\641703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\642796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\647156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\648390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\649296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\650625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\651093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\651312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\668687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\669640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\669750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\673640.exe
    c:\users\eden\AppData\Roaming\drivers\downld\678843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\681421.exe
    c:\users\eden\AppData\Roaming\drivers\downld\696015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\699140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\699218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\705828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\707078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\708093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\721406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\725109.exe
    c:\users\eden\AppData\Roaming\drivers\downld\726078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\728390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\731218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\732015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\733078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\734296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\735015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74468468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74468484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74527000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74528140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74529187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74573984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74576828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74663859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74664406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74664625.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74762812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74762828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74813312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74815328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74816031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74816968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74817796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74818359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74880812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74885546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74886484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74900046.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74906843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74906859.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74937484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74938390.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74969343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74970921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\74972000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\750484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\75113812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\75116062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\75116500.exe
    c:\users\eden\AppData\Roaming\drivers\downld\752062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\752218.exe
    c:\users\eden\AppData\Roaming\drivers\downld\753796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\756203.exe
    c:\users\eden\AppData\Roaming\drivers\downld\756328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\759515.exe
    c:\users\eden\AppData\Roaming\drivers\downld\760781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\760890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\764593.exe
    c:\users\eden\AppData\Roaming\drivers\downld\766687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\768953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\783890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\787906.exe
    c:\users\eden\AppData\Roaming\drivers\downld\792156.exe
    c:\users\eden\AppData\Roaming\drivers\downld\794656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\796031.exe
    c:\users\eden\AppData\Roaming\drivers\downld\81432343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\81474750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\815140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\815968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\81906187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\81907000.exe
    c:\users\eden\AppData\Roaming\drivers\downld\81907234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82007812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82007828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82036734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82038125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82038812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82039750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82040796.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82042953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82101484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82102656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82104437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82113015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82433875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82433890.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82500968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82502093.exe
    c:\users\eden\AppData\Roaming\drivers\downld\82502328.exe
    c:\users\eden\AppData\Roaming\drivers\downld\832812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\852828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\853750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\853765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\854656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\855281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\855484.exe
    c:\users\eden\AppData\Roaming\drivers\downld\856468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\857125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\886359.exe
    c:\users\eden\AppData\Roaming\drivers\downld\892250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\892671.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89520921.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89521734.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89577812.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89579187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89579984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89597968.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89637265.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89638546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89638953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89701578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89703140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89722187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89723656.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89724187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89725078.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89725875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89726375.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89779703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89781187.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89782015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89788015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89937953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89938312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89987953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89989015.exe
    c:\users\eden\AppData\Roaming\drivers\downld\89989125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\924296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\938562.exe
    c:\users\eden\AppData\Roaming\drivers\downld\943750.exe
    c:\users\eden\AppData\Roaming\drivers\downld\950343.exe
    c:\users\eden\AppData\Roaming\drivers\downld\954843.exe
    c:\users\eden\AppData\Roaming\drivers\downld\955703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\96905312.exe
    c:\users\eden\AppData\Roaming\drivers\downld\96906171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\96983406.exe
    c:\users\eden\AppData\Roaming\drivers\downld\96985781.exe
    c:\users\eden\AppData\Roaming\drivers\downld\96987234.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97097875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97234953.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97235984.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97236296.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97313062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97315437.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97337281.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97338703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97339250.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97340171.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97341140.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97341765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97392875.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97394703.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97395765.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97413062.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97547578.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97548828.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97549671.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97597671.exe
    c:\users\eden\AppData\Roaming\drive
    10 Janvier 2009 17:46:36

    voici la suite du rapport(aparament trop gros pour rentrer dans un post)



    c:\users\eden\AppData\Roaming\drivers\downld\97599468.exe
    c:\users\eden\AppData\Roaming\drivers\downld\97599609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\9847125.exe
    c:\users\eden\AppData\Roaming\drivers\downld\9849687.exe
    c:\users\eden\AppData\Roaming\drivers\downld\9908609.exe
    c:\users\eden\AppData\Roaming\drivers\downld\9911546.exe
    c:\users\eden\AppData\Roaming\drivers\downld\9915062.exe
    c:\users\eden\AppData\Roaming\drivers\srosa2.sys
    c:\users\eden\AppData\Roaming\drivers\winupgro.exe

    .
    ((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
    .

