Virus trojan vundo, comment réparer?
Résolu/Fermé
steveun
Messages postés
24
Date d'inscription
lundi 21 juillet 2008
Statut
Membre
Dernière intervention
18 juin 2009
-
31 déc. 2008 à 10:36
steveun Messages postés 24 Date d'inscription lundi 21 juillet 2008 Statut Membre Dernière intervention 18 juin 2009 - 2 janv. 2009 à 21:23
steveun Messages postés 24 Date d'inscription lundi 21 juillet 2008 Statut Membre Dernière intervention 18 juin 2009 - 2 janv. 2009 à 21:23
A voir également:
- Virus trojan vundo, comment réparer?
- Reparer fichier rar corrompu gratuit - Télécharger - Compression & Décompression
- Actual RAR Repair - Télécharger - Compression & Décompression
- Réparer ppt en ligne gratuit - Télécharger - Suite bureautique
- Réparer fichier powerpoint endommagé gratuit - Télécharger - Récupération de données
- Réparer fichier word - Guide
5 réponses
thugwise23
Messages postés
626
Date d'inscription
dimanche 17 juin 2007
Statut
Membre
Dernière intervention
31 mai 2011
76
31 déc. 2008 à 10:43
31 déc. 2008 à 10:43
Bonjour,
Il te suffit de suivre ce qu'ils ont fait ici => http://www.commentcamarche.net/forum/affich 5075679 virus trojan vundo tout est expliqué avec le tuto en vidéo.
Courage A+
Il te suffit de suivre ce qu'ils ont fait ici => http://www.commentcamarche.net/forum/affich 5075679 virus trojan vundo tout est expliqué avec le tuto en vidéo.
Courage A+
Utilisateur anonyme
31 déc. 2008 à 10:58
31 déc. 2008 à 10:58
Salut, tu vas telecharger hijackthis sur ton bureau et le renommer : http://www.trendsecure.com/portal/en-US/tools/Security_tools/hijackthis >> pour le renommer, fais un clic droit sur l'icone de ton bureau '' hijackthis.exe'' ( celle avec le ' exe') et renomme le en klo.exe par ex. Ensuite, fermes tous les programmes en cours et double-clique sur hijackthis et executes le >> clic sur '' Do a scan and save a logfile'' >> le rapport s'ouvre sur le bloc-note, enregistres et postes le...
steveun
Messages postés
24
Date d'inscription
lundi 21 juillet 2008
Statut
Membre
Dernière intervention
18 juin 2009
1
31 déc. 2008 à 13:03
31 déc. 2008 à 13:03
voila le rapport hijackthis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:01:37, on 31/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\WINDOWS\fxstaller.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\PROGRA~1\MICROS~4\rapimgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Mozilla Firefox\firefox.exe
c:\program files\logitech\quickcam\lu\lulnchr.exe
c:\program files\logitech\quickcam\lu\LogitechUpdate.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Documents and Settings\FLORIANE\Bureau\klo.exe.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/search?hl=fr&q=kj+&meta=&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {e097e6a9-23d2-4574-8141-5213f4340153} - C:\WINDOWS\system32\wakozawa.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [Windows UDP Control Center] fxstaller.exe
O4 - HKLM\..\Run: [wukovuhafe] Rundll32.exe "C:\WINDOWS\system32\lulakodu.dll",s
O4 - HKLM\..\Run: [480b4271] rundll32.exe "C:\WINDOWS\system32\supilime.dll",b
O4 - HKLM\..\Run: [CPM4b3871ed] Rundll32.exe "c:\windows\system32\legidonu.dll",a
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKLM\..\Policies\Explorer\Run: [dlnbbigguy] C:\WINDOWS\system\bigguy081220.exe
O4 - HKLM\..\Policies\Explorer\Run: [360Safi] C:\WINDOWS\system32360Safi.exe
O4 - HKUS\S-1-5-19\..\Run: [wukovuhafe] Rundll32.exe "C:\WINDOWS\system32\lulakodu.dll",s (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [wukovuhafe] Rundll32.exe "C:\WINDOWS\system32\lulakodu.dll",s (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by15fd.bay15.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab55579.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O18 - Protocol: compta - {365B8213-2402-48CF-9907-A4E4A757DE38} - C:\isacopgc\coNetIE.ocx
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\system32\pumotozi.dll c:\windows\system32\legidonu.dll
