Le virus MSN foto haaha
Fermé
fabien68480
Messages postés
102
Date d'inscription
mercredi 23 décembre 2009
Statut
Membre
Dernière intervention
28 juillet 2016
-
9 mai 2010 à 09:58
fabien68480 - 24 mai 2010 à 10:53
fabien68480 - 24 mai 2010 à 10:53
A voir également:
- Le virus MSN foto haaha
- Telecharger msn - Télécharger - Messagerie
- Virus mcafee - Accueil - Piratage
- Google traduction foto - Guide
- Youtu.be virus - Accueil - Guide virus
- Faux message virus ordinateur - Accueil - Arnaque
22 réponses
bin il a rien de spécial et sinon le rapport avec bitdefender quickscan
QuickScan Beta 32-bit v0.9.9.22
-------------------------------
Scan date: Mon May 17 19:53:49 2010
Machine ID: B45A070C
Found 1 infected file!
----------------------
C:\WINDOWS\dllhost.exe --> Worm.P2P.Palevo.EN
--> HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"Microsoft Update checker"
Processes
---------
<unsigned> [webwiz] - webcam via ftp - module serv 396 C:\Program Files\[webwiz]\Webwizsvc.exe
<unsigned> Chromium 2648 C:\Program Files\ChromePlus\chrome.exe
<unsigned> Chromium 2064 C:\Program Files\ChromePlus\chrome.exe
<unsigned> Chromium 2120 C:\Program Files\ChromePlus\chrome.exe
<unsigned> Chromium 3856 C:\Program Files\ChromePlus\chrome.exe
<unsigned> ENJOY Plus! 1344 C:\Program Files\ENJOY Plus!\ENJOY Plus!.exe
<unsigned> Notification de cadeaux MSN 1480 C:\Documents and Settings\UTILISATEUR\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
<unsigned> OpenOffice.org 3.1 1872 C:\Program Files\OpenOffice.org 3\program\soffice.bin
<unsigned> OpenOffice.org 3.1 1808 C:\Program Files\OpenOffice.org 3\program\soffice.exe
<verified> ATI External Event Utility for Windows 752 C:\WINDOWS\system32\Ati2evxx.exe
<verified> ATI External Event Utility for Windows 1096 C:\WINDOWS\system32\Ati2evxx.exe
<verified> HP PML 1696 C:\WINDOWS\system32\HPZipm12.exe
<verified> Java(TM) Platform SE 6 U16 1608 C:\Program Files\Java\jre6\bin\jqs.exe
<verified> Java(TM) Platform SE 6 U16 1920 C:\Program Files\Java\jre6\bin\jucheck.exe
<verified> Java(TM) Platform SE 6 U16 900 C:\Program Files\Java\jre6\bin\jusched.exe
<verified> lanceur.exe 1424 C:\pointsoft\lanceur.exe
<verified> Microsoft Search Enhancement Pack 2004 C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
<verified> Microsoft® Windows® Operating System 2776 C:\WINDOWS\System32\alg.exe
<verified> Microsoft® Windows® Operating System 512 C:\WINDOWS\system32\csrss.exe
<verified> Microsoft® Windows® Operating System 1020 C:\WINDOWS\system32\ctfmon.exe
<verified> Microsoft® Windows® Operating System 600 C:\WINDOWS\system32\lsass.exe
<verified> Microsoft® Windows® Operating System 1244 C:\WINDOWS\system32\spoolsv.exe
<verified> Microsoft® Windows® Operating System 860 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 244 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 764 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 924 C:\WINDOWS\System32\svchost.exe
<verified> Microsoft® Windows® Operating System 980 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1468 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1068 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 3352 C:\WINDOWS\System32\svchost.exe
<verified> Microsoft® Windows® Operating System 2628 C:\WINDOWS\system32\wscntfy.exe
<verified> Nvu 196 C:\Program Files\Nvu\nvu.exe
<verified> PrintKey 1648 C:\Program Files\PrintKey 2000 Fr\Printkey 2000 Fr.exe
<verified> Realtek HD Audio Sound Effect Manager 908 C:\WINDOWS\RTHDCPL.EXE
<verified> Registry Mechanic 1028 C:\Program Files\Registry Mechanic\RegMech.exe
<verified> Skype 1052 C:\Program Files\Skype\Phone\Skype.exe
<verified> Skype Extras Manager 4076 C:\Program Files\Skype\Plugin Manager\skypePM.exe
<verified> SpiderMessenger 1308 C:\Program Files\SpiderMessenger\SpiderMessenger.exe
<verified> Système d'exploitation Microsoft® Windo 2024 C:\WINDOWS\Explorer.EXE
<verified> Système d'exploitation Microsoft® Windo 588 C:\WINDOWS\system32\services.exe
<verified> Système d'exploitation Microsoft® Windo 464 C:\WINDOWS\System32\smss.exe
<verified> Système d'exploitation Microsoft® Windo 2700 C:\WINDOWS\system32\wbem\wmiapsrv.exe
<verified> Système d'exploitation Microsoft® Windo 544 C:\WINDOWS\system32\winlogon.exe
<verified> Windows Live Communications Platform 1604 C:\Program Files\Windows Live\Contacts\wlcomm.exe
<verified> Windows Live Messenger 1024 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
<verified> Yahoo! AutoUpdater 1144 C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
Network activity
----------------
Process msnmsgr.exe (1024) connected on port 1863 (MSN) --> sn1msg2010734.phx.gbl
Process msnmsgr.exe (1024) connected on port 80 (HTTP) --> 213.199.141.139
Process Skype.exe (1052) connected on port 52587 --> lng31-1-88-181-152-154.fbx.proxad.net
Process SpiderMessenger.exe (1308) connected on port 443 (HTTP over SSL) --> ns368472.ovh.net
Process ENJOY Plus!.exe (1344) connected on port 80 (HTTP) --> shoutcast3.radionomy.com
Process chrome.exe (2648) connected on port 80 (HTTP) --> wy-in-f100.1e100.net
Process chrome.exe (2648) connected on port 80 (HTTP) --> wy-in-f103.1e100.net
Process chrome.exe (2648) connected on port 80 (HTTP) --> ey-in-f100.1e100.net
Process svchost.exe (860) listens on ports: 135 (RPC)
Process Skype.exe (1052) listens on ports: 80 (HTTP), 59210
Process svchost.exe (1068) listens on ports: 2869 (SSDP event notification, UPNP)
Autoruns and critical files
---------------------------
<unsigned> dllhost.exe C:\WINDOWS\dllhost.exe
<unsigned> ENJOY Plus! C:\Program Files\ENJOY Plus!\ENJOY Plus!.exe