    -------\Legacy_SK9OU0S
    -------\Legacy_SROSA
    -------\Service_sK9Ou0s


    ((((((((((((((((((((((((((((( Fichiers créés du 2008-12-10 au 2009-01-10 ))))))))))))))))))))))))))))))))))))
    .

    2009-01-05 09:25 . 2009-01-05 09:25 <REP> d-------- c:\users\All Users\WindowsSearch
    2009-01-05 09:25 . 2009-01-05 09:25 <REP> d-------- c:\progra~2\WindowsSearch
    2009-01-04 22:57 . 2009-01-04 22:57 <REP> d-------- c:\users\All Users\Lauyan
    2009-01-04 22:57 . 2009-01-04 22:57 <REP> d-------- c:\progra~2\Lauyan
    2009-01-04 20:00 . 2009-01-06 21:49 <REP> d-------- c:\program files\FindyKill
    2009-01-04 19:55 . 2009-01-04 19:55 <REP> d-------- c:\program files\Alcohol Soft
    2009-01-04 14:28 . 2009-01-04 14:28 717,296 --a------ c:\windows\System32\drivers\sptd.sys
    2009-01-04 09:50 . 2009-01-04 09:50 <REP> d-------- c:\program files\CCleaner
    2009-01-01 00:19 . 2009-01-01 00:20 <REP> d-------- c:\program files\Lauyan
    2008-12-31 15:59 . 2009-01-10 18:24 <REP> d--h----- c:\users\eden\AppData\Roaming\drivers
    2008-12-20 21:56 . 2008-12-20 21:56 <REP> d-------- c:\program files\UltraISO
    2008-12-20 21:56 . 2008-12-20 21:56 <REP> d-------- c:\program files\Common Files\EZB Systems
    2008-12-17 16:51 . 2009-01-10 18:20 <REP> d-------- c:\users\eden\Tracing
    2008-12-17 14:18 . 2008-12-17 14:18 <REP> d-------- c:\program files\Microsoft
    2008-12-17 14:17 . 2008-12-17 14:17 <REP> d-------- c:\program files\Windows Live SkyDrive
    2008-12-17 14:10 . 2008-12-17 14:10 <REP> d-------- c:\program files\Common Files\Windows Live
    2008-12-16 20:34 . 2008-12-16 20:34 <REP> d-------- c:\program files\MagicISO
    2008-12-12 10:48 . 2009-01-08 00:29 <REP> d-------- C:\Downloads
    2008-12-12 10:47 . 2008-12-12 10:47 <REP> d-------- c:\users\eden\AppData\Roaming\FlashGet
    2008-12-12 10:47 . 2008-12-12 10:47 <REP> d-------- c:\program files\FlashGet

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2009-01-10 16:27 --------- d-----w c:\program files\Spybot - Search & Destroy
    2009-01-09 10:59 --------- d-----w c:\progra~2\Spybot - Search & Destroy
    2009-01-05 07:51 --------- d-----w c:\program files\eMule
    2009-01-03 22:39 --------- d-----w c:\program files\MediaCoder
    2009-01-03 16:47 --------- d-----w c:\program files\Microsoft Games
    2008-12-17 12:18 --------- d-----w c:\program files\Windows Live
    2008-12-10 18:10 --------- d-----w c:\users\eden\AppData\Roaming\DivX
    2008-12-09 18:23 --------- d-----w c:\users\eden\AppData\Roaming\It's Real Poker
    2008-12-09 11:36 --------- d-----w c:\program files\DivX
    2008-12-09 11:25 --------- d-----w c:\program files\It's Real Poker
    2008-12-08 19:18 --------- d-----w c:\program files\WinHTTrack
    2008-12-04 22:38 --------- d-----w c:\program files\Common Files\AVSMedia
    2008-12-04 22:38 --------- d-----w c:\program files\AVS4YOU
    2008-12-04 16:43 --------- d-----w c:\users\eden\AppData\Roaming\AVS4YOU
    2008-12-04 16:43 --------- d-----w c:\progra~2\AVS4YOU
    2008-12-04 16:41 --------- d-----w c:\users\eden\AppData\Roaming\Sony Setup
    2008-12-04 16:41 --------- d-----w c:\program files\Sony Setup
    2008-12-01 21:44 --------- d-----w c:\users\eden\AppData\Roaming\Nokia
    2008-11-14 09:40 --------- d-----w c:\program files\UltraVNC
    2008-11-14 09:35 --------- d-----w c:\program files\RealVNC
    2008-11-13 08:24 --------- d-----w c:\program files\Navilog1
    2008-11-12 20:51 --------- d-----w c:\program files\Common Files\Adobe
    2008-11-12 10:36 --------- d-----w c:\progra~2\Microsoft Help
    2008-11-11 19:10 --------- d-----w c:\program files\Java
    2008-11-10 18:16 --------- d-----w c:\program files\trend micro
    2008-05-25 09:20 174 --sha-w c:\program files\desktop.ini
    2007-12-20 14:04 16,384 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
    2007-12-20 14:04 32,768 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
    2007-12-20 14:04 16,384 --sha-w c:\windows\ServiceProfiles\LocalService\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
    .

    ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
    REGEDIT4

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-19 1233920]
    "ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-19 125952]
    "ccleaner"="c:\program files\CCleaner\CCleaner.exe" [2008-12-19 1434864]
    "msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2008-12-02 3882312]
    "PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe" [2008-10-02 1124352]
    "Nokia.PCSync"="c:\program files\Nokia\Nokia PC Suite 7\PCSync2.exe" [2008-06-17 1249280]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "atchk"="c:\program files\Intel\AMT\atchk.exe" [2007-06-28 404248]
    "avgnt"="c:\program files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" [2009-01-08 266497]
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792]
    "WinVNC"="c:\program files\UltraVNC\WinVNC.exe" [2006-07-17 364544]
    "Flashget"="c:\program files\FlashGet\flashget.exe" [2007-09-25 2007088]
    "RtHDVCpl"="RtHDVCpl.exe" [2007-06-28 c:\windows\RtHDVCpl.exe]

    c:\progra~2\MICROS~1\Windows\STARTM~1\Programs\Startup\
    BTTray.lnk - c:\program files\Belkin\Bluetooth Software\BTTray.exe [2007-02-27 715568]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "EnableUIADesktopToggle"= 0 (0x0)

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
    "msacm.divxa32"= divxa32.acm
    "vidc.xvid"= xvid.dll

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
    BootExecute REG_MULTI_SZ autocheck autochk *\0OODBS

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd]
    --a------ 2006-11-24 20:20 622592 c:\program files\Brother\Brmfcmon\BrMfcWnd.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3]
    --a------ 2006-07-19 14:51 65536 c:\program files\Brother\ControlCenter3\BrCtrCen.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
    --a------ 2008-12-02 22:41 3882312 c:\program files\Windows Live\Messenger\msnmsgr.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]
    --a------ 2007-12-03 14:21 2213160 c:\program files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
    --a------ 2007-03-01 14:57 153136 c:\program files\Common Files\Nero\Lib\NeroCheck.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PPort9reminder]
    --a------ 2004-10-27 09:04 729088 c:\program files\ScanSoft\PaperPort\WebEreg\Ereg.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSBkgdUpdate]
    -ra------ 2003-10-14 10:22 155648 c:\program files\Common Files\ScanSoft Shared\SSBkgdUpdate\SSBkgdUpdate.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
    --a------ 2007-12-16 01:33 171448 c:\program files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Veoh]
    --a------ 2008-08-28 09:18 3660848 c:\program files\Veoh Networks\Veoh\VeohClient.exe

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
    "Veoh"="c:\program files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
    "IndexSearch"=c:\program files\ScanSoft\PaperPort\IndexSearch.exe
    "PaperPort PTD"=c:\program files\ScanSoft\PaperPort\pptd40nt.exe
    "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    "BtTray"="c:\program files\IVT Corporation\BlueSoleil\BtTray.exe"

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc\S-1-5-21-451587228-3902340606-587438435-1000]
    "EnableNotificationsRef"=dword:00000003