O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\legidonu.dll
O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\legidonu.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Service Framework McAfee (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:01:37, on 31/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\WINDOWS\fxstaller.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\PROGRA~1\MICROS~4\rapimgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Mozilla Firefox\firefox.exe
c:\program files\logitech\quickcam\lu\lulnchr.exe
c:\program files\logitech\quickcam\lu\LogitechUpdate.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Documents and Settings\FLORIANE\Bureau\klo.exe.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/search?hl=fr&q=kj+&meta=&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {e097e6a9-23d2-4574-8141-5213f4340153} - C:\WINDOWS\system32\wakozawa.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [Windows UDP Control Center] fxstaller.exe
O4 - HKLM\..\Run: [wukovuhafe] Rundll32.exe "C:\WINDOWS\system32\lulakodu.dll",s
O4 - HKLM\..\Run: [480b4271] rundll32.exe "C:\WINDOWS\system32\supilime.dll",b
O4 - HKLM\..\Run: [CPM4b3871ed] Rundll32.exe "c:\windows\system32\legidonu.dll",a
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKLM\..\Policies\Explorer\Run: [dlnbbigguy] C:\WINDOWS\system\bigguy081220.exe
O4 - HKLM\..\Policies\Explorer\Run: [360Safi] C:\WINDOWS\system32360Safi.exe
O4 - HKUS\S-1-5-19\..\Run: [wukovuhafe] Rundll32.exe "C:\WINDOWS\system32\lulakodu.dll",s (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [wukovuhafe] Rundll32.exe "C:\WINDOWS\system32\lulakodu.dll",s (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user')
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper200711281.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by15fd.bay15.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab55579.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O18 - Protocol: compta - {365B8213-2402-48CF-9907-A4E4A757DE38} - C:\isacopgc\coNetIE.ocx
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\system32\pumotozi.dll c:\windows\system32\legidonu.dll
O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\legidonu.dll
O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\legidonu.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Service Framework McAfee (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
Utilisateur anonyme
31 déc. 2008 à 13:18
31 déc. 2008 à 13:18
Telecharges Malwarebytes : http://www.malwarebytes.org/mbam/program/mbam-setup.exe Mbam se met à jour automatiquement à la fin du telechargement, laisses le faire (- important) Redemarre ton pc en mode sans echec ( tu tapotes sur la touche F8 de ton pc au demarrage de celui-ci, un ecran noir va apparaitre avec plusieurs choix, choisis --> mode sans echec et valides par la touche '' Entrée'' de ton clavier)... Une fois dans ce mode, relances Malwarebytes et executes un examen complet du pc, ne touche à rien pendant le scan, à la fin --> un rapport est généré, postes le stp...
steveun
Messages postés
24
Date d'inscription
lundi 21 juillet 2008
Statut
Membre
Dernière intervention
18 juin 2009
1
1 janv. 2009 à 19:02
1 janv. 2009 à 19:02
bonjour Feelgood1,
J'ai suivi vos instructions et voici le rapport de mbam:
Malwarebytes' Anti-Malware 1.31
Database version: 1589
Windows 5.1.2600 Service Pack 3
01/01/2009 18:48:47
mbam-log-2009-01-01 (18-48-32).txt
Scan type: Full Scan (C:\|H:\|I:\|J:\|K:\|)
Objects scanned: 195830
Time elapsed: 3 hour(s), 13 minute(s), 17 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 1
Registry Keys Infected: 106
Registry Values Infected: 4
Registry Data Items Infected: 5
Folders Infected: 0
Files Infected: 294
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
C:\WINDOWS\system32\pumotozi.dll (Trojan.Vundo.H) -> No action taken.
