APRES AVOIR RECU UN VIRUS "worm win32 poebotC

Fermé
hermes060 Messages postés 12 Date d'inscription dimanche 12 février 2006 Statut Membre Dernière intervention 16 février 2006 - 12 févr. 2006 à 00:28
Kristopher Messages postés 3731 Date d'inscription vendredi 18 novembre 2005 Statut Contributeur Dernière intervention 10 juillet 2009 - 16 févr. 2006 à 15:48
bonjour ou bonsoir
AU Secour
..Suite à un virus "WIN 32/poebot c" Je nai plus acces a mes programme mon horlogue est figuer, tous mes operations de formatage ou regedit sont bloquer,aucuns programme tournentet je n'ai plus que le net pour essayer de virer cette saloperie.
si quelqu 'un vois ce message ou qu il sait quelque chose qu'il me fasse signe, jai besois aide cela me dépasse..il me bloque tous questions comment faire pour remédier a cela sans perdre mon disque dur 40 gi /xp pro / p4 2.4 ghz 512 ram .
Salutations a tous et merci pour celui qui........
A voir également:

16 réponses

Utilisateur anonyme
12 févr. 2006 à 00:40
Salut,
télécharge hijackthis:
http://www.hijackthis.de/downloads/hijackthis_199.zip

Installe le dans son propre dossier:
Par exemple C:\hijackthis
Lance le, clique sur "do a system scan and save logfile"
Puis copie et colle le rapport ici.
0
Kristopher Messages postés 3731 Date d'inscription vendredi 18 novembre 2005 Statut Contributeur Dernière intervention 10 juillet 2009 106
12 févr. 2006 à 00:42
Salut

Scanne ton PC avec cet antivirus en ligne :
http://www.secuser.com/antivirus/index.htm

Coche la case "Auto Clean" et clique sur "Poste de travail".

Aller, au travail :D

++
0
chat_teigne Messages postés 15596 Date d'inscription mercredi 27 février 2002 Statut Modérateur Dernière intervention 27 janvier 2020 1 559
12 févr. 2006 à 03:48
Copie des réponses postées dans le message en double :

------------------------------------------------------------------------------
# < 1 > - APRES AVOIR RECU UN VIRUS
Ajouté par nico (12/02/2006 à 00:54 GMT+1)

tu peux formater ton disque dur comme à la base quand on format windows n'est pas démarrer ainsi que les programmes. Et la à coup sur ton virus vas vite partir!!!!

------------------------------------------------------------------------------
# < 2 > - APRES AVOIR RECU UN VIRUS "worm win32 poebotC
Ajouté par nico (12/02/2006 à 00:55 GMT+1)

un liens pour que cela ne se reproduise plus:

http://boss0211.site.voila.fr/



------------------------------------------------------------------------------
Ajouté par aranjuez31 (12/02/2006 à 00:57 GMT+1)

bjr
on va procéder à qques nettoyages avant de haire un hijac
telecharger ces progr et fais les fonctionner

Ad-Aware (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/11643.html
Le patch en Français pour Ad-Aware (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/25543.html

Spybot (gratuit) :
http://telecharger.01net.com/windows/Internet/internet_utlitaire/fiches/26157.html

ewido (dowload)
http://www.ewido.net/fr/download/

Pour ce dernier
COLLE le rapport ici
~~~~~~~~~~
scan online avec
http://www.bitdefender.fr/bd/site/search.php#
COLLE le rapport ici
~~~~~~~
aprés et seulement aprés
teléch ceci
http://telechargement.zebulon.fr/160-patch-francais-pour-hijackthis-1991.html
mode d emploi
http://pageperso.aol.fr/balltrap34/Hijenr.gif
http://pageperso.aol.fr/balltrap34/demohijack.htm

------------------------------------------------------------------------------



Merci au posteur de ne plus poster ses messages en double.
0
hermes060 Messages postés 12 Date d'inscription dimanche 12 février 2006 Statut Membre Dernière intervention 16 février 2006
12 févr. 2006 à 10:39
merci a tous de me repondre mais apres telechargement rien ne veux ce lancer
ils bloquent au lancement....
grrrrrrrrrrrrr.....

en relancant pour formater il bloque le lancement du cd xp impossible de formater (k faire) explosion désintégration ?????
ra le bol..
merci
alain
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
hermes060 Messages postés 12 Date d'inscription dimanche 12 février 2006 Statut Membre Dernière intervention 16 février 2006
13 févr. 2006 à 08:16
"kristopher bonjour,
jai fait 5 scan en ligne avec chaque un des virus different (bizzard "non") et toujour pareil, je ne peus pas rentrer dans mon system .exe (regeditou autres ) pour pouvoir virer la CHOSE
je ne sais plus quoi faire. a parrt racheter un d d..
merci
Alain
0
Utilisateur anonyme
13 févr. 2006 à 08:19
Salut,
c'est normal tous les anti-virus en ligne n'ont pas la même base virale..tu peux nous soumettre un rapport hijackthis,..si oui.

Salut,
télécharge hijackthis:
http://www.hijackthis.de/downloads/hijackthis_199.zip

Installe le dans son propre dossier:
Par exemple C:\hijackthis
Lance le, clique sur "do a system scan and save logfile"
Puis copie et colle le rapport ici.
0
hermes060 Messages postés 12 Date d'inscription dimanche 12 février 2006 Statut Membre Dernière intervention 16 février 2006
13 févr. 2006 à 08:31
bonjour a toi boulepate
mais impossible de rentrer dans un programme ou de le lancer
le systeme bloque au lancement je peut telecharger mais cest tout
que faire (je ne peut même pas faire un formatc:)
@+
Alain


voila un scan que jai pus
trouver
...............................;-)