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\FirewallRules]
    "{3A55B5F2-CB00-45BC-91AF-A615971B52CF}"= UDP:c:\program files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe:BlueSoleilCS
    "{5866A35D-1271-46A4-B501-8A236966C1AC}"= TCP:c:\program files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe:BlueSoleilCS
    "TCP Query User{FBF999EE-4A72-4C2E-9577-0890D1A91DDE}c:\\program files\\emule\\emule.exe"= UDP:c:\program files\emule\emule.exe:eMule
    "UDP Query User{47C40E5E-5B46-4595-8C6D-617769DB5DCA}c:\\program files\\emule\\emule.exe"= TCP:c:\program files\emule\emule.exe:eMule
    "TCP Query User{151CA509-D7D6-4CAB-8B53-8289ED2CA452}c:\\program files\\veoh networks\\veoh\\veohclient.exe"= UDP:c:\program files\veoh networks\veoh\veohclient.exe:Veoh Client
    "UDP Query User{18F4528B-D332-4AFA-813F-758047A290A9}c:\\program files\\veoh networks\\veoh\\veohclient.exe"= TCP:c:\program files\veoh networks\veoh\veohclient.exe:Veoh Client
    "TCP Query User{5AC02D23-0297-47A9-A521-B18EEDB4D3C2}c:\\program files\\tvants\\tvants.exe"= UDP:c:\program files\tvants\tvants.exe:TVAnts
    "UDP Query User{A378F172-58A0-4DA3-AD45-DF25012C3F3A}c:\\program files\\tvants\\tvants.exe"= TCP:c:\program files\tvants\tvants.exe:TVAnts
    "TCP Query User{746383E1-6B2C-4A87-A8ED-19A104D5417E}c:\\program files\\sopcast\\adv\\sopadver.exe"= UDP:c:\program files\sopcast\adv\sopadver.exe:SopCast Adver
    "UDP Query User{3F90EF59-53CA-4977-AAA2-71591482198A}c:\\program files\\sopcast\\adv\\sopadver.exe"= TCP:c:\program files\sopcast\adv\sopadver.exe:SopCast Adver
    "TCP Query User{2EBD8287-7CA7-49AF-A5FC-BBA9D5ED67A8}c:\\program files\\sopcast\\sopcast.exe"= UDP:c:\program files\sopcast\sopcast.exe:SopCast Main Application
    "UDP Query User{960B4AF4-07E8-4D18-8AB6-A6B874CEBF43}c:\\program files\\sopcast\\sopcast.exe"= TCP:c:\program files\sopcast\sopcast.exe:SopCast Main Application
    "TCP Query User{4B98BC94-D02C-422B-94A1-5A5470F85E1C}c:\\program files\\realvnc\\vncviewer.exe"= UDP:c:\program files\realvnc\vncviewer.exe:vncviewer
    "UDP Query User{B17DB578-3D7E-4036-B956-E8BF20B6C9F8}c:\\program files\\realvnc\\vncviewer.exe"= TCP:c:\program files\realvnc\vncviewer.exe:vncviewer
    "TCP Query User{403AE6A8-DEDF-4B37-ABB3-AB02A5CEB233}c:\\program files\\proxomitron naoko-4\\proxomitron.exe"= UDP:c:\program files\proxomitron naoko-4\proxomitron.exe:The Proxomitron
    "UDP Query User{76CE742C-B50C-493B-830F-AC2E0D4D21D2}c:\\program files\\proxomitron naoko-4\\proxomitron.exe"= TCP:c:\program files\proxomitron naoko-4\proxomitron.exe:The Proxomitron
    "TCP Query User{202A2203-562F-4345-BD9A-AB198050AE71}c:\\program files\\realvnc\\vnc4\\winvnc4.exe"= UDP:c:\program files\realvnc\vnc4\winvnc4.exe:VNC Server Free Edition for Win32
    "UDP Query User{91F4E434-C0BD-406A-B149-E80B85B0043F}c:\\program files\\realvnc\\vnc4\\winvnc4.exe"= TCP:c:\program files\realvnc\vnc4\winvnc4.exe:VNC Server Free Edition for Win32
    "TCP Query User{220323D4-91C5-47CA-98BB-E42D15752DFF}c:\\program files\\mozilla firefox\\firefox.exe"= UDP:c:\program files\mozilla firefox\firefox.exe:Firefox
    "UDP Query User{0F89F54D-66DC-4397-B911-A629C9CA7CB1}c:\\program files\\mozilla firefox\\firefox.exe"= TCP:c:\program files\mozilla firefox\firefox.exe:Firefox
    "TCP Query User{9C303BB2-B4F8-4356-B91F-650DC7B6B803}c:\\program files\\flashget\\flashget.exe"= UDP:c:\program files\flashget\flashget.exe:FlashGet
    "UDP Query User{17D775B6-6AB9-45FF-AF18-BAB5628446A0}c:\\program files\\flashget\\flashget.exe"= TCP:c:\program files\flashget\flashget.exe:FlashGet
    "TCP Query User{593A4E7F-897A-47A4-B035-9EE045D119FA}c:\\users\\eden\\appdata\\local\\temp\\rar$ex00.703\\mcoview.exe"= UDP:c:\users\eden\appdata\local\temp\rar$ex00.703\mcoview.exe:mcoview.exe
    "UDP Query User{9835B823-E265-4FA3-9F30-2F65EAD791E7}c:\\users\\eden\\appdata\\local\\temp\\rar$ex00.703\\mcoview.exe"= TCP:c:\users\eden\appdata\local\temp\rar$ex00.703\mcoview.exe:mcoview.exe

