Détournement clics sur résultats Google. Help

Fermé
Arikkira - 19 août 2009 à 10:21
sherred Messages postés 8346 Date d'inscription samedi 26 janvier 2008 Statut Membre Dernière intervention 25 mars 2024 - 19 août 2009 à 14:25
Bonjour, depuis 2 jours les clics sur les résultats de moteurs de recherches (Google, Yahoo) renvoient systématiquement vers des pages Ebay, ou blink. Quelque soit le lien cliqué!

Le bon Url s'affiche un instant dans la barre de navigation avnt d'être remplacé par celui d'Ebay ou autre

Ce détournement ne se produit qu'à partir des résultats des moteurs de recherche. Par contre en entrant un url correct directement dans la barre de navigation les pages s'affichent correctement.


PS: Le pb est identique si la recherche est effectuée avec navigateur Firefox ou Explorer.
A voir également:

3 réponses

sherred Messages postés 8346 Date d'inscription samedi 26 janvier 2008 Statut Membre Dernière intervention 25 mars 2024 350
19 août 2009 à 10:27
BONJOUR
télécharge hijackthis http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe
>> enregistre la cible sous .... "le bureau" renomme HJTInstall.exe en par exemple HJT.exe

>> Fais un double-clic sur "HJT.exe" afin de lancer l'installation

>> Clique sur Install ensuite sur "I Accept"

>> Clique sur" Do a scan system and save log file"

>> Le bloc-notes s'ouvrira, fais un copier-coller de tout son contenu ici dans ta prochaine réponse

http://pagesperso-orange.fr/rginformatique/section%20virus/demohijack.htm
0
Bonjour Sherred,

Voici le log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:36:05, on 20/08/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16876)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\sySTEM32\SvchoSt.ExE
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Binn\sqlservr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
C:\Program Files\websrvx\websrvx.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe
C:\Program Files\Apoint\Apntex.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Le Robert\Le Grand Robert\grwinHyper.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\DrvMon.exe
C:\Program Files\Zango\bin\10.3.75.0\Weather.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Zango\bin\10.3.75.0\Srv.exe
C:\Program Files\Adobe\Photoshop 6.0\Photoshp.exe
C:\Program Files\Fichiers communs\Adobe\Web\AOM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: ShoppingReport - {100EB1FD-D03E-47FD-81F3-EE91287F9465} - C:\Program Files\ShoppingReport\Bin\2.5.0\ShoppingReport.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Zango - {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - C:\Program Files\Zango\bin\10.3.75.0\HostIE.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Zango - {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - C:\Program Files\Zango\bin\10.3.75.0\HostIE.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SonyPowerCfg] C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
O4 - HKLM\..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe
O4 - HKLM\..\Run: [VAIO Update 2] "C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe" /Stationary
O4 - HKLM\..\Run: [PDService.exe] C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [IparcStart] C:\Program Files\IparcRes\IparcScr.exe /Start
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Elements 4.0\apdproxy.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [ZangoOE] C:\Program Files\Zango\bin\10.3.75.0\OEAddOn.exe
O4 - HKLM\..\Run: [ZangoSA] "C:\Program Files\Zango\bin\10.3.75.0\ZangoSA.exe"
O4 - HKLM\..\Run: [sysldtray] C:\windows\ld12.exe
O4 - HKLM\..\Run: [sysfbtray] C:\windows\freddy58.exe
O4 - HKLM\..\Run: [Sysmstray] C:\windows\mstre21.exe
O4 - HKLM\..\Run: [pp] C:\windows\pp11.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [grwinHyper] C:\Program Files\Le Robert\Le Grand Robert\grwinHyper.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe -quiet
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [DrvMon.exe] C:\WINDOWS\system32\DrvMon.exe
O4 - HKCU\..\Run: [WeatherDPA] "C:\Program Files\Zango\bin\10.3.75.0\Weather.exe" -auto
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\praiman\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-826499756-657141717-957381470-1661\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User '?')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ?
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: ShopperReports - Compare product prices - {C5428486-50A0-4a02-9D20-520B59A9F9B2} - C:\Program Files\ShoppingReport\Bin\2.5.0\ShoppingReport.dll
O9 - Extra button: ShopperReports - Compare travel rates - {C5428486-50A0-4a02-9D20-520B59A9F9B3} - C:\Program Files\ShoppingReport\Bin\2.5.0\ShoppingReport.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.sony-europe.com
O15 - Trusted Zone: *.sonystyle-europe.com
O15 - Trusted Zone: *.vaio-link.com
O16 - DPF: ActiveGS.cab - http://www.virtualapple.org/activegs.cab
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = paris.mindscape.com
O17 - HKLM\Software\..\Telephony: DomainName = paris.mindscape.com
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = paris.mindscape.com
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = paris.mindscape.com
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Active File Monitor V4 (AdobeActiveFileMonitor4.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Desktop Manager 5.7.806.10245 (GoogleDesktopManager-061008-081103) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Service Google Update (gupdate1c9d61a429d65b8) (gupdate1c9d61a429d65b8) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Image Converter video recording monitor for VAIO Entertainment - Sony Corporation - C:\Program Files\Sony\Image Converter 2\IcVzMon.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
O23 - Service: VAIO Entertainment Task Scheduler - Sony Corporation - C:\Program Files\Sony\VAIO Entertainment\VzTaskScheduler.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
O23 - Service: websrvx - Unknown owner - C:\Program Files\websrvx\websrvx.exe
0
sherred Messages postés 8346 Date d'inscription samedi 26 janvier 2008 Statut Membre Dernière intervention 25 mars 2024 350
19 août 2009 à 10:50
virus KoobFace

