Probleme logiciel de securite

Résolu/Fermé
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021 - 16 janv. 2010 à 10:11
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021 - 30 janv. 2010 à 19:34
Bonjour,
a nouveau de retour pour quelques soucis, je ne peux plus lancer antivir, ni le désinstaller, je ne peux pas redemarrer non plus en mode sans echec, lorsque je lance ccleaner, j'arrive à nettoyer et il se ferme tout seul
en regardant dans le forum j'ai fait quelques manipulations mais rien n'y fait
la je vais lancer jacfind et puis je vous posterai le rapport
merci de votre aide
A voir également:

161 réponses

crapoulou Messages postés 28158 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 16 avril 2024 7 990
21 janv. 2010 à 15:03
Très bien.

Nettoyage avec Findykill :

! Déconnecte toi et ferme toutes application en cours (Navigateur Internet compris) !

* Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)
* Relance "FindyKill".
* Au menu principal choisis l’option "F" pour français et tape sur [Entrée].
* Au second menu choisis l’option "2" (Suppression) et tape sur [Entrée].
* Le PC va redémarrer automatiquement.
=> Le programme va travailler, ne touche à rien. Ton bureau ne sera pas accessible, c’est normal !

* Poste le rapport qui apparaît à la fin (le rapport est sauvegardé aussi sous C:\FindyKill.txt)

/!\ Si le Bureau ne réapparaît pas, presse Ctrl + Alt + Suppr , Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide /!\

Aide en images (Suppression) :
ICI
2
crapoulou Messages postés 28158 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 16 avril 2024 7 990
21 janv. 2010 à 14:41
Ok.
Concernant tes données, elles sont sauvegardées ?

****

Ce n'est pas normal tu devrais avoir un CD ou des CD à graver.
Ce n'est pas sérieux de la part des vendeurs.
Non il n'y aura probablement pas anguille sous roche je ne pense pas.

Ferme les fenêtres oui.

*******

On va repartir sur des bases saines et tout virer les outils utilisés :

Télécharge Toolscleaner sur ton Bureau
= = = =>>> En cliquant ici <<<= = = =

* Double-clique sur ToolsCleaner2.exe et laisse le travailler
* Clique sur Recherche et laisse le scan se terminer.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options facultatives.
* Clique sur Quitter, pour que le rapport puisse se créer.
* Le rapport (TCleaner.txt) se trouve à la racine de votre disque dur (C:\)...colle le dans ta réponse.

*****

Télécharge FindyKill (de El desaparecido) sur ton bureau et installe-le :
= = = = =>>> En cliquant ici <<<= = = = =

! Déconnecte toi et ferme toutes tes applications en cours !

* Double clique sur "FindyKill.exe" pour lancer l’installation et laisse les paramètres d’installation par défaut.
* Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)
* Double-clique sur le raccourci FindyKill qui est sur ton bureau pour lancer l’outil.
* Au menu principal choisis l’option "F" pour français et tape sur [Entrée].
* Au second menu Choisis l’option "1" (recherche) et tape sur [Entrée].

Laisse travailler l’outil et ne touche à rien ...

=> Poste le rapport qui apparaît à la fin, sur le forum ...

(Le rapport est sauvegardé aussi sous C:\FindyKill.txt)
(CTRL+A Pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)

Note : "Process.exe", une composante de l’outil, est détecté par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
Il ne s’agit pas d’un virus, mais d’un utilitaire destiné à mettre fin à des processus.
Mis entre de mauvaises mains, cet utilitaire pourrait arrêter des logiciels de sécurité (Antivirus, Firewall...) d’où l’alerte émise par ces antivirus.

Fais bien l'option 1 !
1
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
16 janv. 2010 à 10:18
Voilà le rapport

############################## | FindyKill V5.022 |

# User : MYRIAM (Administrateurs) # PCMIMI
# Update on 24/12/2009 by Chiquitine29
# Start at: 10:12:11 | 16/01/2010
# Website : http://pagesperso-orange.fr/NosTools/index.html
# Contact : FindyKill.Contact@gmail.com

# AMD Athlon(tm) 64 X2 Dual Core Processor 4400+
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 6.0.2900.5512
# Windows Firewall Status : Enabled
# AV : AntiVir Desktop 9.0.1.32 [ Enabled | Updated ]

# C:\ # Disque fixe local # 48,83 Go (32,3 Go free) [SYSTEM] # NTFS
# D:\ # Disque CD-ROM
# E:\ # Disque fixe local # 184,06 Go (148,2 Go free) [DATA] # NTFS

############################## | Processus actifs |

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\MYRIAM\Application Data\drivers\winupgro.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Winsudate\gibsvc.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Documents and Settings\MYRIAM\Application Data\m\flec006.exe
C:\WINDOWS\wintems.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe

############################## | Processus infectieux stoppés |

"C:\Documents and Settings\MYRIAM\Application Data\drivers\winupgro.exe" (1784)
"C:\Documents and Settings\MYRIAM\Application Data\m\flec006.exe" (3552)
"C:\WINDOWS\wintems.exe" (3608)

################## | C: |


################## | C:\WINDOWS |

Présent ! C:\WINDOWS\ban_list.txt
Présent ! C:\WINDOWS\mdelk.exe
Présent ! C:\WINDOWS\wintems.exe
Présent ! C:\WINDOWS\Prefetch\140828.EXE-0FD68AA5.pf
Présent ! C:\WINDOWS\Prefetch\158296.EXE-102DE535.pf
Présent ! C:\WINDOWS\Prefetch\164906.EXE-21F4A761.pf
Présent ! C:\WINDOWS\Prefetch\168078.EXE-11F0EED4.pf
Présent ! C:\WINDOWS\Prefetch\64421.EXE-2B62F1BE.pf
Présent ! C:\WINDOWS\Prefetch\67671.EXE-2635F061.pf
Présent ! C:\WINDOWS\Prefetch\81046.EXE-2431BD38.pf
Présent ! C:\WINDOWS\Prefetch\85203.EXE-28D955AF.pf
Présent ! C:\WINDOWS\Prefetch\FLEC006.EXE-07147BC0.pf
Présent ! C:\WINDOWS\Prefetch\MDELK.EXE-087EF2B4.pf
Présent ! C:\WINDOWS\Prefetch\WINTEMS.EXE-127B61D4.pf

################## | C:\WINDOWS\system32 |

Présent ! C:\WINDOWS\system32\srosa2.sys
Présent ! C:\WINDOWS\system32\wfsintwq.sys

################## | C:\WINDOWS\system32\drivers |


################## | C:\Documents and Settings\MYRIAM\Application Data |

Présent ! C:\Documents and Settings\MYRIAM\Application Data\drivers
Présent ! C:\Documents and Settings\MYRIAM\Application Data\drivers\downld
Présent ! C:\Documents and Settings\MYRIAM\Application Data\drivers\winupgro.exe
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\data.oct
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\flec006.exe
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\list.oct
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\srvlist.oct
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\shared
################## | Temporary Internet Files |

Présent ! C:\Documents and Settings\MYRIAM\Local Settings\Temporary Internet Files\Content.IE5\OP23GHUV\servernames[1].htm

################## | Registre / Clés infectieuses |

Présent ! [HKLM\SYSTEM\ControlSet004\Services\sK9Ou0s]
Présent ! [HKLM\SYSTEM\CurrentControlSet\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet001\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet003\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet004\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet004\Enum\Root\LEGACY_SK9OU0S]
Présent ! [HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA]
Présent ! [HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA]
Présent ! [HKCU\Software\bisoft]
Présent ! [HKCU\Software\DateTime4]
Présent ! [HKCU\Software\MuleAppData]
Présent ! [HKCU\Software\WS35]
Présent ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "drvsyskit"
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run] "drvsyskit"
Présent ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "german.exe"
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run] "german.exe"
Présent ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "mule_st_key"
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run] "mule_st_key"
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\bisoft]
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\DateTime4]
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\MuleAppData]
Présent ! [HKCU\Software\Local AppWizard-Generated Applications\keygen]
Présent ! [HKCU\Software\Local AppWizard-Generated Applications\winupgro]
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Local AppWizard-Generated Applications\keygen]
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Local AppWizard-Generated Applications\winupgro]

################## | Etat / Services / Informations |

# Affichage des fichiers cachés : OK

Clé manquante : HKLM\...\SafeBoot | Mode sans echec non fonctionnel !

# (!) Ndisuio -> Start = 4 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 3 ( Good = 2 | Bad = 4 )
# (!) Ip6Fw -> Start = 4 ( Good = 2 | Bad = 4 )
# (!) SharedAccess -> Start = 4 ( Good = 2 | Bad = 4 )
# (!) wuauserv -> Start = 4 ( Good = 2 | Bad = 4 )
# (!) wscsvc -> Start = 4 ( Good = 2 | Bad = 4 )


################## | Cracks / Keygens / Serials |


################## | ! Fin du rapport # FindyKill V5.022 ! |
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
16 janv. 2010 à 11:14
en attendant votre aide, j'ai essayer d'installer plusieurs logiciels type :
kaspersky, spywareterminator, rien à faire, je ne peux lancer aucun logiciel de protection

j'ai meme essayer de telecharcher hitjackis des que je veux le telecharger la page internet se ferme

merci de m'aider, s'il vous plait
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
crapoulou Messages postés 28158 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 16 avril 2024 7 990
16 janv. 2010 à 11:17
Salut,
C'est normal, tu as une infection bagle !
Si ton souci provient du téléchargement de quelque chose sur le p2p, supprime le !

*******

Ta version de findukill n'est pas à jjour.
Prends celle-ci stp :
https://www.commentcamarche.net/telecharger/securite/2759-adwcleaner/

Et refais l'option 1 pour le moment.
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
16 janv. 2010 à 11:21
Salut,

je peux pas aller sur le lien que tu m'as donner ma page internet se ferme dessuite
0
crapoulou Messages postés 28158 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 16 avril 2024 7 990
16 janv. 2010 à 11:22
Essaye ce lien direct :
http://pagesperso-orange.fr/NosTools/Chiquitine29/Setup.exe
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
16 janv. 2010 à 18:13
bonsoir,

désolé de te déranger, mais je sais plus quoi faire, ça craint pour mon ordi ou pas ?
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
16 janv. 2010 à 11:29
voilà le rapport

############################## | FindyKill V5.024 |

# User : MYRIAM (Administrateurs) # PCMIMI
# Update on 09/01/2010 by El Desaparecido
# Start at: 11:23:48 | 16/01/2010
# Website : http://pagesperso-orange.fr/NosTools/index.html
# Contact : FindyKill.Contact@gmail.com

# AMD Athlon(tm) 64 X2 Dual Core Processor 4400+
# Microsoft Windows XP Professionnel (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 6.0.2900.5512
# Windows Firewall Status : Enabled

# C:\ # Disque fixe local # 48,83 Go (32,5 Go free) [SYSTEM] # NTFS
# D:\ # Disque CD-ROM
# E:\ # Disque fixe local # 184,06 Go (148,2 Go free) [DATA] # NTFS

############################## | Processus actifs |

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Winsudate\gibsvc.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\MYRIAM\Application Data\drivers\winupgro.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\wbem\wmiapsrv.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Documents and Settings\MYRIAM\Application Data\m\flec006.exe
C:\WINDOWS\wintems.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe

############################## | Processus infectieux stoppés |

"C:\Documents and Settings\MYRIAM\Application Data\drivers\winupgro.exe" (488)
"C:\Documents and Settings\MYRIAM\Application Data\m\flec006.exe" (3236)
"C:\WINDOWS\wintems.exe" (3300)

################## | C: |


################## | C:\WINDOWS |

Présent ! C:\WINDOWS\ban_list.txt
Présent ! C:\WINDOWS\mdelk.exe
Présent ! C:\WINDOWS\wintems.exe

################## | C:\WINDOWS\Prefetch |

Présent ! C:\WINDOWS\Prefetch\140828.EXE-0FD68AA5.pf
Présent ! C:\WINDOWS\Prefetch\158296.EXE-102DE535.pf
Présent ! C:\WINDOWS\Prefetch\164906.EXE-21F4A761.pf
Présent ! C:\WINDOWS\Prefetch\168078.EXE-11F0EED4.pf
Présent ! C:\WINDOWS\Prefetch\198187.EXE-027FFD67.pf
Présent ! C:\WINDOWS\Prefetch\64421.EXE-2B62F1BE.pf
Présent ! C:\WINDOWS\Prefetch\67671.EXE-2635F061.pf
Présent ! C:\WINDOWS\Prefetch\69484.EXE-244ABBEC.pf
Présent ! C:\WINDOWS\Prefetch\72187.EXE-2D87B863.pf
Présent ! C:\WINDOWS\Prefetch\75281.EXE-33A638CD.pf
Présent ! C:\WINDOWS\Prefetch\77828.EXE-1F57CEC6.pf
Présent ! C:\WINDOWS\Prefetch\80687.EXE-18587A7A.pf
Présent ! C:\WINDOWS\Prefetch\81046.EXE-2431BD38.pf
Présent ! C:\WINDOWS\Prefetch\85203.EXE-28D955AF.pf
Présent ! C:\WINDOWS\Prefetch\85515.EXE-2B3C6D0C.pf
Présent ! C:\WINDOWS\Prefetch\90671.EXE-1AE22A8D.pf
Présent ! C:\WINDOWS\Prefetch\93156.EXE-1E3987A3.pf
Présent ! C:\WINDOWS\Prefetch\FLEC006.EXE-07147BC0.pf
Présent ! C:\WINDOWS\Prefetch\MDELK.EXE-087EF2B4.pf
Présent ! C:\WINDOWS\Prefetch\WINTEMS.EXE-127B61D4.pf

################## | C:\WINDOWS\system32 |

Présent ! C:\WINDOWS\system32\srosa2.sys
Présent ! C:\WINDOWS\system32\wfsintwq.sys

################## | C:\WINDOWS\system32\drivers |


################## | C:\Documents and Settings\MYRIAM\Application Data |

Présent ! C:\Documents and Settings\MYRIAM\Application Data\drivers
Présent ! C:\Documents and Settings\MYRIAM\Application Data\drivers\downld
Présent ! C:\Documents and Settings\MYRIAM\Application Data\drivers\winupgro.exe
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\data.oct
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\flec006.exe
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\list.oct
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\srvlist.oct
Présent ! C:\Documents and Settings\MYRIAM\Application Data\m\shared

################## | Temporary Internet Files |


################## | Registre |

Présent ! [HKLM\SYSTEM\ControlSet004\Services\sK9Ou0s]
Présent ! [HKLM\SYSTEM\CurrentControlSet\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet001\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet003\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet004\Services\srosa]
Présent ! [HKLM\SYSTEM\ControlSet004\Enum\Root\LEGACY_SK9OU0S]
Présent ! [HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA]
Présent ! [HKLM\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA]
Présent ! [HKCU\Software\bisoft]
Présent ! [HKCU\Software\DateTime4]
Présent ! [HKCU\Software\MuleAppData]
Présent ! [HKCU\Software\WS35]
Présent ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "drvsyskit"
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run] "drvsyskit"
Présent ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "german.exe"
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run] "german.exe"
Présent ! [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] "mule_st_key"
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Microsoft\Windows\CurrentVersion\Run] "mule_st_key"
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\bisoft]
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\DateTime4]
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\MuleAppData]
Présent ! [HKCU\Software\Local AppWizard-Generated Applications\keygen]
Présent ! [HKCU\Software\Local AppWizard-Generated Applications\winupgro]
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Local AppWizard-Generated Applications\keygen]
Présent ! [HKU\S-1-5-21-57989841-630328440-725345543-1003\Software\Local AppWizard-Generated Applications\winupgro]

################## | Etat |

# Affichage des fichiers cachés : OK

Clé manquante : HKLM\...\SafeBoot | Mode sans echec non fonctionnel !

# (!) Ndisuio -> Start = 4 ( Good = 3 | Bad = 4 )
# EapHost -> Start = 3 ( Good = 2 | Bad = 4 )
# (!) Ip6Fw -> Start = 4 ( Good = 2 | Bad = 4 )
# (!) SharedAccess -> Start = 4 ( Good = 2 | Bad = 4 )
# (!) wuauserv -> Start = 4 ( Good = 2 | Bad = 4 )
# (!) wscsvc -> Start = 4 ( Good = 2 | Bad = 4 )


################## | Cracks > Keygens > Serials |


################## | ! Fin du rapport # FindyKill V5.024 ! |
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
16 janv. 2010 à 12:43
est-ce que je dois repasser Findy Kill
et faire le 2 ou pas
0
crapoulou Messages postés 28158 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 16 avril 2024 7 990
16 janv. 2010 à 18:15
Oui, tu peux faire le 2 et poster le rapport.
Voilà la procédure :

Nettoyage avec Findykill :

! Déconnecte toi et ferme toutes application en cours (Navigateur Internet compris) !

* Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...)
* Relance "FindyKill".
* Au menu principal choisis l’option "F" pour français et tape sur [Entrée].
* Au second menu choisis l’option "2" (Suppression) et tape sur [Entrée].
* Le PC va redémarrer automatiquement.
=> Le programme va travailler, ne touche à rien. Ton bureau ne sera pas accessible, c’est normal !

* Poste le rapport qui apparaît à la fin (le rapport est sauvegardé aussi sous C:\FindyKill.txt)

/!\ Si le Bureau ne réapparaît pas, presse Ctrl + Alt + Suppr , Onglet "Fichier", "Nouvelle tâche", tape explorer.exe et valide /!\

Aide en images (Suppression) :
ICI

********

Pour un diagnostic en profondeur de ton PC :
Télécharge Random’s System Information Tool (RSIT) de random/random et enregistre l’exécutable sur le Bureau.
= = = = >>> En cliquant ici <<< = = = =

* Double clique sur RSIT.exe pour le lancer.
* Une première fenêtre s’ouvre, clique alors sur Continue (Disclaimer).
* Si la dernière version de HijackThis n’est pas détectée sur ton PC, RSIT le téléchargera et te demandera d’accepter la licence.
* Lorsque l’analyse sera terminée, deux fichiers texte s’ouvriront (probablement avec le bloc-notes).
* Poste le contenu de log.txt.
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
16 janv. 2010 à 18:59
j'ai fait toutes les manipulations avec Findykill

effectivement le PC redémarre, mon bureau n'est pas accessible pendant un certain temps, mais le rapport ne s'affiche pas et quand je vais dans C:\FindyKill.txt , tout se ferme je n'arrive pas à ouvrir le dossier

je vais essayer de passer Random's System Information Tool et je poste le rapport si je peux
0
crapoulou Messages postés 28158 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 16 avril 2024 7 990
16 janv. 2010 à 19:00
Ok.
Je file, je reviens en fin de soirée.
Si tu as ton bureau mais pas les icônes, tu sais ce qu'il faut faire.
Si t'as des messages d'erreur, n'hésite pas à les relever.
A ce soir.
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
16 janv. 2010 à 19:01
ok merci pour ton aide je te poste quand meme le rapport RSIT

Logfile of random's system information tool 1.06 (written by random/random)
Run by MYRIAM at 2010-01-16 19:00:12
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 33 GB (66%) free of 50 GB
Total RAM: 1023 MB (67% free)


======Scheduled tasks folder======

C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-12-21 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}]
Search Helper - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14 92504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-24 35840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-03-24 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2009-02-06 1068904]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\System32\NvCpl.dll [2007-06-09 7700480]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=C:\WINDOWS\System32\NvMcTray.dll [2007-06-09 86016]
"SchedulingAgent"=mstinit.exe /firstlogon []
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2006-01-27 842752]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
""= []
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]
"Adobe ARM"=C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe [2009-12-11 948672]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-12-22 35760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CloneCDTray]
C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe [2009-01-29 57344]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\System32\NvCpl.dll [2007-06-09 7700480]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\System32\NvMcTray.dll [2007-06-09 86016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl]
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [2004-06-28 32768]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RTHDCPL]
C:\WINDOWS\RTHDCPL.EXE [2007-10-16 16855552]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SkyTel]
C:\WINDOWS\SkyTel.EXE [2007-10-11 1826816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^EPSON Status Monitor 3 Environment Check.lnk]
C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV03.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Lancement rapide d'Adobe Reader.lnk]
C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^TrayMin220.lnk]
C:\PROGRA~1\Philips\PHILIP~1\TRAYMI~1.EXE [2007-03-09 278528]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"Boonty Games"=3
"avast! Web Scanner"=3
"avast! Mail Scanner"=3
"avast! Antivirus"=2
"aswUpdSv"=2
"aawservice"=2

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
Démarrage rapide de HP Photosmart Premier.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=323
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=
"NoDrives"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\eMule0.48a\emule.exe"="C:\eMule0.48a\emule.exe:*:Enabled:eMule"
"C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe:*:Enabled:hpqtra08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe:*:Enabled:hpqste08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe:*:Enabled:hpofxm08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe"="C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe:*:Enabled:hposfx08.exe"
"C:\Program Files\HP\Digital Imaging\bin\hposid01.exe"="C:\Program Files\HP\Digital Imaging\bin\hposid01.exe:*:Enabled:hposid01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqscnvw.exe:*:Enabled:hpqscnvw.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe:*:Enabled:hpqkygrp.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqCopy.exe:*:Enabled:hpqcopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe"="C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe:*:Enabled:hpfccopy.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe:*:Enabled:hpzwiz01.exe"
"C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe"="C:\Program Files\HP\Digital Imaging\Unload\HpqPhUnl.exe:*:Enabled:hpqphunl.exe"
"C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe"="C:\Program Files\HP\Digital Imaging\Unload\HpqDIA.exe:*:Enabled:hpqdia.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe"="C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe:*:Enabled:hpoews01.exe"
"C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe"="C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe:*:Enabled:hpqnrs08.exe"
"C:\Program Files\eMule\emule.exe"="C:\Program Files\eMule\emule.exe:*:Enabled:eMule"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live FolderShare"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6f035a43-aae2-11dc-a906-001d7d925331}]
shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL wscript.exe MS32DLL.dll.vbs


======List of files/folders created in the last 1 months======

2010-01-16 19:00:12 ----D---- C:\rsit
2010-01-16 18:56:24 ----A---- C:\WINDOWS\ban_list.txt
2010-01-16 18:56:14 ----HD---- C:\Documents and Settings\MYRIAM\Application Data\m
2010-01-16 18:55:50 ----HD---- C:\Documents and Settings\MYRIAM\Application Data\drivers
2010-01-16 18:55:05 ----A---- C:\Log.txt
2010-01-16 09:41:26 ----D---- C:\FindyKill
2010-01-12 20:36:14 ----HDC---- C:\WINDOWS\$NtUninstallKB955759$
2010-01-09 21:00:58 ----D---- C:\Program Files\Dactylo
2009-12-25 23:18:39 ----D---- C:\WINDOWS\system32\XPSViewer
2009-12-25 23:18:35 ----D---- C:\Program Files\MSBuild
2009-12-25 23:18:33 ----D---- C:\WINDOWS\system32\en-US
2009-12-25 23:18:29 ----D---- C:\Program Files\Reference Assemblies
2009-12-25 23:17:34 ----N---- C:\WINDOWS\system32\prntvpt.dll
2009-12-25 23:17:33 ----N---- C:\WINDOWS\system32\xpssvcs.dll
2009-12-25 23:17:33 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
2009-12-23 21:48:44 ----DC---- C:\WINDOWS\$NtUninstallKB959426$
2009-12-23 21:48:40 ----DC---- C:\WINDOWS\$NtUninstallKB960859$
2009-12-23 21:47:51 ----DC---- C:\WINDOWS\$NtUninstallKB958869$
2009-12-23 21:47:34 ----DC---- C:\WINDOWS\$NtUninstallKB976098-v2$
2009-12-23 21:47:31 ----DC---- C:\WINDOWS\$NtUninstallKB974318$
2009-12-23 21:47:26 ----DC---- C:\WINDOWS\$NtUninstallKB951978$
2009-12-23 21:47:20 ----DC---- C:\WINDOWS\$NtUninstallKB969059$
2009-12-23 21:47:05 ----DC---- C:\WINDOWS\$NtUninstallKB968816_WM9$
2009-12-23 21:46:00 ----DC---- C:\WINDOWS\$NtUninstallKB961503$
2009-12-23 21:45:56 ----DC---- C:\WINDOWS\$NtUninstallKB961371-v2$
2009-12-23 21:45:51 ----DC---- C:\WINDOWS\$NtUninstallKB971657$
2009-12-23 21:45:47 ----DC---- C:\WINDOWS\$NtUninstallKB971557$
2009-12-23 21:45:43 ----DC---- C:\WINDOWS\$NtUninstallKB954155_WM9$
2009-12-23 21:45:25 ----DC---- C:\WINDOWS\$NtUninstallKB956744$
2009-12-23 21:45:21 ----DC---- C:\WINDOWS\$NtUninstallKB974112$
2009-12-23 21:45:14 ----DC---- C:\WINDOWS\$NtUninstallKB956572$
2009-12-23 21:44:48 ----DC---- C:\WINDOWS\$NtUninstallKB956844$
2009-12-23 21:44:31 ----DC---- C:\WINDOWS\$NtUninstallKB961501$
2009-12-23 21:44:17 ----DC---- C:\WINDOWS\$NtUninstallKB971633$
2009-12-23 21:44:12 ----DC---- C:\WINDOWS\$NtUninstallKB973869$
2009-12-23 21:44:08 ----DC---- C:\WINDOWS\$NtUninstallKB975025$
2009-12-23 21:44:03 ----DC---- C:\WINDOWS\$NtUninstallKB952004$
2009-12-23 21:43:58 ----DC---- C:\WINDOWS\$NtUninstallKB974571$
2009-12-23 21:43:52 ----DC---- C:\WINDOWS\$NtUninstallKB976325$
2009-12-23 21:43:46 ----DC---- C:\WINDOWS\$NtUninstallKB973507$
2009-12-23 21:43:42 ----DC---- C:\WINDOWS\$NtUninstallKB973687$
2009-12-23 21:43:25 ----DC---- C:\WINDOWS\$NtUninstallKB973354$
2009-12-23 21:43:20 ----DC---- C:\WINDOWS\$NtUninstallKB973904$
2009-12-23 21:43:08 ----DC---- C:\WINDOWS\$NtUninstallKB973540_WM9$
2009-12-23 21:42:35 ----DC---- C:\WINDOWS\$NtUninstallKB974392$
2009-12-23 21:42:31 ----DC---- C:\WINDOWS\$NtUninstallKB954459$
2009-12-23 21:41:36 ----DC---- C:\WINDOWS\$NtUninstallKB970238$
2009-12-23 21:41:28 ----DC---- C:\WINDOWS\$NtUninstallKB971486$
2009-12-23 21:41:22 ----DC---- C:\WINDOWS\$NtUninstallKB960803$
2009-12-23 21:41:13 ----DC---- C:\WINDOWS\$NtUninstallKB973815$
2009-12-23 21:41:09 ----DC---- C:\WINDOWS\$NtUninstallKB973525$
2009-12-23 21:39:20 ----DC---- C:\WINDOWS\$NtUninstallKB923561$
2009-12-23 21:39:16 ----DC---- C:\WINDOWS\$NtUninstallKB971961$
2009-12-23 21:39:12 ----DC---- C:\WINDOWS\$NtUninstallKB975467$
2009-12-23 21:39:07 ----DC---- C:\WINDOWS\$NtUninstallKB968389$
2009-12-23 21:39:00 ----DC---- C:\WINDOWS\$NtUninstallKB969947$
2009-12-22 10:51:19 ----D---- C:\WINDOWS\Bubble Town

======List of files/folders modified in the last 1 months======

2010-01-16 19:00:14 ----D---- C:\Program Files\Trend Micro
2010-01-16 18:56:33 ----D---- C:\WINDOWS\Prefetch
2010-01-16 18:56:25 ----D---- C:\WINDOWS
2010-01-16 18:56:15 ----D---- C:\Program Files\Mozilla Firefox
2010-01-16 18:56:00 ----D---- C:\WINDOWS\system32
2010-01-16 18:55:09 ----D---- C:\WINDOWS\TEMP
2010-01-16 18:54:08 ----A---- C:\WINDOWS\SchedLgU.Txt
2010-01-16 18:49:36 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2010-01-16 12:39:06 ----SHD---- C:\WINDOWS\Installer
2010-01-16 12:39:06 ----HD---- C:\WINDOWS\system32\drivers
2010-01-16 12:39:06 ----D---- C:\Config.Msi
2010-01-16 12:39:03 ----RD---- C:\Program Files
2010-01-16 12:38:21 ----HD---- C:\WINDOWS\inf
2010-01-16 12:38:12 ----D---- C:\WINDOWS\system32\CatRoot2
2010-01-16 10:47:54 ----D---- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab Setup Files
2010-01-16 09:37:34 ----D---- C:\Documents and Settings\MYRIAM\Application Data\vlc
2010-01-16 09:14:45 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2010-01-16 09:13:53 ----D---- C:\Program Files\Windows Media Player
2010-01-15 21:21:22 ----D---- C:\Program Files\Oberon Media
2010-01-13 17:41:37 ----D---- C:\Program Files\Fichiers communs\Adobe
2010-01-13 17:41:36 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2010-01-13 17:41:27 ----D---- C:\Program Files\Adobe
2010-01-13 08:21:52 ----D---- C:\WINDOWS\AppPatch
2010-01-12 20:36:16 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-01-12 20:36:10 ----HD---- C:\WINDOWS\$hf_mig$
2010-01-02 12:13:20 ----D---- C:\Documents and Settings\MYRIAM\Application Data\dvdcss
2009-12-27 09:25:41 ----D---- C:\Documents and Settings\All Users\Application Data\HP
2009-12-26 10:27:22 ----D---- C:\WINDOWS\Microsoft.NET
2009-12-26 10:27:20 ----RSD---- C:\WINDOWS\assembly
2009-12-25 23:21:14 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-12-25 23:21:01 ----D---- C:\WINDOWS\WinSxS
2009-12-25 23:18:32 ----RSD---- C:\WINDOWS\Fonts
2009-12-25 23:18:20 ----D---- C:\WINDOWS\system32\spool
2009-12-25 23:18:10 ----D---- C:\WINDOWS\system32\CatRoot
2009-12-25 11:50:35 ----D---- C:\WINDOWS\Debug
2009-12-25 11:50:35 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2009-12-24 23:20:02 ----D---- C:\WINDOWS\system32\wbem
2009-12-24 23:19:18 ----D---- C:\WINDOWS\system32\config
2009-12-24 23:18:57 ----D---- C:\WINDOWS\Registration
2009-12-24 23:18:33 ----D---- C:\Program Files\Microsoft Silverlight
2009-12-24 23:18:30 ----D---- C:\Program Files\Outlook Express
2009-12-23 06:57:32 ----D---- C:\WINDOWS\system32\NtmsData
2009-12-22 10:51:19 ----D---- C:\Program Files\Bubble Town
2009-12-22 08:02:48 ----D---- C:\Program Files\Winsudate
2009-12-21 17:13:32 ----D---- C:\Documents and Settings\All Users\Application Data\BitDefender
2009-12-21 17:13:32 ----A---- C:\WINDOWS\win.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-02-17 24232]
R2 Aspi32;Aspi32; C:\WINDOWS\system32\drivers\Aspi32.sys [1997-12-23 23936]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-08-05 54752]
R2 MarxDev1;MarxDev1; C:\WINDOWS\system32\drivers\MarxDev1.sys [2001-05-28 8864]
R2 MarxDev2;MarxDev2; C:\WINDOWS\system32\drivers\MarxDev2.sys [2001-05-28 8864]
R2 MarxDev3;MarxDev3; C:\WINDOWS\system32\drivers\MarxDev3.sys [2001-05-28 8864]
R3 Afc;PPdus ASPI Shell; C:\WINDOWS\system32\drivers\Afc.sys [2006-11-10 18688]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\System32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 HPZid412;IEEE-1284.4 Driver HPZid412; C:\WINDOWS\system32\DRIVERS\HPZid412.sys [2006-04-13 49664]
R3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; C:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2006-04-13 16496]
R3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; C:\WINDOWS\system32\DRIVERS\HPZius12.sys [2006-04-13 21568]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2007-10-16 4615168]
R3 MMRTKRNL;MMRTKRNL; C:\WINDOWS\system32\drivers\mmrtkrnl.sys [2001-11-05 32960]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\System32\DRIVERS\mouhid.sys [2001-08-28 12288]
R3 nv;nv; C:\WINDOWS\System32\DRIVERS\nv4_mini.sys [2007-06-09 3988384]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [2006-11-27 58368]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [2006-11-27 19968]
R3 SPC220NC;Philips SPC220NC Webcam; C:\WINDOWS\System32\DRIVERS\SPC220NC.SYS [2007-01-09 507136]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur hôte amélioré USB 2.0 Microsoft; C:\WINDOWS\System32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\System32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Pilote miniport de contrôleur hôte ouvert USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\System32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;Pilote de scanneur USB; C:\WINDOWS\System32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 USBSTOR;Pilote de stockage de masse USB; C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
S3 AnyDVD;AnyDVD; C:\WINDOWS\System32\Drivers\AnyDVD.sys [2009-03-10 103744]
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2007-02-16 34760]
S3 ElbyDelay;ElbyDelay; C:\WINDOWS\System32\Drivers\ElbyDelay.sys []
S3 gdrv;gdrv; \??\C:\WINDOWS\gdrv.sys []
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\System32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 Profos;Profos; \??\C:\Program Files\Softwin\BitDefender10\profos.sys []
S3 SE26bus;Sony Ericsson Device 038 Driver driver (WDM); C:\WINDOWS\System32\DRIVERS\SE26bus.sys [2006-08-28 61600]
S3 SE26mdfl;Sony Ericsson Device 038 USB WMC Modem Filter; C:\WINDOWS\System32\DRIVERS\SE26mdfl.sys [2006-08-28 9360]
S3 SE26mdm;Sony Ericsson Device 038 USB WMC Modem Driver; C:\WINDOWS\System32\DRIVERS\SE26mdm.sys [2006-08-28 97184]
S3 SE26mgmt;Sony Ericsson Device 038 USB WMC Device Management Drivers (WDM); C:\WINDOWS\System32\DRIVERS\SE26mgmt.sys [2006-08-28 88688]
S3 se26nd5;Sony Ericsson Device 038 USB Ethernet Emulation SEMC38 (NDIS); C:\WINDOWS\System32\DRIVERS\se26nd5.sys [2006-08-28 18704]
S3 SE26obex;Sony Ericsson Device 038 USB WMC OBEX Interface; C:\WINDOWS\System32\DRIVERS\SE26obex.sys [2006-08-28 86560]
S3 se26unic;Sony Ericsson Device 038 USB Ethernet Emulation SEMC38 (WDM); C:\WINDOWS\System32\DRIVERS\se26unic.sys [2006-08-28 90768]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\System32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SONYPVU1;Pilote de filtrage Sony USB (SONYPVU1); C:\WINDOWS\System32\DRIVERS\SONYPVU1.SYS [2001-08-17 7552]
S3 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-09-28 7168]
S3 streamip;BDA IPSink; C:\WINDOWS\System32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 Trufos;Trufos; \??\C:\Program Files\Softwin\BitDefender10\trufos.sys []
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\System32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-24 152984]
R2 NMSAccessU;NMSAccessU; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2008-10-20 71096]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\System32\nvsvc32.exe [2007-06-09 159810]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.exe [2006-03-03 69632]
R2 SeaPort;SeaPort; C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe [2009-01-14 226656]
R2 WinSvc;Gestionnaire de mise à jour Winsudate; C:\Program Files\Winsudate\gibsvc.exe [2009-07-27 70896]
S3 aspnet_state;Service d'état ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 fsssvc;Service Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-08-05 704864]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-02-07 137200]
S3 HP Port Resolver;HP Port Resolver; C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE [2005-05-20 81920]
S3 HP Status Server;HP Status Server; C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE [2004-10-16 73728]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 ose;Office Source Engine; C:\Program Files\Fichiers communs\Microsoft Shared\Source Engine\OSE.EXE [2003-07-28 89136]
S4 aawservice;Ad-Aware 2007 Service; C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe []
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
0
crapoulou Messages postés 28158 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 16 avril 2024 7 990
16 janv. 2010 à 19:04
Très bien, il en manque un bout, on va l'avoir autrement :

- Télécharge HijackThis Version 2.02 afin que je fasse un diagnostic sur la/les éventuelle(s) infection(s) présente(s) sur ton PC.
= = = = >>> En cliquant ici <<< = = = =

- Enregistre "HJTInstall.exe" sur ton bureau.
- Fais un double-clic (gauche) sur HJTInstall.exe afin de lancer l’installation
- Clique sur Install ensuite sur "I Accept".
- Clique sur "Do a scan system and save log file".
- Le bloc-notes s’ouvrira, fais un copier - coller de tout son contenu ici dans ta prochaine réponse.
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
16 janv. 2010 à 21:50
grrrrrrrrrr je peux pas ouvrir
0
crapoulou Messages postés 28158 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 16 avril 2024 7 990
17 janv. 2010 à 01:13
Message d'erreur, problème particulier ?
L'option 2 a-t-elle été passée convenablement ?
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
17 janv. 2010 à 09:15
bonjour,

lorsque je passe l'option 2
j'ai une fenêtre qui s'affiche qui dit : Arrêt du système, veuillez enregistrer vos travaux......
puis le PC redémarre
une fenêtre de FindyKill s'affiche rapidement et je me retrouve sur le bureau normalement
0
crapoulou Messages postés 28158 Date d'inscription mercredi 28 novembre 2007 Statut Modérateur, Contributeur sécurité Dernière intervention 16 avril 2024 7 990
17 janv. 2010 à 11:27
Ok.

*******

Télécharge Malwarebytes’ Anti-Malware
= = = = >>> En cliquant ici <<< = = = =

- Enregistre le sur le bureau
- Double clique sur le fichier téléchargé pour lancer le processus d’installation
- Lorsqu’il te le sera demandé, mets à jour Malwarebytes anti malware
- Si le pare-feu demande l’autorisation de se connecter pour malwarebytes, acceptes
- Une fois la mise à jour terminée, ferme Malwarebytes
- Double-clique sur l’icône de malwarebytes pour le relancer
- Dans l’onglet, Recherche, probablement ouvert par défaut,
- Sélectionne Exécuter un examen complet
- Clique sur Rechercher
- Le scan démarre
- A la fin de l’analyse, un message s’affiche : L’examen s’est terminé normalement. Cliquez sur ‘Afficher les résultats’ pour afficher tous les objets trouvés.
- Clique sur Ok pour poursuivre.
- Si des malwares ont été détectés, cliques sur Afficher les résultats
- Sélectionnes tout (ou laisses cochés) et cliques sur Supprimer la sélection Malwarebytes va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
- Malwarebytes va ouvrir le bloc-notes et y copier le rapport d’analyse.
- Rends toi dans l’onglet rapport/log
- Tu clique dessus pour l’afficher.
- Une fois affiché, cliques sur édition en haut du bloc notes, et puis sur sélectionner tout
- Tu recliques sur édition et puis sur copier et tu reviens sur le forum et dans ta réponse
- Tu clique droit dans le cadre de la réponse et coller

Si tu as besoin d’aide regarde ce tutorial ICI
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
17 janv. 2010 à 12:16
alors mon pc vient de redémarrer
mais j'ai une drole de fenêtre qui vient de s'ouvrir
y a deux petits cadres avec dans l'un OîaxUa
et l'autre <éA< aeu

et plus bas il y a OK

qu'est ce que je dois faire
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
17 janv. 2010 à 12:08
Voilà le premier rapport, certains elements n'ont pu etre supprimer je dois donc redémarrer et je poste le nouveau rapport après,


Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3581
Windows 5.1.2600 Service Pack 3
Internet Explorer 6.0.2900.5512

17/01/2010 12:06:20
mbam-log-2010-01-17 (12-06-20).txt

Type de recherche: Examen complet (C:\|E:\|)
Eléments examinés: 206007
Temps écoulé: 26 minute(s), 57 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 3
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 3
Fichier(s) infecté(s): 466

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\bisoft (Worm.Bagle) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\popcaploader.popcaploaderctrl2 (Adware.PopCap) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\srosa (Worm.Bagle) -> Delete on reboot.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\drvsyskit (Worm.Bagle) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\german.exe (Worm.Bagle) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mule_st_key (Worm.Bagle) -> Delete on reboot.

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Documents and Settings\LocalService\Application Data\drivers\downld (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\m (Trojan.Agent) -> Delete on reboot.