    R0 BtHidBus;Bluetooth HID Bus Service;c:\windows\System32\drivers\BtHidBus.sys [2008-07-31 20616]
    R3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\System32\drivers\IvtBtBus.sys [2008-07-02 26248]
    R4 BsMobileCS;BsMobileCS;c:\program files\IVT Corporation\BlueSoleil\BsMobileCS.exe [2008-08-01 143467]
    R4 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2008-02-14 809296]
    R4 UNS;Intel(R) Active Management Technology User Notification Service;c:\program files\Intel\AMT\UNS.exe [2007-12-15 2554648]
    S0 OemBiosDevice;Royalty OEM Bios Extension;c:\windows\System32\drivers\royal.sys [2008-05-03 240128]
    S3 CrystalSysInfo;CrystalSysInfo;c:\program files\MediaCoder\SysInfo.sys [2007-09-25 15152]
    S3 EverestDriver;Lavalys EVEREST Kernel Driver;c:\program files\Lavalys\EVEREST Ultimate Edition\kerneld.wnt [2008-06-26 23152]
    S4 AcronisOSSReinstallSvc;Acronis OS Selector Reinstall Service;c:\program files\Common Files\Acronis\Partition Suite\oss_reinstall_svc.exe [2007-03-13 2235793]

    --- Other Services/Drivers In Memory ---

    *Deregistered* - sptd

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    bthsvcs REG_MULTI_SZ BthServ

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f2483af8-ab59-11dc-9522-806e6f6e6963}]
    \shell\AutoRun\command - E:\setup.exe

    [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{7070D8E0-650A-46b3-B03C-9497582E6A74}]
    %SystemRoot%\system32\soundschemes.exe /AddRegistration

    [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{B3688A53-AB2A-4b1d-8CEF-8F93D8C51C24}]
    %SystemRoot%\system32\soundschemes2.exe /AddRegistration
    .
    - - - - ORPHELINS SUPPRIMES - - - -

    WebBrowser-{EEE6C35B-6118-11DC-9C72-001320C79847} - (no file)
    HKCU-Run-SpybotSD TeaTimer - c:\program files\Spybot - Search & Destroy\TeaTimer.exe
    MSConfigStartUp-TkBellExe - c:\program files\Common Files\Real\Update_OB\realsched.exe


    .
    ------- Examen supplémentaire -------
    .
    uStart Page = hxxp://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8
    uInternet Settings,ProxyServer = 91.121.65.22:8080
    uInternet Settings,ProxyOverride = local
    IE: &Tout télécharger avec FlashGet - c:\program files\FlashGet\jc_all.htm
    IE: &Télécharger avec FlashGet - c:\program files\FlashGet\jc_link.htm
    IE: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
    IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
    IE: Envoyer au périphérique &Bluetooth... - c:\program files\Belkin\Bluetooth Software\btsendto_ie.htm
    IE: Envoyer l'&image au périphérique Bluetooth... - c:\program files\Belkin\Bluetooth Software\btsendto_ie_ctx.htm
    IE: Envoyer via Bluetooth - c:\program files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
    IE: Envoyer via message(&M)... - c:\program files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
    TCP: {11B32CDB-F0CE-48D7-BC86-8BA49E075EE5} = 192.115.106.35 62.219.186.7