<unsigned> NDSROM Player.exe C:\Program Files\NDSROM Player\NDSROM Player.exe
<unsigned> Notification de cadeaux MSN C:\Documents and Settings\UTILISATEUR\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
<unsigned> PCAutoRun Application D:\autorun.exe
<unsigned> quickstart.exe C:\Program Files\OpenOffice.org 3\program\quickstart.exe
<verified> ATI External Event Utility for Windows C:\WINDOWS\system32\ati2evxx.dll
<verified> Google Update C:\Program Files\Google\Update\GoogleUpdate.exe
<verified> GoogleToolbarNotifier C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
<verified> Java(TM) Platform SE 6 U16 C:\Program Files\Java\jre6\bin\jusched.exe
<verified> lanceur.exe C:\pointsoft\lanceur.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\cryptnet.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\ctfmon.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\dimsntfy.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\WPDShServiceObj.dll
<verified> Pando Media Booster C:\Program Files\Pando Networks\Media Booster\PMB.exe
<verified> PrintKey C:\Program Files\PrintKey 2000 Fr\Printkey 2000 Fr.exe
<verified> Realtek AC97 Audio - Event Monitor C:\WINDOWS\ALCMTR.EXE
<verified> Realtek HD Audio Sound Effect Manager C:\WINDOWS\RTHDCPL.EXE
<verified> Registry Mechanic C:\Program Files\Registry Mechanic\RegMech.exe
<verified> Skype C:\Program Files\Skype\Phone\Skype.exe
<verified> SpiderMessenger C:\Program Files\SpiderMessenger\SpiderMessenger.exe
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\browseui.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\crypt32.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\cscdll.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\logonui.exe
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\sclgntfy.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\shell32.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\stobject.dll
<verified> Système d'exploitation Microsoft® Windo c:\windows\system32\userinit.exe
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\wlnotify.dll
<verified> Windows Live Messenger C:\Program Files\Windows Live\Messenger\msnmsgr.exe
<verified> Windows® Internet Explorer C:\WINDOWS\system32\msfeedssync.exe
<verified> Windows® Internet Explorer C:\WINDOWS\system32\webcheck.dll
Browser plugins
---------------
<unsigned> Conduit Toolbar c:\program files\eazel-fr\tbeaz0.dll
<unsigned> Java(TM) Platform SE 6 U16 c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
<unsigned> Outil MSN Téléchargement de photos C:\WINDOWS\Downloaded Program Files\PURfr-fr.dll
<unsigned> Shockwave for Director C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
<verified> AcroIEHelper Library C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
<verified> Adobe Acrobat C:\Program Files\Internet Explorer\plugins\nppdf32.dll
<verified> Adobe® Flash® Player ActiveX C:\WINDOWS\Downloaded Program Files\CONFLICT.1\FP_AX_CAB_INSTALLER.exe
<verified> Adobe® Flash® Player ActiveX C:\WINDOWS\Downloaded Program Files\CONFLICT.2\FP_AX_CAB_INSTALLER.exe
<verified> Adobe® Flash® Player ActiveX C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
<verified> Fast Search c:\program files\google\google toolbar\component\fastsearch_219b3e1547538286.dll
<verified> Google Update C:\Program Files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
<verified> googletoolbar.dll c:\program files\google\google toolbar\googletoolbar.dll
<verified> GoogleToolbarNotifier c:\program files\google\googletoolbarnotifier\5.0.926.3450\swg.dll
<verified> Java(TM) Platform SE 6 U16 c:\program files\java\jre6\bin\jp2ssv.dll
<verified> Messenger C:\Program Files\Messenger\msmsgs.exe
<verified> Microsoft Search Enhancement Pack c:\program files\microsoft\search enhancement pack\search helper\sepsearchhelperie.dll
<verified> Microsoft® Windows Live Login Helper c:\program files\fichiers communs\microsoft shared\windows live\windowslivelogin.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\rsvpsp.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\winrnr.dll
<verified> MSN Photo Upload Control C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll
<verified> MSN Photo Upload Control C:\WINDOWS\Downloaded Program Files\PURen-us.dll
<verified> MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\MessengerStatsPAClient.dll
<verified> MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\MineSweeper.dll
<verified> NPSWF32.dll C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
<verified> Oberon Game Host C:\WINDOWS\Downloaded Program Files\OberonGameHost.dll
<verified> Pando Web Plugin C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
<verified> Silverlight Plug-In c:\Program Files\Microsoft Silverlight\3.0.50106.0\npctrl.dll
<verified> Skype add-on for IE c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
<verified> Skyrock Toolbar c:\program files\skyrocktbar\skyrocktbar.dll
<verified> SpiderMessenger c:\program files\spidermessenger\spidermessenger.bho.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\mswsock.dll
<verified> Unity Player C:\Program Files\Unity\WebPlayer\loader\npUnity3D32.dll
<verified> UNO Messenger C:\WINDOWS\Downloaded Program Files\GAME_UNO1.dll
<verified> Windows Live Toolbar c:\program files\windows live\toolbar\wltcore.dll
<verified> Windows Live® Photo Gallery C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
<verified> Windows Presentation Foundation c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
<verified> Yahoo! Single Instance for Mail c:\program files\yahoo!\companion\installs\cpn\ytsingleinstance.dll
<verified> Yahoo! Toolbar c:\program files\yahoo!\companion\installs\cpn\yt.dll