2006/02/12 07:56:52:686 ScanFile C:\\WINDOWS\system32\webvw.dll
2006/02/12 07:56:52:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:52:764 ScanFile C:\\WINDOWS\system32\wextract.exe
2006/02/12 07:56:52:842 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:52:858 ScanFile C:\\WINDOWS\system32\wfwnet.drv
2006/02/12 07:56:52:905 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:52:920 ScanFile C:\\WINDOWS\system32\wiaacmgr.exe
2006/02/12 07:56:53:014 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:030 ScanFile C:\\WINDOWS\system32\wiadefui.dll
2006/02/12 07:56:53:124 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:155 ScanFile C:\\WINDOWS\system32\wiadss.dll
2006/02/12 07:56:53:202 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:217 ScanFile C:\\WINDOWS\system32\wiascr.dll
2006/02/12 07:56:53:280 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:295 ScanFile C:\\WINDOWS\system32\wiaservc.dll
2006/02/12 07:56:53:374 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:389 ScanFile C:\\WINDOWS\system32\wiasf.ax
2006/02/12 07:56:53:467 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:483 ScanFile C:\\WINDOWS\system32\wiashext.dll
2006/02/12 07:56:53:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:655 ScanFile C:\\WINDOWS\system32\wiavideo.dll
2006/02/12 07:56:53:717 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:733 ScanFile C:\\WINDOWS\system32\wiavusd.dll
2006/02/12 07:56:53:811 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:842 ScanFile C:\\WINDOWS\system32\wifeman.dll
2006/02/12 07:56:53:874 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:889 ScanFile C:\\WINDOWS\system32\win.com
2006/02/12 07:56:53:952 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:53:967 ScanFile C:\\WINDOWS\system32\win32k.sys
2006/02/12 07:56:54:108 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:124 ScanFile C:\\WINDOWS\system32\win32spl.dll
2006/02/12 07:56:54:186 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:217 ScanFile C:\\WINDOWS\system32\win87em.dll
2006/02/12 07:56:54:233 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:264 ScanFile C:\\WINDOWS\system32\winchat.exe
2006/02/12 07:56:54:342 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:358 ScanFile C:\\WINDOWS\system32\WindowsLogon.manifest
2006/02/12 07:56:54:389 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:420 ScanFile C:\\WINDOWS\system32\winfax.dll
2006/02/12 07:56:54:467 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:483 ScanFile C:\\WINDOWS\system32\winhelp.hlp
2006/02/12 07:56:54:514 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:530 ScanFile C:\\WINDOWS\system32\winhlp32.exe
2006/02/12 07:56:54:592 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:624 ScanFile C:\\WINDOWS\system32\winhttp.dll
2006/02/12 07:56:54:702 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:717 ScanFile C:\\WINDOWS\system32\wininet.dll
2006/02/12 07:56:54:811 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:842 ScanFile C:\\WINDOWS\system32\winipsec.dll
2006/02/12 07:56:54:889 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:54:920 ScanFile C:\\WINDOWS\system32\winlogon.exe
2006/02/12 07:56:55:030 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:061 ScanFile C:\\WINDOWS\system32\winmine.exe
2006/02/12 07:56:55:155 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:186 ScanFile C:\\WINDOWS\system32\winmm.dll
2006/02/12 07:56:55:233 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:249 ScanFile C:\\WINDOWS\system32\winmsd.exe
2006/02/12 07:56:55:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:342 ScanFile C:\\WINDOWS\system32\winnls.dll
2006/02/12 07:56:55:358 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:389 ScanFile C:\\WINDOWS\system32\winntbbu.dll
2006/02/12 07:56:55:483 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:514 ScanFile C:\\WINDOWS\system32\winoldap.mod
2006/02/12 07:56:55:561 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:577 ScanFile C:\\WINDOWS\system32\winrnr.dll
2006/02/12 07:56:55:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:655 ScanFile C:\\WINDOWS\system32\winscard.dll
2006/02/12 07:56:55:733 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:749 ScanFile C:\\WINDOWS\system32\winsock.dll
2006/02/12 07:56:55:780 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:811 ScanFile C:\\WINDOWS\system32\winspool.drv
2006/02/12 07:56:55:874 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:889 ScanFile C:\\WINDOWS\system32\winspool.exe
2006/02/12 07:56:55:952 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:55:967 ScanFile C:\\WINDOWS\system32\winsrv.dll
2006/02/12 07:56:56:030 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:045 ScanFile C:\\WINDOWS\system32\winsta.dll
2006/02/12 07:56:56:108 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:124 ScanFile C:\\WINDOWS\system32\winstrm.dll
2006/02/12 07:56:56:155 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:186 ScanFile C:\\WINDOWS\system32\wintrust.dll
2006/02/12 07:56:56:249 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:264 ScanFile C:\\WINDOWS\system32\winver.exe
2006/02/12 07:56:56:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:342 ScanFile C:\\WINDOWS\system32\wjview.exe
2006/02/12 07:56:56:389 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:420 ScanFile C:\\WINDOWS\system32\wkssvc.dll
2006/02/12 07:56:56:467 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:483 ScanFile C:\\WINDOWS\system32\wldap32.dll
2006/02/12 07:56:56:545 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:561 ScanFile C:\\WINDOWS\system32\wlnotify.dll
2006/02/12 07:56:56:624 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:655 ScanFile C:\\WINDOWS\system32\wmadmod.dll
2006/02/12 07:56:56:733 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:749 ScanFile C:\\WINDOWS\system32\wmadmoe.dll
2006/02/12 07:56:56:858 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:874 ScanFile C:\\WINDOWS\system32\wmasf(2).dll
2006/02/12 07:56:56:952 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:56:983 ScanFile C:\\WINDOWS\system32\wmasf.dll
2006/02/12 07:56:57:061 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:092 ScanFile C:\\WINDOWS\system32\WMDMLOG.dll
2006/02/12 07:56:57:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:155 ScanFile C:\\WINDOWS\system32\WMDMPS.dll
2006/02/12 07:56:57:202 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:217 ScanFile C:\\WINDOWS\system32\WMDRMdev.dll
2006/02/12 07:56:57:295 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:311 ScanFile C:\\WINDOWS\system32\WMDRMNet.dll
2006/02/12 07:56:57:374 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:405 ScanFile C:\\WINDOWS\system32\wmerrFRA.dll
2006/02/12 07:56:57:452 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:467 ScanFile C:\\WINDOWS\system32\wmi.dll
2006/02/12 07:56:57:514 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:530 ScanFile C:\\WINDOWS\system32\wmidx.dll
2006/02/12 07:56:57:608 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:624 ScanFile C:\\WINDOWS\system32\wmidx.ocx
2006/02/12 07:56:57:686 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:702 ScanFile C:\\WINDOWS\system32\wmimgmt.msc
2006/02/12 07:56:57:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:764 ScanFile C:\\WINDOWS\system32\wmiprop.dll
2006/02/12 07:56:57:811 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:827 ScanFile C:\\WINDOWS\system32\wmnetmgr.dll
2006/02/12 07:56:57:920 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:57:936 ScanFile C:\\WINDOWS\system32\wmp.dll
2006/02/12 07:56:58:077 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:108 ScanFile C:\\WINDOWS\system32\wmp.ocx
2006/02/12 07:56:58:170 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:186 ScanFile C:\\WINDOWS\system32\wmpasf.dll
2006/02/12 07:56:58:264 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:280 ScanFile C:\\WINDOWS\system32\wmpcd.dll
2006/02/12 07:56:58:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:342 ScanFile C:\\WINDOWS\system32\wmpcore.dll
2006/02/12 07:56:58:389 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:420 ScanFile C:\\WINDOWS\system32\wmpdxm.dll
2006/02/12 07:56:58:483 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:499 ScanFile C:\\WINDOWS\system32\wmpencen.dll
2006/02/12 07:56:58:655 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:670 ScanFile C:\\WINDOWS\system32\wmploc.dll
2006/02/12 07:56:58:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:780 ScanFile C:\\WINDOWS\system32\wmpscheme.xml
2006/02/12 07:56:58:827 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:842 ScanFile C:\\WINDOWS\system32\wmpshell.dll
2006/02/12 07:56:58:905 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:920 ScanFile C:\\WINDOWS\system32\wmpsrcwp.dll
2006/02/12 07:56:58:967 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:58:999 ScanFile C:\\WINDOWS\system32\wmpstub.exe
2006/02/12 07:56:59:061 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:077 ScanFile C:\\WINDOWS\system32\wmpui.dll
2006/02/12 07:56:59:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:155 ScanFile C:\\WINDOWS\system32\wmsdmod.dll
2006/02/12 07:56:59:249 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:264 ScanFile C:\\WINDOWS\system32\wmsdmoe.dll
2006/02/12 07:56:59:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:342 ScanFile C:\\WINDOWS\system32\wmsdmoe2.dll
2006/02/12 07:56:59:420 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:436 ScanFile C:\\WINDOWS\system32\wmserror.dll
2006/02/12 07:56:59:483 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:499 ScanFile C:\\WINDOWS\system32\wmspdmod.dll
2006/02/12 07:56:59:577 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:608 ScanFile C:\\WINDOWS\system32\wmspdmoe.dll
2006/02/12 07:56:59:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:764 ScanFile C:\\WINDOWS\system32\wmstream.dll
2006/02/12 07:56:59:842 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:858 ScanFile C:\\WINDOWS\system32\wmv8dmod.dll
2006/02/12 07:56:59:936 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:56:59:967 ScanFile C:\\WINDOWS\system32\wmv8dmoe.dll
2006/02/12 07:57:00:061 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:00:077 ScanFile C:\\WINDOWS\system32\wmv8ds32.ax
2006/02/12 07:57:00:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:00:155 ScanFile C:\\WINDOWS\system32\wmvadvd.dll
2006/02/12 07:57:00:295 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:00:311 ScanFile C:\\WINDOWS\system32\WMVADVE.DLL
2006/02/12 07:57:00:405 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:00:420 ScanFile C:\\WINDOWS\system32\wmvcore(2).dll
2006/02/12 07:57:00:545 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:00:561 ScanFile C:\\WINDOWS\system32\wmvcore.dll
2006/02/12 07:57:00:686 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:00:717 ScanFile C:\\WINDOWS\system32\wmvdmod.dll
2006/02/12 07:57:00:811 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:00:842 ScanFile C:\\WINDOWS\system32\wmvdmoe.dll
2006/02/12 07:57:00:952 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:00:983 ScanFile C:\\WINDOWS\system32\wmvdmoe2.dll
2006/02/12 07:57:01:077 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:092 ScanFile C:\\WINDOWS\system32\wmvds32.ax
2006/02/12 07:57:01:155 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:170 ScanFile C:\\WINDOWS\system32\wnaspi32.dll
2006/02/12 07:57:01:249 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:264 ScanFile C:\\WINDOWS\system32\wow32.dll
2006/02/12 07:57:01:311 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:342 ScanFile C:\\WINDOWS\system32\wowdeb.exe
2006/02/12 07:57:01:374 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:389 ScanFile C:\\WINDOWS\system32\wowexec.exe
2006/02/12 07:57:01:436 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:452 ScanFile C:\\WINDOWS\system32\wowfax.dll
2006/02/12 07:57:01:483 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:514 ScanFile C:\\WINDOWS\system32\wowfaxui.dll
2006/02/12 07:57:01:577 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:592 ScanFile C:\\WINDOWS\system32\wpa.dbl
2006/02/12 07:57:01:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:655 ScanFile C:\\WINDOWS\system32\wpabaln.exe
2006/02/12 07:57:01:717 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:733 ScanFile C:\\WINDOWS\system32\wpdconns.dll
2006/02/12 07:57:01:780 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:795 ScanFile C:\\WINDOWS\system32\wpdmtp.dll
2006/02/12 07:57:01:842 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:858 ScanFile C:\\WINDOWS\system32\wpdmtpdr.dll
2006/02/12 07:57:01:920 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:01:936 ScanFile C:\\WINDOWS\system32\wpdmtpus.dll
2006/02/12 07:57:01:999 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:014 ScanFile C:\\WINDOWS\system32\wpdsp.dll
2006/02/12 07:57:02:077 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:092 ScanFile C:\\WINDOWS\system32\wpdtrace.dll
2006/02/12 07:57:02:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:155 ScanFile C:\\WINDOWS\system32\wpd_ci.dll
2006/02/12 07:57:02:217 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:233 ScanFile C:\\WINDOWS\system32\wpnpinst.exe
2006/02/12 07:57:02:295 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:327 ScanFile C:\\WINDOWS\system32\write.exe
2006/02/12 07:57:02:389 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:420 ScanFile C:\\WINDOWS\system32\ws2help.dll
2006/02/12 07:57:02:483 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:499 ScanFile C:\\WINDOWS\system32\ws2_32.dll
2006/02/12 07:57:02:561 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:577 ScanFile C:\\WINDOWS\system32\wscript.exe
2006/02/12 07:57:02:655 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:670 ScanFile C:\\WINDOWS\system32\wshatm.dll
2006/02/12 07:57:02:733 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:749 ScanFile C:\\WINDOWS\system32\wshcon.dll
2006/02/12 07:57:02:827 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:858 ScanFile C:\\WINDOWS\system32\wshext.dll
2006/02/12 07:57:02:920 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:02:936 ScanFile C:\\WINDOWS\system32\wshfr.dll
2006/02/12 07:57:02:999 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:014 ScanFile C:\\WINDOWS\system32\wship6.dll
2006/02/12 07:57:03:077 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:092 ScanFile C:\\WINDOWS\system32\wshisn.dll
2006/02/12 07:57:03:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:155 ScanFile C:\\WINDOWS\system32\wshnetbs.dll
2006/02/12 07:57:03:202 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:217 ScanFile C:\\WINDOWS\system32\wshom.ocx
2006/02/12 07:57:03:311 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:327 ScanFile C:\\WINDOWS\system32\WshRm.dll
2006/02/12 07:57:03:389 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:405 ScanFile C:\\WINDOWS\system32\wshtcpip.dll
2006/02/12 07:57:03:467 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:483 ScanFile C:\\WINDOWS\system32\wsnmp32.dll
2006/02/12 07:57:03:530 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:561 ScanFile C:\\WINDOWS\system32\wsock32.dll
2006/02/12 07:57:03:608 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:639 ScanFile C:\\WINDOWS\system32\wstdecod.dll
2006/02/12 07:57:03:686 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:702 ScanFile C:\\WINDOWS\system32\wtsapi32.dll
2006/02/12 07:57:03:764 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:780 ScanFile C:\\WINDOWS\system32\wuapi.dll
2006/02/12 07:57:03:858 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:874 ScanFile C:\\WINDOWS\system32\wuauclt.exe
2006/02/12 07:57:03:967 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:03:983 ScanFile C:\\WINDOWS\system32\wuauclt1.exe
2006/02/12 07:57:04:061 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:077 ScanFile C:\\WINDOWS\system32\wuaucpl.cpl
2006/02/12 07:57:04:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:170 ScanFile C:\\WINDOWS\system32\wuaucpl.cpl.manifest
2006/02/12 07:57:04:202 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:233 ScanFile C:\\WINDOWS\system32\wuaueng.dll
2006/02/12 07:57:04:342 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:358 ScanFile C:\\WINDOWS\system32\wuaueng1.dll
2006/02/12 07:57:04:420 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:436 ScanFile C:\\WINDOWS\system32\wuauserv.dll
2006/02/12 07:57:04:499 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:514 ScanFile C:\\WINDOWS\system32\wucltui.dll
2006/02/12 07:57:04:592 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:608 ScanFile C:\\WINDOWS\system32\wupdinfo.dll
2006/02/12 07:57:04:670 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:686 ScanFile C:\\WINDOWS\system32\wupdmgr.exe
2006/02/12 07:57:04:764 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:780 ScanFile C:\\WINDOWS\system32\wups.dll
2006/02/12 07:57:04:827 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:858 ScanFile C:\\WINDOWS\system32\wups2.dll
2006/02/12 07:57:04:905 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:04:936 ScanFile C:\\WINDOWS\system32\wuv3is.dll
2006/02/12 07:57:04:999 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:014 ScanFile C:\\WINDOWS\system32\wuweb.dll
2006/02/12 07:57:05:077 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:092 ScanFile C:\\WINDOWS\system32\wzcdlg.dll
2006/02/12 07:57:05:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:155 ScanFile C:\\WINDOWS\system32\wzcsapi.dll
2006/02/12 07:57:05:202 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:217 ScanFile C:\\WINDOWS\system32\wzcsvc.dll
2006/02/12 07:57:05:295 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:311 ScanFile C:\\WINDOWS\system32\xactsrv.dll
2006/02/12 07:57:05:358 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:389 ScanFile C:\\WINDOWS\system32\xcopy.exe
2006/02/12 07:57:05:452 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:467 ScanFile C:\\WINDOWS\system32\xenroll.dll
2006/02/12 07:57:05:545 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:561 ScanFile C:\\WINDOWS\system32\xolehlp.dll
2006/02/12 07:57:05:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:655 ScanFile C:\\WINDOWS\system32\zipfldr.dll
2006/02/12 07:57:05:717 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:749 ScanFile C:\\WINDOWS\system32\zoasnr.bat
2006/02/12 07:57:05:780 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:795 ScanFile C:\\WINDOWS\system32\zonedoff.reg
2006/02/12 07:57:05:827 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:842 ScanFile C:\\WINDOWS\system32\zonedon.reg
2006/02/12 07:57:05:874 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:05:889 ScanFile C:\\WINDOWS\system32\[Emoticons-plus.com] Winkaa 1.0.exe
2006/02/12 07:57:05:983 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:014 ScanFile C:\\WINDOWS\Tasks\desktop.ini
2006/02/12 07:57:06:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:077 ScanFile C:\\WINDOWS\Tasks\Recherche de virus de McAfee.com - Mon ordinateur (AM-RA).job
2006/02/12 07:57:06:092 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:108 ScanFile C:\\WINDOWS\Tasks\SA.DAT
2006/02/12 07:57:06:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:217 ScanFile C:\\WINDOWS\Temp\mcu2.tmp\McAppIns.exe
2006/02/12 07:57:06:280 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:311 ScanFile C:\\WINDOWS\Temp\mcu2.tmp\mcinsres.dll
2006/02/12 07:57:06:358 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:374 ScanFile C:\\WINDOWS\Temp\mcu2.tmp\UpdReq.mcaf
2006/02/12 07:57:06:420 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:436 ScanFile C:\\WINDOWS\Temp\mcu2.tmp\UpdResp.mcaf
2006/02/12 07:57:06:467 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:514 ScanFile C:\\WINDOWS\Temp\mcu3.tmp\McAppIns.exe
2006/02/12 07:57:06:608 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:624 ScanFile C:\\WINDOWS\Temp\mcu3.tmp\mcinsres.dll
2006/02/12 07:57:06:670 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:686 ScanFile C:\\WINDOWS\Temp\mcu3.tmp\UpdReq.mcaf
2006/02/12 07:57:06:717 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:733 ScanFile C:\\WINDOWS\Temp\mcu3.tmp\UpdResp.mcaf
2006/02/12 07:57:06:764 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:842 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vso\fr\com\aolcfg.cab
2006/02/12 07:57:06:874 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:06:889 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vso\46874688.upd
2006/02/12 07:57:06:936 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vso\46884689.upd
2006/02/12 07:57:06:967 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vso\46894690.upd
2006/02/12 07:57:06:999 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vso\46904691.upd
2006/02/12 07:57:07:045 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vso\46914692.upd
2006/02/12 07:57:07:077 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vso\delta.ini
2006/02/12 07:57:07:124 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:155 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\McAppIns.exe
2006/02/12 07:57:07:217 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:249 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\mcinsres.dll
2006/02/12 07:57:07:295 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:311 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\mcuninst.dll
2006/02/12 07:57:07:405 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:420 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\uninst.dll
2006/02/12 07:57:07:499 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:514 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\uninst.ini
2006/02/12 07:57:07:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:655 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\UpdReq.mcaf
2006/02/12 07:57:07:702 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:717 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\UpdResp.mcaf
2006/02/12 07:57:07:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:780 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\VsCfgIns.dll
2006/02/12 07:57:07:842 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:874 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vsocfg.ini
2006/02/12 07:57:07:889 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:07:920 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vsoins.cab
2006/02/12 07:57:07:983 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:092 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:155 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:186 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:217 Dump_Virus:pfcb->pfcb_status=-92

2006/02/12 07:57:08:280 Scan file 'C:\\WINDOWS\Temp\mcu4D.tmp\vsoins.cab *countries.js*' failed! (-92,The compressed file is password protected)
2006/02/12 07:57:08:295 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vsoins.inf
2006/02/12 07:57:08:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:342 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\vsoins.ui
2006/02/12 07:57:08:389 Dump_Virus:pfcb->pfcb_status=-92

2006/02/12 07:57:08:420 Scan file 'C:\\WINDOWS\Temp\mcu4D.tmp\vsoins.ui *countries.js*' failed! (-92,The compressed file is password protected)
2006/02/12 07:57:08:436 ScanFile C:\\WINDOWS\Temp\mcu4D.tmp\VsoVer.ini
2006/02/12 07:57:08:499 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:545 ScanFile C:\\WINDOWS\Temp\mcu53.tmp\McAppIns.exe
2006/02/12 07:57:08:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:655 ScanFile C:\\WINDOWS\Temp\mcu53.tmp\mcinsres.dll
2006/02/12 07:57:08:717 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:733 ScanFile C:\\WINDOWS\Temp\mcu53.tmp\UpdReq.mcaf
2006/02/12 07:57:08:780 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:795 ScanFile C:\\WINDOWS\Temp\mcu53.tmp\UpdResp.mcaf
2006/02/12 07:57:08:827 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:08:842 ScanFile C:\\WINDOWS\Temp\tqa1.tmp
2006/02/12 07:57:08:967 ScanFile C:\\WINDOWS\twain_32\1200UB\12kUBSpi.dll
2006/02/12 07:57:09:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:061 ScanFile C:\\WINDOWS\twain_32\1200UB\ABOUT.BMP
2006/02/12 07:57:09:108 ScanFile C:\\WINDOWS\twain_32\1200UB\ColorB.dat
2006/02/12 07:57:09:155 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:170 ScanFile C:\\WINDOWS\twain_32\1200UB\filter.dll
2006/02/12 07:57:09:249 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:264 ScanFile C:\\WINDOWS\twain_32\1200UB\Free_EXE.exe
2006/02/12 07:57:09:295 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:311 ScanFile C:\\WINDOWS\twain_32\1200UB\Gammaps.phs
2006/02/12 07:57:09:358 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:389 ScanFile C:\\WINDOWS\twain_32\1200UB\INSTALL.LOG
2006/02/12 07:57:09:436 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:452 ScanFile C:\\WINDOWS\twain_32\1200UB\lang_da.dll
2006/02/12 07:57:09:514 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:545 ScanFile C:\\WINDOWS\twain_32\1200UB\lang_e.dll
2006/02/12 07:57:09:608 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:624 ScanFile C:\\WINDOWS\twain_32\1200UB\lang_f.dll
2006/02/12 07:57:09:702 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:717 ScanFile C:\\WINDOWS\twain_32\1200UB\lang_g.dll
2006/02/12 07:57:09:795 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:811 ScanFile C:\\WINDOWS\twain_32\1200UB\lang_i.dll
2006/02/12 07:57:09:889 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:905 ScanFile C:\\WINDOWS\twain_32\1200UB\lang_n.dll
2006/02/12 07:57:09:967 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:09:983 ScanFile C:\\WINDOWS\twain_32\1200UB\lang_p.dll
2006/02/12 07:57:10:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:077 ScanFile C:\\WINDOWS\twain_32\1200UB\lang_s.dll
2006/02/12 07:57:10:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:155 ScanFile C:\\WINDOWS\twain_32\1200UB\lang_sw.dll
2006/02/12 07:57:10:217 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:233 ScanFile C:\\WINDOWS\twain_32\1200UB\Lead52.dll
2006/02/12 07:57:10:311 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:342 ScanFile C:\\WINDOWS\twain_32\1200UB\LOGO0601.BMP
2006/02/12 07:57:10:374 ScanFile C:\\WINDOWS\twain_32\1200UB\Ltimg70n.dll
2006/02/12 07:57:10:420 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:436 ScanFile C:\\WINDOWS\twain_32\1200UB\MSTC0000.BMP
2006/02/12 07:57:10:467 ScanFile C:\\WINDOWS\twain_32\1200UB\MSTC0001.BMP
2006/02/12 07:57:10:499 ScanFile C:\\WINDOWS\twain_32\1200UB\mtwm.ini
2006/02/12 07:57:10:561 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:577 ScanFile C:\\WINDOWS\twain_32\1200UB\NegImgTrans.dll
2006/02/12 07:57:10:624 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:655 ScanFile C:\\WINDOWS\twain_32\1200UB\Scanobj.dll
2006/02/12 07:57:10:733 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:749 ScanFile C:\\WINDOWS\twain_32\1200UB\Scanobj.ds
2006/02/12 07:57:10:827 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:842 ScanFile C:\\WINDOWS\twain_32\1200UB\UI.EXE
2006/02/12 07:57:10:983 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:10:999 ScanFile C:\\WINDOWS\twain_32\1200UB\UNINST.EXE
2006/02/12 07:57:11:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:061 ScanFile C:\\WINDOWS\twain_32\1200UB\UNWISE.EXE
2006/02/12 07:57:11:108 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:155 ScanFile C:\\WINDOWS\twain_32\LogiVid\HPortal2.dll
2006/02/12 07:57:11:249 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:264 ScanFile C:\\WINDOWS\twain_32\LogiVid\HVideoS2.exe
2006/02/12 07:57:11:358 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:374 ScanFile C:\\WINDOWS\twain_32\LogiVid\HVidSp2.dll
2006/02/12 07:57:11:420 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:436 ScanFile C:\\WINDOWS\twain_32\LogiVid\InstVid.exe
2006/02/12 07:57:11:514 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:545 ScanFile C:\\WINDOWS\twain_32\LogiVid\LHPorta2.dll
2006/02/12 07:57:11:624 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:655 ScanFile C:\\WINDOWS\twain_32\LogiVid\LQCT32_2.dll
2006/02/12 07:57:11:702 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:717 ScanFile C:\\WINDOWS\twain_32\LogiVid\msvcp71.dll
2006/02/12 07:57:11:811 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:827 ScanFile C:\\WINDOWS\twain_32\LogiVid\msvcr71.dll
2006/02/12 07:57:11:905 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:11:920 ScanFile C:\\WINDOWS\twain_32\LogiVid\PCSmart2.dll
2006/02/12 07:57:12:014 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:045 ScanFile C:\\WINDOWS\twain_32\LogiVid\qctw32_2.ds
2006/02/12 07:57:12:124 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:155 ScanFile C:\\WINDOWS\twain_32\QuickCam\lvWIAext.dll
2006/02/12 07:57:12:217 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:233 ScanFile C:\\WINDOWS\twain_32\wiatwain.ds
2006/02/12 07:57:12:280 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:342 ScanFile C:\\WINDOWS\Web\printers\images\ipp_0002.gif
2006/02/12 07:57:12:389 ScanFile C:\\WINDOWS\Web\printers\images\ipp_0003.gif
2006/02/12 07:57:12:405 ScanFile C:\\WINDOWS\Web\printers\images\ipp_0004.gif
2006/02/12 07:57:12:436 ScanFile C:\\WINDOWS\Web\printers\images\ipp_0005.gif
2006/02/12 07:57:12:452 ScanFile C:\\WINDOWS\Web\printers\images\ipp_0012.gif
2006/02/12 07:57:12:483 ScanFile C:\\WINDOWS\Web\printers\images\ipp_0015.gif
2006/02/12 07:57:12:514 ScanFile C:\\WINDOWS\Web\printers\ipp_0000.inc
2006/02/12 07:57:12:577 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:592 ScanFile C:\\WINDOWS\Web\printers\ipp_0001.asp
2006/02/12 07:57:12:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:655 ScanFile C:\\WINDOWS\Web\printers\ipp_0002.asp
2006/02/12 07:57:12:686 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:717 ScanFile C:\\WINDOWS\Web\printers\ipp_0003.asp
2006/02/12 07:57:12:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:764 ScanFile C:\\WINDOWS\Web\printers\ipp_0004.asp
2006/02/12 07:57:12:795 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:827 ScanFile C:\\WINDOWS\Web\printers\ipp_0005.asp
2006/02/12 07:57:12:874 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:889 ScanFile C:\\WINDOWS\Web\printers\ipp_0006.asp
2006/02/12 07:57:12:920 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:12:952 ScanFile C:\\WINDOWS\Web\printers\ipp_0007.asp
2006/02/12 07:57:12:999 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:014 ScanFile C:\\WINDOWS\Web\printers\ipp_0008.asp
2006/02/12 07:57:13:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:061 ScanFile C:\\WINDOWS\Web\printers\ipp_0009.asp
2006/02/12 07:57:13:092 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:108 ScanFile C:\\WINDOWS\Web\printers\ipp_0010.asp
2006/02/12 07:57:13:170 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:186 ScanFile C:\\WINDOWS\Web\printers\ipp_0011.asp
2006/02/12 07:57:13:217 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:233 ScanFile C:\\WINDOWS\Web\printers\ipp_0012.asp
2006/02/12 07:57:13:264 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:280 ScanFile C:\\WINDOWS\Web\printers\ipp_0013.asp
2006/02/12 07:57:13:311 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:342 ScanFile C:\\WINDOWS\Web\printers\ipp_0014.asp
2006/02/12 07:57:13:374 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:389 ScanFile C:\\WINDOWS\Web\printers\ipp_0015.asp
2006/02/12 07:57:13:420 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:436 ScanFile C:\\WINDOWS\Web\printers\ipp_0016.asp
2006/02/12 07:57:13:467 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:483 ScanFile C:\\WINDOWS\Web\printers\ipp_adsi.inc
2006/02/12 07:57:13:514 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:530 ScanFile C:\\WINDOWS\Web\printers\ipp_res.inc
2006/02/12 07:57:13:561 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:577 ScanFile C:\\WINDOWS\Web\printers\ipp_util.inc
2006/02/12 07:57:13:624 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:639 ScanFile C:\\WINDOWS\Web\printers\page1.asp
2006/02/12 07:57:13:702 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:717 ScanFile C:\\WINDOWS\Web\printers\prtwebvw.css
2006/02/12 07:57:13:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:795 ScanFile C:\\WINDOWS\Web\Wallpaper\Ami.jpg
2006/02/12 07:57:13:842 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:858 ScanFile C:\\WINDOWS\Web\Wallpaper\Automne.jpg
2006/02/12 07:57:13:874 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:905 ScanFile C:\\WINDOWS\Web\Wallpaper\Chœur d'étoiles.jpg
2006/02/12 07:57:13:920 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:13:952 ScanFile C:\\WINDOWS\Web\Wallpaper\Colline verdoyante.bmp
2006/02/12 07:57:13:983 ScanFile C:\\WINDOWS\Web\Wallpaper\Cristal.jpg
2006/02/12 07:57:14:014 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:030 ScanFile C:\\WINDOWS\Web\Wallpaper\Dune.jpg
2006/02/12 07:57:14:061 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:077 ScanFile C:\\WINDOWS\Web\Wallpaper\Désert sous la lune.jpg
2006/02/12 07:57:14:108 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:124 ScanFile C:\\WINDOWS\Web\Wallpaper\Espace vortex.jpg
2006/02/12 07:57:14:155 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:170 ScanFile C:\\WINDOWS\Web\Wallpaper\Floraison.jpg
2006/02/12 07:57:14:202 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:217 ScanFile C:\\WINDOWS\Web\Wallpaper\Maison.jpg
2006/02/12 07:57:14:249 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:264 ScanFile C:\\WINDOWS\Web\Wallpaper\Ondines.jpg
2006/02/12 07:57:14:311 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:327 ScanFile C:\\WINDOWS\Web\Wallpaper\Paix.jpg
2006/02/12 07:57:14:342 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:374 ScanFile C:\\WINDOWS\Web\Wallpaper\Psychédélique.jpg
2006/02/12 07:57:14:405 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:420 ScanFile C:\\WINDOWS\Web\Wallpaper\Radiance.jpg
2006/02/12 07:57:14:452 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:467 ScanFile C:\\WINDOWS\Web\Wallpaper\Sommet.jpg
2006/02/12 07:57:14:499 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:514 ScanFile C:\\WINDOWS\Web\Wallpaper\Stonehenge.jpg
2006/02/12 07:57:14:545 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:561 ScanFile C:\\WINDOWS\Web\Wallpaper\Suivez-moi.jpg
2006/02/12 07:57:14:624 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:639 ScanFile C:\\WINDOWS\Web\Wallpaper\Tropiques.jpg
2006/02/12 07:57:14:670 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:686 ScanFile C:\\WINDOWS\Web\Wallpaper\Tulipes.jpg
2006/02/12 07:57:14:717 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:733 ScanFile C:\\WINDOWS\Web\Wallpaper\Windows XP.jpg
2006/02/12 07:57:14:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:780 ScanFile C:\\WINDOWS\Web\bullet.gif
2006/02/12 07:57:14:795 ScanFile C:\\WINDOWS\Web\deskmovr.htt
2006/02/12 07:57:14:842 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:874 ScanFile C:\\WINDOWS\Web\exclam.gif
2006/02/12 07:57:14:905 ScanFile C:\\WINDOWS\Web\RELATED.HTM
2006/02/12 07:57:14:952 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:14:967 ScanFile C:\\WINDOWS\Web\safemode.htt
2006/02/12 07:57:15:030 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:045 ScanFile C:\\WINDOWS\Web\TIP.HTM
2006/02/12 07:57:15:092 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:124 ScanFile C:\\WINDOWS\Web\tips.gif
2006/02/12 07:57:15:155 ScanFile C:\\WINDOWS\winswap\run.bat
2006/02/12 07:57:15:186 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:233 ScanFile C:\\WINDOWS\WinSxS\InstallTemp\40971\comctl32.dll
2006/02/12 07:57:15:342 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:374 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries.Resources_6595b64144ccf1df_6.0.0.0_fr-FR_9d8c4a39.cat
2006/02/12 07:57:15:420 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:452 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries.Resources_6595b64144ccf1df_6.0.0.0_fr-FR_9d8c4a39.Manifest
2006/02/12 07:57:15:483 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:499 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7.cat
2006/02/12 07:57:15:530 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:561 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7.Manifest
2006/02/12 07:57:15:592 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:608 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a.cat
2006/02/12 07:57:15:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:655 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a.Manifest
2006/02/12 07:57:15:702 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:717 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a.cat
2006/02/12 07:57:15:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:764 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a.Manifest
2006/02/12 07:57:15:811 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:842 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.0_x-ww_8d353f13.cat
2006/02/12 07:57:15:889 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:905 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.0_x-ww_8d353f13.Manifest
2006/02/12 07:57:15:936 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:952 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Windows.SystemCompatible_6595b64144ccf1df_5.1.0.0_x-ww_fc342b0b.cat
2006/02/12 07:57:15:983 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:15:999 ScanFile C:\\WINDOWS\WinSxS\Manifests\x86_Microsoft.Windows.SystemCompatible_6595b64144ccf1df_5.1.0.0_x-ww_fc342b0b.Manifest
2006/02/12 07:57:16:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:16:061 ScanFile C:\\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries.Resources_6595b64144ccf1df_6.0.0.0_fr-FR_9d8c4a39\mfc42fra.dll
2006/02/12 07:57:16:108 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:16:139 ScanFile C:\\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7\atl.dll
2006/02/12 07:57:16:186 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:16:202 ScanFile C:\\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7\mfc42.dll
2006/02/12 07:57:16:342 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:16:358 ScanFile C:\\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7\mfc42u.dll
2006/02/12 07:57:16:514 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:16:530 ScanFile C:\\WINDOWS\WinSxS\x86_Microsoft.Tools.VisualCPlusPlus.Runtime-Libraries_6595b64144ccf1df_6.0.0.0_x-ww_ff9986d7\msvcp60.dll
2006/02/12 07:57:16:624 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:16:639 ScanFile C:\\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.0.0_x-ww_1382d70a\comctl32.dll
2006/02/12 07:57:16:733 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:16:749 ScanFile C:\\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcirt.dll
2006/02/12 07:57:16:827 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:16:842 ScanFile C:\\WINDOWS\WinSxS\x86_Microsoft.Windows.CPlusPlusRuntime_6595b64144ccf1df_7.0.0.0_x-ww_2726e76a\msvcrt.dll
2006/02/12 07:57:16:920 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:16:936 ScanFile C:\\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.0.0_x-ww_8d353f13\GdiPlus.dll
2006/02/12 07:57:17:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:092 ScanFile C:\\WINDOWS\zrzu\wu
2006/02/12 07:57:17:233 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:249 ScanFile C:\\WINDOWS\zrzu\zrzu.dat
2006/02/12 07:57:17:295 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:311 ScanFile C:\\WINDOWS\0.log
2006/02/12 07:57:17:327 ScanFile C:\\WINDOWS\Active Setup Log.BAK
2006/02/12 07:57:17:374 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:405 ScanFile C:\\WINDOWS\alcrmv.exe
2006/02/12 07:57:17:499 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:514 ScanFile C:\\WINDOWS\alcupd.exe
2006/02/12 07:57:17:624 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:655 ScanFile C:\\WINDOWS\aucfg.ini
2006/02/12 07:57:17:670 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:702 ScanFile C:\\WINDOWS\AuHCcup1.dll
2006/02/12 07:57:17:780 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:795 ScanFile C:\\WINDOWS\AuHCcup1.ini
2006/02/12 07:57:17:811 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:842 ScanFile C:\\WINDOWS\bdoscandel.exe
2006/02/12 07:57:17:920 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:936 ScanFile C:\\WINDOWS\bdoscandellang.ini
2006/02/12 07:57:17:967 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:17:983 ScanFile C:\\WINDOWS\bootstat.dat
2006/02/12 07:57:18:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:061 ScanFile C:\\WINDOWS\borlndmm.dll
2006/02/12 07:57:18:155 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:170 ScanFile C:\\WINDOWS\BPMNT.dll
2006/02/12 07:57:18:233 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:249 ScanFile C:\\WINDOWS\Bulles de savon.bmp
2006/02/12 07:57:18:280 ScanFile C:\\WINDOWS\CARTES.INI
2006/02/12 07:57:18:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:342 ScanFile C:\\WINDOWS\cdplayer.ini
2006/02/12 07:57:18:374 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:389 ScanFile C:\\WINDOWS\clock.avi
2006/02/12 07:57:18:436 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:452 ScanFile C:\\WINDOWS\CoD.INI
2006/02/12 07:57:18:483 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:499 ScanFile C:\\WINDOWS\CoDUO.INI
2006/02/12 07:57:18:561 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:577 ScanFile C:\\WINDOWS\COM+.log
2006/02/12 07:57:18:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:655 ScanFile C:\\WINDOWS\comsetup.log
2006/02/12 07:57:18:733 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:749 ScanFile C:\\WINDOWS\control.ini
2006/02/12 07:57:18:764 ScanFile C:\\WINDOWS\cp3240mt.dll
2006/02/12 07:57:18:905 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:18:920 ScanFile C:\\WINDOWS\CTREGRUN.EXE
2006/02/12 07:57:19:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:155 ScanFile C:\\WINDOWS\desktop.ini
2006/02/12 07:57:19:186 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:217 ScanFile C:\\WINDOWS\DHCPUPG.LOG
2006/02/12 07:57:19:249 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:264 ScanFile C:\\WINDOWS\Directx.log
2006/02/12 07:57:19:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:342 ScanFile C:\\WINDOWS\DtcInstall.log
2006/02/12 07:57:19:374 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:389 ScanFile C:\\WINDOWS\explorer.exe
2006/02/12 07:57:19:530 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:545 ScanFile C:\\WINDOWS\explorer.scf
2006/02/12 07:57:19:577 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:592 ScanFile C:\\WINDOWS\FaxSetup.log
2006/02/12 07:57:19:655 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:670 ScanFile C:\\WINDOWS\GatorPdpSetup.log
2006/02/12 07:57:19:764 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:780 ScanFile C:\\WINDOWS\GEARInstall.log
2006/02/12 07:57:19:811 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:827 ScanFile C:\\WINDOWS\GetServer.ini
2006/02/12 07:57:19:858 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:19:874 ScanFile C:\\WINDOWS\gimmygames1.dat
2006/02/12 07:57:19:905 ScanFile C:\\WINDOWS\Granit vert.bmp