télécharge Malwarebyte's ici http://www.malwarebytes.org/mbam/program/mbam-setup.exe
le programme va se mettre automatiquement a jour.
S'il manque le fichier COMCTL32.OCX, vous pourrez le télécharger ici
https://www.malekal.com/tutorial-aboutbuster/
Une fois a jour, le programme va se lancer; click sur l´onglet paramètre, et coche la case : "Arrêter internet explorer pendant la suppression".

Click maintenant sur l´onglet recherche et coche la case : "executer un examen rapide".

Puis click sur "rechercher".

Laisse le scanner le pc...

Si des éléments on été trouvés > click sur supprimer la sélection.

si il t´es demandé de redémarrer > click sur "yes".

A la fin un rapport va s´ouvrir; sauvegarde le de manière a le retrouver en vu de le poster sur le forum.

Copie et colle le rapport stp.

PS : les rapport sont aussi rangé dans l onglet rapport/log
0
Bonjour Sherred,

Un grand merci d'abord le pb est résolu!

J'avais une version de Virus scan de Mc Afee, conseille-tu un autre AV?

Voici le rapport de malware:

Malwarebytes' Anti-Malware 1.40
Version de la base de données: 2653
Windows 5.1.2600 Service Pack 2

20/08/2009 11:41:31
mbam-log-2009-08-20 (11-41-30).txt

Type de recherche: Examen rapide
Eléments examinés: 124866
Temps écoulé: 22 minute(s), 52 second(s)

Processus mémoire infecté(s): 3
Module(s) mémoire infecté(s): 7
Clé(s) du Registre infectée(s): 136
Valeur(s) du Registre infectée(s): 14
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 48
Fichier(s) infecté(s): 912

Processus mémoire infecté(s):
C:\Program Files\websrvx\websrvx.exe (Worm.Koobface) -> Unloaded process successfully.
C:\Program Files\Zango\bin\10.3.75.0\Srv.exe (Adware.180Solutions) -> Unloaded process successfully.
C:\Program Files\Zango\bin\10.3.75.0\Weather.exe (Adware.180Solutions) -> Unloaded process successfully.