<verified> Zylom Plugin C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
Missing files
-------------
File not found: C:\DOCUME~1\UTILIS~1\LOCALS~1\Temp\PZQ120.tmp
referenced in: HKLM\System\ControlSet001\services\GarenaPEngine\"ImagePath"
File not found: C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
referenced in: HKLM\System\ControlSet001\services\avast! Mail Scanner\"ImagePath"
File not found: C:\Program Files\Alwil Software\Avast4\ashServ.exe
referenced in: HKLM\System\ControlSet001\services\avast! Antivirus\"ImagePath"
File not found: C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
referenced in: HKLM\System\ControlSet001\services\avast! Web Scanner\"ImagePath"
File not found: C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
referenced in: HKLM\System\ControlSet001\services\aswUpdSv\"ImagePath"
File not found: C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\profos.sys
referenced in: HKLM\System\ControlSet001\services\Profos\"ImagePath"
File not found: C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\trufos.sys
referenced in: HKLM\System\ControlSet001\services\Trufos\"ImagePath"
File not found: C:\Program Files\NEXON\EuropeMapleStory\npkcrypt.sys
referenced in: HKLM\System\ControlSet001\services\npkcrypt\"ImagePath"
File not found: C:\WINDOWS\System32\appmgmts.dll
referenced in: HKLM\System\ControlSet001\services\AppMgmt\Parameters\"ServiceDll"
File not found: C:\WINDOWS\infocard.exe
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"Firewall Administrating"
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"Firewall Administrating"
File not found: C:\WINDOWS\system32\PCAMPR5.SYS
referenced in: HKLM\System\ControlSet001\services\PCAMPR5\"ImagePath"
File not found: system32\DRIVERS\aswFsBlk.sys
referenced in: HKLM\System\ControlSet001\services\aswFsBlk\"ImagePath"
Scan
----
<unsigned> MD5: bc9c9be7bb74d629362608ace470e7da C:\Documents and Settings\UTILISATEUR\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
<unsigned> MD5: 4c95f8ae7331de8602ed33ffe805271d C:\Program Files\[webwiz]\Webwizsvc.exe
<unsigned> MD5: d33bb98e31e890a60f7b38a332a9d15b C:\Program Files\ChromePlus\1.3.9.0\avcodec-52.dll
<unsigned> MD5: bcf6fd2190d8b7e64c1785c65c385689 C:\Program Files\ChromePlus\1.3.9.0\avformat-52.dll
<unsigned> MD5: b1457cc384c807ab0e9bbc6e22f73f12 C:\Program Files\ChromePlus\1.3.9.0\avutil-50.dll
<unsigned> MD5: 514c1d381de51ce367b17970e795279e C:\Program Files\ChromePlus\1.3.9.0\chrome.dll
<unsigned> MD5: 8cedccf349588732f6f12a4680db7a89 C:\Program Files\ChromePlus\1.3.9.0\gears.dll
<unsigned> MD5: 0c5bd1f7a69a176d6029a8c598a13261 C:\Program Files\ChromePlus\1.3.9.0\icudt42.dll
<unsigned> MD5: bcabec119dc614ac6abdb8e8a5cab975 C:\Program Files\ChromePlus\1.3.9.0\locales\fr.dll
<unsigned> MD5: 3e61e35ba51237d0394fdda5a5843aea C:\Program Files\ChromePlus\chrome.exe
<unsigned> MD5: 455e61a2cf37f7210df685e2b77bfbe3 c:\program files\eazel-fr\tbeaz0.dll
<unsigned> MD5: b6f0ceaad5e719130c65a45840543d20 C:\Program Files\ENJOY Plus!\ENJOY Plus!.exe
<unsigned> MD5: 37edbcc7e5e0b89e59941ff79a2f9746 c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
<unsigned> MD5: cb50ca8cbde2394e760d7c823926178f C:\Program Files\NDSROM Player\NDSROM Player.exe
<unsigned> MD5: fea2267ea2ee9b2875a3aa7413b5abaf C:\Program Files\OpenOffice.org 3\Basis\program\aggmi.dll
<unsigned> MD5: b54f59cc209e7fdb72ccd7cf15f59a42 C:\Program Files\OpenOffice.org 3\Basis\program\avmediami.dll
<unsigned> MD5: ec777d00c045b81b7250e3813de693bf C:\Program Files\OpenOffice.org 3\Basis\program\basegfxmi.dll
<unsigned> MD5: ffb765e1575f0208547045dbf0f1df81 C:\Program Files\OpenOffice.org 3\Basis\program\behelper.uno.dll
<unsigned> MD5: 7a3c82f69940d0c3fb1d7298855fc3ed C:\Program Files\OpenOffice.org 3\Basis\program\canvastoolsmi.dll
<unsigned> MD5: 86d0238ae1612cfd76e50074dc78b0d6 C:\Program Files\OpenOffice.org 3\Basis\program\comphelp4MSC.dll
<unsigned> MD5: 4900a882544e957dfacc04bc094f7a28 C:\Program Files\OpenOffice.org 3\Basis\program\configmgr2.uno.dll
<unsigned> MD5: 35b1cc132624824118608fbf63526e07 C:\Program Files\OpenOffice.org 3\Basis\program\cppcanvasmi.dll
<unsigned> MD5: 7e93d070a3ce9695d02089b1fe6df40e C:\Program Files\OpenOffice.org 3\Basis\program\drawinglayermi.dll
<unsigned> MD5: 7f4e486b53d3be35f73ae1f148f7a490 C:\Program Files\OpenOffice.org 3\Basis\program\emsermi.dll
<unsigned> MD5: e7b469225bebbead7e5a8a31ed0cbcf1 C:\Program Files\OpenOffice.org 3\Basis\program\fwemi.dll
<unsigned> MD5: a4da893881141a04d09ff24cbb844f3d C:\Program Files\OpenOffice.org 3\Basis\program\fwimi.dll
<unsigned> MD5: 2288aad3c3203aac7ddc548c07fded0e C:\Program Files\OpenOffice.org 3\Basis\program\fwkmi.dll
<unsigned> MD5: 78d0a9c927aafdb202828f2189c2e3ec C:\Program Files\OpenOffice.org 3\Basis\program\fwlmi.dll
<unsigned> MD5: 46195ef986e6c6c78861269b11cecb1a C:\Program Files\OpenOffice.org 3\Basis\program\gomi.dll
<unsigned> MD5: 80c94a37496133cea74db36da68d4c49 C:\Program Files\OpenOffice.org 3\Basis\program\i18nisolang1MSC.dll
<unsigned> MD5: 8900803d62cab939fa29942a104af1fb C:\Program Files\OpenOffice.org 3\Basis\program\i18nutilMSC.dll
<unsigned> MD5: 763ee029dac8afeef236f8ea0f02454d C:\Program Files\OpenOffice.org 3\Basis\program\icudt40.dll
<unsigned> MD5: 88e26cca39355d8a11044236beaa2298 C:\Program Files\OpenOffice.org 3\Basis\program\icuuc40.dll
<unsigned> MD5: 8d89de6fdf53f79f7303b5c179ef5cc2 C:\Program Files\OpenOffice.org 3\Basis\program\jmi_g.dll
<unsigned> MD5: 93c81bd83dfd0c42249132368c9ef6d0 C:\Program Files\OpenOffice.org 3\Basis\program\lngmi.dll
<unsigned> MD5: 1e13bf8039d8d41e25875abfeb8664fe C:\Program Files\OpenOffice.org 3\Basis\program\localebe1.uno.dll
<unsigned> MD5: fd9b91f1b5f4015fae1d0e5651375cde C:\Program Files\OpenOffice.org 3\Basis\program\logmi.dll
<unsigned> MD5: 68fbf735ff797330b8c266f85c0af029 C:\Program Files\OpenOffice.org 3\Basis\program\oleautobridge.uno.dll
<unsigned> MD5: 7d0c31e8cbbce1d757de3d691597e19e C:\Program Files\OpenOffice.org 3\Basis\program\oooimprovecoremi.dll
<unsigned> MD5: fdb278ec2321d2927e820833dd2db1e4 C:\Program Files\OpenOffice.org 3\Basis\program\oooimprovementmi.dll
<unsigned> MD5: a3996ffaa613c9475d927815971f6f27 C:\Program Files\OpenOffice.org 3\Basis\program\sax.uno.dll
<unsigned> MD5: 080361413a529cbf4bca29458f3645a4 C:\Program Files\OpenOffice.org 3\Basis\program\saxmi.dll
<unsigned> MD5: 3e44dc6abf600dc72abd28952c0dde6b C:\Program Files\OpenOffice.org 3\Basis\program\sbmi.dll
<unsigned> MD5: 55201820b7b08c06ef26960494f91c63 C:\Program Files\OpenOffice.org 3\Basis\program\sfxmi.dll
<unsigned> MD5: 9327591ff176e68321d183915abb95b1 C:\Program Files\OpenOffice.org 3\Basis\program\sofficeapp.dll
<unsigned> MD5: 58a1ed9bba5e34542ff83b3ddd7098d7 C:\Program Files\OpenOffice.org 3\Basis\program\sotmi.dll
<unsigned> MD5: 5a5428a7a8985053916f5d82999d182c C:\Program Files\OpenOffice.org 3\Basis\program\stsmi.dll
<unsigned> MD5: 719ed0c342b6d08eda06e81e5ec06d0e C:\Program Files\OpenOffice.org 3\Basis\program\svlmi.dll
<unsigned> MD5: a227b5445ea515f76a41f7866ee6f5b0 C:\Program Files\OpenOffice.org 3\Basis\program\svtmi.dll
<unsigned> MD5: e5de55fbf1341b415b1d38fc46bd9ae0 C:\Program Files\OpenOffice.org 3\Basis\program\svxmi.dll
<unsigned> MD5: b337985df8c817f5dd25e0eef53d0802 C:\Program Files\OpenOffice.org 3\Basis\program\sysmgr1.uno.dll
<unsigned> MD5: b6e37ca1a90bdb216b4283a03bd8d949 C:\Program Files\OpenOffice.org 3\Basis\program\tkmi.dll
<unsigned> MD5: 4d973b73e7106e3b0b643735d0fa018e C:\Program Files\OpenOffice.org 3\Basis\program\tlmi.dll
<unsigned> MD5: eb7f4ec6229c5dd414a0125ccf49d1bd C:\Program Files\OpenOffice.org 3\Basis\program\ucb1.dll
<unsigned> MD5: f47e9129c15aa428ddf8da09d975a140 C:\Program Files\OpenOffice.org 3\Basis\program\ucbhelper4MSC.dll
<unsigned> MD5: bc4832b2695effb1a7b7b238ccf21387 C:\Program Files\OpenOffice.org 3\Basis\program\ucpfile1.dll
<unsigned> MD5: a4fded4d1eb782c46dd6cdc5121967e4 C:\Program Files\OpenOffice.org 3\Basis\program\utlmi.dll
<unsigned> MD5: 7190caabbee93cfd43fb1ed2dcc7e426 C:\Program Files\OpenOffice.org 3\Basis\program\vclmi.dll
<unsigned> MD5: c82951d8d50299bedc8484f7bd0ac601 C:\Program Files\OpenOffice.org 3\Basis\program\vos3MSC.dll
<unsigned> MD5: cb9c5d21318a7c8eace7faf49886ebed C:\Program Files\OpenOffice.org 3\Basis\program\xcrmi.dll
<unsigned> MD5: ba1461b25dbc3071378db4291a985823 C:\Program Files\OpenOffice.org 3\Basis\program\xomi.dll
<unsigned> MD5: 2da8a753e4e32904596d00464022569a C:\Program Files\OpenOffice.org 3\program\libxml2.dll
<unsigned> MD5: c047c9c6cd8e134afdfdb374e80547e5 C:\Program Files\OpenOffice.org 3\program\quickstart.exe
<unsigned> MD5: 873867a02f0e83f18cf871e776b651dc C:\Program Files\OpenOffice.org 3\program\soffice.bin
<unsigned> MD5: 83170b8e03213093b065a9638e146499 C:\Program Files\OpenOffice.org 3\program\soffice.exe
<unsigned> MD5: 57a659edd410fa41f2d6578880ba17b1 C:\Program Files\OpenOffice.org 3\URE\bin\bootstrap.uno.dll
<unsigned> MD5: 235923af735f5c8ea83243ff56c9c140 C:\Program Files\OpenOffice.org 3\URE\bin\cppu3.dll
<unsigned> MD5: 8e0ce415dcd35c9f2f559487ca8c93d1 C:\Program Files\OpenOffice.org 3\URE\bin\cppuhelper3MSC.dll
<unsigned> MD5: cedecce16e90fbff125d2b233309d840 C:\Program Files\OpenOffice.org 3\URE\bin\jvmaccess3MSC.dll
<unsigned> MD5: 09acbb8557860bb035eb76f44caa9d46 C:\Program Files\OpenOffice.org 3\URE\bin\jvmfwk3.dll
<unsigned> MD5: d3f67e5aed36efcaee13cc904356331b C:\Program Files\OpenOffice.org 3\URE\bin\msci_uno.dll
<unsigned> MD5: a567008bcff6fc8803681fd6e05db495 C:\Program Files\OpenOffice.org 3\URE\bin\purpenvhelper3MSC.dll
<unsigned> MD5: ecf245a31e257c67061e015de8a4b4b9 C:\Program Files\OpenOffice.org 3\URE\bin\reg3.dll
<unsigned> MD5: cad486325fea180409e208db996bfc34 C:\Program Files\OpenOffice.org 3\URE\bin\sal3.dll
<unsigned> MD5: 016a255656be11af080fd44517381129 C:\Program Files\OpenOffice.org 3\URE\bin\salhelper3MSC.dll
<unsigned> MD5: 95c6bd7cc13895581c4de415e87640e6 C:\Program Files\OpenOffice.org 3\URE\bin\stocservices.uno.dll
<unsigned> MD5: 8f101652dcba15c2c056c7e960a18d6c C:\Program Files\OpenOffice.org 3\URE\bin\store3.dll
<unsigned> MD5: e6d7a8a58ff3d59f721543619a8cff87 C:\Program Files\OpenOffice.org 3\URE\bin\unsafe_uno_uno.dll
<unsigned> MD5: 31c2d848b2ed60740c9cf11ea3b2f882 C:\Program Files\OpenOffice.org 3\URE\bin\uwinapi.dll
<unsigned> MD5: 4c95f8ae7331de8602ed33ffe805271d C:\PROGRA~1\_WEBWI~1\Webwizsvc.exe
<unsigned> MD5: e1cd92006904472c49cff2e519a34b6f C:\WINDOWS\dllhost.exe
<unsigned> MD5: 732caca8e848f6e721b093e51fc50b1d C:\WINDOWS\Downloaded Program Files\PURfr-fr.dll
<unsigned> MD5: e2cca1b3ba59949ae16ec587e89a09ba C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
<unsigned> MD5: 737371583e0173f963d74435be3e96d2 C:\WINDOWS\system32\ati2sgag.exe
<unsigned> MD5: c051deb1ad5fdaae04114a30998ff869 C:\WINDOWS\system32\drivers\PRODRV06.sys
<unsigned> MD5: d9d5cc53e73d7796ffc6266d52de80da C:\WINDOWS\system32\drivers\PROHLP02.sys
<unsigned> MD5: f3471e7971ee62420451d958da635064 C:\WINDOWS\system32\drivers\PROSYNC1.sys
<unsigned> MD5: 3d33af4a02ad2bf74287fc621111e528 C:\WINDOWS\system32\GameMon.des
<unsigned> MD5: 1b01a195883a09dd18e50af87f924dfc C:\WINDOWS\system32\uxtheme.dll
<unsigned> MD5: 60c40717e07ad316ece76a469c323992 D:\autorun.exe
No file uploaded.