2006/02/12 07:57:19:936 ScanFile C:\\WINDOWS\hcextoutput.dll
2006/02/12 07:57:19:999 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:030 ScanFile C:\\WINDOWS\hh.exe
2006/02/12 07:57:20:092 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:108 ScanFile C:\\WINDOWS\iis6.log
2006/02/12 07:57:20:155 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:170 ScanFile C:\\WINDOWS\iltwain.ini
2006/02/12 07:57:20:217 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:233 ScanFile C:\\WINDOWS\imsins.BAK
2006/02/12 07:57:20:264 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:295 ScanFile C:\\WINDOWS\imsins.log
2006/02/12 07:57:20:342 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:358 ScanFile C:\\WINDOWS\IsUn040c.exe
2006/02/12 07:57:20:499 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:514 ScanFile C:\\WINDOWS\IsUninst.exe
2006/02/12 07:57:20:670 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:686 ScanFile C:\\WINDOWS\jautoexp.dat
2006/02/12 07:57:20:733 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:749 ScanFile C:\\WINDOWS\Jour de pêche.bmp
2006/02/12 07:57:20:795 ScanFile C:\\WINDOWS\kodakpcd.ini
2006/02/12 07:57:20:827 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:842 ScanFile C:\\WINDOWS\loadhttp.dll
2006/02/12 07:57:20:905 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:20:936 ScanFile C:\\WINDOWS\LPT$VPN.205
2006/02/12 07:57:20:983 ScanFile C:\\WINDOWS\MediaDico9Dll.dll
2006/02/12 07:57:21:124 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:139 ScanFile C:\\WINDOWS\MediaRA9.dll
2006/02/12 07:57:21:186 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:217 ScanFile C:\\WINDOWS\MediaRA9.ini
2006/02/12 07:57:21:249 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:264 ScanFile C:\\WINDOWS\MF_C425.lfa
2006/02/12 07:57:21:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:342 ScanFile C:\\WINDOWS\ModemLog_Creative Modem Blaster USB.txt
2006/02/12 07:57:21:405 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:436 ScanFile C:\\WINDOWS\Morpheus Software Setup Log.txt
2006/02/12 07:57:21:483 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:499 ScanFile C:\\WINDOWS\msdfmap.ini
2006/02/12 07:57:21:545 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:561 ScanFile C:\\WINDOWS\msgsocm.log
2006/02/12 07:57:21:608 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:639 ScanFile C:\\WINDOWS\Mur de Santa Fe.bmp
2006/02/12 07:57:21:686 ScanFile C:\\WINDOWS\myupdates1.dat
2006/02/12 07:57:21:702 ScanFile C:\\WINDOWS\navigma.INI
2006/02/12 07:57:21:733 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:749 ScanFile C:\\WINDOWS\NeroDigital.ini
2006/02/12 07:57:21:780 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:795 ScanFile C:\\WINDOWS\notepad.exe
2006/02/12 07:57:21:889 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:920 ScanFile C:\\WINDOWS\ntdtcsetup.log
2006/02/12 07:57:21:967 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:21:999 ScanFile C:\\WINDOWS\NuNinst.cfg
2006/02/12 07:57:22:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:22:061 ScanFile C:\\WINDOWS\NuNinst.exe
2006/02/12 07:57:22:358 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:22:374 ScanFile C:\\WINDOWS\ocgen.log
2006/02/12 07:57:22:436 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:22:452 ScanFile C:\\WINDOWS\ocmsn.log
2006/02/12 07:57:22:499 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:22:514 ScanFile C:\\WINDOWS\ODBC.INI
2006/02/12 07:57:22:577 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:22:592 ScanFile C:\\WINDOWS\ODBCINST.INI
2006/02/12 07:57:22:655 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:22:686 ScanFile C:\\WINDOWS\OEWABLog.txt
2006/02/12 07:57:22:717 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:22:749 ScanFile C:\\WINDOWS\PATCH.EXE
2006/02/12 07:57:22:827 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:22:858 ScanFile C:\\WINDOWS\patchw32.dll
2006/02/12 07:57:22:920 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:22:936 ScanFile C:\\WINDOWS\Plume.bmp
2006/02/12 07:57:22:967 ScanFile C:\\WINDOWS\Q312370.log
2006/02/12 07:57:23:014 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:030 ScanFile C:\\WINDOWS\QTFont.for
2006/02/12 07:57:23:061 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:092 ScanFile C:\\WINDOWS\QTFont.qfn
2006/02/12 07:57:23:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:170 ScanFile C:\\WINDOWS\RACHook9.dll
2006/02/12 07:57:23:233 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:249 ScanFile C:\\WINDOWS\regedit.exe
2006/02/12 07:57:23:311 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:327 ScanFile C:\\WINDOWS\REGLOCS.OLD
2006/02/12 07:57:23:389 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:405 ScanFile C:\\WINDOWS\regopt.log
2006/02/12 07:57:23:452 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:467 ScanFile C:\\WINDOWS\Rhododendron.bmp
2006/02/12 07:57:23:499 ScanFile C:\\WINDOWS\Rivière Sumida.bmp
2006/02/12 07:57:23:530 ScanFile C:\\WINDOWS\Rosace bleue 16.bmp
2006/02/12 07:57:23:577 ScanFile C:\\WINDOWS\runtsckl.exe
2006/02/12 07:57:23:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:670 ScanFile C:\\WINDOWS\SchedLgU.Txt
2006/02/12 07:57:23:717 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:733 ScanFile C:\\WINDOWS\sessmgr.setup.log
2006/02/12 07:57:23:795 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:23:827 ScanFile C:\\WINDOWS\SET15.tmp
2006/02/12 07:57:23:952 ScanFile C:\\WINDOWS\SET21.tmp
2006/02/12 07:57:24:014 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:24:030 ScanFile C:\\WINDOWS\SET3.tmp
2006/02/12 07:57:24:092 ScanFile C:\\WINDOWS\SET7.tmp
2006/02/12 07:57:24:124 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:24:139 ScanFile C:\\WINDOWS\setdebug.exe
2006/02/12 07:57:24:217 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:24:233 ScanFile C:\\WINDOWS\setupact.log
2006/02/12 07:57:24:311 ScanFile C:\\WINDOWS\setupapi.log
2006/02/12 07:57:24:452 ScanFile C:\\WINDOWS\setuperr.log
2006/02/12 07:57:24:483 ScanFile C:\\WINDOWS\SOUNDMAN.EXE
2006/02/12 07:57:24:577 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:24:592 ScanFile C:\\WINDOWS\Sti_Trace.log
2006/02/12 07:57:24:608 ScanFile C:\\WINDOWS\system.ini
2006/02/12 07:57:24:655 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:24:686 ScanFile C:\\WINDOWS\taskman.exe
2006/02/12 07:57:24:749 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:24:764 ScanFile C:\\WINDOWS\Tasse à café.bmp
2006/02/12 07:57:24:811 ScanFile C:\\WINDOWS\teller2.chk
2006/02/12 07:57:24:842 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:24:858 ScanFile C:\\WINDOWS\TMUPDATE.DLL
2006/02/12 07:57:24:967 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:24:999 ScanFile C:\\WINDOWS\tmupdate.ini
2006/02/12 07:57:25:014 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:25:045 ScanFile C:\\WINDOWS\tsc.exe
2006/02/12 07:57:25:311 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:25:327 ScanFile C:\\WINDOWS\tsc.ini
2006/02/12 07:57:25:374 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:25:389 ScanFile C:\\WINDOWS\tsc.ptn
2006/02/12 07:57:25:436 ScanFile C:\\WINDOWS\tsoc.log
2006/02/12 07:57:25:499 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:25:514 ScanFile C:\\WINDOWS\twain.dll
2006/02/12 07:57:25:561 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:25:577 ScanFile C:\\WINDOWS\twain_32.dll
2006/02/12 07:57:25:639 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:25:655 ScanFile C:\\WINDOWS\twunk_16.exe
2006/02/12 07:57:25:702 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:25:717 ScanFile C:\\WINDOWS\twunk_32.exe
2006/02/12 07:57:25:780 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:25:795 ScanFile C:\\WINDOWS\Ui.INI
2006/02/12 07:57:25:827 ScanFile C:\\WINDOWS\uncsetup.exe
2006/02/12 07:57:25:999 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:014 ScanFile C:\\WINDOWS\UninstallWSST.exe
2006/02/12 07:57:26:092 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:124 ScanFile C:\\WINDOWS\unvise32qt.exe
2006/02/12 07:57:26:186 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:202 ScanFile C:\\WINDOWS\UNZIP.DLL
2006/02/12 07:57:26:280 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:295 ScanFile C:\\WINDOWS\vb.ini
2006/02/12 07:57:26:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:342 ScanFile C:\\WINDOWS\vbaddin.ini
2006/02/12 07:57:26:374 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:389 ScanFile C:\\WINDOWS\Vent de prairie.bmp
2006/02/12 07:57:26:420 ScanFile C:\\WINDOWS\vminst.log
2006/02/12 07:57:26:452 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:483 ScanFile C:\\WINDOWS\vmmreg32.dll
2006/02/12 07:57:26:514 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:545 ScanFile C:\\WINDOWS\VPTNFILE.205
2006/02/12 07:57:26:608 ScanFile C:\\WINDOWS\vsapi32.dll
2006/02/12 07:57:26:811 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:842 ScanFile C:\\WINDOWS\webshots.bmp
2006/02/12 07:57:26:874 ScanFile C:\\WINDOWS\wiadebug.log
2006/02/12 07:57:26:905 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:920 ScanFile C:\\WINDOWS\wiaservc.log
2006/02/12 07:57:26:952 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:26:967 ScanFile C:\\WINDOWS\win.ini
2006/02/12 07:57:27:014 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:27:045 ScanFile C:\\WINDOWS\Windows Update.log
2006/02/12 07:57:27:124 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:27:139 ScanFile C:\\WINDOWS\WindowsShell.Manifest
2006/02/12 07:57:27:186 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:27:202 ScanFile C:\\WINDOWS\WindowsUpdate.log
2006/02/12 07:57:27:264 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:27:280 ScanFile C:\\WINDOWS\winhelp.exe
2006/02/12 07:57:27:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:27:342 ScanFile C:\\WINDOWS\winhlp32.exe
2006/02/12 07:57:27:436 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:27:467 ScanFile C:\\WINDOWS\winnt.bmp
2006/02/12 07:57:27:499 ScanFile C:\\WINDOWS\winnt256.bmp
2006/02/12 07:57:27:530 ScanFile C:\\WINDOWS\winswap.exe
2006/02/12 07:57:28:092 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:28:124 ScanFile C:\\WINDOWS\winsysban6.exe
2006/02/12 07:57:28:233 Dump_Virus:pfcb->pfcb_status=1