    c:\windows\Downloaded Program Files\InstallerControl.dll - O16 -: CabBuilder
    hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
    c:\windows\Downloaded Program Files\OSD608.OSD
    FF - ProfilePath - c:\users\eden\AppData\Roaming\Mozilla\Firefox\Profiles\4k5oo6nq.default\
    FF - prefs.js: browser.search.selectedEngine - Google
    FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=utf-8&fr=megaup&p=
    FF - component: c:\users\eden\AppData\Roaming\Mozilla\Firefox\Profiles\4k5oo6nq.default\extensions\bkmrksync@nokia.com\components\BkMrkExt.dll
    FF - plugin: c:\program files\Microsoft Silverlight\2.0.31005.0\npctrl.1.0.30109.0.dll
    FF - plugin: c:\program files\Microsoft Silverlight\2.0.31005.0\npctrl.dll
    FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
    FF - plugin: c:\program files\Veoh Networks\Veoh\Plugins\noreg\NPVeohVersion.dll
    .

    **************************************************************************

    catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2009-01-10 18:29:34
    Windows 6.0.6001 Service Pack 1 NTFS

    Recherche de processus cachés ...

    Recherche d'éléments en démarrage automatique cachés ...

    Recherche de fichiers cachés ...

    Scan terminé avec succès
    Fichiers cachés: 0

    **************************************************************************
    .
    --------------------- DLLs chargées dans les processus actifs ---------------------

    - - - - - - - > 'Explorer.exe'(3132)
    c:\program files\FlashGet\fgmgr.dll
    c:\windows\system32\btmmhook.dll
    c:\windows\system32\BsMobileSDK.dll
    c:\windows\system32\BsLangInDepRes.dll
    c:\windows\system32\Bs2Res.dll
    c:\windows\system32\btncopy.dll
    c:\program files\Nokia\Nokia PC Suite 7\phonebrowser.dll
    c:\program files\Nokia\Nokia PC Suite 7\NGSCM.DLL
    c:\program files\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_fre.nlr
    c:\program files\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
    .
    ------------------------ Autres processus actifs ------------------------
    .
    c:\windows\System32\audiodg.exe
    c:\program files\Intel\AMT\atchksrv.exe
    c:\program files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
    c:\program files\Bonjour\mDNSResponder.exe
    c:\program files\Belkin\Bluetooth Software\bin\btwdins.exe
    c:\program files\Intel\AMT\LMS.exe
    c:\program files\Common Files\microsoft shared\VS7DEBUG\MDM.EXE
    c:\program files\Nero\Nero8\Nero BackItUp\NBService.exe
    c:\program files\IVT Corporation\BlueSoleil\BsHelpCS.exe
    c:\windows\System32\UI0Detect.exe
    c:\windows\System32\conime.exe
    c:\windows\ehome\ehmsas.exe
    c:\program files\PC Connectivity Solution\ServiceLayer.exe
    c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe
    c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
    c:\program files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
    c:\program files\Belkin\Bluetooth Software\BTStackServer.exe
    c:\program files\Common Files\Nokia\MPAPI\MPAPI3s.exe
    c:\program files\Windows Media Player\wmpnscfg.exe
    c:\program files\Windows Media Player\wmpnetwk.exe
    c:\windows\System32\UI0Detect.exe
    c:\windows\servicing\TrustedInstaller.exe
    .
    **************************************************************************
    .
    Heure de fin: 2009-01-10 18:36:47 - La machine a redémarré
    ComboFix-quarantined-files.txt 2009-01-10 16:36:31

    Avant-CF: 157 401 194 496 octets libres
    Après-CF: 157,384,097,792 octets libres

    1377 --- E O F --- 2008-11-24 17:58:11
    a b 8 Sécurité
    11 Janvier 2009 15:29:42