Module(s) mémoire infecté(s):
c:\program files\browserctl\browserctl.dll (Trojan.Agent) -> Delete on reboot.
C:\Program Files\ShoppingReport\Bin\2.5.0\ShoppingReport.dll (Adware.Shopper) -> Delete on reboot.
C:\Program Files\Zango\bin\10.3.75.0\CoreSrv.dll (Adware.Zango) -> Delete on reboot.
C:\Program Files\Zango\bin\10.3.75.0\HostIE.dll (Adware.Zango) -> Delete on reboot.
C:\Program Files\Zango\bin\10.3.75.0\Toolbar.dll (Adware.180Solutions) -> Delete on reboot.
C:\Program Files\Zango\bin\10.3.75.0\WeSkin.dll (Adware.180Solutions) -> Delete on reboot.
c:\program files\Zango\bin\10.3.75.0\zangosahook.dll (Adware.180Solutions) -> Delete on reboot.

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\browserctl (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\browserctl (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\browserctl (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\websrvx (Worm.Koobface) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\websrvx (Worm.Koobface) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\websrvx (Worm.Koobface) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{e343edfc-1e6c-4cb5-aa29-e9c922641c80} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d8560ac2-21b5-4c1a-bdd4-bd12bc83b082} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{20ea9658-6bc3-4599-a87d-6371fe9295fc} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a16ad1e9-f69a-45af-9462-b1c286708842} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c9ccbb35-d123-4a31-affc-9b2933132116} (Adware.Shopper) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.lfgax (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{0729f461-8054-47dc-8d39-a31b61cc0119} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{40ca90f3-4098-4877-ae87-23eb612b18c7} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{4c3b62af-ca25-4fba-8405-32e44f83bb6f} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{5a635a91-c303-45c9-8db9-f759d98a3b9d} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7e335d04-2e6e-4d0e-a921-c3d9192e7121} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{99ccfb8c-6380-4a14-8fdd-ef3e7e95335d} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b20d7add-989c-4bc0-a797-f6fe7998efd7} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{bfc20a15-b0ac-44cc-a25a-a7039014ba9f} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f019aec4-4c95-46de-a107-e302473e3b9a} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2d00aa2a-69ef-487a-8a40-b3e27f07c91e} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{86c5840b-80c4-4c30-a655-37344a542009} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{b0cb585f-3271-4e42-88d9-ae5c9330d554} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.lfgax.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostie.bho (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{a57470de-14c7-4fcd-9d4c-e5711f24f0ed} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2557dd3f-23a0-477c-bcd8-90fd0aecc4b8} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2893116c-a176-42b1-8794-da8c9fc45564} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{99fdca0c-7380-4e9c-8d99-5dc4750334ef} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b1d9f4b1-b9ff-463f-bf15-ab9cb26160f7} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{2aa2fbf8-9c76-4e97-a226-25c5f4ab6358} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2aa2fbf8-9c76-4e97-a226-25c5f4ab6358} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2aa2fbf8-9c76-4e97-a226-25c5f4ab6358} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{71f731b3-008b-4052-9ea4-4145acce40c3} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostie.bho.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbax (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbax.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbinfoband (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.hbinfoband.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebutton (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebutton.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebuttona (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.iebuttona.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.rprtctrl (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\shoppingreport.rprtctrl.1 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8ad9ad05-36be-4e40-ba62-5422eb0d02fb} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{aebf09e2-0c15-43c8-99bf-928c645d98a0} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{cdca70d8-c6a6-49ee-9bed-7429d6c477a2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{d136987f-e1c4-4ccc-a220-893df03ec5df} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{eddbb5ee-bb64-4bfc-9dbe-e7c85941335b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Setup.exe (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\shoppingreport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{148e1447-c728-48fd-beec-a7d06c5fff58} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{8ee46f55-1ce1-4db9-811a-68938ec7f3dd} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a87dfd99-cf81-4241-85ce-881e0026b686} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{c96b9fae-a032-4100-bb47-32ef05e28be4} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{14113b47-d59c-4f0f-9d10-ff1730265584} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a9c42a57-421c-4572-8b12-249c59183d1c} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{8292078f-f6e9-412b-8eb1-360c05c5ece5} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2447e305-5e90-42a8-bd1e-0bc333b807e1} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{50d2fdcc-2707-49cb-8223-7fe0424909aa} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{878ce013-7ba9-4650-a78c-b2234c0c1648} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a5b6fa30-d317-41ca-9cb1-c898d3c7f34e} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{cc19a5f2-b4ad-41d5-a5c9-0680904c1483} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{03d7ff6e-9781-40b5-bb7f-94291a361604} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3ceb04ab-08af-45f4-81b4-70d13c1f7b85} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a7213d71-47e1-4832-92d7-d61dfe9f231f} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{cf82f350-e1c4-4916-ac12-ba73db60afb7} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c62a9e79-2b52-439b-af57-2e60bb06e86c} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{15fd8424-d12a-4c51-8c6c-d5d57b80f781} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{67b3becf-7b6f-42b2-99f0-f7656f89cffa} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{715ffd42-4e05-4eab-9513-c8daa5395ae2} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{759d6f7c-8d30-45b6-abea-fa51c190eed5} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{9a4a64a4-a2fb-48fa-9bba-1ac50267695d} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{62906e60-bce2-4e1b-9ed0-8b9042ee15e4} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{f9bfa98d-9935-4ea4-a05a-72c7f0778f02} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{abec1835-3181-4abd-8dde-875aec4df6d2} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{0af9a087-0cbf-46b2-9dc9-52d0d16b5ab6} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{69725738-cd68-4f36-8d02-8c43722ee5da} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{69725738-cd68-4f36-8d02-8c43722ee5da} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{69725738-cd68-4f36-8d02-8c43722ee5da} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{a56fe01c-77c4-4f5e-8198-e4b72207890a} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{af55160d-cde1-4a8b-8001-66da06bee740} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{89085678-632d-4deb-bda0-cd912c63203e} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{30b15818-e110-4527-9c05-46ace5a3460d} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{618aad04-921f-44c2-be38-c0818af69861} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{b5d2ed96-62f9-4c2c-956d-e425b1f67337} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d3a412e8-1e4b-47d2-9b12-f88291f5afbb} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3788e535-897b-463d-b6d6-fee5b86ec144} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3788e535-897b-463d-b6d6-fee5b86ec144} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d3f940ea-4e87-423b-9091-934e1e4fceae} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{d3f940ea-4e87-423b-9091-934e1e4fceae} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{d3f940ea-4e87-423b-9091-934e1e4fceae} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.coreservices (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\coresrv.coreservices.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbmain.commband (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbmain.commband.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbr.hbmain (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hbr.hbmain.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.mailanim (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.mailanim.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.webmailsend (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\hostol.webmailsend.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\srv.coreservices (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\srv.coreservices.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.htmlmenuui (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.htmlmenuui.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.toolbarctl (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.toolbarctl.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\wallpaper.wallpapermanager (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\wallpaper.wallpapermanager.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.clientdetector (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.clientdetector.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.userprofiles (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\zangoax.userprofiles.1 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Zango (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\zangosa (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ZangoSA (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\zango (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\browserctldrv (Trojan.Agent) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysldtray (Work.Koobface) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysmstray (Worm.Koobface) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\pp (Worm.KoobFace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{90b8b761-df2b-48ac-bbe0-bcc03a819b3b} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\zangooe (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\weatherdpa (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\zangosa (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sysfbtray (Worm.KoobFace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\browserctl (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\zango 10.3.75.0 (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\Extensions\Zango@Zango.com (Adware.Zango) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Documents and Settings\All Users\Application Data\2ACA5CC3-0F83-453D-A079-1076FE1A8B65 (Adware.Seekmo) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\db (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\dwld (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\report (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\res2 (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\IESkins (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0 (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOI (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOI\dynamic (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOI\static (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOL (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOL\dynamic (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOL\static (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOL\static\1 (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOL\static\DownLoad (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1 (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\2 (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\DownLoad (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango\dynamic (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango\dynamic\344stat (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango\dynamic\TooltipXML (Adware.Zango) -> Files: 487 -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango\dynamic\ustat (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango\static (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango\static\1 (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango\static\2 (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\Zango\static\DownLoad (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\ZangoSA (Adware.Zango) -> Quarantined and deleted successfully.
C:\Program Files\BrowserCtl (Trojan.Agent) -> Delete on reboot.
C:\Program Files\ShoppingReport (Adware.Shopping.Report) -> Delete on reboot.
C:\Program Files\ShoppingReport\Bin (Adware.Shopping.Report) -> Delete on reboot.
C:\Program Files\ShoppingReport\Bin\2.5.0 (Adware.Shopping.Report) -> Delete on reboot.
C:\Program Files\websrvx (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Program Files\Zango (Adware.180Solutions) -> Delete on reboot.
C:\Program Files\Zango\bin (Adware.180Solutions) -> Delete on reboot.
C:\Program Files\Zango\bin\10.3.75.0 (Adware.180Solutions) -> Delete on reboot.
C:\Program Files\Zango\bin\10.3.75.0\firefox (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\components (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\firefox\extensions\plugins (Adware.180Solutions) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Zango (Adware.180Solutions) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
c:\program files\browserctl\browserctl.dll (Trojan.Agent) -> Delete on reboot.
C:\Program Files\websrvx\websrvx.exe (Worm.Koobface) -> Quarantined and deleted successfully.
C:\Program Files\ShoppingReport\Bin\2.5.0\ShoppingReport.dll (Adware.Shopper) -> Delete on reboot.
C:\WINDOWS\ld12.exe (Work.Koobface) -> Quarantined and deleted successfully.
C:\WINDOWS\mstre21.exe (Worm.Koobface) -> Quarantined and deleted successfully.
C:\WINDOWS\pp11.exe (Worm.KoobFace) -> Quarantined and deleted successfully.
C:\Program Files\Zango\bin\10.3.75.0\CoreSrv.dll (Adware.Zango) -> Delete on reboot.
C:\Program Files\Zango\bin\10.3.75.0\HostIE.dll (Adware.Zango) -> Delete on reboot.
C:\Documents and Settings\praiman\Bureau\Setup.exe (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Local Settings\Temp\srazo_1250281665.exe (Worm.Koobface) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Local Settings\Temporary Internet Files\Content.IE5\0IKHQ40M\websrvx2[1].exe (Worm.Koobface) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Local Settings\Temporary Internet Files\Content.IE5\8VN7XSWH\setup[1].exe (Work.Koobface) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Local Settings\Temporary Internet Files\Content.IE5\99YKJ7BS\ms.21[1].exe (Worm.Koobface) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Local Settings\Temporary Internet Files\Content.IE5\LRC3KV0K\prx[1].exe (Worm.KoobFace) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Local Settings\Temporary Internet Files\Content.IE5\SDQ3PD2T\pp.11[1].exe (Worm.KoobFace) -> Quarantined and deleted successfully.