2006/02/12 07:57:28:249 - Found ( 1)[TROJ_ADLOAD.AS ] C:\\WINDOWS\winsysban6.exe
2006/02/12 07:57:28:295 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:28:436 ScanFile C:\\WINDOWS\winsysupd6.exe
2006/02/12 07:57:28:499 Dump_Virus:pfcb->pfcb_status=1

2006/02/12 07:57:28:514 - Found ( 1)[TROJ_ADLOAD.AT ] C:\\WINDOWS\winsysupd6.exe
2006/02/12 07:57:28:530 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:28:639 ScanFile C:\\WINDOWS\winsysupd61.dat
2006/02/12 07:57:28:655 ScanFile C:\\WINDOWS\wmprfFRA.prx
2006/02/12 07:57:28:717 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:28:733 ScanFile C:\\WINDOWS\wmsetup.log
2006/02/12 07:57:28:795 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:28:811 ScanFile C:\\WINDOWS\wmsetup10.log
2006/02/12 07:57:28:858 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:28:874 ScanFile C:\\WINDOWS\WMSysPr9.prx
2006/02/12 07:57:28:936 ScanFile C:\\WINDOWS\WMSysPrx.prx
2006/02/12 07:57:29:014 ScanFile C:\\WINDOWS\ws2setup.log
2006/02/12 07:57:29:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:29:061 ScanFile C:\\WINDOWS\WSST_Screen_Saver.ini
2006/02/12 07:57:29:108 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:29:124 ScanFile C:\\WINDOWS\Zapotec.bmp
2006/02/12 07:57:29:155 ScanFile C:\\WINDOWS\_default.pif
2006/02/12 07:57:29:186 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:29:202 ScanFile C:\\AUTOEXEC.BAT
2006/02/12 07:57:29:233 ScanFile C:\\AUTOEXEC.VIA
2006/02/12 07:57:29:249 ScanFile C:\\boot.ini
2006/02/12 07:57:29:280 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:29:295 ScanFile C:\\Bootfont.bin
2006/02/12 07:57:29:342 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:29:358 ScanFile C:\\CLDMA.LOG
2006/02/12 07:57:29:420 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:29:436 ScanFile C:\\CONFIG.SYS
2006/02/12 07:57:29:467 ScanFile C:\\driversagem.log
2006/02/12 07:57:29:499 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:29:514 ScanFile C:\\drsmartload1.exe
2006/02/12 07:57:29:670 Dump_Virus:pfcb->pfcb_status=1

2006/02/12 07:57:29:686 - Found ( 1)[TROJ_ADLOAD.AN ] C:\\drsmartload1.exe
2006/02/12 07:57:29:702 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:29:842 ScanFile C:\\hiberfil.sys
2006/02/12 07:57:29:889 Open file 'C:\\hiberfil.sys' failed!(183)
2006/02/12 07:57:29:920 ScanFile C:\\IO.SYS
2006/02/12 07:57:29:936 ScanFile C:\\LogiSetup.log
2006/02/12 07:57:29:967 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:29:983 ScanFile C:\\MSDOS.SYS
2006/02/12 07:57:30:014 ScanFile C:\\NTDETECT.COM
2006/02/12 07:57:30:045 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:30:061 ScanFile C:\\ntldr
2006/02/12 07:57:30:139 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:30:155 ScanFile C:\\pagefile.sys
2006/02/12 07:57:30:186 Open file 'C:\\pagefile.sys' failed!(183)
2006/02/12 07:57:30:202 ScanFile C:\\SLDD.ini
2006/02/12 07:57:30:280 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:30:295 ScanFile C:\\SLDD.ini.bak
2006/02/12 07:57:30:327 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:30:358 ScanFile C:\\Thumbs.db
2006/02/12 07:57:30:405 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:30:420 ScanFile C:\\xscan.txt
2006/02/12 07:57:30:436 Dump_Virus:pfcb->pfcb_status=0

2006/02/12 07:57:30:467 Scan Completed ************************
2006/02/12 07:57:30:483 total scan files count 49051
2006/02/12 07:57:30:499 total infected files count 3
2006/02/12 07:57:30:514 total infected virus count 3


