Virus MAZEBAT B : Problème...

Fermé
Bouboule - 15 févr. 2009 à 21:11
afideg Messages postés 10517 Date d'inscription lundi 10 octobre 2005 Statut Contributeur sécurité Dernière intervention 12 avril 2022 - 17 févr. 2009 à 13:58
Bonjour,

Voila mon problème est quelque peu compliqué, je suis infecté par le virus Mazebat B qui s'attaque aux fichiers .exe entre autre ; certains problèmes similaires dans le forum ont été résolus j'espere qu'il en sera de même pour le miens..

Alors voila après avoir vu le virus j'ai installé Avast qui n'a rien trouvé de mieux que de supprimé tout les .exe de mon disque dur système (j'ai 4 disques durs) j'ai donc du reformater mon disque dur (que le disque dur système), ce qui n'a pas suffit puisque meme apres la réinstallation de windows XP pro revoila mon virus (qui s'était logé dans les autres disques durs); j'ai donc regardé dans les forums voir ce qu'il en était dis j'ai donc utiliser : rmmabez, malwarebytes anti malware et le scan de bit defender en ligne qui était tout trois conseillé ; il me retire quelques infections par ci par là mais le virus reste toujours (et encore il faut que le scan aille jusqu'a la fin ce qui est très souvent pas le cas même en mode sans échec)... donc voila apres un formatage et des dizaines de scan j'en suis toujours au même point, je pense donc avoir besoin de l'aide des plus grands :D, à vous la parole...

Merci beaucoup :)

20 réponses

afideg Messages postés 10517 Date d'inscription lundi 10 octobre 2005 Statut Contributeur sécurité Dernière intervention 12 avril 2022 602
15 févr. 2009 à 22:05
Salut kevin05,

Mal embarqué...

Virus MAZEBAT B s'attrape par disques amovibles

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{94543c00-f9c4-11dd-991a-0018f3077186}]
shell\AutoRun\command - K:\zPharaoh.exe
shell\explore\command - K:\zPharaoh.exe
shell\open\command - K:\zPharaoh.exe


C:\WINDOWS\iun6002.exe -- > VirusTotal ??

C:\Program Files\SpywareDetector
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SDActiveMonitor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDNotify]

O23 - Service: SDMainSvc
O23 - Service: SDService
S1 (stoppé) : SDManager


C:\Program Files\Java\jre1.5.0_07 ==> 6.0.12
C:\Program Files\Adobe\Acrobat 7.0 ==> 9

O4 - HKUS\S-1-5-19\..\RunOnce: [nlpo_01] à [nlpo_07] => Windows Version nLite non officielle
O4 - HKUS\S-1-5-20\..\RunOnce: [nlpo_01] => Windows Version nLite non officielle


Bonne chance
Al. ==> juste pour suivre. Merci
5
ouai j'ai bien vu que j'était mal embarqué.. j'ai attrappé le virus par un disque dur externe effectivement... tu as une solution ?
0
crapoulou Messages postés 28161 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 21 mai 2024 7 994
15 févr. 2009 à 22:20
Salut,
En effet tu te souviens bien :
http://toolbarsd.googlepages.com/Changelog.txt

Mais fichiers systèmes infectés avec mabezat il me semble ...
AVP Tools et Dr Web cure it!
2
kevin05 Messages postés 3636 Date d'inscription samedi 29 novembre 2008 Statut Contributeur sécurité Dernière intervention 13 mai 2010 147
15 févr. 2009 à 21:12
Salut,

- Télécharge Random's System Information Tool (RSIT) (par random/random) sur ton Bureau.

- Double-clique sur RSIT.exe afin de lancer le programme.

- Clique sur Continue à l'écran Disclaimer.

- Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

- Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparaît à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).

Note : Les rapports sont sauvegardés dans le dossier C:\rsit.
0
ludsfa Messages postés 1284 Date d'inscription dimanche 3 février 2008 Statut Membre Dernière intervention 15 janvier 2018 15
15 févr. 2009 à 21:15
Salut,

* Télécharge Random's System Information Tool (RSIT) (par random/random) sur ton Bureau:

http://images.malwareremoval.com/random/RSIT.exe

* Double-clique sur RSIT.exe afin de lancer le programme.
* Clique sur Continue à l'écran Disclaimer.
* Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
* Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparait à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).


Note : les rapports sont sauvegardés dans le dossier C:\rsit\.
0
Ah une réponse rapide ça fais plaisir :)

Voila les logs...

Info.txt :

info.txt logfile of random's system information tool 1.05 2009-02-15 21:29:55

======Uninstall list======

-->"C:\Program Files\Creative Professional\Digital Audio System\Program\SETUP.EXE" /S /U /W /L:FRN
-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5633D266-6BAE-41CE-987F-0FE5F5F92D64}\setup.exe" -l0x40c
-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5633D266-6BAE-41CE-987F-0FE5F5F92D64}\setup.exe" -l0x40c /remove
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Reader 7.0.8 - FranÁais-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A70800000002}
Antares Autotune DX v4.12-->C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\UNWISE.EXE C:\PROGRA~1\Antares\AUTOTU~1\ANTARE~1\INSTALL.LOG
Antares Autotune VST RTAS TDM v5.08-->"C:\Program Files\Antares Audio Technologies\unins000.exe"
Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
ASUS GameFace Library-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{92B07938-0550-4937-9447-E0ECC04AB99D}
ASUS Gamer OSD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{315ACD04-BCEB-478B-9B1D-5431D0E6CB11}\setup.exe" -l0x40c -removeonly
ASUS Smart Doctor-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{12E11FBB-7CA6-4A86-834D-5E6390D51009} /l1036
ASUS VideoSecurity Online-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{7A529246-912F-4C40-A82A-E608DB702FD7}
Codeur Windows Media SÈrie 9-->msiexec.exe /I {E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Codeur Windows Media SÈrie 9-->MsiExec.exe /I{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}
Correctif Windows XP - KB867282-->C:\WINDOWS\$NtUninstallKB867282$\spuninst\spuninst.exe
Correctif Windows XP - KB885894-->C:\WINDOWS\$NtUninstallKB885894$\spuninst\spuninst.exe
Digital Audio System-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6ACBC6E4-03D0-422E-A0CA-3BA1A8EF8374}\SETUP.EXE" -l0x40c /remove
DMC-Control 1.12a-->MsiExec.exe /I{F282BB83-7AB5-4CC6-9876-5CCB365B3B61}
Easy CD-DA Extractor 12-->"C:\WINDOWS\Easy CD-DA Extractor 12.0\uninstall.exe" "/U:C:\Program Files\Easy CD-DA Extractor 12\irunin.xml"
GameFace Messenger-->C:\WINDOWS\iun6002.exe "C:\Program Files\GameFace Messenger\irunin.ini"
High Definition Audio Driver Package - KB888111-->C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Hotfix for Windows Media Format SDK (KB902344)-->"C:\WINDOWS\$NtUninstallKB902344$\spuninst\spuninst.exe"
J2SE Runtime Environment 5.0 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150070}
JRAID-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe" -l0x40c -removeonly
Lecteur Windows Media†10-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Macromedia Flash Player 8 Plugin-->MsiExec.exe /X{E3D278BD-FC97-4F87-BB1F-689AE0CB9122}
Macromedia Flash Player 8-->C:\WINDOWS\system32\Macromed\Flash\UninstFl.exe
Macromedia Shockwave Player-->MsiExec.exe /X{838A1BC9-95CA-4880-9BE3-2A7D23600A2B}
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Hotfix (KB886903)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M886903\M886903Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft Office PowerPoint Viewer 2003-->MsiExec.exe /X{90AF040C-6000-11D3-8CFE-0150048383C9}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Windows Media Video 9 VCM-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\wmv9vcm.inf, Uninstall
Mise ‡ jour de sÈcuritÈ pour Lecteur Windows Media 10 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
Mise ‡ jour de sÈcuritÈ pour Lecteur Windows Media 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
Mise ‡ jour de sÈcuritÈ pour Windows XP (KB913433)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB913433.inf
Mise ‡ jour de sÈcuritÈ pour Windows XP (KB917953)-->"C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"
Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0 Language Pack - FRA\install.exe
Nero Micro 9.2.6-->"C:\WINDOWS\Nero Micro 9.2.6\uninstall.exe" "/U:C:\Program Files\Nero\Uninstall\uninstall.xml"
NVIDIA Drivers-->C:\WINDOWS\system32\nvudisp.exe UninstallGUI
Philips Flat Panel Adjust-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{23430AE3-6FFF-47CF-B7E7-1552FC61DF39}\Setup.exe" -l0x9
PhotorÈcit 3 pour Windows-->MsiExec.exe /I{4F41AD68-89F2-4262-A32C-2F70B01FCE9E}
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\Setup.exe" -l0x40c -removeonly
RME DIGICheck-->"C:\Program Files\RME\Digicheck45\Uninstall.exe" "C:\Program Files\RME\Digicheck45\install.log"
RME Fireface-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\system32\fireface.inf
RME MIDI Remote-->"C:\Program Files\RME\MIDIRemote14\Uninstall.exe" "C:\Program Files\RME\MIDIRemote14\install.log"
Spyware Detector-->"C:\Program Files\SpywareDetector\unins000.exe"
Steinberg Cubase SX v2.01-->C:\PROGRA~1\STEINB~1\CUBASE~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\CUBASE~1\INSTALL.LOG
Visionneuse Journal Windows Microsoft-->MsiExec.exe /X{43DCF766-6838-4F9A-8C91-D92DA586DFA8}
VLC media player 0.9.8a-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Waves 4.0-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4C4D25EB-6513-4702-8355-F4194DE2E1D9}\setup.exe" -l0x9
Waves Diamond Bundle 4.05-->C:\PROGRA~1\Waves\DIAMON~1\UNWISE.EXE C:\PROGRA~1\Waves\DIAMON~1\INSTALL.LOG
Windows Media Format Runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Player 10 Hotfix - KB888656-->"C:\WINDOWS\$NtUninstallKB888656$\spuninst\spuninst.exe"
Windows Messenger 5.1-->MsiExec.exe /I{9D1C26BD-E792-4159-9D16-07EA222D8EF0}
XviD MPEG-4 Video Codec-->C:\WINDOWS\system32\rundll32.exe setupapi,InstallHinfSection Remove_XviD 132 C:\WINDOWS\INF\xvid.inf

Securitycenter WMI appears to be broken

System event log

Computer Name: XPSP2-0181848AE
Event Code: 3260
Message: Cet ordinateur a correctement ÈtÈ joint au workgroup 'WORKGROUP'.

Record Number: 5
Source Name: Workstation
Time Written: 20090212094547.000000+060
Event Type: Informations
User:

Computer Name: XPSP2-0181848AE
Event Code: 6011
Message: Le nom NetBIOS et le nom de l'hÙte DNS de cet ordinateur ont ÈtÈ modifiÈs de MACHINENAME vers XPSP2-0181848AE.

Record Number: 4
Source Name: EventLog
Time Written: 20090212094003.000000+060
Event Type: Informations
User:

Computer Name: MACHINENAME
Event Code: 2
Message: Pendant la validation de \Device\Serial0 en tant que port sÈrie, une FIFO a ÈtÈ dÈtectÈe. La FIFO sera utilisÈe.

Record Number: 3
Source Name: Serial
Time Written: 20090212102204.000000+060
Event Type: Informations
User:

Computer Name: MACHINENAME
Event Code: 6005
Message: Le service d'Enregistrement d'ÈvÈnement a dÈmarrÈ.

Record Number: 2
Source Name: EventLog
Time Written: 20090212102148.000000+060
Event Type: Informations
User:

Computer Name: MACHINENAME
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 2 Multiprocessor Free.

Record Number: 1
Source Name: EventLog
Time Written: 20090212102148.000000+060
Event Type: Informations
User:

Application event log

Computer Name: XPSP2-0181848AE
Event Code: 1000
Message: Les compteurs de performances pour le service MSDTC (MSDTC) ont ÈtÈ chargÈs.
Les donnÈes d'enregistrement contiennent les nouvelles valeurs d'index
assignÈes ‡ ce service.

Record Number: 5
Source Name: LoadPerf
Time Written: 20090212094652.000000+060
Event Type: Informations
User:

Computer Name: XPSP2-0181848AE
Event Code: 1000
Message: Les compteurs de performances pour le service TermService (Services Terminal Server) ont ÈtÈ chargÈs.
Les donnÈes d'enregistrement contiennent les nouvelles valeurs d'index
assignÈes ‡ ce service.

Record Number: 4
Source Name: LoadPerf
Time Written: 20090212094649.000000+060
Event Type: Informations
User:

Computer Name: XPSP2-0181848AE
Event Code: 1000
Message: Les compteurs de performances pour le service RemoteAccess (Routage et accËs distant) ont ÈtÈ chargÈs.
Les donnÈes d'enregistrement contiennent les nouvelles valeurs d'index
assignÈes ‡ ce service.

Record Number: 3
Source Name: LoadPerf
Time Written: 20090212094046.000000+060
Event Type: Informations
User:

Computer Name: XPSP2-0181848AE
Event Code: 1000
Message: Les compteurs de performances pour le service PSched (PSched) ont ÈtÈ chargÈs.
Les donnÈes d'enregistrement contiennent les nouvelles valeurs d'index
assignÈes ‡ ce service.

Record Number: 2
Source Name: LoadPerf
Time Written: 20090212094015.000000+060
Event Type: Informations
User:

Computer Name: XPSP2-0181848AE
Event Code: 1000
Message: Les compteurs de performances pour le service RSVP (QoS RSVP) ont ÈtÈ chargÈs.
Les donnÈes d'enregistrement contiennent les nouvelles valeurs d'index
assignÈes ‡ ce service.

Record Number: 1
Source Name: LoadPerf
Time Written: 20090212094014.000000+060
Event Type: Informations
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=0f06
"NUMBER_OF_PROCESSORS"=2
"TEMP"=%USERPROFILE%\Local Settings\Temp
"TMP"=%USERPROFILE%\Local Settings\Temp
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH

-----------------EOF-----------------


Log.txt :

Logfile of random's system information tool 1.05 (written by random/random)
Run by Administrateur at 2009-02-15 21:29:27
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 146 GB (96%) free of 153 GB
Total RAM: 3007 MB (68% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:29:53, on 15/02/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ATKKBService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\fireface.exe
C:\WINDOWS\system32\firefacemix.exe
C:\WINDOWS\CTHELPER.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\GameFace Messenger\GameFace.exe
C:\Program Files\WinTV\Ir.exe
C:\Program Files\Creative Professional\Digital Audio System\E-MU PatchMix DSP\EmuPatchMixDSP.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Steinberg\Cubase SX\Cubasesx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\SpywareDetector\SDService.exe
C:\Program Files\SpywareDetector\SDMainService.exe
C:\Program Files\SpywareDetector\SpywareDetector.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\SpywareDetector\SDActiveMonitor.exe
C:\Program Files\VideoLAN\VLC\vlc.exe
K:\RSIT.exe
C:\Program Files\trend micro\Administrateur.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/toolbar/ie8/sidebar.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.fr/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/toolbar/ie8/sidebar.html
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.fr/search?q=%s
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O4 - HKLM\..\Run: [FirefaceTray] fireface.exe
O4 - HKLM\..\Run: [FirefaceMixTray] firefacemix.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SDActiveMonitor] C:\Program Files\SpywareDetector\SDActiveMonitor.exe -AUTO
O4 - HKLM\..\RunOnce: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKUS\S-1-5-19\..\RunOnce: [nlpo_01] rundll32 advpack.dll,DelNodeRunDLL32 "C:\WINDOWS\Srchasst" (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlpo_02] rundll32 advpack.dll,DelNodeRunDLL32 "C:\WINDOWS\msagent" (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlpo_03] rundll32 advpack.dll,DelNodeRunDLL32 "C:\WINDOWS\Help\Tours" (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlpo_04] cmd.exe /c md "%USERPROFILE%\Local Settings\Temp" (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlpo_05] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlpo_06] rundll32 advpack.dll,LaunchINFSection nlite.inf,nLiteReg (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlpo_07] rundll32 advpack.dll,LaunchINFSection nlite.inf,S (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\RunOnce: [nlpo_01] rundll32 advpack.dll,DelNodeRunDLL32 "C:\WINDOWS\Srchasst" (User 'SERVICE R…SEAU')
O4 - Global Startup: AutoStart IR.lnk = C:\Program Files\WinTV\Ir.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SDMainSvc - Max Secure Software - C:\Program Files\SpywareDetector\SDMainService.exe
O23 - Service: SDService - Max Secure Software - C:\Program Files\SpywareDetector\SDService.exe
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
kevin05 Messages postés 3636 Date d'inscription samedi 29 novembre 2008 Statut Contributeur sécurité Dernière intervention 13 mai 2010 147
15 févr. 2009 à 21:41
Re poste le rapport de MBAM stp
0
MBAM ? C'est quoi ?
0
a ok j'ai compris, je refais un scan et jenvois..
0
kevin05 Messages postés 3636 Date d'inscription samedi 29 novembre 2008 Statut Contributeur sécurité Dernière intervention 13 mai 2010 147
15 févr. 2009 à 22:17
Hello al

C:\WINDOWS\iun6002.exe

Si je me souviens toolbar S&D le supprime...
0
kevin05 Messages postés 3636 Date d'inscription samedi 29 novembre 2008 Statut Contributeur sécurité Dernière intervention 13 mai 2010 147
15 févr. 2009 à 22:19
Et vue que t'as plus d'experience que moi intervient quand tu veux ;-)
0
Ok j'ai pris note de tout, je refais un scan malwarebytes', pour l'instant il ne trouve rien ; et j'ai un scan Dr Web en cours aussi il trouve quelques trucs, je vous post les rapport quand c'est fini également pour UsbFix.

Sinon j'ai pas bien compris le problème avec C:\WINDOWS\iun6002.exe, Dr Web doit le suppr ?

Merci encore
0
et apparemment pour l'instant j'ai du Mazebat B, du Mazebat J et du Mazebat Gen (bitdefender)..
0
-------------- UsbFix V2.414.3 ---------------

* User : Administrateur - XPSP2-0181848AE
* Outils mis a jours le 18/01/2009 par Chiquitine29 et Chimay8
* Recherche effectuÈe ‡ 23:16:49 le 15/02/2009
* Windows Xp - Internet Explorer 6.0.2900.2180


--------------- [ Processus actifs ] ----------------


C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\logonui.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ATKKBService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\SpywareDetector\SDMainService.exe
C:\Program Files\SpywareDetector\SDService.exe
C:\WINDOWS\system32\userinit.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\alg.exe

--------------- [ Informations lecteurs ] ----------------

C: - Lecteur fixe

D: - Lecteur fixe

E: - Lecteur fixe

F: - Lecteur de CD-ROM

K: - Lecteur fixe

L: - Lecteur fixe

M: - Lecteur amovible

N: - Lecteur amovible

O: - Lecteur amovible


+- Contenu de l'autorun : K:\autorun.inf

[AutoRun]
ShellExecute=zPharaoh.exe
shell\open\command=zPharaoh.exe
shell\explore\command=zPharaoh.exe
open=zPharaoh.exe


+- Contenu de l'autorun : M:\autorun.inf

[AutoRun]
ShellExecute=zPharaoh.exe
shell\open\command=zPharaoh.exe
shell\explore\command=zPharaoh.exe
open=zPharaoh.exe


+- Contenu de l'autorun : N:\autorun.inf

[autorun]
open=.\RECYCLER\RECYCLER\autorun.exe
shell\1=Open
shell\1\Command=.\RECYCLER\RECYCLER\autorun.exe
shell\2\=Browser
shell\2\Command=.\RECYCLER\RECYCLER\autorun.exe
shellexecute=.\RECYCLER\RECYCLER\autorun.exe


--------------- [ Lecteur C ] ----------------

C: - Lecteur fixe


+- Listing des fichiers prÈsents :

[12/02/2009 09:50][--a------] C:\AUTOEXEC.BAT
[03/08/2004 23:38][-rahs----] C:\NTDETECT.COM
[12/02/2009 09:40][---hs----] C:\boot.ini
[15/02/2009 23:17][--a------] C:\UsbFix.txt
[15/02/2009 23:17][--a------] C:\XPSP2+_Version.txt
[12/02/2009 09:50][--a------] C:\CONFIG.SYS
[12/02/2009 09:50][--a------] C:\IO.SYS
[12/02/2009 09:50][--a------] C:\MSDOS.SYS
[12/02/2009 09:50][--a------] C:\pagefile.sys

--------------- [ Lecteur D ] ----------------

D: - Lecteur fixe


+- Listing des fichiers prÈsents :

[12/01/2007 21:51][--a------] D:\AUTOEXEC.BAT
[12/01/2007 21:51][--a------] D:\CONFIG.SYS
[12/01/2007 21:51][--a------] D:\IO.SYS
[12/01/2007 21:51][--a------] D:\MSDOS.SYS

--------------- [ Lecteur E ] ----------------

E: - Lecteur fixe


+- Listing des fichiers prÈsents :


--------------- [ Lecteur F ] ----------------

F: - Lecteur de CD-ROM


+- Listing des fichiers prÈsents :


--------------- [ Lecteur K ] ----------------

K: - Lecteur fixe


+- Listing des fichiers prÈsents :

[15/02/2009 12:53][-r-hs----] K:\zPharaoh.exe
[15/02/2009 13:21][-r-hs----] K:\autorun.inf

--------------- [ Lecteur L ] ----------------

L: - Lecteur fixe


+- Listing des fichiers prÈsents :


--------------- [ Lecteur M ] ----------------

M: - Lecteur amovible


+- Listing des fichiers prÈsents :

[09/02/2009 14:20][-r-hs----] M:\zPharaoh.exe
[10/02/2009 14:00][-r-hs----] M:\autorun.inf

--------------- [ Lecteur N ] ----------------

N: - Lecteur amovible


+- Listing des fichiers prÈsents :

[24/01/2009 18:37][--ahs----] N:\autorun.inf

--------------- [ Lecteur O ] ----------------

O: - Lecteur amovible


+- Listing des fichiers prÈsents :

[13/02/2009 12:38][--a------] O:\easy_cdda_extractor_12_trial_.exe
[13/02/2009 12:38][--a------] O:\rmmabez-1.exe
[13/02/2009 12:38][--a------] O:\mbam-setup.exe
[13/02/2009 12:38][--a------] O:\spywaredetector.exe
[13/02/2009 12:38][--a------] O:\RSIT.exe
[13/02/2009 12:38][--a------] O:\UsbFix.exe
[15/02/2009 21:30][--a------] O:\log.txt
[15/02/2009 21:30][--a------] O:\info.txt

--------------- [ Registre / Startup ] ----------------

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="https://www.google.fr/?gws_rd=ssl"
"Start Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
SetDefaultMIDI=MIDIDef.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\run]
FirefaceTray=fireface.exe
FirefaceMixTray=firefacemix.exe
CTHelper=CTHELPER.EXE
UpdReg=C:\WINDOWS\UpdReg.EXE
NvCplDaemon=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
nwiz=nwiz.exe /install
NvMediaCenter=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
SDActiveMonitor=C:\Program Files\SpywareDetector\SDActiveMonitor.exe -AUTO

--------------- [ Registre / Mountpoint2 ] ----------------

SupprimÈ ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{793bbfd1-f8f0-11dd-a252-ac3a0aec51b6}\Shell\AutoRun\command
SupprimÈ ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{94543c00-f9c4-11dd-991a-0018f3077186}\Shell\AutoRun\command
SupprimÈ ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{94543c00-f9c4-11dd-991a-0018f3077186}\Shell\explore\Command
SupprimÈ ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{94543c00-f9c4-11dd-991a-0018f3077186}\Shell\open\Command

--------------- [ Nettoyage des disques ] ----------------

SupprimÈ ! - [14/05/2006 00:25][--a------] C:\WINDOWS\system32\Autoruns.exe
SupprimÈ ! - [14/02/2009 03:32][--a------] "C:\Documents and Settings\Administrateur\Application Data\tazebama\tazebama.log"
SupprimÈ ! - [14/02/2009 15:06][--a------] "C:\Documents and Settings\Administrateur\Application Data\tazebama\zPharaoh.dat"
SupprimÈ ! - [15/02/2009 23:17][d--------] "C:\Documents and Settings\Administrateur\Application Data\tazebama"
K:\autorun.inf ~> fichier appelÈ : "K:\zPharaoh.exe" ( prÈsent ! )
SupprimÈ ! - K:\zPharaoh.exe
M:\autorun.inf ~> fichier appelÈ : "M:\zPharaoh.exe" ( prÈsent ! )
SupprimÈ ! - M:\zPharaoh.exe
SupprimÈ ! - [15/02/2009 13:21][-r-hs----] K:\autorun.inf
SupprimÈ ! - [24/10/2006 18:07][-r-hs----] M:\Recycled\ctfmon.exe
SupprimÈ ! - [10/02/2009 14:00][-r-hs----] M:\autorun.inf
SupprimÈ ! - [18/11/2008 16:02][d--hs----] M:\Recycler\Recycler
SupprimÈ ! - [24/10/2006 18:07][-r-hs----] N:\Recycled\ctfmon.exe
SupprimÈ ! - [24/01/2009 18:37][--ahs----] N:\autorun.inf
SupprimÈ ! - [19/07/2008 17:04][d--hs----] N:\Recycler\Recycler

--------------- [ ResumÈ ] ----------------

-> /!\ Le resultat doit etre interprÈtÈ par un spÈcialiste /!\

[12/02/2009 09:50][--a------] C:\AUTOEXEC.BAT
[03/08/2004 23:38][-rahs----] C:\NTDETECT.COM
[12/02/2009 09:40][---hs----] C:\boot.ini
[12/01/2007 21:51][--a------] D:\AUTOEXEC.BAT
[13/02/2009 12:38][--a------] O:\easy_cdda_extractor_12_trial_.exe
[13/02/2009 12:38][--a------] O:\rmmabez-1.exe
[13/02/2009 12:38][--a------] O:\mbam-setup.exe
[13/02/2009 12:38][--a------] O:\spywaredetector.exe
[13/02/2009 12:38][--a------] O:\RSIT.exe
[13/02/2009 12:38][--a------] O:\UsbFix.exe

--------------- [ Vaccination ] ----------------

C:\autorun.inf -> Dossier autorun.inf crÈe par UsbFix !
D:\autorun.inf -> Dossier autorun.inf crÈe par UsbFix !
E:\autorun.inf -> Dossier autorun.inf crÈe par UsbFix !
K:\autorun.inf -> Dossier autorun.inf crÈe par UsbFix !
L:\autorun.inf -> Dossier autorun.inf crÈe par UsbFix !
M:\autorun.inf -> Dossier autorun.inf crÈe par UsbFix !
N:\autorun.inf -> Dossier autorun.inf crÈe par UsbFix !
O:\autorun.inf -> Dossier autorun.inf crÈe par UsbFix !

--------------- ! Fin du rapport ! ----------------
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
15 févr. 2009 à 23:25
---> Désinstalle UsbFix.

Tu vas faire quoi comme scan ?
0
afideg Messages postés 10517 Date d'inscription lundi 10 octobre 2005 Statut Contributeur sécurité Dernière intervention 12 avril 2022 602
15 févr. 2009 à 23:28
0
Je refais un Dr Web pr l'instant, et je pense faire tout ceux que j'ai mais bon ça prend du temp... en parlant de temp, merci pour celui que vous consacrez pour résoudre mon problème :)

Je vous poste le log de Dr Web quand il se fini (pour l'instant tout ce qu'il a trouvé comme problème c'est UsbFix que j'ai désinstallé juste après :))...

Merci encore !
0
Voici le log de Spyware détector ;

Information :
Date: 2/16/2009 00-38-14
OS Version: Windows XP Professional Edition
Computer Name: XPSP2-0181848AE

Log:
Spyware Name Threat Type Threat Action
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@ad.yieldmanager[2].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@ad.zanox[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@advertising[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@bitdefender[2].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@cybermonitor[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@desb.opt.fimserve[2].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@doubleclick[2].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@estat[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@gigya[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@mediaplex[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@myspace[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@opt.fimserve[2].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@smartadserver[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@social.bidsystem[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@verify[2].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@weborama[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@xiti[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@yadro[1].txt Scan
Tracking.Cookie Cookie c:\documents and settings\administrateur\cookies\administrateur@zedo[2].txt Scan
Worm.Legmir Folder c:\autorun.inf Scan
Worm.Legmir File c:\autorun.inf\autorun.inf Scan
Worm.Legmir Folder d:\autorun.inf Scan
Worm.Legmir File d:\autorun.inf\autorun.inf Scan
Worm.Legmir Folder e:\autorun.inf Scan
Worm.Legmir File e:\autorun.inf\autorun.inf Scan
Worm.Legmir Folder k:\autorun.inf Scan
Worm.Legmir File k:\autorun.inf\autorun.inf Scan
Worm.Legmir Folder l:\autorun.inf Scan
Worm.Legmir File l:\autorun.inf\autorun.inf Scan
Worm.Legmir Folder m:\autorun.inf Scan
Worm.Legmir File m:\autorun.inf\autorun.inf Scan
Worm.Legmir Folder n:\autorun.inf Scan
Worm.Legmir File n:\autorun.inf\autorun.inf Scan
Backdoor.GGDoor Registry Value hkey_local_machine\software\microsoft\windows\currentversion\run :: updreg Scan
Backdoor.Agent Fix: Registry Data hkey_users\s-1-5-21-1202660629-1303643608-839522115-500\software\microsoft\windows\currentversion\policies\explorer :: disallowcpl :: 1 | 0 Scan
DoS.BBDoS File c:\documents and settings\administrateur\doctorweb\quarantine\a0000001.exe Scan
Backdoor.Zebrat File c:\system volume information\_restore{d1f5a16b-9d14-43be-9bf4-0184f262a12b}\rp0\a0000002.exe Scan
Worm.Mabezat File d:\system volume information\nokian73tools.exe Scan
Worm.Mabezat File e:\system volume information\winrrarserialinstall.exe Scan
Worm.Mabezat File m:\recycler\jetaudio dump.exe Scan


C'est une démo donc il repère juste les fichiers sans les désinfectés...fin bon ça peut peut etre vous aider.. les autres scans (Dr Web) et rmmabez sont toujours en cours, rien d'anormal pour le moment...
0
kevin05 Messages postés 3636 Date d'inscription samedi 29 novembre 2008 Statut Contributeur sécurité Dernière intervention 13 mai 2010 147
16 févr. 2009 à 00:52
0
ah..bah j'aurai bien aimé voir cette page avans de le téléchargé.. mais oui c'est bien ce logiciel..
0
Bonjour, mes post pour les log ont apparament échoué donc je rééssait :

Dr Web :

UsbFix.exe\data009;C:\Documents and Settings\Administrateur\Bureau\UsbFix.exe;Tool.Prockill;;
UsbFix.exe;C:\Documents and Settings\Administrateur\Bureau;Conteneur comporte des objets infectés;Quarantaine.;
NokiaN73Tools.exe;D:\System Volume Information;Win32.HLLW.Tazebama;Supprimé.;
System Volume Information .exe;D:\System Volume Information;Win32.HLLW.Tazebama;Supprimé.;
System Volume Information .exe;E:\System Volume Information;Win32.HLLW.Tazebama;Supprimé.;
WinrRarSerialInstall.exe;E:\System Volume Information;Win32.HLLW.Tazebama;Supprimé.;
RouterClient.exe;L:\Bureau\cryptload;Win32.Virut.56;Désinfecté.;
Restarter.exe;L:\Bureau\cryptload\tools;Win32.Virut.56;Désinfecté.;
stealthcaptcha.exe;L:\Bureau\cryptload\ocr\stealth.to\stealthcaptcha;Win32.Virut.56;Désinfecté.;
BotCheck.exe;L:\Bureau\cryptload\ocr\rapidshare.de\BotCheck;Win32.Virut.56;Désinfecté.;
result.exe;L:\Bureau\cryptload\ocr\megaupload.com\FineReader;Win32.Virut.56;Désinfecté.;
PNG2BMP.EXE;L:\Bureau\cryptload\ocr\filer.net\ocr_by_spider_b;Win32.Virut.56;Désinfecté.;
zx_bs_d.exe;L:\Image-Line\FL Studio 7\System\Tools\BeatSlicer;Win32.Virut.56;Désinfecté.;
Dxfdsetup.exe;L:\Steinberg\Asio;Win32.Virut.56;Désinfecté.;
Wpsetup.exe;L:\Steinberg\Asio;Win32.Virut.56;Désinfecté.;


Rmmabez :
============ Remover for Win32/Mabezat ===============
Date: 16.02.2009 08:45
C:\applications\AdobeReader_7.0.8fr.exe; OK
C:\applications\MMFlash_8.0.24.0ActiveX_slim.exe; OK
C:\applications\WM9Codecs.exe; OK
C:\applications\WM9VCM.exe; OK
C:\applications\WMP10Setup.exe; OK
C:\Documents and Settings\Administrateur\Application Data\Microsoft\Installer\{E3D278BD-FC97-4F87-BB1F-689AE0CB9122}\ARPPRODUCTICON.exe; OK
C:\Documents and Settings\Administrateur\Bureau\launch.exe; OK
C:\Documents and Settings\Administrateur\Bureau\MPSetup.exe; OK
C:\Documents and Settings\Administrateur\Bureau\nero_micro_europe.exe; OK
C:\Documents and Settings\Administrateur\Bureau\OPTIONS\A appliquer en fonction de votre quantité de mémoire\WCPUID\nrkctl32.dll; OK
C:\Documents and Settings\Administrateur\Bureau\OPTIONS\A appliquer en fonction de votre quantité de mémoire\WCPUID\nrkctl32.stb; OK
C:\Documents and Settings\Administrateur\Bureau\OPTIONS\A appliquer en fonction de votre quantité de mémoire\WCPUID\nrkctl32.sys; OK
C:\Documents and Settings\Administrateur\Bureau\OPTIONS\A appliquer en fonction de votre quantité de mémoire\WCPUID\plugins\wcpuid_rclk.wpi; OK
C:\Documents and Settings\Administrateur\Bureau\OPTIONS\A appliquer en fonction de votre quantité de mémoire\WCPUID\wcpuclk.exe; OK
C:\Documents and Settings\Administrateur\Bureau\OPTIONS\A appliquer en fonction de votre quantité de mémoire\WCPUID\wcpuid.exe; OK
C:\Documents and Settings\Administrateur\Bureau\OPTIONS\Firefox - Plugins Macromedia\Firefox_Flash.exe; OK
C:\Documents and Settings\Administrateur\Bureau\OPTIONS\Firefox - Plugins Macromedia\Firefox_Shockwave.exe; OK
C:\Documents and Settings\Administrateur\Bureau\OPTIONS\Si vous utilisez l'outil de gravure intégré à Windows\KB831240_HighMAT.exe; OK
C:\Documents and Settings\Administrateur\Bureau\rmmabez-1.exe; OK
C:\Documents and Settings\Administrateur\Cookies\index.dat; Can't open
C:\Documents and Settings\Administrateur\DoctorWeb\CureIt.log; Can't open
C:\Documents and Settings\Administrateur\DoctorWeb\Quarantine\A0000001.exe; OK
C:\Documents and Settings\Administrateur\DoctorWeb\Quarantine\Proc.exe; OK
C:\Documents and Settings\Administrateur\DoctorWeb\Quarantine\UsbFix.exe; OK
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat; Can't open
C:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG; Can't open
C:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\index.dat; Can't open
C:\Documents and Settings\Administrateur\Local Settings\Temp\arctic-loop.exe; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\GLC39A.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\GLF395.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\GLF39E.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\GLF3A5.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\GLF3AB.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\GLF3AF.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\GLF3B3.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\GLJ39B.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\H20.exe; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\H2OWISE.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\hGu8YnFX.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\is-7882A.tmp\CheckDll.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\is-7882A.tmp\CloseAll.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\is-7882A.tmp\_isetup\_RegDLL.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\is-7882A.tmp\_isetup\_shfoldr.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\is-HP3FK.tmp\is-7KL6H.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\is-UK782.tmp\is-7ETNQ.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\isp164.tmp\_Setup.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\isp1B.tmp\_Setup.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\isp40.tmp\_Setup.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\isp9.tmp\_Setup.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\RarSFX0\dwebio32.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\RarSFX0\setup.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\RarSFX0\setup.exe; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\RarSFX0\_start.exe; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\set160.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\set17.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\set3C.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\Set5.tmp; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\VSDB.tmp\DotNetFX\dotnetchk.exe; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\Waves4\setup.exe; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\Waves4\Unregister.exe; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\{E2D27B84-6365-11D6-9BAF-0090271AF8A4}\CTCabEx.DLL; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\{E2D27B84-6365-11D6-9BAF-0090271AF8A4}\isrt.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\{E2D27B84-6365-11D6-9BAF-0090271AF8A4}\_IsRes.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temp\{E2D27B84-6365-11D6-9BAF-0090271AF8A4}\_IsUser.dll; OK
C:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\index.dat; Can't open
C:\Documents and Settings\Administrateur\NTUSER.DAT; Can't open
C:\Documents and Settings\Administrateur\ntuser.dat.LOG; Can't open
C:\Documents and Settings\All Users\Application Data\Nero\Nero\DrWeb\DrWeb32.dll; OK
C:\Documents and Settings\All Users\Application Data\Nero\Nero 9\DrWeb\DrWeb32.dll; OK
C:\Documents and Settings\LocalService\Cookies\index.dat; Can't open
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat; Can't open
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG; Can't open
C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat; Can't open
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat; Can't open
C:\Documents and Settings\LocalService\NTUSER.DAT; Can't open
C:\Documents and Settings\LocalService\ntuser.dat.LOG; Can't open
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat; Can't open
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG; Can't open
C:\Documents and Settings\NetworkService\NTUSER.DAT; Can't open
C:\Documents and Settings\NetworkService\ntuser.dat.LOG; Can't open
C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroPDF.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroPDF.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\ActiveX\GbDetect.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\ActiveX\pdfshell.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Esl\AiodLite.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\ACE.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\Acrofx32.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32Info.exe; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRdIF.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeLinguistic.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\agldt28l.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AGM.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\atl.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AXE16SharedExpat.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AXE8SharedExpat.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AXEParser.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\AXSLE.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\BIB.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\Browser\nppdf32.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\Browser\nppdf32.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\CoolType.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\edb1drv.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\edb500x.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\epic_eula.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\esdupdate.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\eularesen_US.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\eularesfr_FR.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\JP2KLib.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\libaglcnv28.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\Onix32.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Accessibility.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\accessibility.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\AcroForm\PMP\AdobePDF417.pmp; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\AcroForm\PMP\DataMatrix.pmp; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\AcroForm\PMP\QRCode.pmp; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\AcroForm.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Acroform.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Annots.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Annots.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Checkers.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Checkers.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\DigSig.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\DigSig.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\eBook.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\eBook.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\EScript.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\EScript.fra; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\EWH32.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\EWH32.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\HLS.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Hls.fra; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\IA32.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\IA32.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\ImageViewer\en_US\svgrsrc.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\ImageViewer\fr_FR\svgrsrc.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\ImageViewer\SVGCore.DLL; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\ImageViewer.API; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\ImageViewer.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\LegalPDF.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\legalpdf.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\MakeAccessible.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\makeaccessible.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\Flash.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\Flash.mpp; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\Mcimpp.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\MCIMPP.mpp; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\QuickTime.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\QuickTime.mpp; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\Real.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\Real.mpp; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\WindowsMedia.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia\MPP\WindowsMedia.mpp; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Multimedia.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PDDom.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\pddom.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PictureTasks\OLS\OnlineServices.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PictureTasks.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PictureTasks.fra; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PPKLite.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PPKLITE.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\reflow.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\reflow.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\SaveAsRTF.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\SaveAsRTF.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Search.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Search.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Search5.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Search5.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\SendMail.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\SendMail.fra; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Soap.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Soap.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Spelling.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Spelling.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Updater.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\updater.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\weblink.api; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\Weblink.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins3d\2d.x3d; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins3d\3difr.x3d; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins3d\drvDX8.x3d; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins3d\drvDX9.x3d; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins3d\drvSOFT.x3d; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins3d\tesselate.x3d; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\RdLang32.FRA; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\rt3d.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\SPPlugins\ADMPlugin.apl; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\Updater\acroaum.exe; OK
C:\Program Files\Adobe\Acrobat 7.0\Reader\vdk150.dll; OK
C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig708\FRA\instmsiw.exe; OK
C:\Program Files\Adobe\Acrobat 7.0\Setup Files\RdrBig708\FRA\setup.exe; OK
C:\Program Files\Altiris\Setup Files\Altiris Philips Smart Manage Administrator\Agent\AeXSetup.exe; OK
C:\Program Files\Antares\AutoTuneDX\Antares Autotune DX Uninstall\UNWISE.EXE; OK
C:\Program Files\Antares\AutoTuneDX\AutoTune.ax; OK
C:\Program Files\Antares\AutoTuneDX\autotune13.ax; OK
C:\Program Files\Antares\AutoTuneDX\DirectXRegister.exe; OK
C:\Program Files\Antares Audio Technologies\Auto-Tune 5 RTAS\mfc71.dll; OK
C:\Program Files\Antares Audio Technologies\Auto-Tune 5 RTAS\mfc71u.dll; OK
C:\Program Files\Antares Audio Technologies\Auto-Tune 5 RTAS\msvcp71.dll; OK
C:\Program Files\Antares Audio Technologies\Auto-Tune 5 RTAS\msvcr71.dll; OK
C:\Program Files\Antares Audio Technologies\Auto-Tune 5 TDM\mfc71.dll; OK
C:\Program Files\Antares Audio Technologies\Auto-Tune 5 TDM\mfc71u.dll; OK
C:\Program Files\Antares Audio Technologies\Auto-Tune 5 TDM\msvcp71.dll; OK
C:\Program Files\Antares Audio Technologies\Auto-Tune 5 TDM\msvcr71.dll; OK
C:\Program Files\Antares Audio Technologies\unins000.exe; OK
C:\Program Files\ASUS\ASUS VideoSecurity\ASUSASV2.ax; OK
C:\Program Files\ASUS\ASUS VideoSecurity\ASUSASV2.DLL; OK
C:\Program Files\ASUS\ASUS VideoSecurity\AsusVRC.sys; OK
C:\Program Files\ASUS\ASUS VideoSecurity\asus_converter.ax; OK
C:\Program Files\ASUS\ASUS VideoSecurity\converter.dll; OK
C:\Program Files\ASUS\ASUS VideoSecurity\devcon.exe; OK
C:\Program Files\ASUS\ASUS VideoSecurity\EMail.exe; OK
C:\Program Files\ASUS\ASUS VideoSecurity\h263_32.ax; OK
C:\Program Files\ASUS\ASUS VideoSecurity\msvcp60.dll; OK
C:\Program Files\ASUS\ASUS VideoSecurity\RtpSender.ax; OK
C:\Program Files\ASUS\ASUS VideoSecurity\Skins\default_Eng.skn; OK
C:\Program Files\ASUS\ASUS VideoSecurity\Skins\default_Fr.skn; OK
C:\Program Files\ASUS\ASUS VideoSecurity\Skins\default_Ger.skn; OK
C:\Program Files\ASUS\ASUS VideoSecurity\Skins\default_Jap.skn; OK
C:\Program Files\ASUS\ASUS VideoSecurity\Skins\default_Kor.skn; OK
C:\Program Files\ASUS\ASUS VideoSecurity\Skins\default_Ru.skn; OK
C:\Program Files\ASUS\ASUS VideoSecurity\Skins\default_SC.skn; OK
C:\Program Files\ASUS\ASUS VideoSecurity\Skins\default_TC.skn; OK
C:\Program Files\ASUS\ASUS VideoSecurity\VideoSecurity.exe; OK
C:\Program Files\ASUS\GameFaceLibrary\ball.ax; OK
C:\Program Files\ASUS\GameFaceLibrary\CustomFilterGraph.dll; OK
C:\Program Files\ASUS\GameFaceLibrary\GameFaceNode.dll; OK
C:\Program Files\ASUS\GameFaceLibrary\GFLocalCore.dll; OK
C:\Program Files\ASUS\GameFaceLibrary\GFNetworkCore.dll; OK
C:\Program Files\ASUS\GameFaceLibrary\msvcr71.dll; OK
C:\Program Files\ASUS\GameFaceLibrary\NetVideo.ax; OK
C:\Program Files\ASUS\GameFaceLibrary\SpyFilter.ax; OK
C:\Program Files\ASUS\GameFaceLibrary\VIGR.ax; OK
C:\Program Files\ASUS\GamerOSD\AudioOnVistaDLL.dll; OK
C:\Program Files\ASUS\GamerOSD\GamerOSD.exe; OK
C:\Program Files\ASUS\GamerOSD\ImageTransform.dll; OK
C:\Program Files\ASUS\GamerOSD\SBS.exe; OK
C:\Program Files\ASUS\SmartDoctor\2DTEST.EXE; OK
C:\Program Files\ASUS\SmartDoctor\AiPanelUtilityDLL.dll; OK
C:\Program Files\ASUS\SmartDoctor\ASUSRC.dll; OK
C:\Program Files\ASUS\SmartDoctor\aticlocklib.dll; OK
C:\Program Files\ASUS\SmartDoctor\atidgllk.sys; OK
C:\Program Files\ASUS\SmartDoctor\atipdlxx.dll; OK
C:\Program Files\ASUS\SmartDoctor\atistclk.dll; OK
C:\Program Files\ASUS\SmartDoctor\EIO.dll; OK
C:\Program Files\ASUS\SmartDoctor\EIO.sys; OK
C:\Program Files\ASUS\SmartDoctor\HyperDrive.exe; OK
C:\Program Files\ASUS\SmartDoctor\msvcp60.dll; OK
C:\Program Files\ASUS\SmartDoctor\nvgpio.dll; OK
C:\Program Files\ASUS\SmartDoctor\R5ClkLib.dll; OK
C:\Program Files\ASUS\SmartDoctor\ResDLL.dll; OK
C:\Program Files\ASUS\SmartDoctor\SmartDoctor.exe; OK
C:\Program Files\ASUS\SmartDoctor\VOV32.dll; OK
C:\Program Files\ASUS\SmartDoctor\xgctl.dll; OK
C:\Program Files\Creative\Shared Files\CTRegSvr.exe; OK
C:\Program Files\Creative\Shared Files\EmuAudio.pid; OK
C:\Program Files\Creative\Shared Files\PdtIdMgr.pid; OK
C:\Program Files\Creative Professional\Digital Audio System\E-MU PatchMix DSP\EmuPatchmixDsp.dll; OK
C:\Program Files\Creative Professional\Digital Audio System\E-MU PatchMix DSP\EmuPatchMixDSP.exe; OK
C:\Program Files\Creative Professional\Digital Audio System\E-MU PatchMix DSP\EmuPatchMixDsp_ps.dll; OK
C:\Program Files\Creative Professional\Digital Audio System\E-MU PatchMix DSP\VST\E-DelayCompensator.DLL; OK
C:\Program Files\Creative Professional\Digital Audio System\E-MU PatchMix DSP\VST\E-Wire.DLL; OK
C:\Program Files\Creative Professional\Digital Audio System\E-MU PatchMix DSP\VST\EmuPowerFX.dll; OK
C:\Program Files\Creative Professional\Digital Audio System\Program\setup.exe; OK
C:\Program Files\Creative Professional\Digital Audio System\Program\support\i386\ctzapxx.exe; OK
C:\Program Files\Creative Professional\Digital Audio System\Program\support\i386\instwdm.dll; OK
C:\Program Files\Creative Professional\Digital Audio System\Program\wdm\common\i386\OALINST.EXE; OK
C:\Program Files\Creative Professional\Digital Audio System\Program\wdm\lang\i386\inRes.dll; OK
C:\Program Files\Creative Professional\Digital Audio System\Program\wdm\win2k_xp\i386\ctcoinst.dll; OK
C:\Program Files\Creative Professional\Digital Audio System\Program\wdm\win2k_xp\i386\ctdvinst.dll; OK
C:\Program Files\Creative Professional\Enregistrement du produit\French\EMUORReg.exe; OK
C:\Program Files\Creative Professional\Enregistrement du produit\French\InetReg.crl; OK
C:\Program Files\Creative Professional\Enregistrement du produit\French\InetReg.exe; OK
C:\Program Files\Digidesign\DAE\Plug-Ins\WaveShell-DAE 4.0.dpm; OK
C:\Program Files\Digidesign\DAE\Plug-Ins\WaveShell-DAE 4.3.dpm; OK
C:\Program Files\Easy CD-DA Extractor 12\3g2.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\3g2plus.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\3gp.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\3gpplus.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\aac.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\aacplus.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\acdbase.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\adpcm.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\aiff.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\alac.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\ct.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\decoder_ape.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\decoder_flac.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\decoder_mp4.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\decoder_mpc.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\decoder_ogg.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\decoder_wma.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\decoder_wv.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\ezcddax.exe; OK
C:\Program Files\Easy CD-DA Extractor 12\ezcddax32.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\flac.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\id3lib.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\lame.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\libmmd.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\m4a.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\m4aplus.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\m4b.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\monkey.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\mp4.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\mp4plus.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\msvcm90.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\msvcp90.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\msvcr90.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\musepack.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\ntaspi32.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\ogg.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\pcm.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\pcmdual.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\register32.exe; OK
C:\Program Files\Easy CD-DA Extractor 12\waveout.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\wavpack.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\wma9.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\wma91.dll; OK
C:\Program Files\Easy CD-DA Extractor 12\wma92.dll; OK
C:\Program Files\Fichiers communs\Digidesign\DAE\Plug-Ins\AutoTune.dpm; OK
C:\Program Files\Fichiers communs\Digidesign\DAE\Plug-Ins\AutoTuneTDM.dpm; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\10\Intel 32\IDriver.exe; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\10\Intel 32\iGdiCnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\10\Intel 32\IScrCnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\10\Intel 32\ISRT.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\10\Intel 32\IUserCnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\10\Intel 32\objpscnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\10\Intel 32\_ISRES1033.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriver.exe; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriver2.exe; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\iGdiCnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IScrCnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\ISRT.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IUserCnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\objpscnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\_ISRES1033.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\9\Intel 32\IDriver.exe; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\9\Intel 32\IDriver2.exe; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\9\Intel 32\iGdiCnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\9\Intel 32\IScrCnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\9\Intel 32\ISRT.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\9\Intel 32\IUserCnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\9\Intel 32\objpscnv.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Driver\9\Intel 32\_ISRES1033.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Engine\6\Intel 32\ctor.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Engine\6\Intel 32\IKernel.exe; OK
C:\Program Files\Fichiers communs\InstallShield\Engine\6\Intel 32\ILog.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Engine\6\Intel 32\iuser.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Engine\6\Intel 32\objectps.dll; OK
C:\Program Files\Fichiers communs\InstallShield\IScript\iscript.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\09\01\Intel32\ctor.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\09\01\Intel32\DotNetInstaller.exe; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\09\01\Intel32\iGdi.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\09\01\Intel32\iKernel.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\09\01\Intel32\iscript.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\09\01\Intel32\iuser.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\09\01\Intel32\setup.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\11\00\Intel32\ctor.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\11\00\Intel32\DotNetInstaller.exe; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\11\00\Intel32\iGdi.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\11\00\Intel32\iKernel.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\11\00\Intel32\iscript.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\11\00\Intel32\iuser.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\11\00\Intel32\setup.dll; OK
C:\Program Files\Fichiers communs\InstallShield\Professional\RunTime\Objectps.dll; OK
C:\Program Files\Fichiers communs\IviSDK\Hauppauge\IviAudio_Hauppauge.ax; OK
C:\Program Files\Fichiers communs\IviSDK\Hauppauge\IviVideo_Hauppauge.ax; OK
C:\Program Files\Fichiers communs\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_07.b03\launcher.exe; OK
C:\Program Files\Fichiers communs\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_07.b03\patchjre.exe; OK
C:\Program Files\Fichiers communs\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_07.b03\RegUtils.dll; OK
C:\Program Files\Fichiers communs\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_07.b03\zipper.exe; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DAO\dao360.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\1025\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\1028\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\1031\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\1033\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\1036\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\1040\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\1041\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\1042\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\2052\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\3082\DWINTL20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\DW20.EXE; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\DWDCW20.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\DW\DWTRIG20.EXE; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Ink\inkobj.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Ink\tpcps.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\MSInfo\IEINFO5.OCX; OK
C:\Program Files\Fichiers communs\Microsoft Shared\MSInfo\msinfo32.exe; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Speech\1036\spcplui.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Speech\sapi.cpl; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Speech\sapi.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Speech\sapisvr.exe; OK
C:\Program Files\Fichiers communs\Microsoft Shared\TextConv\html32.cnv; OK
C:\Program Files\Fichiers communs\Microsoft Shared\TextConv\msconv97.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\TextConv\mswrd632.wpc; OK
C:\Program Files\Fichiers communs\Microsoft Shared\TextConv\mswrd832.cnv; OK
C:\Program Files\Fichiers communs\Microsoft Shared\TextConv\write32.wpc; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Triedit\dhtmled.ocx; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Triedit\TRIEDIT.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\VC\msdia80.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\VGX\vgx.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Web Folders\1036\nsextint.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Web Folders\msonsext.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Web Folders\MSOWS409.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Web Folders\MSOWS40c.DLL; OK
C:\Program Files\Fichiers communs\Microsoft Shared\Web Folders\pkmws.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\web server extensions\40\bin\fp4autl.dll; OK
C:\Program Files\Fichiers communs\Microsoft Shared\web server extensions\40\bin\FP4AWEC.DLL; OK
C:\Program Files\Fichiers communs\MSSoap\Binaries\mssoap1.dll; OK
C:\Program Files\Fichiers communs\MSSoap\Binaries\Resources\1036\mssoapr.dll; OK
C:\Program Files\Fichiers communs\MSSoap\Binaries\wisc10.dll; OK
C:\Program Files\Fichiers communs\Nero\AdvrCntr4\AdvrCntr4.dll; OK
C:\Program Files\Fichiers communs\Nero\AdvrCntr4\iconv.dll; OK
C:\Program Files\Fichiers communs\Nero\AdvrCntr4\NeroPatentActivation.exe; OK
C:\Program Files\Fichiers communs\Nero\AdvrCntr4\NOSProductRegistration.dll; OK
C:\Program Files\Fichiers communs\Nero\AdvrCntr4\NOSUsageStatistics.dll; OK
C:\Program Files\Fichiers communs\Nero\DolbyFiles9\NeAcEnc.dll; OK
C:\Program Files\Fichiers communs\Nero\DolbyFiles9\NeDDConv.dll; OK
C:\Program Files\Fichiers communs\Nero\DolbyFiles9\NeEacDec2.dll; OK
C:\Program Files\Fichiers communs\Nero\DolbyFiles9\neroapl.dll; OK
C:\Program Files\Fichiers communs\Nero\DolbyFiles9\NeTrueHdDec.dll; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\ipclog.exe; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\LSDriveDetect.exe; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\ResourceManager.dll; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\SetupX.exe; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\unit_app_30\ShellManager.dll; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\unit_app_30\UnitRes.dll; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\unit_app_4\ShellManager.dll; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\unit_app_4\UnitRes.dll; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\unit_app_6\ShellManager.dll; OK
C:\Program Files\Fichiers communs\Nero\Nero ProductInstaller 4\unit_app_6\UnitRes.dll; OK
C:\Program Files\Fichiers communs\Nero\SMC\NeroDigitalExt.dll; OK
C:\Program Files\Fichiers communs\SpeechEngines\Microsoft\spcommon.dll; OK
C:\Program Files\Fichiers communs\SpeechEngines\Microsoft\TTS\1033\spttseng.dll; OK
C:\Program Files\Fichiers communs\System\ado\msader15.dll; OK
C:\Program Files\Fichiers communs\System\ado\msado15.dll; OK
C:\Program Files\Fichiers communs\System\ado\msado20.tlb; OK
C:\Program Files\Fichiers communs\System\ado\msado21.tlb; OK
C:\Program Files\Fichiers communs\System\ado\msado25.tlb; OK
C:\Program Files\Fichiers communs\System\ado\msado26.tlb; OK
C:\Program Files\Fichiers communs\System\ado\msado27.tlb; OK
C:\Program Files\Fichiers communs\System\ado\msadomd.dll; OK
C:\Program Files\Fichiers communs\System\ado\msador15.dll; OK
C:\Program Files\Fichiers communs\System\ado\msadox.dll; OK
C:\Program Files\Fichiers communs\System\ado\msadrh15.dll; OK
C:\Program Files\Fichiers communs\System\ado\msjro.dll; OK
C:\Program Files\Fichiers communs\System\directdb.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msadce.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msadcer.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msadcf.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msadcfr.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msadco.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msadcor.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msadcs.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msadds.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msaddsr.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msdaprsr.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msdaprst.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msdarem.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msdaremr.dll; OK
C:\Program Files\Fichiers communs\System\msadc\msdfmap.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdadc.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdaenum.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdaer.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdaipp.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdaora.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdaorar.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdaosp.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdapml.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdaps.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdasc.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdasql.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdasqlr.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdatl3.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdatt.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msdaurl.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\msxactps.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\oledb32.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\oledb32r.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\sqloledb.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\sqloledb.rll; OK
C:\Program Files\Fichiers communs\System\Ole DB\sqlxmlx.dll; OK
C:\Program Files\Fichiers communs\System\Ole DB\sqlxmlx.rll; OK
C:\Program Files\Fichiers communs\System\wab32.dll; OK
C:\Program Files\Fichiers communs\System\wab32res.dll; OK
C:\Program Files\GameFace Messenger\AceClientDLL.dll; OK
C:\Program Files\GameFace Messenger\AceFPT.dll; OK
C:\Program Files\GameFace Messenger\acelib.dll; OK
C:\Program Files\GameFace Messenger\AceSkin.dll; OK
C:\Program Files\GameFace Messenger\AceUtility.dll; OK
C:\Program Files\GameFace Messenger\AnimationMenu.dll; OK
C:\Program Files\GameFace Messenger\ExtenControl.dll; OK
C:\Program Files\GameFace Messenger\FlashPlayer.dll; OK
C:\Program Files\GameFace Messenger\GameFace.exe; OK
C:\Program Files\GameFace Messenger\GameFaceLib.dll; OK
C:\Program Files\GameFace Messenger\language\English\DllResource.dll; OK
C:\Program Files\GameFace Messenger\language\Simplified Chinese\DllResource.dll; OK
C:\Program Files\GameFace Messenger\language\Traditional Chinese\DllResource.dll; OK
C:\Program Files\GameFace Messenger\libcurl.dll; OK
C:\Program Files\GameFace Messenger\libeay32.dll; OK
C:\Program Files\GameFace Messenger\LibInstall\CheckExist\instmsia.exe; OK
C:\Program Files\GameFace Messenger\LibInstall\CheckExist\instmsiw.exe; OK
C:\Program Files\GameFace Messenger\LibInstall\CheckExist\setup.exe; OK
C:\Program Files\GameFace Messenger\LibInstall\instmsia.exe; OK
C:\Program Files\GameFace Messenger\LibInstall\instmsiw.exe; OK
C:\Program Files\GameFace Messenger\LibInstall\setup.exe; OK
C:\Program Files\GameFace Messenger\MediaResource.dll; OK
C:\Program Files\GameFace Messenger\mfc71.dll; OK
C:\Program Files\GameFace Messenger\mfc71u.dll; OK
C:\Program Files\GameFace Messenger\msvcp71.dll; OK
C:\Program Files\GameFace Messenger\msvcr71.dll; OK
C:\Program Files\GameFace Messenger\OleImageIM.dll; OK
C:\Program Files\GameFace Messenger\PfCore.dll; OK
C:\Program Files\GameFace Messenger\SafeGuard.dll; OK
C:\Program Files\GameFace Messenger\ssleay32.dll; OK
C:\Program Files\InstallShield Installation Information\{2227E1FA-01F5-483C-AB0E-2A308E900B3D}\Setup.exe; OK
C:\Program Files\InstallShield Installation Information\{23430AE3-6FFF-47CF-B7E7-1552FC61DF39}\Setup.exe; OK
C:\Program Files\InstallShield Installation Information\{315ACD04-BCEB-478B-9B1D-5431D0E6CB11}\setup.exe; OK
C:\Program Files\InstallShield Installation Information\{315ACD04-BCEB-478B-9B1D-5431D0E6CB11}\_setup.dll; OK
C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\setup.exe; OK
C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}\_setup.dll; OK
C:\Program Files\InstallShield Installation Information\{4C4D25EB-6513-4702-8355-F4194DE2E1D9}\Setup.exe; OK
C:\Program Files\InstallShield Installation Information\{5633D266-6BAE-41CE-987F-0FE5F5F92D64}\CTCABEX.DLL; OK
C:\Program Files\InstallShield Installation Information\{5633D266-6BAE-41CE-987F-0FE5F5F92D64}\setup.exe; OK
C:\Program Files\InstallShield Installation Information\{5633D266-6BAE-41CE-987F-0FE5F5F92D64}\_setup.dll; OK
C:\Program Files\InstallShield Installation Information\{6ACBC6E4-03D0-422E-A0CA-3BA1A8EF8374}\CTCABEX.DLL; OK
C:\Program Files\InstallShield Installation Information\{6ACBC6E4-03D0-422E-A0CA-3BA1A8EF8374}\setup.exe; OK
C:\Program Files\InstallShield Installation Information\{6ACBC6E4-03D0-422E-A0CA-3BA1A8EF8374}\_setup.dll; OK
C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe; OK
C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\_setup.dll; OK
C:\Program Files\InstallShield Installation Information\{E2D27B84-6365-11D6-9BAF-0090271AF8A4}\Setup.exe; OK
C:\Program Files\Internet Explorer\Connection Wizard\icwconn.dll; OK
C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe; OK
C:\Program Files\Internet Explorer\Connection Wizard\icwconn2.exe; OK
C:\Program Files\Internet Explorer\Connection Wizard\icwdl.dll; OK
C:\Program Files\Internet Explorer\Connection Wizard\icwhelp.dll; OK
C:\Program Files\Internet Explorer\Connection Wizard\icwres.dll; OK
C:\Program Files\Internet Explorer\Connection Wizard\icwrmind.exe; OK
C:\Program Files\Internet Explorer\Connection Wizard\icwtutor.exe; OK
C:\Program Files\Internet Explorer\Connection Wizard\icwutil.dll; OK
C:\Program Files\Internet Explorer\Connection Wizard\inetwiz.exe; OK
C:\Program Files\Internet Explorer\Connection Wizard\isignup.exe; OK
C:\Program Files\Internet Explorer\Connection Wizard\trialoc.dll; OK
C:\Program Files\Internet Explorer\HMMAPI.DLL; OK
C:\Program Files\Internet Explorer\iedw.exe; OK
C:\Program Files\Internet Explorer\IEXPLORE.EXE; OK
C:\Program Files\Internet Explorer\MUI\0409\mscorier.dll; OK
C:\Program Files\Internet Explorer\MUI\040C\mscorier.dll; OK
C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll; OK
C:\Program Files\Internet Explorer\PLUGINS\nppdf32.FRA; OK
C:\Program Files\Java\jre1.5.0_07\bin\awt.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\axbridge.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\client\jvm.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\cmm.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\dcpr.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\deploy.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\dt_shmem.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\dt_socket.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\eula.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\fontmanager.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\hpi.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\hprof.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\instrument.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\ioser12.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\j2pkcs11.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jaas_nt.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\java.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\java.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\javacpl.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\javaw.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\JavaWebStart.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\javaws.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\java_crw_demo.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jawt.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\JdbcOdbc.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jdwp.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jpeg.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jpicom32.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jpicpl32.cpl; OK
C:\Program Files\Java\jre1.5.0_07\bin\jpiexp32.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jpinscp.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jpioji.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jpishare.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jsound.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jsoundds.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\jucheck.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\jusched.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\keytool.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\kinit.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\klist.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\ktab.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\management.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\net.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\nio.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\NPJava11.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\NPJava12.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\NPJava13.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\NPJava14.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\NPJava32.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\NPJPI150_07.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\NPOJI610.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\orbd.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\pack200.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\policytool.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\RegUtils.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\rmi.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\rmid.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\rmiregistry.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\servertool.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\tnameserv.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\unicows.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\unpack.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\unpack200.exe; OK
C:\Program Files\Java\jre1.5.0_07\bin\verify.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\w2k_lsa_auth.dll; OK
C:\Program Files\Java\jre1.5.0_07\bin\zip.dll; OK
C:\Program Files\JEUX\Arcade.exe; OK
C:\Program Files\JEUX\Disasteroids3D\Disasteroids3D.exe; OK
C:\Program Files\JEUX\Light3D\lights3d.exe; OK
C:\Program Files\JEUX\Minesweeper3D\Minesweeper3D.exe; OK
C:\Program Files\JEUX\Minesweeper3D\mingwm10.dll; OK
C:\Program Files\JEUX\SpaceInvaders3D\SpaceInvadersOpenGL.exe; OK
C:\Program Files\Malwarebytes' Anti-Malware\mbam-dor.exe; OK
C:\Program Files\Malwarebytes' Anti-Malware\mbam.dll; OK
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe; OK
C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll; OK
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe; OK
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe; OK
C:\Program Files\Malwarebytes' Anti-Malware\ssubtmr6.dll; OK
C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe; OK
C:\Program Files\Malwarebytes' Anti-Malware\vbalsgrid6.ocx; OK
C:\Program Files\Malwarebytes' Anti-Malware\zlib.dll; OK
C:\Program Files\Messenger\custsat.dll; OK
C:\Program Files\Messenger\Msgsc.dll; OK
C:\Program Files\Messenger\msgslang.dll; OK
C:\Program Files\Messenger\msimmsgr.dll; OK
C:\Program Files\Messenger\msimnetc.dll; OK
C:\Program Files\Messenger\Msmsgs.exe; OK
C:\Program Files\Messenger\msvcr71.dll; OK
C:\Program Files\Messenger\rtcimsp.dll; OK
C:\Program Files\Microsoft Office\PowerPoint Viewer\GDIPLUS.DLL; OK
C:\Program Files\Microsoft Office\PowerPoint Viewer\INTLDATE.DLL; OK
C:\Program Files\Microsoft Office\PowerPoint Viewer\PPTVIEW.EXE; OK
C:\Program Files\Microsoft Office\PowerPoint Viewer\PPVWINTL.DLL; OK
C:\Program Files\Microsoft Office\PowerPoint Viewer\SAEXT.DLL; OK
C:\Program Files\Microsoft Office\PowerPoint Viewer\UNICOWS.DLL; OK
C:\Program Files\Movie Maker\moviemk.exe; OK
C:\Program Files\Movie Maker\WMM2AE.dll; OK
C:\Program Files\Movie Maker\WMM2ERES.dll; OK
C:\Program Files\Movie Maker\WMM2EXT.dll; OK
C:\Program Files\Movie Maker\WMM2FILT.dll; OK
C:\Program Files\Movie Maker\WMM2FXA.dll; OK
C:\Program Files\Movie Maker\WMM2FXB.dll; OK
C:\Program Files\Movie Maker\WMM2RES.dll; OK
C:\Program Files\Movie Maker\WMM2RES2.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\bckg.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\bckgres.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\bckgzm.exe; OK
C:\Program Files\MSN Gaming Zone\Windows\chkr.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\chkrres.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\chkrzm.exe; OK
C:\Program Files\MSN Gaming Zone\Windows\Cmnclim.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\Cmnresm.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\hrtz.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\Hrtzres.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\hrtzzm.exe; OK
C:\Program Files\MSN Gaming Zone\Windows\rvse.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\Rvseres.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\Rvsezm.exe; OK
C:\Program Files\MSN Gaming Zone\Windows\shvl.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\Shvlres.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\shvlzm.exe; OK
C:\Program Files\MSN Gaming Zone\Windows\UniAnsi.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\zClientm.exe; OK
C:\Program Files\MSN Gaming Zone\Windows\ZCorem.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\zeeverm.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\ZNetM.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\zoneclim.dll; OK
C:\Program Files\MSN Gaming Zone\Windows\zonelibM.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_AC3.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_Aiff.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_Audible.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_DefConvertor.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_mp3PP.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_mp3pro.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_MSAxp.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_NeFlac.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_NeroDigital.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_NeroStarter.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_OGG.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\APM_Wav.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\AudioPluginMgr.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\lame_enc.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\lpaccodec.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\lpac_codec_api.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\MusePack\MPPDEC.EXE; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\MusePack\MPPENC.EXE; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\nxLame.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\nxMyAPE.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\nxMyFLA.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\nxMyLPAC.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\nxMyMPC.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\nxMyOFR.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\nxMyOgg.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\nxMySHN.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\OFR.EXE; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\Shorten\CYGWIN1.DLL; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\AudioPluginMgr\Shorten\SHORTEN.EXE; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBPRO860u80.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResCSY.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResDAN.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResDEU.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResELL.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResESP.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResFIN.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResFRA.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResHUN.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResITA.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResNLD.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResNOR.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResPLK.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResPTB.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResRUS.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResSVE.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGCBProResTRK.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\BCGPOleAcc.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\CoverEdCtrl\CoverEdCtrl.ocx; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\DriveLocker.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\InFAudioRippingServer.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\KARAOKE.DLL; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\LLS.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\MPGEnc.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeDwFileHelper.exe; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.BDGraphic\NeBDGraphic.ax; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.BDThumbnail\NeBDThumbnail.ax; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.DiscNavBD\DiscNavBD.ax; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.DiscNavDvd\DiscNavDvd.ax; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.DiscNavVcd\DiscNavVcd.ax; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.exe; Corrupt
C:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.HttpManager\NeHttpManager.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.NeDiscManager\NeDiscManager.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\Nero.NeDiscRecog\NeDiscRecog.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroAPI.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroAPIEngine.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroAPIGlueLayerUnicode.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroAPIUnicode.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroAudioRip.exe; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroCmd.exe; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroCSY.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroDAN.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroDEU.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroELL.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroESP.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroFIN.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroFRA.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroHUN.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroITA.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroNLD.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroNOR.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroPLK.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroPTB.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroRUS.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroStarter.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroSVE.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NeroTRK.nls; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NFD\NeroFileDialog.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NFD\NeroFileDialogCF.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NFD\NeroFileDialogIDLPS.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NFD\NeroFileDialogVista.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NMDllHost.exe; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NScCoreComponents\log4cxx.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NScCoreComponents\NMCoFoundation.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NScCoreComponents\NMDataServices.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NScCoreComponents\NMLogCxx.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NScCoreComponents\NMPluginBase.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NScCoreComponents\NMSearch.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\NScCoreComponents\NMSearchPluginFileSystem.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbAFX3.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbClean.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbCMSig_1_3.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CDDBControl.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbFEX.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbFPX1.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangDE.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangES.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangFR.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangIT.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangJA.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangKO.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangNL.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangPT_BR.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangRU.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangSV.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangTH.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangZH.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLangZT.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbLink.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbMusicID.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbMusicIDUI.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbPlaylist2.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbS12T.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CDDBUI.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\CddbWOManager.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\iconv.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\NOSHttp.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\NOSInternetServices.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\NOSMetaData.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\NOSMyNeroRegistration.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\NOSWebCommunity.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\OnlineServices\NOSWebDSPlugin.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\PTT\NMCDRip.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\PTT\NMPlaybackComponent.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\PTT\NMSlideShow.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\PTT\NMSSEffects.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\PTT\NMThumbnailIconsGen.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\PTT\NMTTranscoder.dll; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\SecurDisc\discinfo.exe; OK
C:\Program Files\Nero\Nero 9\Nero Burning ROM\SMC\AReadyLB_Nero.dll; OK
C:\Program
0
afideg Messages postés 10517 Date d'inscription lundi 10 octobre 2005 Statut Contributeur sécurité Dernière intervention 12 avril 2022 602
16 févr. 2009 à 14:27
Bonjour,

Euh!
C'est quoi ce Rmmabez : Remover for Win32/Mabezat ===
Est-ce contenu dans l'analyse de DrWeb ?

Ou est-ce plutôt le résultat (incomplet) de ceci: http://www.avg.com/fr.52.ndi-93495
Téléchargez les fichiers suivants rmmabez.exe et rmmabez.nt.
Qui l'a demandé ?
Merci


Al.
-

Patience-Vigilance-Amour.
0
Destrio5 Messages postés 85985 Date d'inscription dimanche 11 juillet 2010 Statut Modérateur Dernière intervention 17 février 2023 10 294
16 févr. 2009 à 14:28
0
afideg Messages postés 10517 Date d'inscription lundi 10 octobre 2005 Statut Contributeur sécurité Dernière intervention 12 avril 2022 602
16 févr. 2009 à 14:59
Re,
Salut Destrio5
Ce lien, je l'avais noté plus haut: mais je ne vois pas qui a demandé cette application à l'internaute .

Par contre, je trouve bizarre/anormal que cet outil annonce correctes de grosses failles de sécurité sur des programmes non à jour, tels que :

-C:\Program Files\Java\jre1.5.0_07\bin\javaw.exe; OK
-C:\Program Files\Fichiers communs\Java\Update\Base Images\jre1.5.0.b64\patch-jre1.5.0_07.b03\launcher.exe; OK
-C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll; OK



Bonne semaine
Al.
0
Bouboule > afideg Messages postés 10517 Date d'inscription lundi 10 octobre 2005 Statut Contributeur sécurité Dernière intervention 12 avril 2022
16 févr. 2009 à 18:35
Bonjour,

Oui afideg rmmabez c'est bien ce que tu me dis, j'a ifais un scan Bitdefender cette après midi, voici le log :

BitDefender Online Scanner



Rapport d'analyse généré à: Mon, Feb 16, 2009 - 17:02:29





Voie d'analyse: A:\;C:\;D:\;E:\;F:\;G:\;H:\;I:\;J:\;K:\;L:\;M:\;N:\;







Statistiques

Temps
05:17:45

Fichiers
1212928

Directoires
16621

Secteurs de boot
0

Archives
9430

Paquets programmes
53745




Résultats

Virus identifiés
6

Fichiers infectés
222

Fichiers suspects
0

Avertissements
0

Désinfectés
0

Fichiers effacés
222




Info sur les moteurs

Définition virus
2670015

Version des moteurs
AVCORE v1.7 (build 8314.19) (i386) (Sep 29 2008 17:19:14)

Analyse des plugins
17

Archive des plugins
45

Unpack des plugins
7

E-mail plugins
6

Système plugins
4




Paramètres d'analyse

Première action
Désinfecté

Seconde Action
Supprimé

Heuristique
Oui

Acceptez les avertissements
Oui

Extensions analysées
*;

Excludez les extensions


Analyse d'emails
Oui

Analyse des Archives
Oui

Analyser paquets programmes
Oui

Analyse des fichiers
Oui

Analyse de boot
Oui




Fichier analysé
Statut

C:\Documents and Settings\Administrateur\Bureau\Accessoires\Instal\Power.Video.Converter.1.6.2.BY-MAFIAROX.rar=>KEYGEN\PowerVideoConverterKeygen.exe
Infecté par: Trojan.Packed.38827

C:\Documents and Settings\Administrateur\Bureau\Accessoires\Instal\Power.Video.Converter.1.6.2.BY-MAFIAROX.rar=>KEYGEN\PowerVideoConverterKeygen.exe
Supprimé

C:\Documents and Settings\Administrateur\Bureau\Accessoires\Instal\Power.Video.Converter.1.6.2.BY-MAFIAROX.rar
Echec de la mise à jour

D:\Recycled\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\Recycled\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\Recycled\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-1957994488-1715567821-725345543-1004\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-1957994488-1715567821-725345543-1004\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-1957994488-1715567821-725345543-1004\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-555117014-3899632600-1319491127-1007\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-555117014-3899632600-1319491127-1007\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-555117014-3899632600-1319491127-1007\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df10\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df10\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df10\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Flangus\Artwork\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Flangus\Artwork\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Flangus\Artwork\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Formula Controller\Artwork\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Formula Controller\Artwork\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Formula Controller\Artwork\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity LSD\Artwork\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity LSD\Artwork\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity LSD\Artwork\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity PanOMatic\Artwork\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity PanOMatic\Artwork\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity PanOMatic\Artwork\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Parametric EQ\Artwork\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Parametric EQ\Artwork\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Parametric EQ\Artwork\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Peak Controller\Artwork\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Peak Controller\Artwork\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Peak Controller\Artwork\windows_secrets.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Scratcher\Artwork\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Scratcher\Artwork\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Scratcher\Artwork\passwords.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Send\Artwork\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Send\Artwork\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Send\Artwork\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Soft Clipper\Artwork\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Soft Clipper\Artwork\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Soft Clipper\Artwork\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Spectroman\Artwork\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Spectroman\Artwork\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Spectroman\Artwork\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Stereo Enhancer\Artwork\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Stereo Enhancer\Artwork\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Stereo Enhancer\Artwork\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Vocoder\Artwork\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Vocoder\Artwork\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Vocoder\Artwork\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity WaveShaper\Artwork\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity WaveShaper\Artwork\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity WaveShaper\Artwork\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity WaveShaper\Data\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity WaveShaper\Data\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity WaveShaper\Data\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity WaveShaper\Data\Maps\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity WaveShaper\Data\Maps\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity WaveShaper\Data\Maps\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Wrapper\Artwork\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Wrapper\Artwork\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity Wrapper\Artwork\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity X-Y Controller\Artwork\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity X-Y Controller\Artwork\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity X-Y Controller\Artwork\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity X-Y Controller\Artwork\Skins\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity X-Y Controller\Artwork\Skins\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Effects\Fruity X-Y Controller\Artwork\Skins\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\FL Slayer\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\FL Slayer\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\FL Slayer\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\FPC\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\FPC\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\FPC\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruit Kick\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruit Kick\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruit Kick\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DrumSynth Live\Artwork\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DrumSynth Live\Artwork\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DrumSynth Live\Artwork\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DrumSynth Live\Data\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DrumSynth Live\Data\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DrumSynth Live\Data\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DrumSynth Live\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DrumSynth Live\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DrumSynth Live\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DX10\Artwork\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DX10\Artwork\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DX10\Artwork\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DX10\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DX10\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity DX10\passwords.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Granulizer\Artwork\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Granulizer\Artwork\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Granulizer\Artwork\windows_secrets.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Granulizer\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Granulizer\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Granulizer\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Keyboard Controller\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Keyboard Controller\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Keyboard Controller\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Slicer\Artwork\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Slicer\Artwork\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Slicer\Artwork\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Slicer\Data\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Slicer\Data\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Fruity Slicer\Data\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Plucked!\Artwork\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Plucked!\Artwork\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Plucked!\Artwork\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\ReWired\Artwork\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\ReWired\Artwork\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\ReWired\Artwork\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\SimSynth\Artwork\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\SimSynth\Artwork\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\SimSynth\Artwork\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Artwork\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Artwork\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Artwork\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\DX7Algos\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\DX7Algos\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\DX7Algos\windows_secrets.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\Envelopes\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\Envelopes\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\Envelopes\passwords.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\LFO\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\LFO\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\LFO\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\Maps\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\Maps\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\Maps\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Sytrus\Data\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Wasp\Artwork\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Wasp\Artwork\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\Fruity\Generators\Wasp\Artwork\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df11\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\3x Osc\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\3x Osc\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\3x Osc\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Automation Clips\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Automation Clips\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Automation Clips\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\BeepMap\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\BeepMap\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\BeepMap\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Fruity slicer\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Fruity slicer\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Fruity slicer\windows_secrets.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Layers\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Layers\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Layers\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Plucked!\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Plucked!\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Channel presets\Plucked!\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\D'n'B samples\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\D'n'B samples\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\D'n'B samples\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dance\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dance\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dance\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dance 1 samples\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dance 1 samples\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dance 1 samples\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dance 2 samples\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dance 2 samples\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dance 2 samples\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Destinct samples\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Destinct samples\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Destinct samples\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\DrumLoops\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\DrumLoops\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\DrumLoops\windows_secrets.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\DrumSynth\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\DrumSynth\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\DrumSynth\passwords.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Drun'n'Bass samples\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Drun'n'Bass samples\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Drun'n'Bass samples\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dub samples\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dub samples\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Dub samples\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Earth samples\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Earth samples\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Earth samples\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\FPC\Cymbals\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\FPC\Cymbals\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\FPC\Cymbals\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\FPC\Hi Hats\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\FPC\Hi Hats\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\FPC\Hi Hats\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\FPC\Kick Drums\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\FPC\Kick Drums\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\FPC\Kick Drums\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Off Topic samples\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Off Topic samples\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Off Topic samples\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\ONESHO~1\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\ONESHO~1\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\ONESHO~1\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Pads\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Pads\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Pads\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Percs\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Percs\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Percs\windows_secrets.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\PERCUS~1\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\PERCUS~1\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\PERCUS~1\passwords.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\PIANOS\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\PIANOS\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\PIANOS\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\REAKTOR samples\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\REAKTOR samples\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\REAKTOR samples\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\RealDrumkits\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\RealDrumkits\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\RealDrumkits\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 B-3 02\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 B-3 02\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 B-3 02\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 BLP 02\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 BLP 02\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 BLP 02\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 CLA 01\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 CLA 01\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 CLA 01\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 DLP 01\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 DLP 01\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 DLP 01\passwords.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 DLP 04\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 DLP 04\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 DLP 04\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 GLK 02\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 GLK 02\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Reggae Sample\Partition A\060 GLK 02\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\12BSNARE\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\12BSNARE\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\12BSNARE\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\basskt1\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\basskt1\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\basskt1\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\BITKICKS\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\BITKICKS\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\BITKICKS\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\CLOSHATS\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\CLOSHATS\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\CLOSHATS\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\DANCEKIC\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\DANCEKIC\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\DANCEKIC\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\DRYKICKS\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\DRYKICKS\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\DRYKICKS\windows_secrets.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\DRYSNARE\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\DRYSNARE\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\DRYSNARE\passwords.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\elecdk1\Claps\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\elecdk1\Claps\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\elecdk1\Claps\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\elecdk1\Crashes\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\elecdk1\Crashes\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\elecdk1\Crashes\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\elecdk1\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\elecdk1\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\elecdk1\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\hiphopdk1\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\hiphopdk1\office_crack.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\hiphopdk1\office_crack.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\instrkt1\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\instrkt1\windows.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\instrkt1\windows.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\OPENHATS\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\OPENHATS\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\OPENHATS\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\percukt1\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\percukt1\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\percukt1\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\RECSNARE\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\RECSNARE\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\RECSNARE\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\rockdk1\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\rockdk1\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\rockdk1\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\RolandDrRythemDrumMachine\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\RolandDrRythemDrumMachine\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\RolandDrRythemDrumMachine\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\SECKICKS\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\SECKICKS\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\SECKICKS\windows_secrets.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\WETKICKS\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\WETKICKS\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\WETKICKS\passwords.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\WETSNARE\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\WETSNARE\serials.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sample Packs\WETSNARE\serials.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\SimSynth\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\SimSynth\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\SimSynth\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\SimSynth2\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\SimSynth2\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\SimSynth2\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\SNAREP~1\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\SNAREP~1\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\SNAREP~1\documents_backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Soul samples\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Soul samples\imp_data.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Soul samples\imp_data.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Steveland's Vinylkit samples\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Steveland's Vinylkit samples\source.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Steveland's Vinylkit samples\source.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Strings\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Strings\windows_secrets.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Strings\windows_secrets.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Strom samples\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Strom samples\passwords.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Strom samples\passwords.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sytrus\Bass\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sytrus\Bass\MyDocuments.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sytrus\Bass\MyDocuments.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sytrus\Bell\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sytrus\Bell\backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Supprimé

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sytrus\Bell\backup.rar
Echec de la mise à jour

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sytrus\Brass\documents_backup.rar=>Documents and Settings\MyDocuments\Readme.doc .exe
Infecté par: Win32.Worm.Mabezat.J

D:\RECYCLER\S-1-5-21-583907252-861567501-725345543-1004\Df12\Patches\Packs\Sytrus\Brass\documents_backup
0
Bonjour, cette nuit j'ai fais un scan avec Avast avant le démarage, j'ai du l'intérompre a 99% mais il n'a trouvé que quelques fichiers infectés (que je n'ai pas supprimé), voici le rapport :

16/02/2009 18:45
Analyse de tous les lecteurs locaux

Fichier C:\Documents and Settings\Administrateur\Mes documents\RCX1C.tmp est infecté par Win32:Mabezat, Supprimé
Fichier C:\Program Files\Creative Professional\Digital Audio System\E-MU PatchMix DSP\emupatchmixdsp.exe est infecté par Win32:Mabezat [Wrm], Réparer: Erreur 42060 {Le fichier n'a pas été réparé.}, Supprimé
Fichier C:\Program Files\Easy CD-DA Extractor 12\ezcddax.exe est infecté par Win32:Mabezat [Wrm], Supprimé
Fichier K:\Archives\Studio (C) 04-11-07\norton\NIS\Support\NSC\NSCCore\SecCon\NSCSRVCE.EXE est infecté par Win32:Mabezat [Wrm], Supprimé
Fichier L:\Steinberg\Cubase SX\Cubasesx.exe est infecté par Win32:Mabezat [Wrm]

Analyse interrompue
Nombre de dossiers parcourus : 14680
Nombre de fichiers analysés : 747552
Nombre de fichiers infectés : 5

Qu'en dites vous ? J'essais de nettoyer ces quelques fichiers et vous pensez que le problème sera alors résolu ?
Et pour l'avenir, avec quoi devrais-je scanner les clé USB et disques durs externes de mes clients, Avast suffit ?

Merci encore !
0
afideg Messages postés 10517 Date d'inscription lundi 10 octobre 2005 Statut Contributeur sécurité Dernière intervention 12 avril 2022 602
17 févr. 2009 à 13:58
Hello

Cette fois- ci, une comparaison entre Avast, Antivir, et AVG:
https://forum.malekal.com/viewtopic.php?f=45&t=11659

Tutoriel AntiVir: https://www.malekal.com/avira-free-security-antivirus-gratuit/

Al.
0