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e097e6a9-23d2-4574-8141-5213f4340153} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{e097e6a9-23d2-4574-8141-5213f4340153} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{e097e6a9-23d2-4574-8141-5213f4340153} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\instkey (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\auto.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AutoRun.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Discovery.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\guangd.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NAVSetup.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwProxy.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SDGames.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\servet.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sos.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TNT.Exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TxoMoU.Exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UFO.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Wsyscheck.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\XP.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\zxsweep.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360rpt.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360tray.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Iparmor.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAV32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVPFW.EXE (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVSrvXP.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVwsc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAVmonD.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SCAN32.EXE (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AgentSvr.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\appdllman.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AppSvc32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autoruns.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avgrssvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AvMonitor.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CCenter.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ccSvcHst.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cross.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FileDsty.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FTCleanerShell.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\HijackThis.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\isPwdSvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KaScrScn.SCR (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KASMain.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KASTask.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVDX.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVSetup.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVStart.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kernelwind32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KISLnchr.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KMailMon.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KMFilter.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFW32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFW32X.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFWSvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KRepair.COM (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KsLoader.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVCenter.kxp (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KvfwMcl.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVMonXP_1.kxp (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kvol.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kvolself.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KvReport.kxp (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVStub.kxp (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kvupload.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatch.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatch9x.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatchX.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\loaddll.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\logogo.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mcconsol.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mmqczj.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32krn.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pagefile.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pagefile.pif (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\QHSET.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RavStub.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RavTask.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RegClean.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwcfg.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RfwMain.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwsrv.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RsAgent.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Rsaupd.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\safelive.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\shcfg32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SmartUp.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\symlcsvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SysSafe.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TrojanDetector.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Trojanwall.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UIHost.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxAgent.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxAttachment.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxFwHlp.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxPol.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UpLive.EXE (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\~.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxCfg.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AoYun.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\niu.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit32.exe (Security.Hijack) -> No action taken.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\wukovuhafe (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Windows UDP Control Center (Backdoor.Bot) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\host-domain-lookup.com (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\www.host-domain-lookup.com (Malware.Trace) -> No action taken.
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: c:\windows\system32\pumotozi.dll -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\pumotozi.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: system32\pumotozi.dll -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page (Hijack.Homepage) -> Bad: (http://www.free2article.info) Good: (https://www.google.com/?gws_rd=ssl -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> No action taken.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\bolanefi.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\ifenalob.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\jasamohu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\uhomasaj.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\kiduruka.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\akurudik.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqRIxutr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rtuxIRqr.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\supilime.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\emilipus.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\lulakodu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\wakozawa.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\pumotozi.dll (Trojan.Vundo.H) -> No action taken.
C:\Documents and Settings\CLAIRE\Local Settings\Temporary Internet Files\Content.IE5\TI6X2QHC\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\CLAIRE\Local Settings\Temporary Internet Files\Content.IE5\TI6X2QHC\fix[1].jpg (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\FLORIANE\Local Settings\Temporary Internet Files\Content.IE5\YSU21EVK\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\FLORIANE\Local Settings\Temporary Internet Files\Content.IE5\YSU21EVK\fix[1].jpg (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MARIE-ANNE\Local Settings\Temporary Internet Files\Content.IE5\51G7EQ1P\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MARIE-ANNE\Local Settings\Temporary Internet Files\Content.IE5\51G7EQ1P\file[2].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MARIE-ANNE\Local Settings\Temporary Internet Files\Content.IE5\LM5JHHE1\fix[1].jpg (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MIMI\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\394WHAIO\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MIMI\Local Settings\Temporary Internet Files\Content.IE5\16JUEZRO\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MIMI\Local Settings\Temporary Internet Files\Content.IE5\2VGB2TQR\fix[1].jpg (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MIMI\Local Settings\Temporary Internet Files\Content.IE5\37M182B2\iri[1].jpg (Backdoor.Bot) -> No action taken.
C:\quarantine\gtcydxay.dll.Vir (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164903.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164905.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164915.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164916.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164917.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164918.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164919.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164920.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164921.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164922.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164923.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164924.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164925.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164926.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164930.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164935.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164936.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164938.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164940.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164941.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164942.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164946.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164947.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164965.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164966.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164967.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164968.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164969.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164970.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164971.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164972.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164973.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164974.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164975.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164976.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164977.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164978.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164983.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164988.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164990.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164991.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164992.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164993.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165000.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165002.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165012.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165013.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165014.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165015.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165016.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165017.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165018.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165019.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165020.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165021.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165022.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165023.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165027.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165032.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165033.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165035.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165036.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165037.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165038.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165042.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165043.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165055.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165057.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165058.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165059.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165060.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165061.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165064.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165065.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165066.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165067.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165068.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165069.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165070.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165071.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165072.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165073.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165074.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165075.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165076.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165077.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165082.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165087.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165089.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165090.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165091.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165092.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165099.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165101.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165111.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165112.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165113.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165114.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165115.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165116.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165117.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165118.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165119.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165120.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165121.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165122.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165126.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165131.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165132.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165134.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165135.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165136.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165137.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165141.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165142.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1061\A0165424.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1062\A0166498.exe (Trojan.Vundo) -> No action taken.
C:\WINDOWS\fxstaller.exe (Backdoor.Bot) -> No action taken.
C:\WINDOWS\system32\acvvmthh.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\anqihree.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\awtsTKde.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\awttrOgg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\awttsQig.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\awtuvSmn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\byXNgdaw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\byXPFUoo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXNEwTL.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXNFxxY.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXOgfFv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXRKBrs.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXRKDSJ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXRKEuR.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcBSKEv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcCUmMf.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcCVNEw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcDsTkJ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcYoMEw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcYsSKA.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcBrRif.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcdaXRk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcdDVlJ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcyaxUk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcYOecD.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcYPfEU.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcYSIAr.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ewhyfgwn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccaBUNE.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccbAqOE.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccbARKe.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fcccccay.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fcccCspN.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccDSIbB.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccyxxWN.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccyYqol.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBqPFvu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBqPGYo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBrQiJb.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBrqqNG.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBrqqrR.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBrsTMc.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBTkkJd.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBtSJay.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBtTKAR.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBuVNFV.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hgGvtRHX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hgGvwuRK.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hgGwUnNe.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hgGYrPjG.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hyudsqgn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\iifcBsQG.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\iifdabyw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\iifgFvwX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkkHBQKE.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkkICVpQ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkkJaxWo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkkLFvVM.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkklMcAQ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\khfEUOgE.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\khfFWnNh.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\kkegkwdg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\lazikito.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\ljJaBtUl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJAQHYr.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJBqpqo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJBuvvU.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJCRiFu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJCVlkI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJdDUoo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJDWOhI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJYPjJy.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJyXQGA.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJAqqqQ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJATLEX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJBSJYs.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJBTkHA.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJCTNHX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJCvUNg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJDUmMf.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\nnnkKEUn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\nnnoMEur.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\oavajbcv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\opnlMFYr.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\opnonMEU.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnkJBsp.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnlkJbB.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnlkkli.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnomnMD.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnonLFX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\qoMcBTjk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\qoMccDuu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\qoMfcYsp.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rmuakimg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRIyaXo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRJDVOh.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRJDVoO.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRKdeCu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRKDWPI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\shcmqwfw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqnOHwv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqOFxYr.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqQkKcA.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqRHwUl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqrppQi.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tcxognpb.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tuvSjKEU.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tuvSmjHW.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tuvVPigD.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tuvWpqPH.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqOFYSl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqOifEx.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqoMDUn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqPffcb.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqPhGAp.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqPjGvw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqQGwUl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqQkjkl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqRKAPF.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUkjKCu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUlIbxw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUNgDvV.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUNggDu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUnkiGv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUnolKa.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUoMdEX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUooMfD.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\wvUlljgG.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\wvUmnLba.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\wvUnLEvW.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyvttRH.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxywVoPi.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxywWMDV.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyxWOiI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyxXNgg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyxxvTJ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyywvTm.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyyxvVL.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyyyXno.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayaBQhh.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayaXNFw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayaXRJc.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayVmLeb.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayvWoOI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayvWppO.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayXPJby.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayxVLBR.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mcrh.tmp (Malware.Trace) -> No action taken.
C:\iri.exe (Backdoor.Bot) -> No action taken.
C:\WINDOWS\system32\qoMeBuVl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRJDVNh.dll (Trojan.Vundo) -> No action taken.
J'ai suivi vos instructions et voici le rapport de mbam:
Malwarebytes' Anti-Malware 1.31
Database version: 1589
Windows 5.1.2600 Service Pack 3
01/01/2009 18:48:47
mbam-log-2009-01-01 (18-48-32).txt
Scan type: Full Scan (C:\|H:\|I:\|J:\|K:\|)
Objects scanned: 195830
Time elapsed: 3 hour(s), 13 minute(s), 17 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 1
Registry Keys Infected: 106
Registry Values Infected: 4
Registry Data Items Infected: 5
Folders Infected: 0
Files Infected: 294
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
C:\WINDOWS\system32\pumotozi.dll (Trojan.Vundo.H) -> No action taken.
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e097e6a9-23d2-4574-8141-5213f4340153} (Trojan.Vundo.H) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{e097e6a9-23d2-4574-8141-5213f4340153} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} (Trojan.Vundo) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{e097e6a9-23d2-4574-8141-5213f4340153} (Trojan.Vundo.H) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\instkey (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\auto.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AutoRun.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Discovery.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\guangd.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NAVSetup.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwProxy.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SDGames.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\servet.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sos.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TNT.Exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TxoMoU.Exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UFO.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Wsyscheck.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\XP.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\zxsweep.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360rpt.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360tray.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Iparmor.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAV32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVPFW.EXE (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVSrvXP.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVwsc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAVmonD.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SCAN32.EXE (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AgentSvr.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\appdllman.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AppSvc32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\autoruns.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avgrssvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AvMonitor.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CCenter.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ccSvcHst.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cross.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FileDsty.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FTCleanerShell.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\HijackThis.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\isPwdSvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KaScrScn.SCR (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KASMain.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KASTask.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVDX.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVSetup.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVStart.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kernelwind32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KISLnchr.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KMailMon.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KMFilter.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFW32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFW32X.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFWSvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KRepair.COM (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KsLoader.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVCenter.kxp (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KvfwMcl.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVMonXP_1.kxp (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kvol.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kvolself.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KvReport.kxp (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVStub.kxp (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kvupload.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatch.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatch9x.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatchX.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\loaddll.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\logogo.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mcconsol.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mmqczj.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nod32krn.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pagefile.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pagefile.pif (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\QHSET.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RavStub.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RavTask.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RegClean.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwcfg.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RfwMain.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rfwsrv.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RsAgent.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Rsaupd.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\safelive.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\shcfg32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SmartUp.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\symlcsvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SysSafe.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TrojanDetector.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Trojanwall.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UIHost.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxAgent.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxAttachment.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxFwHlp.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxPol.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UpLive.EXE (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\~.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UmxCfg.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AoYun.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\niu.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit32.exe (Security.Hijack) -> No action taken.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\wukovuhafe (Trojan.Vundo.H) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\Windows UDP Control Center (Backdoor.Bot) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\host-domain-lookup.com (Malware.Trace) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\www.host-domain-lookup.com (Malware.Trace) -> No action taken.
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: c:\windows\system32\pumotozi.dll -> No action taken.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -> Data: c:\windows\system32\pumotozi.dll -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: system32\pumotozi.dll -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\Start Page (Hijack.Homepage) -> Bad: (http://www.free2article.info) Good: (https://www.google.com/?gws_rd=ssl -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (Hijack.System.Hidden) -> Bad: (0) Good: (1) -> No action taken.
Folders Infected:
(No malicious items detected)
Files Infected:
C:\WINDOWS\system32\bolanefi.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\ifenalob.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\jasamohu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\uhomasaj.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\kiduruka.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\akurudik.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rqRIxutr.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\rtuxIRqr.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\supilime.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\emilipus.ini (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\lulakodu.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\wakozawa.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\pumotozi.dll (Trojan.Vundo.H) -> No action taken.
C:\Documents and Settings\CLAIRE\Local Settings\Temporary Internet Files\Content.IE5\TI6X2QHC\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\CLAIRE\Local Settings\Temporary Internet Files\Content.IE5\TI6X2QHC\fix[1].jpg (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\FLORIANE\Local Settings\Temporary Internet Files\Content.IE5\YSU21EVK\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\FLORIANE\Local Settings\Temporary Internet Files\Content.IE5\YSU21EVK\fix[1].jpg (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MARIE-ANNE\Local Settings\Temporary Internet Files\Content.IE5\51G7EQ1P\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MARIE-ANNE\Local Settings\Temporary Internet Files\Content.IE5\51G7EQ1P\file[2].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MARIE-ANNE\Local Settings\Temporary Internet Files\Content.IE5\LM5JHHE1\fix[1].jpg (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MIMI\Local Settings\Temp\Fichiers Internet temporaires\Content.IE5\394WHAIO\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MIMI\Local Settings\Temporary Internet Files\Content.IE5\16JUEZRO\file[1].exe (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MIMI\Local Settings\Temporary Internet Files\Content.IE5\2VGB2TQR\fix[1].jpg (Trojan.Vundo) -> No action taken.
C:\Documents and Settings\MIMI\Local Settings\Temporary Internet Files\Content.IE5\37M182B2\iri[1].jpg (Backdoor.Bot) -> No action taken.
C:\quarantine\gtcydxay.dll.Vir (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164903.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164905.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164915.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164916.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164917.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164918.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164919.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164920.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164921.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164922.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164923.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164924.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164925.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164926.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164930.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164935.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164936.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164938.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164940.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164941.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164942.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164946.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1055\A0164947.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164965.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164966.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164967.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164968.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164969.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164970.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164971.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164972.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164973.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164974.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164975.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164976.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164977.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164978.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164983.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164988.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164990.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164991.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164992.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0164993.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165000.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165002.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165012.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165013.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165014.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165015.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165016.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165017.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165018.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165019.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165020.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165021.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165022.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165023.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165027.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165032.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165033.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165035.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165036.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165037.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165038.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165042.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1056\A0165043.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165055.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165057.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165058.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165059.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165060.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165061.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165064.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165065.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165066.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165067.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165068.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165069.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165070.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165071.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165072.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165073.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165074.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165075.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165076.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165077.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165082.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165087.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165089.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165090.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165091.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165092.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165099.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165101.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165111.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165112.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165113.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165114.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165115.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165116.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165117.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165118.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165119.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165120.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165121.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165122.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165126.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165131.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165132.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165134.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165135.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165136.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165137.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165141.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1057\A0165142.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1061\A0165424.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP1062\A0166498.exe (Trojan.Vundo) -> No action taken.
C:\WINDOWS\fxstaller.exe (Backdoor.Bot) -> No action taken.
C:\WINDOWS\system32\acvvmthh.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\anqihree.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\awtsTKde.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\awttrOgg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\awttsQig.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\awtuvSmn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\byXNgdaw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\byXPFUoo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXNEwTL.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXNFxxY.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXOgfFv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXRKBrs.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXRKDSJ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\cbXRKEuR.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcBSKEv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcCUmMf.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcCVNEw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcDsTkJ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcYoMEw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ddcYsSKA.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcBrRif.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcdaXRk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcdDVlJ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcyaxUk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcYOecD.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcYPfEU.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\efcYSIAr.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ewhyfgwn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccaBUNE.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccbAqOE.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccbARKe.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fcccccay.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fcccCspN.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccDSIbB.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccyxxWN.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\fccyYqol.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBqPFvu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBqPGYo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBrQiJb.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBrqqNG.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBrqqrR.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBrsTMc.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBTkkJd.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBtSJay.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBtTKAR.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\geBuVNFV.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hgGvtRHX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hgGvwuRK.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hgGwUnNe.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hgGYrPjG.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\hyudsqgn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\iifcBsQG.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\iifdabyw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\iifgFvwX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkkHBQKE.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkkICVpQ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkkJaxWo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkkLFvVM.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\jkklMcAQ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\khfEUOgE.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\khfFWnNh.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\kkegkwdg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\lazikito.dll (Trojan.Vundo.H) -> No action taken.
C:\WINDOWS\system32\ljJaBtUl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJAQHYr.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJBqpqo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJBuvvU.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJCRiFu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJCVlkI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJdDUoo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJDWOhI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJYPjJy.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ljJyXQGA.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJAqqqQ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJATLEX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJBSJYs.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJBTkHA.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJCTNHX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJCvUNg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mlJDUmMf.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\nnnkKEUn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\nnnoMEur.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\oavajbcv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\opnlMFYr.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\opnonMEU.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnkJBsp.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnlkJbB.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnlkkli.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnomnMD.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\pmnonLFX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\qoMcBTjk.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\qoMccDuu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\qoMfcYsp.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rmuakimg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRIyaXo.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRJDVOh.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRJDVoO.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRKdeCu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRKDWPI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\shcmqwfw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqnOHwv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqOFxYr.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqQkKcA.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqRHwUl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\ssqrppQi.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tcxognpb.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tuvSjKEU.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tuvSmjHW.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tuvVPigD.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\tuvWpqPH.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqOFYSl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqOifEx.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqoMDUn.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqPffcb.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqPhGAp.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqPjGvw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqQGwUl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqQkjkl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\urqRKAPF.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUkjKCu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUlIbxw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUNgDvV.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUNggDu.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUnkiGv.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUnolKa.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUoMdEX.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\vtUooMfD.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\wvUlljgG.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\wvUmnLba.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\wvUnLEvW.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyvttRH.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxywVoPi.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxywWMDV.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyxWOiI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyxXNgg.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyxxvTJ.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyywvTm.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyyxvVL.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\xxyyyXno.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayaBQhh.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayaXNFw.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayaXRJc.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayVmLeb.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayvWoOI.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayvWppO.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayXPJby.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\yayxVLBR.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\mcrh.tmp (Malware.Trace) -> No action taken.
C:\iri.exe (Backdoor.Bot) -> No action taken.
C:\WINDOWS\system32\qoMeBuVl.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\rqRJDVNh.dll (Trojan.Vundo) -> No action taken.
Utilisateur anonyme
1 janv. 2009 à 19:05
1 janv. 2009 à 19:05
Salut stev, j'espèrer que tu as supprimer la selection ! si oui, va dans la quarantaine de mbam et supprimes tout ! >>> No action taken voudrait dire que rien n'a été fait, tu l'as supprimer j'espère ?
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Zell00
Messages postés
127
Date d'inscription
mercredi 6 août 2008
Statut
Membre
Dernière intervention
29 septembre 2014
17
1 janv. 2009 à 19:07
1 janv. 2009 à 19:07
steveun
Messages postés
24
Date d'inscription
lundi 21 juillet 2008
Statut
Membre
Dernière intervention
18 juin 2009
1
>
Utilisateur anonyme
2 janv. 2009 à 21:23
2 janv. 2009 à 21:23
Bonsoir FeelGood1!
Non j'avais pas supprimé la selection, j'était pas sur, alors j'ai relancé un scan et j'ai fait remove sur toute la liste, certains éléments ont nécessité le redémarrage du pc, et je pense que ça a marcher. En tout cas, msn marche bien et internet explorer ne me pose plus de problème. Merci beaucoup!
Ce forum est tout bonnement génial, vous êtes tout bonnement géniaux! Qu'est-ce qu'on ferais sans vous. Mille mercis, et à bientôt... pas trop tôt j'espère.
Cordialement
Steven.
Non j'avais pas supprimé la selection, j'était pas sur, alors j'ai relancé un scan et j'ai fait remove sur toute la liste, certains éléments ont nécessité le redémarrage du pc, et je pense que ça a marcher. En tout cas, msn marche bien et internet explorer ne me pose plus de problème. Merci beaucoup!
Ce forum est tout bonnement génial, vous êtes tout bonnement géniaux! Qu'est-ce qu'on ferais sans vous. Mille mercis, et à bientôt... pas trop tôt j'espère.
Cordialement
Steven.