    Tu peux poster un rapport Hijackthis maintenant ?
    11 Janvier 2009 16:03:06

    oui mais j'ai du le retelecharger car l'ancien ne marcher toujours pas!!voici le rapport:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 17:00:09, on 11/01/2009
    Platform: Windows Vista SP1 (WinNT 6.00.1905)
    MSIE: Internet Explorer v7.00 (7.00.6001.18000)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Windows\RtHDVCpl.exe
    C:\Program Files\Intel\AMT\atchk.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Windows\ehome\ehtray.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
    C:\Program Files\Nokia\Nokia PC Suite 7\PcSync2.exe
    C:\Program Files\Windows Sidebar\sidebar.exe
    C:\Program Files\Belkin\Bluetooth Software\BTTray.exe
    C:\Program Files\Belkin\Bluetooth Software\BtStackServer.exe
    C:\Windows\system32\UI0Detect.exe
    C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
    C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\Program Files\Windows Live\Contacts\wlcomm.exe
    C:\Windows\system32\wuauclt.exe
    C:\Windows\system32\conime.exe
    C:\Windows\system32\taskeng.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\FlashGet\flashget.exe
    C:\Downloads\HiJackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=...
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 91.121.65.22:8080
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
    O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
    O4 - HKLM\..\Run: [atchk] "C:\Program Files\Intel\AMT\atchk.exe"
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min /nosplash
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [WinVNC] "C:\Program Files\UltraVNC\WinVNC.exe" -servicehelper
    O4 - HKLM\..\Run: [Flashget] C:\Program Files\FlashGet\flashget.exe /min
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [PC Suite Tray] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray
    O4 - HKCU\..\Run: [Nokia.PCSync] "C:\Program Files\Nokia\Nokia PC Suite 7\PCSync2.exe" /NoDialog
    O4 - Global Startup: BTTray.lnk = ?
    O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
    O8 - Extra context menu item: &Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
    O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm
    O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie_ctx.htm
    O8 - Extra context menu item: Envoyer via Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
    O8 - Extra context menu item: Envoyer via message(&M)... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~3.0_0\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~1\Java\JRE16~3.0_0\bin\ssv.dll
    O9 - Extra button: Run WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
    O9 - Extra 'Tools' menuitem: Launch WinHTTrack - {36ECAF82-3300-8F84-092E-AFF36D6C7040} - C:\Program Files\WinHTTrack\WinHTTrackIEBar.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MIC273~1\Office12\REFIEBAR.DLL
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Belkin\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
    O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\FlashGet.exe
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O13 - Gopher Prefix:
    O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/Install...
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab
    O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986....
    O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUpload...
    O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
    O16 - DPF: {A903E5AB-C67E-40FB-94F1-E1305982F6E0} (KooPlayer Control) - http://www.tvkoo.com/update/UKooPlayer.ocx
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.ca...
    O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab57213....
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPACl...
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
    O17 - HKLM\System\CCS\Services\Tcpip\..\{11B32CDB-F0CE-48D7-BC86-8BA49E075EE5}: NameServer = 192.115.106.35 62.219.186.7
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Windows\system32\skype4com.dll
    O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
    O23 - Service: Acronis OS Selector Reinstall Service (AcronisOSSReinstallSvc) - Unknown owner - C:\Program Files\Common Files\Acronis\Partition Suite\oss_reinstall_svc.exe
    O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Intel(R) Active Management Technology System Status Service (atchksrv) - Intel Corporation - C:\Program Files\Intel\AMT\atchksrv.exe
    O23 - Service: BlueSoleilCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
    O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: BsHelpCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
    O23 - Service: BsMobileCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\Belkin\Bluetooth Software\bin\btwdins.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: Intel(R) Active Management Technology Local Management Service (LMS) - Intel - C:\Program Files\Intel\AMT\LMS.exe
    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
    O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: Intel(R) Active Management Technology User Notification Service (UNS) - Intel - C:\Program Files\Intel\AMT\UNS.exe
    O23 - Service: VNC Server (winvnc) - www.ultravnc.fr - C:\Program Files\UltraVNC\WinVNC.exe

    --
    End of file - 10858 bytes
    a b 8 Sécurité
    12 Janvier 2009 17:04:40

    Ton pc se comporte mieux ?
    12 Janvier 2009 21:40:15

    il ne s'eteint plus en tout cas pour l'instant!mais je le trouve toujours plus lent qu'avant et j'ai toujours plus d antivir ni de protection permanente de spybot!!!
    j'ai toujours le message de:
    COM Surrogate a cesse de fonctionner
    voila tu en pense quoi toi de ton coter?
    a b 8 Sécurité
    13 Janvier 2009 12:58:20

    Pour Antivir et Spybot, il suffit de les réinstaller.
    Et le reste, ce n'est pas lié à une infection pour moi.
    13 Janvier 2009 17:21:49

    donc si j'ai bien compris il n'y as plus de trace de virus sur mon ordi tout est parti???je te reposte un rapport hijacthis quand meme???en tous cas merci beaucoup!!
    a b 8 Sécurité
    13 Janvier 2009 21:05:17

    Pas besoin d'un nouveau rapport.
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS