Au secours, des troyens!

buzzzzy Messages postés 15 Statut Membre -  
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité -
Bonjour,

Je sais pas trop ce qui se passe avec mon pc, j'ai épuisé toutes les idées que j'avais alors maintenant, je me tourne vers vous parce que là, j'en peux plus!!! Au secours!!!!

Je vais essayer de faire simple:

AVG m'a découvert un trojan hier matin qui me ralentissait ma connection de manière très significative. J'ai essayé de l'enlever par AVG, mais ca n'a pas du tout fonctionné. J'ai donc formaté mon ordi et réinstallé XP.

Après, j'ai installé AVG, j'ai fait un scan, et tout était bon. Seulement, il fallait que je mette à jour AVG, alors je me suis connectée, j'ai mis à jour et là, ca m'a trouvé un truc comme 32 trojans différents. J'ai choisi "move to vault", déconnecté et relancé un scan. Là, ca m'a ressorti 3 nouveau trojans, et pour le dernier, un message du genre "redémarrez votre ordinateur pour finaliser la destruction du virus" de la part d'AVG s'est affiché.

J'ai redémarré, et quand j'ai voulu relancer AVG, impossible, plus rien ne fonctionnait. Alors j'ai installé avast, qui m'a découvert "slamer-j", l'a soit disant effacé. Pareil, je me connecte à internet pour faire les mises à jour, et là, meme soucis qu'avec AVG, Avast ne se lance plus.

J'ai alors pris un autre disque dur que mon C, qui était connecté à mon ordi pendant toutes ces péripéties, je l'ai formaté sous mac, puis à nouveau sur pc, puis j'ai réinstallé XP. Je fais pareil, je remets AVG, même problème.

Je repasse sous mac, partitionne mon disque comme si je voulais installer mac os dessus, puis je le repartitionne en MS dos (je pensais que ca l'éffacerait véritablement comme ca). Je le reformate sous XP en NTFS, je réinstalle et je met antivir qui ne me trouve rien. Je me connecte à internet pour faire des mises à jour, croyant que cette fois, c'est la bonne, et hop je me retrouve avec une bonne trentaine d'alertes... Je clique sur supprimer, mais ca revient, sur quarantaine et bloquer l'accès, idem...

le truc qu'antivir m'affiche sans cesse, c'est BDS/Agent.zvx.

Je sais vraiment plus quoi faire, est ce que vous auriez une idée magique pour me sortir de là?!

Merciiiii!!!

Configuration: Windows XP SP1
Configuration: Windows XP SP1

20 réponses

  1. buzzzzy Messages postés 15 Statut Membre
     
    je le fais de suite. Merci!
    0
  2. buzzzzy Messages postés 15 Statut Membre
     
    J'en profite pour mettre le rapport de l'analyse d'antivir...

    Informations de version :
    BUILD.DAT : 8.2.0.52 16931 Bytes 02/12/2008 14:55:00
    AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 08:21:00
    AVSCAN.DLL : 8.1.4.1 49921 Bytes 21/07/2008 13:44:27
    LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 12:44:16
    LUKERES.DLL : 8.1.4.0 13057 Bytes 04/07/2008 07:30:27
    ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 11:30:36
    ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 14:12:46
    ANTIVIR2.VDF : 7.1.2.152 749568 Bytes 11/03/2009 14:12:49
    ANTIVIR3.VDF : 7.1.2.157 9216 Bytes 11/03/2009 14:12:49
    Version du moteur: 8.2.0.109
    AEVDF.DLL : 8.1.1.0 106868 Bytes 11/03/2009 14:12:59
    AESCRIPT.DLL : 8.1.1.60 360826 Bytes 11/03/2009 14:12:58
    AESCN.DLL : 8.1.1.8 127346 Bytes 11/03/2009 14:12:57
    AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 13:58:38
    AEPACK.DLL : 8.1.3.10 397686 Bytes 11/03/2009 14:12:56
    AEOFFICE.DLL : 8.1.0.36 196987 Bytes 11/03/2009 14:12:55
    AEHEUR.DLL : 8.1.0.104 1634679 Bytes 11/03/2009 14:12:55
    AEHELP.DLL : 8.1.2.2 119158 Bytes 11/03/2009 14:12:52
    AEGEN.DLL : 8.1.1.27 336244 Bytes 11/03/2009 14:12:52
    AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 10:05:56
    AECORE.DLL : 8.1.6.6 176501 Bytes 11/03/2009 14:12:50
    AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 10:05:56
    AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 08:40:02
    AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 09:27:58
    AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 12:02:15
    AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 11:26:37
    AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 08:29:19
    AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 12:27:46
    SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 17:28:02
    SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 12:49:36
    NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 12:05:07
    RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 04/07/2008 07:23:16
    RCTEXT.DLL : 8.0.52.1 86273 Bytes 17/07/2008 10:08:43

    Configuration pour la recherche actuelle :
    Nom de la tâche..................: Contrôle intégral du système
    Fichier de configuration.........: c:\program files\avira\antivir personaledition classic\sysscan.avp
    Documentation....................: bas
    Action principale................: interactif
    Action secondaire................: ignorer
    Recherche sur les secteurs d'amorçage maître: marche
    Recherche sur les secteurs d'amorçage: marche
    Secteurs d'amorçage..............: C:,
    Recherche dans les programmes actifs: marche
    Recherche en cours sur l'enregistrement: marche
    Recherche de Rootkits............: arrêt
    Fichier mode de recherche........: Sélection de fichiers intelligente
    Recherche sur les archives.......: marche
    Limiter la profondeur de récursivité: 20
    Archive Smart Extensions.........: marche
    Heuristique de macrovirus........: marche
    Heuristique fichier..............: moyen

    Début de la recherche : mercredi 11 mars 2009 15:56

    La recherche sur les processus démarrés commence :
    Processus de recherche 'avscan.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'avscan.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'avcenter.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'avgnt.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'wpabaln.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'ctfmon.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'htpatch.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'avguard.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'sched.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'spoolsv.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'explorer.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'lsass.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'services.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'winlogon.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'csrss.exe' - '1' module(s) sont contrôlés
    Processus de recherche 'smss.exe' - '1' module(s) sont contrôlés
    '20' processus ont été contrôlés avec '20' modules

    La recherche sur les secteurs d'amorçage maître commence :
    Secteur d'amorçage maître HD0
    [INFO] Aucun virus trouvé !

    La recherche sur les secteurs d'amorçage commence :
    Secteur d'amorçage 'C:\'
    [INFO] Aucun virus trouvé !

    La recherche sur les renvois aux fichiers exécutables (registre) commence.
    C:\WINDOWS\Fonts\wmsncs.exe
    [RESULTAT] Contient le modèle de détection du programme backdoor (dangereux) BDS/Agent.zvx
    [AVERTISSEMENT] Erreur lors de la création d'une copie de sécurité du fichier. Le fichier n'a pas été supprimé. Code d'erreur : 26003
    [AVERTISSEMENT] Impossible de supprimer le fichier!
    [REMARQUE] Tentative en cours d'exécuter l'action à l'aide de la bibliothèque ARK.
    [REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '484f380e.qua' !
    C:\Program Files\Fichiers communs\System\wmsncs.exe
    [RESULTAT] Contient le modèle de détection du programme backdoor (dangereux) BDS/Agent.zvx
    [REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4a2ad180.qua' !
    C:\WINDOWS\system32\spool\drivers\wmsncs.exe
    [RESULTAT] Contient le modèle de détection du programme backdoor (dangereux) BDS/Agent.zvx
    [REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4a2ad182.qua' !
    C:\WINDOWS\system32\wins\wmsncs.exe
    [RESULTAT] Contient le modèle de détection du programme backdoor (dangereux) BDS/Agent.zvx
    [REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4a2ad184.qua' !
    C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\wmsncs.exe
    [RESULTAT] Contient le modèle de détection du programme backdoor (dangereux) BDS/Agent.zvx
    [REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4a2ad186.qua' !

    Le registre a été contrôlé ( '49' fichiers).

    La recherche sur les fichiers sélectionnés commence :

    Recherche débutant dans 'C:\'
    C:\ARK3.tmp
    [RESULTAT] Contient le modèle de détection du programme backdoor (dangereux) BDS/Agent.zvx
    [AVERTISSEMENT] Erreur lors de la création d'une copie de sécurité du fichier. Le fichier n'a pas été supprimé. Code d'erreur : 26003
    [AVERTISSEMENT] Impossible de supprimer le fichier!
    [REMARQUE] Tentative en cours d'exécuter l'action à l'aide de la bibliothèque ARK.
    [REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4861c046.qua' !
    C:\pagefile.sys
    [AVERTISSEMENT] Impossible d'ouvrir le fichier !

    Fin de la recherche : mercredi 11 mars 2009 15:59
    Temps nécessaire: 03:41 Minute(s)

    La recherche a été effectuée intégralement

    605 Les répertoires ont été contrôlés
    31423 Des fichiers ont été contrôlés
    6 Des virus ou programmes indésirables ont été trouvés
    0 Des fichiers ont été classés comme suspects
    0 Des fichiers ont été supprimés
    0 Des virus ou programmes indésirables ont été réparés
    6 Les fichiers ont été déplacés dans la quarantaine
    0 Les fichiers ont été renommés
    1 Impossible de contrôler des fichiers
    31416 Fichiers non infectés
    295 Les archives ont été contrôlées
    3 Avertissements
    6 Consignes
    0
  3. buzzzzy Messages postés 15 Statut Membre
     
    Le rapport malware maintenant...

    Malwarebytes' Anti-Malware 1.34
    Version de la base de données: 1836
    Windows 5.1.2600 Service Pack 1

    11/03/2009 16:29:27
    mbam-log-2009-03-11 (16-29-23).txt

    Type de recherche: Examen complet (C:\|)
    Eléments examinés: 59276
    Temps écoulé: 6 minute(s), 46 second(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 1
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 1
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 2

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NET Runtime Optimization Service v2.1.41329_X86 (Trojan.Agent) -> No action taken.

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell (Hijack.Shell) -> Bad: (explorer.exe "C:\WINDOWS\Fonts\wmsncs.exe") Good: (Explorer.exe) -> No action taken.

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    C:\WINDOWS\system32\C.tmp (Trojan.Agent) -> No action taken.
    C:\WINDOWS\system32\D.tmp (Trojan.Agent) -> No action taken.
    0
  4. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  5. buzzzzy Messages postés 15 Statut Membre
     
    Et le rapport SDFix

    Impossible de démarrer en mode sans echec...

    [b]System Report[/b]
    *************

    Run on 11/03/2009 at 16:18

    Microsoft Windows XP [version 5.1.2600]

    Current user is an administrator

    [b]Running Processes[/b]:

    \SystemRoot\System32\smss.exe [436]
    \??\C:\WINDOWS\system32\csrss.exe [492]
    \??\C:\WINDOWS\system32\winlogon.exe [516]
    C:\WINDOWS\system32\services.exe [560]
    C:\WINDOWS\system32\lsass.exe [572]
    C:\WINDOWS\system32\svchost.exe [740]
    C:\WINDOWS\System32\svchost.exe [768]
    C:\WINDOWS\System32\svchost.exe [940]
    C:\WINDOWS\System32\svchost.exe [964]
    C:\WINDOWS\Explorer.EXE [1080]
    C:\WINDOWS\system32\spoolsv.exe [1188]
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe [1248]
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe [1312]
    C:\WINDOWS\htpatch.exe [1544]
    C:\WINDOWS\System32\ctfmon.exe [1608]
    C:\WINDOWS\System32\wpabaln.exe [256]
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [752]
    C:\WINDOWS\system32\notepad.exe [8412]
    C:\WINDOWS\system32\NOTEPAD.EXE [8600]

    [b]Drivers - Running[/b]:

    ACPI
    AFD
    AmdK7
    atapi
    ati2mtag
    audstub
    avgntdd
    avgntmgr
    avipbb
    Beep
    Cdfs
    Cdrom
    Disk
    dmio
    dmload
    Fastfat
    Fdc
    Fips
    Flpydisk
    Ftdisk
    gameenum
    Gpc
    hidusb
    i8042prt
    Imapi
    IPSec
    isapnp
    Kbdclass
    KSecDD
    mnmdd
    Mouclass
    mouhid
    MountMgr
    MRxDAV
    MRxSmb
    Msfs
    Mup
    NDIS
    NdisTapi
    Ndisuio
    NdisWan
    NDProxy
    NetBIOS
    NetBT
    Npfs
    Ntfs
    Null
    Parport
    PartMgr
    ParVdm
    PCI
    PCIIde
    PptpMiniport
    PSched
    Ptilink
    RasAcd
    Rasl2tp
    RasPppoe
    Raspti
    Rdbss
    RDPCDD
    rdpdr
    redbook
    serenum
    Serial
    SISAGP
    SISNIC
    sr
    Srv
    ssmdrv
    swenum
    Tcpip
    TermDD
    Update
    usbehci
    usbhub
    usbohci
    VgaSave
    VolSnap
    Wanarp

    [b]Drivers - Stopped[/b]:

    Abiosdsk
    abp480n5
    ACPIEC
    adpu160m
    Aha154x
    aic78u2
    aic78xx
    AliIde
    amsint
    asc
    asc3350p
    asc3550
    AsyncMac
    Atdisk
    Atmarpc
    cbidf2k
    cd20xrnt
    Cdaudio
    Changer
    CmdIde
    Cpqarray
    dac960nt
    dmboot
    dpti2o
    hpn
    i2omgmt
    i2omp
    ini910u
    IntelIde
    IpFilterDriver
    IpInIp
    IpNat
    IRENUM
    lbrtfdc
    Modem
    mraid35x
    NwlnkFlt
    NwlnkFwd
    PCIDump
    Pcmcia
    PDCOMP
    PDFRAME
    PDRELI
    PDRFRAME
    perc2
    perc2hib
    ql1080
    Ql10wnt
    ql12160
    ql1240
    ql1280
    RDPWD
    Secdrv
    Sfloppy
    Simbad
    Sparrow
    symc810
    symc8xx
    sym_hi
    sym_u3
    TDPIPE
    TDTCP
    TosIde
    Udfs
    ultra
    USBSTOR
    ViaIde
    WDICA

    [b]Services - Running[/b]:

    AntiVirScheduler
    AntiVirService
    AudioSrv
    Browser
    CryptSvc
    Dhcp
    dmserver
    Dnscache
    ERSvc
    Eventlog
    EventSystem
    FastUserSwitchingCompatibility
    helpsvc
    lanmanserver
    lanmanworkstation
    LmHosts
    Netman
    Nla
    PlugPlay
    PolicyAgent
    ProtectedStorage
    RpcSs
    SamSs
    Schedule
    seclogon
    SENS
    ShellHWDetection
    Spooler
    srservice
    SSDPSRV
    TermService
    Themes
    TrkWks
    uploadmgr
    W32Time
    WebClient
    winmgmt
    WmdmPmSp
    wuauserv
    WZCSVC
    NET

    [b]Services - Stopped[/b]:

    Alerter
    ALG
    AppMgmt
    BITS
    CiSvc
    ClipSrv
    COMSysApp
    dmadmin
    HidServ
    ImapiService
    Messenger
    mnmsrvc
    MSDTC
    MSIServer
    NetDDE
    NetDDEdsdm
    Netlogon
    NtLmSsp
    NtmsSvc
    RasAuto
    RasMan
    RDSessMgr
    RemoteAccess
    RemoteRegistry
    RpcLocator
    RSVP
    SCardDrv
    SCardSvr
    SharedAccess
    stisvc
    SwPrv
    SysmonLog
    TapiSrv
    TlntSvr
    upnphost
    UPS
    VSS
    Wmi
    WmiApSrv
    DllSrv

    [b]Files Created/Modified - 60 Days[/b]:

    C:\

    11 Mar 2009 15:34:58 189 990 A.SH. "C:\ARK4.tmp"
    11 Mar 2009 14:29:36 0 A.... "C:\AUTOEXEC.BAT"
    11 Mar 2009 14:29:36 0 A.... "C:\CONFIG.SYS"
    11 Mar 2009 14:29:36 0 A.SHR "C:\IO.SYS"
    11 Mar 2009 14:29:36 0 A.SHR "C:\MSDOS.SYS"
    11 Mar 2009 14:53:40 1 207 959 552 A.SH. "C:\pagefile.sys"

    C:\WINDOWS\

    11 Mar 2009 14:53:42 2 048 A.S.. "C:\WINDOWS\bootstat.dat"
    11 Mar 2009 14:29:42 229 376 A..H. "C:\WINDOWS\repair\ntuser.dat"
    11 Mar 2009 14:26:46 21 892 A.... "C:\WINDOWS\system32\emptyregdb.dat"
    11 Mar 2009 14:32:34 90 296 A.... "C:\WINDOWS\system32\FNTCACHE.DAT"
    11 Mar 2009 14:46:24 39 992 A.... "C:\WINDOWS\system32\perfc009.dat"
    11 Mar 2009 14:46:24 48 616 A.... "C:\WINDOWS\system32\perfc00C.dat"
    11 Mar 2009 14:46:24 311 604 A.... "C:\WINDOWS\system32\perfh009.dat"
    11 Mar 2009 14:46:24 367 658 A.... "C:\WINDOWS\system32\perfh00C.dat"
    11 Mar 2009 15:14:46 135 168 A.... "C:\WINDOWS\system32\sfc_os.dll"
    11 Mar 2009 14:53:44 6 A..H. "C:\WINDOWS\Tasks\SA.DAT"
    11 Mar 2009 16:18:24 0 A.... "C:\WINDOWS\Temp\scs8.tmp"
    11 Mar 2009 15:13:58 16 384 A.... "C:\WINDOWS\Temp\~DF6248.tmp"
    11 Mar 2009 14:29:00 80 007 A.... "C:\WINDOWS\PCHealth\HelpCtr\OfflineCache\index.dat"
    11 Mar 2009 14:29:02 714 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Connection.htm"
    11 Mar 2009 14:29:02 2 915 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\OfflineOptions.htm"
    11 Mar 2009 14:29:02 13 525 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\OfflineDC.htm"
    11 Mar 2009 14:29:02 30 494 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\pss_getting_worldwide_help.htm"
    11 Mar 2009 14:29:02 2 911 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\confirm.htm"
    11 Mar 2009 14:29:02 16 142 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\rcstatus.htm"
    11 Mar 2009 14:29:02 4 236 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\ConnIssue.htm"
    11 Mar 2009 14:29:02 1 678 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\LearnInternet.htm"
    11 Mar 2009 14:29:02 2 335 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\RAHelp.htm"
    11 Mar 2009 14:29:02 3 008 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Common\RCMoreInfo.htm"
    11 Mar 2009 14:29:02 3 394 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\rcConnection.htm"
    11 Mar 2009 14:29:02 2 637 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\rcscreen1.htm"
    11 Mar 2009 14:29:02 4 555 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\rcscreen2.htm"
    11 Mar 2009 14:29:02 321 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Common\rcscreen3.htm"
    11 Mar 2009 14:29:02 4 864 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\rcDetails.htm"
    11 Mar 2009 14:29:02 8 050 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\rcscreen7.htm"
    11 Mar 2009 14:29:02 7 798 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\rcscreen8.htm"
    11 Mar 2009 14:29:02 8 553 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\rcscreen9.htm"
    11 Mar 2009 14:29:02 5 351 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\rcInviteStatus.htm"
    11 Mar 2009 14:29:02 4 404 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\rcscreen4.htm"
    11 Mar 2009 14:29:02 15 107 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\rcscreen5.htm"
    11 Mar 2009 14:29:02 29 255 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\rcscreen6.htm"
    11 Mar 2009 14:29:02 1 298 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Email\rcscreen6_head.htm"
    11 Mar 2009 14:29:02 13 777 A.... "C:\WINDOWS\PCHealth\HelpCtr\Vendors\CN=Microsoft Corporation,L=Redmond,S=Washington,C=US\Remote Assistance\Escalation\Unsolicited\UnSolicitedRCUI.htm"

    C:\Program Files\

    11 Mar 2009 15:12:52 176 501 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aecore.dll"
    11 Mar 2009 15:12:54 336 244 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aegen.dll"
    11 Mar 2009 15:12:54 119 158 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aehelp.dll"
    11 Mar 2009 15:12:56 1 634 679 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeheur.dll"
    11 Mar 2009 15:12:56 196 987 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeoffice.dll"
    11 Mar 2009 15:12:58 397 686 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aepack.dll"
    11 Mar 2009 15:12:58 127 346 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescn.dll"
    11 Mar 2009 15:13:00 360 826 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aescript.dll"
    11 Mar 2009 15:13:00 2 157 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aeset.dat"
    11 Mar 2009 15:13:00 106 868 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\aevdf.dll"
    11 Mar 2009 15:12:52 176 501 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aecore.dll"
    11 Mar 2009 15:12:54 336 244 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aegen.dll"
    11 Mar 2009 15:12:54 119 158 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aehelp.dll"
    11 Mar 2009 15:12:56 1 634 679 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeheur.dll"
    11 Mar 2009 15:12:56 196 987 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeoffice.dll"
    11 Mar 2009 15:12:58 397 686 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aepack.dll"
    11 Mar 2009 15:12:58 127 346 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aescn.dll"
    11 Mar 2009 15:13:00 360 826 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aescript.dll"
    11 Mar 2009 15:13:00 2 157 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aeset.dat"
    11 Mar 2009 15:13:00 106 868 A.... "C:\Program Files\Avira\AntiVir PersonalEdition Classic\FAILSAFE\aevdf.dll"

    [b]Files with hidden attributes[/b]:

    Wed 11 Mar 2009 189,990 A.SH. --- "C:\ARK4.tmp"

    [b]Program Folders[/b]:

    C:\Program Files\

    Avira
    ComPlus Applications
    Fichiers communs
    Internet Explorer
    Messenger
    microsoft frontpage
    Movie Maker
    MSN
    MSN Gaming Zone
    NetMeeting
    Outlook Express
    Services en ligne
    SiSLan
    Uninstall Information
    Windows Media Player
    Windows NT
    WindowsUpdate
    xerox

    C:\Program Files\Fichiers communs\

    Microsoft Shared
    MSSoap
    ODBC
    Services
    SpeechEngines
    System

    [b]Add/Remove Programs[/b]:

    Avira AntiVir Personal - Free Antivirus
    SiS 900 PCI Fast Ethernet Adapter Driver

    [b]Run Values[/b]:

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
    "HTpatch"="C:\\WINDOWS\\htpatch.exe"
    "SiSUSBRG"="C:\\WINDOWS\\SiSUSBrg.exe"
    "avgnt"="\"C:\\Program Files\\Avira\\AntiVir PersonalEdition Classic\\avgnt.exe\" /min"
    "Wmsncs Service"="C:\\WINDOWS\\Fonts\\wmsncs.exe"
    "NvidMediaCenter"="C:\\Program Files\\Fichiers communs\\System\\wmsncs.exe"
    "Spool Driver Service"="C:\\WINDOWS\\System32\\spool\\drivers\\wmsncs.exe"
    "Wins Service"="C:\\WINDOWS\\System32\\wins\\wmsncs.exe"

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
    "CTFMON.EXE"="C:\\WINDOWS\\System32\\ctfmon.exe"

    [b]Bot Check[/b]:

    SERVICE_NAME: sharedaccess
    DISPLAY_NAME : Pare-feu de connexion Internet (ICF) / Partage de connexion Internet (ICS)
    START_TYPE : 3 DEMAND_START

    SERVICE_NAME: wuauserv
    DISPLAY_NAME : Mises à jour automatiques
    START_TYPE : 2 AUTO_START

    SERVICE_NAME: srservice
    DISPLAY_NAME : Service de restauration système
    START_TYPE : 2 AUTO_START

    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate]
    "DoNotAllowXPSP2"=dword:00000001

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole]
    "EnableDCOM"="N"

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "DisableTaskMgr"=dword:00000001
    "DisableRegistryTools"=dword:00000001

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
    "restrictanonymous"=dword:00000001

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update]
    "AUOptions"=dword:00000001

    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
    "EnableFirewall"=dword:00000000

    [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
    "EnableFirewall"=dword:00000000

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "UpdatesDisableNotify"=dword:00000001
    "AntiVirusDisableNotify"=dword:00000001
    "FirewallDisableNotify"=dword:00000001
    "AntiVirusOverride"=dword:00000001
    "FirewallOverride"=dword:00000001

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "WaitToKillServiceTimeout"="7000"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
    "SFCDisable"=dword:ffffff9d
    "SFCScan"=dword:00000000
    "Shell"="explorer.exe \"C:\\WINDOWS\\Fonts\\wmsncs.exe\""
    "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shell extensions]
    ".ZAN."="03/11/2009, 03:14 PM"
    ".ZRV."=dword:00137aff

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NetBT\Parameters]
    "TransportBindName"="\\Device\\"

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanworkstation\parameters]
    "AutoShareWks"=dword:00000000
    "AutoShareServer"=dword:00000000

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters]
    "AutoShareWks"=dword:00000000
    "AutoShareServer"=dword:00000000

    [b]ShellExecuteHooks[/b]:

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
    "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""

    [b]Environment[/b]:

    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager\environment
    ComSpec REG_EXPAND_SZ %SystemRoot%\system32\cmd.exe
    Path REG_EXPAND_SZ %SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
    windir REG_EXPAND_SZ %SystemRoot%
    OS REG_SZ Windows_NT
    PATHEXT REG_SZ .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    TEMP REG_EXPAND_SZ %SystemRoot%\TEMP
    TMP REG_EXPAND_SZ %SystemRoot%\TEMP

    [b]SecurityProviders[/b]:

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders
    SecurityProviders REG_SZ msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll

    [b]Authentication Packages[/b]:

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa
    Authentication Packages REG_MULTI_SZ msv1_0\0\0

    [b]Subsystem Startup[/b]:

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\SubSystems]
    "Windows"="%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,3072,512 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ProfileControl=Off MaxRequestThreads=16"

    [b]Midi Drivers[/b]:

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]

    [b]Non-Default IFEO Debugger[/b]:

    [b]Non-Default Installed Components[/b]:

    HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{103l3c30-c3b3-4130-9363-e59e1375perm}
    StubPath REG_SZ C:\WINDOWS\Fonts\wmsncs.exe

    HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{306d6c21-c1b6-4629-986c-e59e1875b8af}
    StubPath REG_SZ "C:\WINDOWS\System32\rundll32.exe" "C:\Program Files\Messenger\msgsc.dll",ShowIconsUser
    Version REG_SZ 4,7,0,0041

    [b]Non-Default Safeboot Minimal[/b]:

    [b]File Associations[/b]:

    [HKEY_CLASSES_ROOT\batfile\shell\open\command]
    @="\"%1\" %*"

    [HKEY_CLASSES_ROOT\cmdfile\shell\open\command]
    @="\"%1\" %*"

    [HKEY_CLASSES_ROOT\comfile\shell\open\command]
    @="\"%1\" %*"

    [HKEY_CLASSES_ROOT\exefile\shell\open\command]
    @="\"%1\" %*"

    [HKEY_CLASSES_ROOT\htafile\shell\open\command]
    @="C:\\WINDOWS\\System32\\mshta.exe \"%1\" %*"

    [HKEY_CLASSES_ROOT\http\shell\open\command]
    @="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

    [HKEY_CLASSES_ROOT\htmlfile\shell\open\command]
    @="\"C:\\Program Files\\Internet Explorer\\iexplore.exe\" -nohome"

    [HKEY_CLASSES_ROOT\regedit\shell\open\command]
    @="regedit.exe %1"

    [HKEY_CLASSES_ROOT\regfile\shell\open\command]
    @="regedit.exe \"%1\""

    [HKEY_CLASSES_ROOT\scrfile\shell\open\command]
    @="\"%1\" /S"

    [HKEY_CLASSES_ROOT\txtfile\shell\open\command]
    @="%SystemRoot%\system32\NOTEPAD.EXE %1"

    [b]Finished![/b]
    0
  6. buzzzzy Messages postés 15 Statut Membre
     
    Petite précision: depuis le rapport d'antivir ou j'ai cliqué sur "supprimer", antivir ne se lance plus... tout comme avast et avg avant lui.... Je fais un test kaspersky en parrallèle.
    0
  7. buzzzzy
     
    J'ai tenté deux fois de le faire, mais pendant la mise à jour des virus, ca me dit qu'il y a un problème d'application. je recommence au cas où...

    Une nouveauté: Une boite de dialogue m'est apparue qui disait: arrêt du système. Veuillez enregistrer tus les travaux en cours et quitter votre session. Toutes les modifications enregistrées seront perdues. Cet arrêt à été initié par AUTORITE NT/SYSTEM

    Message:
    le processus système 'C:/WINDOWS\system32\Isass.exe' s'est terminé de manière inattentude avec le code d'état 0. Le système va maintenant s'éteindre et redémarrer.

    Et en effet, au bout de 60 secondes, le système a redémarré...
    0
  8. buzzzzy Messages postés 15 Statut Membre
     
    et ca vient de le refaire, de telle sorte que je n'arrive pas à finir l'analyse en ligne (puisque je ne vais meme pas au bout des mises à jour)...

    De nouveaux trucs arrivent: je suis déloguée à chaque changement de page de ccm
    0
  9. buzzzzy Messages postés 15 Statut Membre
     
    la commande shutdown -a ne fonctionne d'ailleurs pas non plus... vraiment, là, j'sais plus trop quoi faire...
    0
  10. buzzzzy Messages postés 15 Statut Membre
     
    -------------------------------------------------------------------------------
    KASPERSKY ONLINE SCANNER REPORT
    mercredi 11 mars 2009 17:36:28
    Operating System: Microsoft Windows XP Professional, Service Pack 1 (Build 2600)
    Kaspersky Online Scanner version: 5.0.84.2
    Kaspersky Anti-Virus database last update: 11/03/2009
    Kaspersky Anti-Virus database records: 1706500
    -------------------------------------------------------------------------------

    Scan Settings:
    Scan using the following antivirus database: standard
    Scan Archives: true
    Scan Mail Bases: true

    Scan Target - My Computer:
    A:\
    C:\
    D:\
    E:\

    Scan Statistics:
    Total number of scanned objects: 11916
    Number of viruses found: 10
    Number of infected objects: 844 / 0
    Number of suspicious objects: 0
    Duration of the scan process: 00:18:04

    Infected Object Name / Virus Name / Last Action
    C:\Documents and Settings\All Users\Menu Démarrer\Programmes\AGPUtil\AGPutil.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
    C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
    C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
    C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
    C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
    C:\Documents and Settings\Sab\Application Data\nidle\nidle.ex_ Infected: Trojan.Win32.Agent2.ewk skipped
    C:\Documents and Settings\Sab\Cookies\index.dat Object is locked skipped
    C:\Documents and Settings\Sab\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
    C:\Documents and Settings\Sab\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
    C:\Documents and Settings\Sab\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\D6CF3.dmp Object is locked skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\mscon.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\avcenter.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\avconfig.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\avgnt.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\avguard.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\avnotify.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\avscan.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\fact.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\guardgui.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\imp64b.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\licmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\preupd.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\sched.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\setup.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\RarSFX0\basic\update.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\zha.exe Infected: Virus.Win32.Virut.n skipped
    C:\Documents and Settings\Sab\Local Settings\Temp\~DFF3E.tmp Object is locked skipped
    C:\Documents and Settings\Sab\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
    C:\Documents and Settings\Sab\NTUSER.DAT Object is locked skipped
    C:\Documents and Settings\Sab\ntuser.dat.LOG Object is locked skipped
    C:\Documents and Settings\Sab\reader_s.exe Infected: Trojan.Win32.Inject.prr skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avconfig.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avnotify.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\avscan.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\fact.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\guardgui.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\licmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\preupd.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\setup.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Avira\AntiVir PersonalEdition Classic\update.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Fichiers communs\Microsoft Shared\MSInfo\msinfo32.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Fichiers communs\Microsoft Shared\Speech\sapisvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Internet Explorer\Connection Wizard\icwconn2.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Internet Explorer\Connection Wizard\icwrmind.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Internet Explorer\Connection Wizard\icwtutor.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Internet Explorer\Connection Wizard\inetwiz.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Internet Explorer\Connection Wizard\isignup.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Internet Explorer\IEXPLORE.EXE Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Messenger\msmsgs.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Messenger\msmsgsin.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Movie Maker\moviemk.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN\MSNCoreFiles\copymar.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN\MSNCoreFiles\msn6.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN\MSNCoreFiles\Setup\msnunin.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN\MSNCoreFiles\update.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN Gaming Zone\Windows\bckgzm.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN Gaming Zone\Windows\chkrzm.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN Gaming Zone\Windows\hrtzzm.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN Gaming Zone\Windows\Rvsezm.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN Gaming Zone\Windows\shvlzm.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\MSN Gaming Zone\Windows\zClientm.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\NetMeeting\cb32.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\NetMeeting\conf.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\NetMeeting\wb32.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Outlook Express\msimn.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Outlook Express\oemig50.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Outlook Express\setup50.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Outlook Express\wab.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Outlook Express\wabmig.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\SiSLan\uninst.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Windows Media Player\dlimport.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Windows Media Player\mplayer2.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Windows Media Player\setup_wm.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Windows Media Player\wmplayer.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Windows NT\Accessoires\wordpad.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Windows NT\dialer.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Windows NT\hypertrm.exe Infected: Virus.Win32.Virut.n skipped
    C:\Program Files\Windows NT\Pinball\PINBALL.EXE Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\Cghtme.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\cliptext.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\CSweg.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\download.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\ERUNT.EXE Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\FixPath.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\grep.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\isadmin.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\LS.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\MD5File.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\moveex.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\Process.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\procs.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\psservice.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\Replace\regedit.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\RestartIt!.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\sc.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\sed.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\SF.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\shutdown.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\Swreg.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\swsc.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\UnRAR.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\unzip.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\vfind.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\WINMSG.EXE Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\apps\zip.exe Infected: Virus.Win32.Virut.n skipped
    C:\SDFix\catchme.exe Infected: Virus.Win32.Virut.n skipped
    C:\temp\svchost.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\Debug\oakley.log Object is locked skipped
    C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
    C:\WINDOWS\explorer.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\hh.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\htpatch.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\inf\unregmp2.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\Installer\{350C940c-3D7C-4EE8-BAA9-00BCB3D54227}\places.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\IsUn040c.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\msagent\agentsvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\NOTEPAD.EXE Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpCtr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpHost.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\PCHealth\HelpCtr\Binaries\HscUpd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\PCHealth\HelpCtr\Binaries\msconfig.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\PCHealth\HelpCtr\Binaries\notiflag.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\PCHealth\UploadLB\Binaries\UploadM.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\regedit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\services.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\services.ex_ Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\SiSUSBrg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system\msile.exe Infected: Trojan.Win32.Buzus.aots skipped
    C:\WINDOWS\system32\01.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\20093376.dll Infected: Trojan-GameThief.Win32.WOW.fxr skipped
    C:\WINDOWS\system32\21.scr Infected: Trojan.Win32.Buzus.aots skipped
    C:\WINDOWS\system32\3361\SVCHOST.EXE Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\40.scr Infected: Trojan.Win32.Buzus.aots skipped
    C:\WINDOWS\system32\62.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\9.tmp Infected: Packed.Win32.Krap.i skipped
    C:\WINDOWS\system32\accwiz.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\actmovie.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\afisicx.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ahui.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\alg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\arp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\asr_fmt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\asr_ldm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\asr_pfu.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\at.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\atmadm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\attrib.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\bootcfg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\bootok.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\bootvrfy.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cacls.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\calc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\charmap.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\chkdsk.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\chkntfs.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cidaemon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cipher.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cisvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ckcnv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cleanmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cliconfg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\clipbrd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\clipsrv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cmd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cmdl32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cmmon32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cmstp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\codeblocks.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\Com\comrepl.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\Com\comrereg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\comp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\compact.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
    C:\WINDOWS\system32\config\default Object is locked skipped
    C:\WINDOWS\system32\config\default.LOG Object is locked skipped
    C:\WINDOWS\system32\config\SAM Object is locked skipped
    C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
    C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
    C:\WINDOWS\system32\config\SECURITY Object is locked skipped
    C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
    C:\WINDOWS\system32\config\software Object is locked skipped
    C:\WINDOWS\system32\config\software.LOG Object is locked skipped
    C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
    C:\WINDOWS\system32\config\system Object is locked skipped
    C:\WINDOWS\system32\config\system.LOG Object is locked skipped
    C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat Object is locked skipped
    C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
    C:\WINDOWS\system32\config\systemprofile\Local Settings\Historique\History.IE5\MSHist012009031120090312\index.dat Object is locked skipped
    C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\05CFYF8F\arf[1].exe Infected: Trojan.Win32.Buzus.aots skipped
    C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\05CFYF8F\load[1].exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\89IPQ34X\load[1].exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
    C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\KJU9QHQP\wr[1].exe Infected: Trojan-Downloader.Win32.Agent.bkdn skipped
    C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\SXKXA1IP\ads[1].exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\conime.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\control.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\convert.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\cscript.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ctfmon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dcomcnfg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ddeshare.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\defrag.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\deviceemulator.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dfrgfat.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dfrgntfs.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\diantz.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\diskpart.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\diskperf.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\accwiz.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\actmovie.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\admin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\agentsvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ahui.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\alg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\arp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\asr_fmt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\asr_ldm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\at.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\atmadm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\attrib.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\author.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\bckgzm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\bootcfg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\bootok.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\bootvrfy.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cacls.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\calc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cb32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cfgwiz.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\change.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\charmap.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\chglogon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\chgport.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\chgusr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\chkdsk.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\chkntfs.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\chkrzm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cidaemon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cintsetp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cipher.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cisvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ckcnv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cleanmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\clipbrd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\clipsrv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cmd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cmdl32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cmmon32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cmstp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\comp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\compact.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\comrepl.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\comrereg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\conf.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\conime.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\control.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\convert.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\convlog.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cplexe.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cprofile.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\cscript.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ctfmon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\davcdata.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dcomcnfg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ddeshare.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\defrag.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dfrgfat.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dfrgntfs.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dialer.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\diantz.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\diskpart.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\diskperf.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dlimport.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dllhost.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dllhst3g.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dmadmin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dmremote.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\doskey.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dplaysvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dpnsvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dpvsetup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\drvqry.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\drwtsn32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dumprep.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dvdupgrd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dwwin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\dxdiag.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\esentutl.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\eudcedit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\evcreate.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\eventvwr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\evntcmd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\evntwin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\evtrig.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\EXCH_regtrace.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\expand.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\explorer.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\extrac32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\find.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\findstr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\finger.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fixmapi.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\flattemp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fontview.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\forcedos.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fp98sadm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fp98swin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fpadmcgi.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fpcount.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fpremadm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\freecell.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fsutil.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ftp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fxsclnt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fxscover.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fxssend.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\fxssvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\getmac.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\gprslt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\gpupdate.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\grpconv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\help.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\helpctr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\helphost.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\helpsvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\hh.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\hostname.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\hrtzzm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\icwconn1.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\icwconn2.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\icwrmind.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\icwtutor.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ie4uinit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\iexplore.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\iexpress.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\iisreset.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\iisrstas.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\iissync.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imapi.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imekrmig.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imepadsv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imjpdadm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imjpdct.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imjpdsvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imjpinst.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imjpmig.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imjprw.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imjpuex.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imjputy.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imkrinst.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\imscinst.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\inetin51.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\inetmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\inetwiz.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ipconfig.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ipsec6.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ipv6.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ipxroute.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\isignup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\label.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\lights.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\lnkstub.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\locator.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\lodctr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\logagent.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\logman.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\logoff.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\logon.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\logonui.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\lpq.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\lpr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\lsass.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\magnify.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\makecab.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\migisol.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\migload.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\migregdb.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\migwiz.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\migwiz_a.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mmc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mnmsrvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mobsync.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mofcomp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mountvol.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\moviemk.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mplay32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mplayer2.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mpnotify.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mqbkup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mqsvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mqtgsvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mrinfo.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\msconfig.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\msdtc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\msg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mshearts.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mshta.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\msiexec.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\msimn.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\msinfo32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\msiregmv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\msoobe.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mspaint.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\msswchx.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mstinit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mstsc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\mtstocom.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\narrator.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\nbtstat.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\nddeapir.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\net.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\net1.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\netdde.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\netsh.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\netstat.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\notepad.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\notiflag.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\nppagent.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\nslookup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ntbackup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ntsd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ntvdm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\nwscript.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\odbcad32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\odbcconf.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\oemig50.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\oobebaln.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\opnfiles.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\osk.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\osuninst.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\packager.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\pathping.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\pentnt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\perfmon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\pinball.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ping.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ping6.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\pintlphr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\print.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\progman.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\proquota.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\proxycfg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\qappsrv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\qprocess.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\query.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\quser.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\qwinsta.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rasautou.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rasdial.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rasphone.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rcimlby.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rcp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rdpclip.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rdsaddin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rdshost.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\recover.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\reg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\regedit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\regedt32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\regini.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\register.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\regsvr32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\regwiz.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\relog.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\replace.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\reset.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rexec.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\route.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\routemon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rsh.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rsm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rsmsink.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rsmui.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rsnotify.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rsopprov.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rstrui.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rsvp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rtcshare.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\runas.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rundll32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\runonce.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rvsezm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\rwinsta.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sapisvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\savedump.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\scardsvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\scrcons.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\scrnsave.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sctasks.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sdbinst.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\secedit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\services.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sessmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sethc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\setup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\setup50.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\setup_wm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sfc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\shadow.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\shmgrate.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\shrpubw.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\shtml.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\shutdown.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\shvlzm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sigverif.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\skeys.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\smi2smir.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\smlogsvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sndrec32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sndvol32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\snmp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\snmptrap.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sol.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sort.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\spider.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\spoolsv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\srdiag.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ss3dfo.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ssbezier.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ssflwbox.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ssmarque.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ssmypics.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ssmyst.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sspipes.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ssstars.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sstext3d.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\stimon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\subst.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\svchost.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\syncapp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sysinfo.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\syskey.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\sysocmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\systray.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\taskkill.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tasklist.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\taskman.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\taskmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tcmsetup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tcpsvcs.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tcptest.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\telnet.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tftp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tintlphr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tintsetp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tlntadmn.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tlntsess.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tlntsvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tourstrt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tracerpt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tracert.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tracert6.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tscon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tscupgrd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tsdiscon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tskill.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tsprof.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\tsshutdn.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\twunk_32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\typeperf.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\unlodctr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\unregmp2.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\unsecapp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\uploadm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\upnpcont.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\ups.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\userinit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\utilman.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\verifier.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\vssadmin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\vssvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\w32tm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wab.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wabmig.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wb32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wbemtest.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wextract.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wiaacmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\winhlp32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\winhstb.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\winlogon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\winmgmt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\winmine.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\winmsd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\winver.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wmiadap.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wmiapsrv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wmic.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wmiprvse.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wmplayer.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wmpstub.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wordpad.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wpabaln.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wpnpinst.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\write.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wscript.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wuauclt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\wupdmgr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\xcopy.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllcache\zclientm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllhost.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dllhst3g.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\DllSrv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dmadmin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dmremote.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\doskey.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dplaysvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dpnsvr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dpvsetup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\driverquery.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\drivers\protect.sys Infected: Rootkit.Win32.Agent.jj skipped
    C:\WINDOWS\system32\drwtsn32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dumprep.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dvdplay.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dvdupgrd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dwwin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\dxdiag.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\esentutl.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\eudcedit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\eventcreate.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\eventtriggers.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\eventvwr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\expand.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\extrac32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\fc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\find.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\findstr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\finger.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\fixmapi.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\fontview.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\forcedos.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\freecell.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\fsutil.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ftp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\getmac.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\gpresult.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\gpupdate.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\grpconv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\help.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\hostname.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\i Infected: Trojan-Downloader.BAT.Ftp.ab skipped
    C:\WINDOWS\system32\i386kd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ie4uinit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\iexpress.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\imapi.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\inf\rundll33.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ipconfig.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ipsec6.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ipv6.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ipxroute.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\Kaspersky Lab\Kaspersky Online Scanner\kavuninstall.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\label.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\lights.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\lnkstub.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\locator.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\lodctr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\logagent.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\logman.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\logoff.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\logon.scr Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\logonui.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\lpq.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\lpr.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\magnify.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\makecab.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\migpwd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mmc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mnmsrvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mobsync.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mountvol.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mplay32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mpnotify.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mqbkup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mqsvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mqtgsvc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mrinfo.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\msdtc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\msg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mshearts.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mshta.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\msiexec.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mspaint.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\msswchx.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mstinit.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\mstsc.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\narrator.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\nbtstat.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\nddeapir.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\net.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\net1.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\netdde.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\netsetup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\netsh.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\netstat.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\notepad.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\npp\nppagent.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\nslookup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ntbackup.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ntsd.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ntvdm.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\nwscript.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\odbcad32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\odbcconf.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\onw.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\oobe\msoobe.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\oobe\oobebaln.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\openfiles.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\osk.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\osuninst.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\packager.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\pathping.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\pentnt.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\perfmon.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ping.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ping6.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\print.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\progman.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\proquota.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\proxycfg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\qappsrv.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\qprocess.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\qwinsta.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\rasautou.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\rasdial.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\rasphone.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\rcimlby.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\rcp.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\rdpclip.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\rdsaddin.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\rdshost.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\reader_s.exe Infected: Trojan.Win32.Inject.prr skipped
    C:\WINDOWS\system32\recover.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\reg.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\regedt32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\regini.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\regsvr32.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\regwiz.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\system32\ReinstallBackups\0002\DriverFiles\uninst.exe Infected: Virus.Win32.Virut.n skipped
    C:\WINDOWS\syst
    0
  11. PL59 Messages postés 634 Statut Membre 21
     
    Re peut tu les supprimer ? tiens moi au courant
    0
  12. Lyonnais92 Messages postés 25708 Statut Contributeur sécurité 1 537
     
    Salut,

    il ne peut pas les supprimer, sinon l'ordi ne redémarrera pas.

    Il a un file infector.

    La seule solution raisonnable est le formatage.

    Donc copie des fichiers personnels sur un support externe ne comportant aucun fichier .exe ou .scr ou .htm ou .html

    Formatage et réinstallation de Windows, des mises à jour, des logiciels de sécurité et des applications.
    0
  13. PL59 Messages postés 634 Statut Membre 21
     
    Ouais désoler sur le coup je n'ai pas vu donc comme dis lyonnais92 formatage mais garde tes données importantes sur un support
    0
  14. buzzzzy Messages postés 15 Statut Membre
     
    j'ai déjà formaté plusieurs fois, et ca n'a rien changé... d'autres idées?! aaaaarrrrrgggg! j'sais plus quoi faire!!!
    0
  15. Lyonnais92 Messages postés 25708 Statut Contributeur sécurité 1 537
     
    Re,

    pas d'autre solution.

    Trois possibilités à ces échecs :

    - tu ne formates pas (c'est à dire que tu ne détruits pas la partition système mais tu répares Windows)

    - tu ne réinstalles pas à partir du CD d'origine mais d'une copie qui es déjà infectée par Virut

    - tu conserves quelque part dans tes sauvegardes ou une partition de ton disque dur un fichier infecté.

    Il est aussi possible que le formatage ne soit pas assez poussé.

    Utilise killdisk :

    https://forum.pcastuces.com/tuto___killdisk-f31s23.htm
    0
  16. buzzzzy Messages postés 15 Statut Membre
     
    Slt,

    Alors voilà, j'ai trouvé ou était le virus, sans faire la manip que tu m'as donnée. En fait, il était dans le SVI, ce qui explique pouquoi même après 10 formatages, je n'ai pas pu venir à bout du virus. J'ai donc fait une petite manip trouvée sur internet me permettant de supprimer tout le svi et aux dernières nouvelles, mon dd est sain.
    Merci quand même pour votre aide.
    0
  17. Lyonnais92 Messages postés 25708 Statut Contributeur sécurité 1 537
     
    Bonjour,

    je l'espère pour toi.

    J'aimerai bien avoir le rapport de Kaspersky on line (après redémarrage de l'ordi).

    J'aimerai bien comprendre pourquoi le formatage ne détruisait pas la restauration système.
    0
  18. buzzzzy Messages postés 15 Statut Membre
     
    bah alors en fait, le DD il est pas sain du tout... je suis sous la console de récupération, mais je connais pas toutes les commandes par coeur... En fait, le / les virus se trouve/nt dans le mbr apparemment... donc, je voudrais bien savoir comment je fais pour virer integralement le svi et tous le petits fichiers cachés restés sur le dd...
    0