2006/02/12 08:34:11:624 After call NewEncryptStr => !CRYPT!840B2EABC5F5EE98CAB5B743AF28B512660F5FE7DBC3EDBE2A9CFC92D7F95C2DA940A785880399FC48F785F0540B6515375FC22DAF11B60B1F43FA13E669872E3F05A147A24!8400E358C1CD965347FB8C6A87595648DE11F62D2CAD1362E4ED0382D10541A553728029B133D301B4874D81BE7BB7310E41FC6613B1EEF1EAD819EE18AB30AF7C24C6F184F!840F21AB0B9E48266BDE35120497F9F1A1AC3EB0E3B81C7DF0EAEF96C913EC00F9871E2E141988B0BB641B3270561F37522546FB6F2DDE544468906C0069F47AC0948577B3E!8404A606BF3E72ACE8C041B8074ADCC39BF6BA4A41DF518E2F494DE3A6D07E5407508FD38D59AB7571DA6ACBB16E9A9DA63856E86AC827DED57CF7D77A551521F7D65221E7B!20B09211F2E59183D1299BF9625D488C27959071638
2006/02/12 08:34:11:686 Get log from queue ok! data : 00,http://wtc.trendmicro.com/HcBin/HcAddLog.exe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
2006/02/12 08:34:12:670 SendLog GetUrlPostErrorMessage() => <HTML><HEAD></HEAD><meta htt
0
hermes060 Messages postés 12 Date d'inscription dimanche 12 février 2006 Statut Membre Dernière intervention 16 février 2006
13 févr. 2006 à 08:41
salut boulepate
voici un rapport de xp ( windows Update)
si tu vois quelque chose ?????????
A+
ALAIN






No
2006-02-12 05:51:52 1980 7c4 DnldMgr Download manager restoring 0 downloads
2006-02-12 05:51:52 1980 7c4 AU ########### AU: Initializing Automatic Updates ###########
2006-02-12 05:51:52 1980 7c4 AU # AU disabled through User preference
2006-02-12 05:51:52 1980 7c4 AU # AU is disabled, not initializing any handlers
2006-02-12 08:36:42 1948 7b0 Misc =========== Logging initialized (build: 5.8.0.2469, tz: +0100) ===========
2006-02-12 08:36:42 1948 7b0 Misc = Process: C:\WINDOWS\system32\svchost.exe
2006-02-12 08:36:42 1948 7b0 Misc = Module: C:\WINDOWS\system32\wuaueng.dll
2006-02-12 08:36:42 1948 7b0 Service *************
2006-02-12 08:36:42 1948 7b0 Service ** START ** Service: Service startup
2006-02-12 08:36:42 1948 7b0 Service *********
2006-02-12 08:36:43 1948 7b0 Agent * WU client version 5.8.0.2469
2006-02-12 08:36:43 1948 7b0 Agent * SusClientId = 'b045bb7f-1a02-4d9d-8041-3bd6827e3d94'
2006-02-12 08:36:43 1948 7b0 Agent * Base directory: C:\WINDOWS\SoftwareDistribution
2006-02-12 08:36:43 1948 7b0 Agent * Access type: No proxy
2006-02-12 08:36:43 1948 7b0 Agent * Network state: Connected
2006-02-12 08:37:29 1948 7b0 Agent *********** Agent: Initializing Windows Update Agent ***********
2006-02-12 08:37:29 1948 7b0 Agent *********** Agent: Initializing global settings cache ***********
2006-02-12 08:37:29 1948 7b0 Agent * WSUS server: <NULL>
2006-02-12 08:37:29 1948 7b0 Agent * WSUS status server: <NULL>
2006-02-12 08:37:29 1948 7b0 Agent * Target group: (Unassigned Computers)
2006-02-12 08:37:29 1948 7b0 Agent * Windows Update access disabled: No
2006-02-12 08:37:33 1948 7b0 DnldMgr Download manager restoring 0 downloads
2006-02-12 08:37:33 1948 7b0 AU ########### AU: Initializing Automatic Updates ###########
2006-02-12 08:37:33 1948 7b0 AU # AU disabled through User preference
2006-02-12 08:37:33 1948 7b0 AU # AU is disabled, not initializing any handlers
2006-02-12 09:36:48 1948 7b0 Service *********
2006-02-12 09:36:48 1948 7b0 Service ** END ** Service: Service exit [Exit code = 0x240001]
2006-02-12 09:36:48 1948 7b0 Service *************
2006-02-12 09:38:55 1956 7b8 Misc =========== Logging initialized (build: 5.8.0.2469, tz: +0100) ===========
2006-02-12 09:38:55 1956 7b8 Misc = Process: C:\WINDOWS\system32\svchost.exe
2006-02-12 09:38:55 1956 7b8 Misc = Module: C:\WINDOWS\system32\wuaueng.dll
2006-02-12 09:38:55 1956 7b8 Service *************
2006-02-12 09:38:55 1956 7b8 Service ** START ** Service: Service startup
2006-02-12 09:38:55 1956 7b8 Service *********
2006-02-12 09:38:56 1956 7b8 Agent * WU client version 5.8.0.2469
2006-02-12 09:38:56 1956 7b8 Agent * SusClientId = 'b045bb7f-1a02-4d9d-8041-3bd6827e3d94'
2006-02-12 09:38:56 1956 7b8 Agent * Base directory: C:\WINDOWS\SoftwareDistribution
2006-02-12 09:38:56 1956 7b8 Agent * Access type: No proxy
2006-02-12 09:38:56 1956 7b8 Agent * Network state: Connected
2006-02-12 09:39:42 1956 7b8 Agent *********** Agent: Initializing Windows Update Agent ***********
2006-02-12 09:39:42 1956 7b8 Agent *********** Agent: Initializing global settings cache ***********
2006-02-12 09:39:42 1956 7b8 Agent * WSUS server: <NULL>
2006-02-12 09:39:42 1956 7b8 Agent * WSUS status server: <NULL>
2006-02-12 09:39:42 1956 7b8 Agent * Target group: (Unassigned Computers)
2006-02-12 09:39:42 1956 7b8 Agent * Windows Update access disabled: No
2006-02-12 09:39:46 1956 7b8 DnldMgr Download manager restoring 0 downloads
2006-02-12 09:39:46 1956 7b8 AU ########### AU: Initializing Automatic Updates ###########
2006-02-12 09:39:46 1956 7b8 AU # AU disabled through User preference
2006-02-12 09:39:46 1956 7b8 AU # AU is disabled, not initializing any handlers
2006-02-12 11:52:38 248 108 Misc =========== Logging initialized (build: 5.8.0.2469, tz: +0100) ===========
2006-02-12 11:52:38 248 108 Misc = Process: C:\WINDOWS\system32\svchost.exe
2006-02-12 11:52:38 248 108 Misc = Module: C:\WINDOWS\system32\wuaueng.dll
2006-02-12 11:52:38 248 108 Service *************
2006-02-12 11:52:38 248 108 Service ** START ** Service: Service startup
2006-02-12 11:52:38 248 108 Service *********
2006-02-12 11:52:38 248 108 Agent * WU client version 5.8.0.2469
2006-02-12 11:52:38 248 108 Agent * SusClientId = 'b045bb7f-1a02-4d9d-8041-3bd6827e3d94'
2006-02-12 11:52:38 248 108 Agent * Base directory: C:\WINDOWS\SoftwareDistribution
2006-02-12 11:52:38 248 108 Agent * Access type: No proxy
2006-02-12 11:52:38 248 108 Agent * Network state: Connected
2006-02-12 11:52:39 248 108 Agent FATAL: Client call recorder fails to init with error 0x800706ba
2006-02-12 11:52:39 248 108 Agent * FATAL: Failed to initialize with error 0x800706ba from component Agent
2006-02-12 11:52:39 248 108 Service FATAL: Failed to initialize WU client: 0x800706ba
2006-02-12 11:52:39 248 108 Service *********
2006-02-12 11:52:39 248 108 Service ** END ** Service: Service exit [Exit code = 0x800706ba]
2006-02-12 11:52:39 248 108 Service *************
2006-02-12 12:05:15 264 110 Misc =========== Logging initialized (build: 5.8.0.2469, tz: +0100) ===========
2006-02-12 12:05:15 264 110 Misc = Process: C:\WINDOWS\system32\svchost.exe
2006-02-12 12:05:15 264 110 Misc = Module: C:\WINDOWS\system32\wuaueng.dll
2006-02-12 12:05:15 264 110 Service *************
2006-02-12 12:05:15 264 110 Service ** START ** Service: Service startup
2006-02-12 12:05:15 264 110 Service *********
2006-02-12 12:05:15 264 110 Agent * WU client version 5.8.0.2469
2006-02-12 12:05:15 264 110 Agent * SusClientId = 'b045bb7f-1a02-4d9d-8041-3bd6827e3d94'
2006-02-12 12:05:15 264 110 Agent * Base directory: C:\WINDOWS\SoftwareDistribution
2006-02-12 12:05:15 264 110 Agent * Access type: No proxy
2006-02-12 12:05:15 264 110 Agent * Network state: Connected
2006-02-12 12:06:01 264 110 Agent *********** Agent: Initializing Windows Update Agent ***********
2006-02-12 12:06:01 264 110 Agent *********** Agent: Initializing global settings cache ***********
2006-02-12 12:06:01 264 110 Agent * WSUS server: <NULL>
2006-02-12 12:06:01 264 110 Agent * WSUS status server: <NULL>
2006-02-12 12:06:01 264 110 Agent * Target group: (Unassigned Computers)
2006-02-12 12:06:01 264 110 Agent * Windows Update access disabled: No
2006-02-12 12:06:07 264 110 DnldMgr Download manager restoring 0 downloads
2006-02-12 12:06:07 264 110 AU ########### AU: Initializing Automatic Updates ###########
2006-02-12 12:06:07 264 110 AU # AU disabled through User preference
2006-02-12 12:06:07 264 110 AU # AU is disabled, not initializing any handlers
2006-02-12 12:17:40 264 110 Service *********
2006-02-12 12:17:40 264 110 Service ** END ** Service: Service exit [Exit code = 0x240001]
2006-02-12 12:17:40 264 110 Service *************
2006-02-12 17:21:30 232 108 Misc =========== Logging initialized (build: 5.8.0.2469, tz: +0100) ===========
2006-02-12 17:21:30 232 108 Misc = Process: C:\WINDOWS\system32\svchost.exe
2006-02-12 17:21:30 232 108 Misc = Module: C:\WINDOWS\system32\wuaueng.dll
2006-02-12 17:21:30 232 108 Service *************
2006-02-12 17:21:30 232 108 Service ** START ** Service: Service startup
2006-02-12 17:21:30 232 108 Service *********
2006-02-12 17:21:31 232 108 Agent * WU client version 5.8.0.2469
2006-02-12 17:21:31 232 108 Agent * SusClientId = 'b045bb7f-1a02-4d9d-8041-3bd6827e3d94'
2006-02-12 17:21:31 232 108 Agent * Base directory: C:\WINDOWS\SoftwareDistribution
2006-02-12 17:21:31 232 108 Agent * Access type: No proxy
2006-02-12 17:21:31 232 108 Agent * Network state: Connected
2006-02-12 17:22:16 232 108 Agent *********** Agent: Initializing Windows Update Agent ***********
2006-02-12 17:22:16 232 108 Agent *********** Agent: Initializing global settings cache ***********
2006-02-12 17:22:16 232 108 Agent * WSUS server: <NULL>
2006-02-12 17:22:16 232 108 Agent * WSUS status server: <NULL>
2006-02-12 17:22:16 232 108 Agent * Target group: (Unassigned Computers)
2006-02-12 17:22:16 232 108 Agent * Windows Update access disabled: No
2006-02-12 17:22:21 232 108 DnldMgr Download manager restoring 0 downloads
2006-02-12 17:22:21 232 108 AU ########### AU: Initializing Automatic Updates ###########
2006-02-12 17:22:21 232 108 AU # AU disabled through User preference
2006-02-12 17:22:21 232 108 AU # AU is disabled, not initializing any handlers
2006-02-13 04:09:09 252 104 Misc =========== Logging initialized (build: 5.8.0.2469, tz: +0100) ===========
2006-02-13 04:09:09 252 104 Misc = Process: C:\WINDOWS\system32\svchost.exe
2006-02-13 04:09:09 252 104 Misc = Module: C:\WINDOWS\system32\wuaueng.dll
2006-02-13 04:09:09 252 104 Service *************
2006-02-13 04:09:09 252 104 Service ** START ** Service: Service startup
2006-02-13 04:09:09 252 104 Service *********
2006-02-13 04:09:09 252 104 Agent * WU client version 5.8.0.2469
2006-02-13 04:09:09 252 104 Agent * SusClientId = 'b045bb7f-1a02-4d9d-8041-3bd6827e3d94'
2006-02-13 04:09:09 252 104 Agent * Base directory: C:\WINDOWS\SoftwareDistribution
2006-02-13 04:09:09 252 104 Agent * Access type: No proxy
2006-02-13 04:09:09 252 104 Agent * Network state: Connected
2006-02-13 04:09:55 252 104 Agent *********** Agent: Initializing Windows Update Agent ***********
2006-02-13 04:09:55 252 104 Agent *********** Agent: Initializing global settings cache ***********
2006-02-13 04:09:55 252 104 Agent * WSUS server: <NULL>
2006-02-13 04:09:55 252 104 Agent * WSUS status server: <NULL>
2006-02-13 04:09:55 252 104 Agent * Target group: (Unassigned Computers)
2006-02-13 04:09:55 252 104 Agent * Windows Update access disabled: No
2006-02-13 04:09:58 252 104 DnldMgr Download manager restoring 0 downloads
2006-02-13 04:09:58 252 104 AU ########### AU: Initializing Automatic Updates ###########
2006-02-13 04:09:58 252 104 AU # AU disabled through User preference
2006-02-13 04:09:58 252 104 AU # AU is disabled, not initializing any handlers
0
Utilisateur anonyme
13 févr. 2006 à 12:04
Tu es infecté, essaies de faire ce scan anti-virus en ligne et colle le rapport ici une fois qu'il à fini