C:\WINDOWS\zpixraz1250275332.Exe (Spyware.LdPinch) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\Config.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\db\Aliases.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\db\Sites.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\dwld\WhiteList.xip (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\report\aggr_storage.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\report\send_storage.xml (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\ShoppingReport\cs\res2\WhiteList.dbs (Adware.Shopping.Report) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\020108lo8_arrow.cur (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\020108lo8_cr.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\020108lo8_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\030108ya35_arrow.ani (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\030108ya35_cr.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\030108ya35_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\040107ta256_arrow.ani (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\040107ta256_cr.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\040107ta256_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\040107ta318_arrow.ani (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\040107ta318_cr.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\040107ta318_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\040107ta404_arrow.cur (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\040107ta404_cr.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\040107ta404_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\060106na16_em.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\060106na16_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\060107anc7_arrow.ani (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\060107anc7_cr.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\060107anc7_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\070106na21_em.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\070106na21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\eskin\FileManager.txt (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOL\static\DownLoad\buttondir.txt (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostOL\static\DownLoad\buttondir.xip (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030104_emte10_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030104_emte11_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030104_emte12_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030104_emte13_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030104_emte14_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030104_emte19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030104_emte20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030104_emte21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030104_emte9_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\030203lib_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102angel_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102bigluf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102bigsmile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102birthday_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102cheers_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102flo_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102good_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102jump_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102king_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102lough_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102luf_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102smiled_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102smile_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102sor_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102thanx_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\033102uhu_1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\040103ahh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\040103wow_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\040104_emi2_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\042102_1134_112_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\050103big_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\050103gig_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\050103hm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\050103nomail_emoti_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\050103norm_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema15_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema16_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema17_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema18_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema19_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema20_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema21_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema24_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema25_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema26_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema30_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema33_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\060104_ema34_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\062802hippi_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\062802jumpie_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\080402argh_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\080402oops_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\080402ouch_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\082502no_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\082502yes_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_boring1_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_confused_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_crying_ugly_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_fantastic_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_feel_better_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_gimme_break_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_heehee_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_hlopaet_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_ign_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_lol_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_no_comment_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_peace_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_smashing_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\110103_talk2thehand_prv.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\avatar.res (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\blocked.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\blocked2.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\block_sm.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\block_sm2.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\block_smli.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\block_smli2.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_add-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_back-but.