Scan finished - communication took 2 sec
Total traffic - 0.03 MB sent, 0.46 KB recvd
Scanned 888 files and modules - 139 seconds
==============================================================================
QuickScan Beta 32-bit v0.9.9.22
-------------------------------
Scan date: Mon May 17 19:53:49 2010
Machine ID: B45A070C
Found 1 infected file!
----------------------
C:\WINDOWS\dllhost.exe --> Worm.P2P.Palevo.EN
--> HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"Microsoft Update checker"
Processes
---------
<unsigned> [webwiz] - webcam via ftp - module serv 396 C:\Program Files\[webwiz]\Webwizsvc.exe
<unsigned> Chromium 2648 C:\Program Files\ChromePlus\chrome.exe
<unsigned> Chromium 2064 C:\Program Files\ChromePlus\chrome.exe
<unsigned> Chromium 2120 C:\Program Files\ChromePlus\chrome.exe
<unsigned> Chromium 3856 C:\Program Files\ChromePlus\chrome.exe
<unsigned> ENJOY Plus! 1344 C:\Program Files\ENJOY Plus!\ENJOY Plus!.exe
<unsigned> Notification de cadeaux MSN 1480 C:\Documents and Settings\UTILISATEUR\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
<unsigned> OpenOffice.org 3.1 1872 C:\Program Files\OpenOffice.org 3\program\soffice.bin
<unsigned> OpenOffice.org 3.1 1808 C:\Program Files\OpenOffice.org 3\program\soffice.exe
<verified> ATI External Event Utility for Windows 752 C:\WINDOWS\system32\Ati2evxx.exe
<verified> ATI External Event Utility for Windows 1096 C:\WINDOWS\system32\Ati2evxx.exe
<verified> HP PML 1696 C:\WINDOWS\system32\HPZipm12.exe
<verified> Java(TM) Platform SE 6 U16 1608 C:\Program Files\Java\jre6\bin\jqs.exe
<verified> Java(TM) Platform SE 6 U16 1920 C:\Program Files\Java\jre6\bin\jucheck.exe
<verified> Java(TM) Platform SE 6 U16 900 C:\Program Files\Java\jre6\bin\jusched.exe
<verified> lanceur.exe 1424 C:\pointsoft\lanceur.exe
<verified> Microsoft Search Enhancement Pack 2004 C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
<verified> Microsoft® Windows® Operating System 2776 C:\WINDOWS\System32\alg.exe
<verified> Microsoft® Windows® Operating System 512 C:\WINDOWS\system32\csrss.exe
<verified> Microsoft® Windows® Operating System 1020 C:\WINDOWS\system32\ctfmon.exe
<verified> Microsoft® Windows® Operating System 600 C:\WINDOWS\system32\lsass.exe
<verified> Microsoft® Windows® Operating System 1244 C:\WINDOWS\system32\spoolsv.exe
<verified> Microsoft® Windows® Operating System 860 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 244 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 764 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 924 C:\WINDOWS\System32\svchost.exe
<verified> Microsoft® Windows® Operating System 980 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1468 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 1068 C:\WINDOWS\system32\svchost.exe
<verified> Microsoft® Windows® Operating System 3352 C:\WINDOWS\System32\svchost.exe
<verified> Microsoft® Windows® Operating System 2628 C:\WINDOWS\system32\wscntfy.exe
<verified> Nvu 196 C:\Program Files\Nvu\nvu.exe
<verified> PrintKey 1648 C:\Program Files\PrintKey 2000 Fr\Printkey 2000 Fr.exe
<verified> Realtek HD Audio Sound Effect Manager 908 C:\WINDOWS\RTHDCPL.EXE
<verified> Registry Mechanic 1028 C:\Program Files\Registry Mechanic\RegMech.exe
<verified> Skype 1052 C:\Program Files\Skype\Phone\Skype.exe
<verified> Skype Extras Manager 4076 C:\Program Files\Skype\Plugin Manager\skypePM.exe
<verified> SpiderMessenger 1308 C:\Program Files\SpiderMessenger\SpiderMessenger.exe
<verified> Système d'exploitation Microsoft® Windo 2024 C:\WINDOWS\Explorer.EXE
<verified> Système d'exploitation Microsoft® Windo 588 C:\WINDOWS\system32\services.exe
<verified> Système d'exploitation Microsoft® Windo 464 C:\WINDOWS\System32\smss.exe
<verified> Système d'exploitation Microsoft® Windo 2700 C:\WINDOWS\system32\wbem\wmiapsrv.exe
<verified> Système d'exploitation Microsoft® Windo 544 C:\WINDOWS\system32\winlogon.exe
<verified> Windows Live Communications Platform 1604 C:\Program Files\Windows Live\Contacts\wlcomm.exe
<verified> Windows Live Messenger 1024 C:\Program Files\Windows Live\Messenger\msnmsgr.exe
<verified> Yahoo! AutoUpdater 1144 C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
Network activity
----------------
Process msnmsgr.exe (1024) connected on port 1863 (MSN) --> sn1msg2010734.phx.gbl
Process msnmsgr.exe (1024) connected on port 80 (HTTP) --> 213.199.141.139
Process Skype.exe (1052) connected on port 52587 --> lng31-1-88-181-152-154.fbx.proxad.net
Process SpiderMessenger.exe (1308) connected on port 443 (HTTP over SSL) --> ns368472.ovh.net
Process ENJOY Plus!.exe (1344) connected on port 80 (HTTP) --> shoutcast3.radionomy.com
Process chrome.exe (2648) connected on port 80 (HTTP) --> wy-in-f100.1e100.net
Process chrome.exe (2648) connected on port 80 (HTTP) --> wy-in-f103.1e100.net
Process chrome.exe (2648) connected on port 80 (HTTP) --> ey-in-f100.1e100.net
Process svchost.exe (860) listens on ports: 135 (RPC)
Process Skype.exe (1052) listens on ports: 80 (HTTP), 59210
Process svchost.exe (1068) listens on ports: 2869 (SSDP event notification, UPNP)
Autoruns and critical files
---------------------------
<unsigned> dllhost.exe C:\WINDOWS\dllhost.exe
<unsigned> ENJOY Plus! C:\Program Files\ENJOY Plus!\ENJOY Plus!.exe
<unsigned> NDSROM Player.exe C:\Program Files\NDSROM Player\NDSROM Player.exe
<unsigned> Notification de cadeaux MSN C:\Documents and Settings\UTILISATEUR\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
<unsigned> PCAutoRun Application D:\autorun.exe
<unsigned> quickstart.exe C:\Program Files\OpenOffice.org 3\program\quickstart.exe
<verified> ATI External Event Utility for Windows C:\WINDOWS\system32\ati2evxx.dll
<verified> Google Update C:\Program Files\Google\Update\GoogleUpdate.exe
<verified> GoogleToolbarNotifier C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
<verified> Java(TM) Platform SE 6 U16 C:\Program Files\Java\jre6\bin\jusched.exe
<verified> lanceur.exe C:\pointsoft\lanceur.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\cryptnet.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\ctfmon.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\dimsntfy.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\WPDShServiceObj.dll
<verified> Pando Media Booster C:\Program Files\Pando Networks\Media Booster\PMB.exe
<verified> PrintKey C:\Program Files\PrintKey 2000 Fr\Printkey 2000 Fr.exe
<verified> Realtek AC97 Audio - Event Monitor C:\WINDOWS\ALCMTR.EXE
<verified> Realtek HD Audio Sound Effect Manager C:\WINDOWS\RTHDCPL.EXE
<verified> Registry Mechanic C:\Program Files\Registry Mechanic\RegMech.exe
<verified> Skype C:\Program Files\Skype\Phone\Skype.exe
<verified> SpiderMessenger C:\Program Files\SpiderMessenger\SpiderMessenger.exe
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\browseui.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\crypt32.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\cscdll.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\logonui.exe
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\sclgntfy.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\shell32.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\stobject.dll
<verified> Système d'exploitation Microsoft® Windo c:\windows\system32\userinit.exe
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\wlnotify.dll
<verified> Windows Live Messenger C:\Program Files\Windows Live\Messenger\msnmsgr.exe
<verified> Windows® Internet Explorer C:\WINDOWS\system32\msfeedssync.exe
<verified> Windows® Internet Explorer C:\WINDOWS\system32\webcheck.dll
Browser plugins
---------------
<unsigned> Conduit Toolbar c:\program files\eazel-fr\tbeaz0.dll
<unsigned> Java(TM) Platform SE 6 U16 c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
<unsigned> Outil MSN Téléchargement de photos C:\WINDOWS\Downloaded Program Files\PURfr-fr.dll
<unsigned> Shockwave for Director C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
<verified> AcroIEHelper Library C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
<verified> Adobe Acrobat C:\Program Files\Internet Explorer\plugins\nppdf32.dll
<verified> Adobe® Flash® Player ActiveX C:\WINDOWS\Downloaded Program Files\CONFLICT.1\FP_AX_CAB_INSTALLER.exe
<verified> Adobe® Flash® Player ActiveX C:\WINDOWS\Downloaded Program Files\CONFLICT.2\FP_AX_CAB_INSTALLER.exe
<verified> Adobe® Flash® Player ActiveX C:\WINDOWS\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
<verified> Fast Search c:\program files\google\google toolbar\component\fastsearch_219b3e1547538286.dll
<verified> Google Update C:\Program Files\Google\Update\1.2.183.23\npGoogleOneClick8.dll
<verified> googletoolbar.dll c:\program files\google\google toolbar\googletoolbar.dll
<verified> GoogleToolbarNotifier c:\program files\google\googletoolbarnotifier\5.0.926.3450\swg.dll
<verified> Java(TM) Platform SE 6 U16 c:\program files\java\jre6\bin\jp2ssv.dll
<verified> Messenger C:\Program Files\Messenger\msmsgs.exe
<verified> Microsoft Search Enhancement Pack c:\program files\microsoft\search enhancement pack\search helper\sepsearchhelperie.dll
<verified> Microsoft® Windows Live Login Helper c:\program files\fichiers communs\microsoft shared\windows live\windowslivelogin.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\rsvpsp.dll
<verified> Microsoft® Windows® Operating System C:\WINDOWS\system32\winrnr.dll
<verified> MSN Photo Upload Control C:\WINDOWS\Downloaded Program Files\MsnPUpld.dll
<verified> MSN Photo Upload Control C:\WINDOWS\Downloaded Program Files\PURen-us.dll
<verified> MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\MessengerStatsPAClient.dll
<verified> MSN® Games by Zone.com C:\WINDOWS\Downloaded Program Files\MineSweeper.dll
<verified> NPSWF32.dll C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
<verified> Oberon Game Host C:\WINDOWS\Downloaded Program Files\OberonGameHost.dll
<verified> Pando Web Plugin C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
<verified> Silverlight Plug-In c:\Program Files\Microsoft Silverlight\3.0.50106.0\npctrl.dll
<verified> Skype add-on for IE c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
<verified> Skyrock Toolbar c:\program files\skyrocktbar\skyrocktbar.dll
<verified> SpiderMessenger c:\program files\spidermessenger\spidermessenger.bho.dll
<verified> Système d'exploitation Microsoft® Windo C:\WINDOWS\system32\mswsock.dll
<verified> Unity Player C:\Program Files\Unity\WebPlayer\loader\npUnity3D32.dll
<verified> UNO Messenger C:\WINDOWS\Downloaded Program Files\GAME_UNO1.dll
<verified> Windows Live Toolbar c:\program files\windows live\toolbar\wltcore.dll
<verified> Windows Live® Photo Gallery C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll
<verified> Windows Presentation Foundation c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
<verified> Yahoo! Single Instance for Mail c:\program files\yahoo!\companion\installs\cpn\ytsingleinstance.dll
<verified> Yahoo! Toolbar c:\program files\yahoo!\companion\installs\cpn\yt.dll
<verified> Zylom Plugin C:\Documents and Settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll
Missing files
-------------
File not found: C:\DOCUME~1\UTILIS~1\LOCALS~1\Temp\PZQ120.tmp
referenced in: HKLM\System\ControlSet001\services\GarenaPEngine\"ImagePath"
File not found: C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
referenced in: HKLM\System\ControlSet001\services\avast! Mail Scanner\"ImagePath"
File not found: C:\Program Files\Alwil Software\Avast4\ashServ.exe
referenced in: HKLM\System\ControlSet001\services\avast! Antivirus\"ImagePath"
File not found: C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
referenced in: HKLM\System\ControlSet001\services\avast! Web Scanner\"ImagePath"
File not found: C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
referenced in: HKLM\System\ControlSet001\services\aswUpdSv\"ImagePath"
File not found: C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\profos.sys
referenced in: HKLM\System\ControlSet001\services\Profos\"ImagePath"
File not found: C:\Program Files\Fichiers communs\BitDefender\BitDefender Threat Scanner\trufos.sys
referenced in: HKLM\System\ControlSet001\services\Trufos\"ImagePath"
File not found: C:\Program Files\NEXON\EuropeMapleStory\npkcrypt.sys
referenced in: HKLM\System\ControlSet001\services\npkcrypt\"ImagePath"
File not found: C:\WINDOWS\System32\appmgmts.dll
referenced in: HKLM\System\ControlSet001\services\AppMgmt\Parameters\"ServiceDll"
File not found: C:\WINDOWS\infocard.exe
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"Firewall Administrating"
referenced in: HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"Firewall Administrating"
File not found: C:\WINDOWS\system32\PCAMPR5.SYS
referenced in: HKLM\System\ControlSet001\services\PCAMPR5\"ImagePath"
File not found: system32\DRIVERS\aswFsBlk.sys
referenced in: HKLM\System\ControlSet001\services\aswFsBlk\"ImagePath"
Scan
----
<unsigned> MD5: bc9c9be7bb74d629362608ace470e7da C:\Documents and Settings\UTILISATEUR\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
<unsigned> MD5: 4c95f8ae7331de8602ed33ffe805271d C:\Program Files\[webwiz]\Webwizsvc.exe
<unsigned> MD5: d33bb98e31e890a60f7b38a332a9d15b C:\Program Files\ChromePlus\1.3.9.0\avcodec-52.dll
<unsigned> MD5: bcf6fd2190d8b7e64c1785c65c385689 C:\Program Files\ChromePlus\1.3.9.0\avformat-52.dll
<unsigned> MD5: b1457cc384c807ab0e9bbc6e22f73f12 C:\Program Files\ChromePlus\1.3.9.0\avutil-50.dll
<unsigned> MD5: 514c1d381de51ce367b17970e795279e C:\Program Files\ChromePlus\1.3.9.0\chrome.dll
<unsigned> MD5: 8cedccf349588732f6f12a4680db7a89 C:\Program Files\ChromePlus\1.3.9.0\gears.dll
<unsigned> MD5: 0c5bd1f7a69a176d6029a8c598a13261 C:\Program Files\ChromePlus\1.3.9.0\icudt42.dll
<unsigned> MD5: bcabec119dc614ac6abdb8e8a5cab975 C:\Program Files\ChromePlus\1.3.9.0\locales\fr.dll
<unsigned> MD5: 3e61e35ba51237d0394fdda5a5843aea C:\Program Files\ChromePlus\chrome.exe
<unsigned> MD5: 455e61a2cf37f7210df685e2b77bfbe3 c:\program files\eazel-fr\tbeaz0.dll
<unsigned> MD5: b6f0ceaad5e719130c65a45840543d20 C:\Program Files\ENJOY Plus!\ENJOY Plus!.exe
<unsigned> MD5: 37edbcc7e5e0b89e59941ff79a2f9746 c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
<unsigned> MD5: cb50ca8cbde2394e760d7c823926178f C:\Program Files\NDSROM Player\NDSROM Player.exe
<unsigned> MD5: fea2267ea2ee9b2875a3aa7413b5abaf C:\Program Files\OpenOffice.org 3\Basis\program\aggmi.dll
<unsigned> MD5: b54f59cc209e7fdb72ccd7cf15f59a42 C:\Program Files\OpenOffice.org 3\Basis\program\avmediami.dll
<unsigned> MD5: ec777d00c045b81b7250e3813de693bf C:\Program Files\OpenOffice.org 3\Basis\program\basegfxmi.dll
<unsigned> MD5: ffb765e1575f0208547045dbf0f1df81 C:\Program Files\OpenOffice.org 3\Basis\program\behelper.uno.dll
<unsigned> MD5: 7a3c82f69940d0c3fb1d7298855fc3ed C:\Program Files\OpenOffice.org 3\Basis\program\canvastoolsmi.dll
<unsigned> MD5: 86d0238ae1612cfd76e50074dc78b0d6 C:\Program Files\OpenOffice.org 3\Basis\program\comphelp4MSC.dll
<unsigned> MD5: 4900a882544e957dfacc04bc094f7a28 C:\Program Files\OpenOffice.org 3\Basis\program\configmgr2.uno.dll
<unsigned> MD5: 35b1cc132624824118608fbf63526e07 C:\Program Files\OpenOffice.org 3\Basis\program\cppcanvasmi.dll
<unsigned> MD5: 7e93d070a3ce9695d02089b1fe6df40e C:\Program Files\OpenOffice.org 3\Basis\program\drawinglayermi.dll
<unsigned> MD5: 7f4e486b53d3be35f73ae1f148f7a490 C:\Program Files\OpenOffice.org 3\Basis\program\emsermi.dll
<unsigned> MD5: e7b469225bebbead7e5a8a31ed0cbcf1 C:\Program Files\OpenOffice.org 3\Basis\program\fwemi.dll
<unsigned> MD5: a4da893881141a04d09ff24cbb844f3d C:\Program Files\OpenOffice.org 3\Basis\program\fwimi.dll
<unsigned> MD5: 2288aad3c3203aac7ddc548c07fded0e C:\Program Files\OpenOffice.org 3\Basis\program\fwkmi.dll
<unsigned> MD5: 78d0a9c927aafdb202828f2189c2e3ec C:\Program Files\OpenOffice.org 3\Basis\program\fwlmi.dll
<unsigned> MD5: 46195ef986e6c6c78861269b11cecb1a C:\Program Files\OpenOffice.org 3\Basis\program\gomi.dll
<unsigned> MD5: 80c94a37496133cea74db36da68d4c49 C:\Program Files\OpenOffice.org 3\Basis\program\i18nisolang1MSC.dll
<unsigned> MD5: 8900803d62cab939fa29942a104af1fb C:\Program Files\OpenOffice.org 3\Basis\program\i18nutilMSC.dll
<unsigned> MD5: 763ee029dac8afeef236f8ea0f02454d C:\Program Files\OpenOffice.org 3\Basis\program\icudt40.dll
<unsigned> MD5: 88e26cca39355d8a11044236beaa2298 C:\Program Files\OpenOffice.org 3\Basis\program\icuuc40.dll
<unsigned> MD5: 8d89de6fdf53f79f7303b5c179ef5cc2 C:\Program Files\OpenOffice.org 3\Basis\program\jmi_g.dll
<unsigned> MD5: 93c81bd83dfd0c42249132368c9ef6d0 C:\Program Files\OpenOffice.org 3\Basis\program\lngmi.dll
<unsigned> MD5: 1e13bf8039d8d41e25875abfeb8664fe C:\Program Files\OpenOffice.org 3\Basis\program\localebe1.uno.dll
<unsigned> MD5: fd9b91f1b5f4015fae1d0e5651375cde C:\Program Files\OpenOffice.org 3\Basis\program\logmi.dll