Fichier(s) infecté(s):
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0056699.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0056705.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057083.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057475.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057476.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057477.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057492.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057495.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057882.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057888.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057889.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057902.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057942.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057947.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057907.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP339\A0057910.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP341\A0057959.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP342\A0057985.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP342\A0058126.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP342\A0058133.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP342\A0058134.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP342\A0058135.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058197.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058204.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058210.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058211.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058214.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058219.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058335.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058467.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058285.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058290.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058295.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058334.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058353.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058466.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP343\A0058468.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0058561.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0058562.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0058568.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0058571.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0059094.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0058864.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0058867.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0058887.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0058891.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0058895.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0059092.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP346\A0059093.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059653.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059660.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059709.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059713.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059714.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059716.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059938.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059943.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059657.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059946.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059988.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059989.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0059990.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060388.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060392.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060395.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060412.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060413.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060414.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060446.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060447.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060452.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060455.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060510.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0060513.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061105.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061134.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061142.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061145.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061238.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061240.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061135.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061262.dll (Adware.Gibmedia) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061263.dll (Adware.Gibmedia) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061264.exe (Adware.Gibmedia) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061265.exe (Adware.Gibmedia) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061644.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061648.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061653.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061654.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062141.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062148.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062153.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061697.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061701.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061705.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0061655.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062099.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062100.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062101.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062520.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062521.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062533.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062537.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062522.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062541.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062915.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062916.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062917.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062940.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062941.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062948.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062952.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0062955.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0063066.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0063416.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0063420.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0063423.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0063465.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0063466.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{482E715D-4B80-4849-BF77-B243B54D6D73}\RP347\A0063467.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\WINDOWS\wintems.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\WINDOWS\mdelk.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Ad-Remover\QUARANTINE\PROGRA~1\WINSUD~1\gibcom.dll.vir (Adware.Gibmedia) -> Quarantined and deleted successfully.
C:\Ad-Remover\QUARANTINE\PROGRA~1\WINSUD~1\gibidl.dll.vir (Adware.Gibmedia) -> Quarantined and deleted successfully.
C:\Ad-Remover\QUARANTINE\PROGRA~1\WINSUD~1\gibsvc.exe.vir (Adware.Gibmedia) -> Quarantined and deleted successfully.
C:\Ad-Remover\QUARANTINE\PROGRA~1\WINSUD~1\gibupt.exe.vir (Adware.Gibmedia) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\88312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\94843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\m\flec006.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\100000.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\100390.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\100734.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\100953.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\101140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\101312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\102187.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\102828.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\103031.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\103250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\103515.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\103796.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\104203.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\104640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\105500.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\106125.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\106343.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\106562.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\107843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\108437.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\108750.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\109000.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\109312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\109640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\109875.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\110078.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\110312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\110546.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\110718.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\110890.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\111531.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\112140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\113250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\114140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\114359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\114546.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\114734.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\114937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\115921.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\116890.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\117046.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\118265.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\118937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\119625.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\121343.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\121890.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\122140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\122359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\122734.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\123156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\123312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\123484.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\123703.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\123906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\124109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\124296.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\124875.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\125484.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\125718.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\125937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\126125.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\130921.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\131343.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\131781.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\132843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\133265.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\133843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\134250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\134734.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\135156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\135859.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\136250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\137828.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\138250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\138453.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\138671.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\138859.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\181265.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\181906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\182578.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\182843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\183140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\183546.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\184000.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\184453.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\184906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\185140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\186093.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\187062.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\188031.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\188281.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\188562.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\188750.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\192156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\192593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\193015.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\193484.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\193937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\195218.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\196718.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\196906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\217437.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\218031.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\221359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\221593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\221812.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\222015.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\222218.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\222625.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\223015.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\223640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\224203.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\224625.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\225046.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\225500.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\225859.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\226109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\226359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\228109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\228531.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\229187.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\229843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\230093.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\230375.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\230640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\230890.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\231125.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\231343.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\232000.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\232656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\232875.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\233062.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\233281.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\233515.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\233953.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\234359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\235781.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\237703.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\237906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\238125.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\238375.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\238609.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\238968.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\239281.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\239437.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\239609.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\239828.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\240046.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\240234.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\240421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\241109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\241765.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\242171.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\242546.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\242750.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\285406.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\285812.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\286234.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\286640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\286843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\287000.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\287171.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\287765.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\288359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\288515.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\288734.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\289125.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\289453.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\289937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\290421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\290625.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\290812.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\290984.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\291156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\292109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\293125.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\293468.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\293687.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\293859.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\294046.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\294265.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\294484.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\294703.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\294906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\295328.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\295750.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\295937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\296140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\297109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\302687.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\302953.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\303218.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\303656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\304125.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\305109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\306093.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\306843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\307593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\308734.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\314578.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\315421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\316203.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\316359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\316531.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\316921.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\317312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\317968.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\318687.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\319156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\319640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\324171.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\331031.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\331234.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\373781.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\374171.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\374515.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\374734.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\374968.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\375203.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\375421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\375593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\375812.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\377281.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\378796.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\379015.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\379234.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\379437.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\379609.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\380218.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\380828.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\381015.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\381203.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\381718.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\382250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\382453.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\382640.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\382968.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\383250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\384187.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\385140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\385296.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\385453.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\385718.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\385953.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\386156.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\386359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\386593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\386796.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\387000.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\387203.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\387359.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\387531.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\387687.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\387859.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\391281.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\395312.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\397328.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\398734.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\399187.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\399671.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\399953.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\400250.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\403078.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\406281.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\406484.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\406687.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\406906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\407140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\407578.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\408109.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\408625.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\409000.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\409593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\410218.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\411218.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\411937.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\412421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\412906.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\413328.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\418421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\419078.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\419765.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\420093.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\425140.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\425296.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\425468.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\425671.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\425875.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\427406.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\427843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\429687.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\431593.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\431781.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\431984.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\432468.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\432984.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\433421.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\433859.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\434218.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\434453.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\434656.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\434875.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\435343.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\435843.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\MYRIAM\Application Data\drivers\downld\436687.exe (Worm.Bagle) -> Quarantined and deleted successfully.
C:\Documents and Settings\M
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
17 janv. 2010 à 13:01
Alors mon pc vient de redémarrer
mais j'ai une drole de fenêtre qui vient de s'ouvrir
y a deux petits cadres avec dans l'un OîaxUa
et l'autre <éA< aeu

et plus bas il y a OK

qu'est ce que je dois faire
0
mimie17 Messages postés 217 Date d'inscription samedi 19 avril 2008 Statut Membre Dernière intervention 13 juillet 2021
17 janv. 2010 à 14:18
désolé j'ai apparemment poster deux fois le même message j'ai pas était fichu de retrouver le premier
mon PC s'est éteint tout seul à redémarrer tout seul et je n'ai plus la fenêtre bizarre qui s'affiche
mais par contre toujours les mêmes soucis, je ne peux lancer aucun logiciel de sécurité, et je ne peux pas démarrer en mode sans échec
0