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_left_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_left_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_left_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_middle_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_middle_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_right_cut_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_right_enabled_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\btn_right_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\business_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\buttondir.txt (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\components.cdf (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\css2_main.css (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\css2_pagingmodule.css (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\css2_topbuttons.css (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\css_cattree.css (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\css_flashpreview.css (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\cursors.res (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\delete.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\edit_clear_sound.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\edit_fs.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\edit_select.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511724-543450.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511724-548964.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511724-589306.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511724-591943.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511724-592579.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511724-598579.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511724-603763.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511724-9595.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511724-9696.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-511745-514279.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-backgrounds.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-bcards.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-ecards.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-emoticons.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-estationery.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-funny.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-help.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-images.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-info.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-more.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-my.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-new.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-new2.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-options.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-people.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-photo.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-tell.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-temp.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-text.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def-email-voice.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-def.cdf (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-premium-email-premium.mnu (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-t1-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\email-temp-bg.res (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\estatationery.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\flashpatch.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\flashpreview.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\fs3.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\hotbar_promo.htm (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_checked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_close_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_close_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_edit_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_edit_send.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_flash_preview.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_recently_used.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_remove_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_remove_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_sand-clock2.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_tell_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_tell_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_tree_null.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_unchecked_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\icon_unchecked_pressed_1.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\img_barlayout.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\img_barlayout2.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\img_barlayout4.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\img_corner_left.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\img_local_logo.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\js2_basetemplate.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\js2_hbgroups.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\js2_hbobject3.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\js2_hbobjectset3.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\js2_hotbarwrapper.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\js2_iteratorsandreaders3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\js2_pagingmoduleobj3.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\js2_texts3.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\js2_xmltree3nf.js (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\layout.cdf (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\linkpathlegal.txt (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\n.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\nav_bb_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\nav_b_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\nav_ff_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\nav_f_2.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\progress.res (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\sales_buttons.res (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\searchbtn.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\submit.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\tab_bg.gif (Adware.Zango) -> Quarantined and deleted successfully.
C:\Documents and Settings\praiman\Application Data\Zango\v3.0\HostWD\static\1\tab_bga.gif (Adware.Zango) -> Quarantined and deleted successfully.
0
sherred Messages postés 8346 Date d'inscription samedi 26 janvier 2008 Statut Membre Dernière intervention 25 mars 2024 350
19 août 2009 à 14:25
Processus mémoire infecté(s): 3
Module(s) mémoire infecté(s): 7
Clé(s) du Registre infectée(s): 136
Valeur(s) du Registre infectée(s): 14
Dossier(s) infecté(s): 48
Fichier(s) infecté(s): 912

joli score en effet

mais pas sur qu'il soit résolu

>>Télécharge random's system information tool (RSIT) http://images.malwareremoval.com/random/RSIT.exe par random/random
>>sauvegarde-le sur le Bureau.
>>Double-clique sur RSIT.exe Clic Continue à l'écran Disclaimer.
>>Si l'outil HIjackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera et tu devras accepter la licence.
>>Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste en pièce jointe log.txt qui sera affiché ..ainsi que de info.txt qui sera réduit dans la Barre des Tâches.
0