<unsigned> MD5: 68fbf735ff797330b8c266f85c0af029 C:\Program Files\OpenOffice.org 3\Basis\program\oleautobridge.uno.dll
<unsigned> MD5: 7d0c31e8cbbce1d757de3d691597e19e C:\Program Files\OpenOffice.org 3\Basis\program\oooimprovecoremi.dll
<unsigned> MD5: fdb278ec2321d2927e820833dd2db1e4 C:\Program Files\OpenOffice.org 3\Basis\program\oooimprovementmi.dll
<unsigned> MD5: a3996ffaa613c9475d927815971f6f27 C:\Program Files\OpenOffice.org 3\Basis\program\sax.uno.dll
<unsigned> MD5: 080361413a529cbf4bca29458f3645a4 C:\Program Files\OpenOffice.org 3\Basis\program\saxmi.dll
<unsigned> MD5: 3e44dc6abf600dc72abd28952c0dde6b C:\Program Files\OpenOffice.org 3\Basis\program\sbmi.dll
<unsigned> MD5: 55201820b7b08c06ef26960494f91c63 C:\Program Files\OpenOffice.org 3\Basis\program\sfxmi.dll
<unsigned> MD5: 9327591ff176e68321d183915abb95b1 C:\Program Files\OpenOffice.org 3\Basis\program\sofficeapp.dll
<unsigned> MD5: 58a1ed9bba5e34542ff83b3ddd7098d7 C:\Program Files\OpenOffice.org 3\Basis\program\sotmi.dll
<unsigned> MD5: 5a5428a7a8985053916f5d82999d182c C:\Program Files\OpenOffice.org 3\Basis\program\stsmi.dll
<unsigned> MD5: 719ed0c342b6d08eda06e81e5ec06d0e C:\Program Files\OpenOffice.org 3\Basis\program\svlmi.dll
<unsigned> MD5: a227b5445ea515f76a41f7866ee6f5b0 C:\Program Files\OpenOffice.org 3\Basis\program\svtmi.dll
<unsigned> MD5: e5de55fbf1341b415b1d38fc46bd9ae0 C:\Program Files\OpenOffice.org 3\Basis\program\svxmi.dll
<unsigned> MD5: b337985df8c817f5dd25e0eef53d0802 C:\Program Files\OpenOffice.org 3\Basis\program\sysmgr1.uno.dll
<unsigned> MD5: b6e37ca1a90bdb216b4283a03bd8d949 C:\Program Files\OpenOffice.org 3\Basis\program\tkmi.dll
<unsigned> MD5: 4d973b73e7106e3b0b643735d0fa018e C:\Program Files\OpenOffice.org 3\Basis\program\tlmi.dll
<unsigned> MD5: eb7f4ec6229c5dd414a0125ccf49d1bd C:\Program Files\OpenOffice.org 3\Basis\program\ucb1.dll
<unsigned> MD5: f47e9129c15aa428ddf8da09d975a140 C:\Program Files\OpenOffice.org 3\Basis\program\ucbhelper4MSC.dll
<unsigned> MD5: bc4832b2695effb1a7b7b238ccf21387 C:\Program Files\OpenOffice.org 3\Basis\program\ucpfile1.dll
<unsigned> MD5: a4fded4d1eb782c46dd6cdc5121967e4 C:\Program Files\OpenOffice.org 3\Basis\program\utlmi.dll
<unsigned> MD5: 7190caabbee93cfd43fb1ed2dcc7e426 C:\Program Files\OpenOffice.org 3\Basis\program\vclmi.dll
<unsigned> MD5: c82951d8d50299bedc8484f7bd0ac601 C:\Program Files\OpenOffice.org 3\Basis\program\vos3MSC.dll
<unsigned> MD5: cb9c5d21318a7c8eace7faf49886ebed C:\Program Files\OpenOffice.org 3\Basis\program\xcrmi.dll
<unsigned> MD5: ba1461b25dbc3071378db4291a985823 C:\Program Files\OpenOffice.org 3\Basis\program\xomi.dll
<unsigned> MD5: 2da8a753e4e32904596d00464022569a C:\Program Files\OpenOffice.org 3\program\libxml2.dll
<unsigned> MD5: c047c9c6cd8e134afdfdb374e80547e5 C:\Program Files\OpenOffice.org 3\program\quickstart.exe
<unsigned> MD5: 873867a02f0e83f18cf871e776b651dc C:\Program Files\OpenOffice.org 3\program\soffice.bin
<unsigned> MD5: 83170b8e03213093b065a9638e146499 C:\Program Files\OpenOffice.org 3\program\soffice.exe
<unsigned> MD5: 57a659edd410fa41f2d6578880ba17b1 C:\Program Files\OpenOffice.org 3\URE\bin\bootstrap.uno.dll
<unsigned> MD5: 235923af735f5c8ea83243ff56c9c140 C:\Program Files\OpenOffice.org 3\URE\bin\cppu3.dll
<unsigned> MD5: 8e0ce415dcd35c9f2f559487ca8c93d1 C:\Program Files\OpenOffice.org 3\URE\bin\cppuhelper3MSC.dll
<unsigned> MD5: cedecce16e90fbff125d2b233309d840 C:\Program Files\OpenOffice.org 3\URE\bin\jvmaccess3MSC.dll
<unsigned> MD5: 09acbb8557860bb035eb76f44caa9d46 C:\Program Files\OpenOffice.org 3\URE\bin\jvmfwk3.dll
<unsigned> MD5: d3f67e5aed36efcaee13cc904356331b C:\Program Files\OpenOffice.org 3\URE\bin\msci_uno.dll
<unsigned> MD5: a567008bcff6fc8803681fd6e05db495 C:\Program Files\OpenOffice.org 3\URE\bin\purpenvhelper3MSC.dll
<unsigned> MD5: ecf245a31e257c67061e015de8a4b4b9 C:\Program Files\OpenOffice.org 3\URE\bin\reg3.dll
<unsigned> MD5: cad486325fea180409e208db996bfc34 C:\Program Files\OpenOffice.org 3\URE\bin\sal3.dll
<unsigned> MD5: 016a255656be11af080fd44517381129 C:\Program Files\OpenOffice.org 3\URE\bin\salhelper3MSC.dll
<unsigned> MD5: 95c6bd7cc13895581c4de415e87640e6 C:\Program Files\OpenOffice.org 3\URE\bin\stocservices.uno.dll
<unsigned> MD5: 8f101652dcba15c2c056c7e960a18d6c C:\Program Files\OpenOffice.org 3\URE\bin\store3.dll
<unsigned> MD5: e6d7a8a58ff3d59f721543619a8cff87 C:\Program Files\OpenOffice.org 3\URE\bin\unsafe_uno_uno.dll
<unsigned> MD5: 31c2d848b2ed60740c9cf11ea3b2f882 C:\Program Files\OpenOffice.org 3\URE\bin\uwinapi.dll
<unsigned> MD5: 4c95f8ae7331de8602ed33ffe805271d C:\PROGRA~1\_WEBWI~1\Webwizsvc.exe
<unsigned> MD5: e1cd92006904472c49cff2e519a34b6f C:\WINDOWS\dllhost.exe
<unsigned> MD5: 732caca8e848f6e721b093e51fc50b1d C:\WINDOWS\Downloaded Program Files\PURfr-fr.dll
<unsigned> MD5: e2cca1b3ba59949ae16ec587e89a09ba C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
<unsigned> MD5: 737371583e0173f963d74435be3e96d2 C:\WINDOWS\system32\ati2sgag.exe
<unsigned> MD5: c051deb1ad5fdaae04114a30998ff869 C:\WINDOWS\system32\drivers\PRODRV06.sys
<unsigned> MD5: d9d5cc53e73d7796ffc6266d52de80da C:\WINDOWS\system32\drivers\PROHLP02.sys
<unsigned> MD5: f3471e7971ee62420451d958da635064 C:\WINDOWS\system32\drivers\PROSYNC1.sys
<unsigned> MD5: 3d33af4a02ad2bf74287fc621111e528 C:\WINDOWS\system32\GameMon.des
<unsigned> MD5: 1b01a195883a09dd18e50af87f924dfc C:\WINDOWS\system32\uxtheme.dll
<unsigned> MD5: 60c40717e07ad316ece76a469c323992 D:\autorun.exe
No file uploaded.
Scan finished - communication took 2 sec
Total traffic - 0.03 MB sent, 0.46 KB recvd
Scanned 888 files and modules - 139 seconds
==============================================================================