http://www.bitdefender.fr/scan/license.php

ou celui là si le premier ne fonctionne pas

http://www.kaspersky.com/scanforvirus
0
Kristopher Messages postés 3731 Date d'inscription vendredi 18 novembre 2005 Statut Contributeur Dernière intervention 10 juillet 2009 106
13 févr. 2006 à 11:58
LoL ! Bonne chance boulepate :)

++
0
Utilisateur anonyme
13 févr. 2006 à 12:05
Merci Kristopher! mais t'inquiétes pas j'suis pas fou je te laisse un bout :-D
0
Kristopher Messages postés 3731 Date d'inscription vendredi 18 novembre 2005 Statut Contributeur Dernière intervention 10 juillet 2009 106
13 févr. 2006 à 12:15
Salut hermes060,

Ne fais pas 5 scans en ligne en même temps.
Cela risque de ne pas être efficace...

Je te conseille d'effectuer ce scan en ligne : http://www.kaspersky.com/virusscanner
- Choisis "Kaspersky Online Scanner "
- Scanne bien tout le PC
- Copie/Colle le rapport ici (si infecté)

Et ne fais rien d'autre pour le moment.

++
0
Kristopher Messages postés 3731 Date d'inscription vendredi 18 novembre 2005 Statut Contributeur Dernière intervention 10 juillet 2009 106
13 févr. 2006 à 13:48
Hello :)

Les amis, je vous invite à résoudre ma devinette :
http://www.commentcamarche.net/forum/affich-2092544-devinette-de-kris

Que la force soit avec vous :)

++
0
hermes060 Messages postés 12 Date d'inscription dimanche 12 février 2006 Statut Membre Dernière intervention 16 février 2006
14 févr. 2006 à 11:20
Bonjour a tous ceux qui m aide
voici le rapport de bitde..
donc 3 virus
trojan .downloader.adload.p
behaveslike:trojan.lowzones
vbs.trojan.psyme.w

je fais quoi maintenant

de mes petit copins
pour un saint valentin tu parles d un bouquet d orties !!!!
a+@
Alain


Rapport d'analyse généré à: Tue, Feb 14, 2006 - 06:52:27

Voie d'analyse: C:\Documents and Settings\RA\Mes Statistiques

Temps
00:56:00

Fichiers
280155

Directoires
3772

Secteurs de boot
4

Archives
3148

Paquets programmes
26959


Résultats

Virus identifiés
3

Fichiers infectés
13

Fichiers suspects
0

Avertissements
0

Désinfectés
0

Fichiers effacés
13

Info sur les moteurs

Définition virus
259165

Version des moteurs
AVCORE v1.0 (build 2292) (i386) (Mar 3 2005 11:57:29)

Analyse des plugins
13

Archive des plugins
39

Unpack des plugins
4

E-mail plugins
6

Système plugins
1

Paramètres d'analyse

Première action
Supprimé

Seconde Action
Aucun

Heuristique
Non

Acceptez les avertissements
Oui

Extensions analysées
*;

Excludez les extensions


Analyse d'emails
Oui

Analyse des Archives
Oui

Analyser paquets programmes
Oui

Analyse des fichiers
Non

Analyse de boot
Non

Fichier analysé
Statut

C:\Documents and Settings\RA\Local Settings\Temporary Internet Files\Content.IE5\Z1BKPFNG\index[1].chm=>/index.htm
Infecté par: VBS.Trojan.Psyme.W

C:\Documents and Settings\RA\Local Settings\Temporary Internet Files\Content.IE5\Z1BKPFNG\index[1].chm=>/index.htm
Supprimé

C:\Documents and Settings\RA\Local Settings\Temporary Internet Files\Content.IE5\Z1BKPFNG\index[1].chm
Echec de la mise à jour

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025027.exe=>(RAR Sfx o)=>winswap\download.exe
Infecté par: BehavesLike:Trojan.LowZones

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025027.exe=>(RAR Sfx o)=>winswap\download.exe
Supprimé

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025027.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025027.exe=>(RAR Sfx o)=>winswap\index1.exe
Infecté par: BehavesLike:Trojan.LowZones

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025027.exe=>(RAR Sfx o)=>winswap\index1.exe
Supprimé

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025027.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025027.exe=>(RAR Sfx o)=>winswap\newdr.exe
Infecté par: Trojan.Downloader.Adload.P

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025027.exe=>(RAR Sfx o)=>winswap\newdr.exe
Supprimé

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025027.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025074.exe=>(RAR Sfx o)=>winswap\download.exe
Infecté par: BehavesLike:Trojan.LowZones

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025074.exe=>(RAR Sfx o)=>winswap\download.exe
Supprimé

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025074.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025074.exe=>(RAR Sfx o)=>winswap\index1.exe
Infecté par: BehavesLike:Trojan.LowZones

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025074.exe=>(RAR Sfx o)=>winswap\index1.exe
Supprimé

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025074.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025074.exe=>(RAR Sfx o)=>winswap\newdr.exe
Infecté par: Trojan.Downloader.Adload.P

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025074.exe=>(RAR Sfx o)=>winswap\newdr.exe
Supprimé

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP101\A0025074.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP102\A0025103.exe=>(RAR Sfx o)=>winswap\download.exe
Infecté par: BehavesLike:Trojan.LowZones

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP102\A0025103.exe=>(RAR Sfx o)=>winswap\download.exe
Supprimé

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP102\A0025103.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP102\A0025103.exe=>(RAR Sfx o)=>winswap\index1.exe
Infecté par: BehavesLike:Trojan.LowZones

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP102\A0025103.exe=>(RAR Sfx o)=>winswap\index1.exe
Supprimé

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP102\A0025103.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP102\A0025103.exe=>(RAR Sfx o)=>winswap\newdr.exe
Infecté par: Trojan.Downloader.Adload.P

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP102\A0025103.exe=>(RAR Sfx o)=>winswap\newdr.exe
Supprimé

C:\System Volume Information\_restore{B8C3A2AB-B300-4932-97EB-15671316FB01}\RP102\A0025103.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\WINDOWS\winswap.exe=>(RAR Sfx o)=>winswap\download.exe
Infecté par: BehavesLike:Trojan.LowZones

C:\WINDOWS\winswap.exe=>(RAR Sfx o)=>winswap\download.exe
Supprimé

C:\WINDOWS\winswap.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\WINDOWS\winswap.exe=>(RAR Sfx o)=>winswap\index1.exe
Infecté par: BehavesLike:Trojan.LowZones

C:\WINDOWS\winswap.exe=>(RAR Sfx o)=>winswap\index1.exe
Supprimé

C:\WINDOWS\winswap.exe=>(RAR Sfx o)
Echec de la mise à jour

C:\WINDOWS\winswap.exe=>(RAR Sfx o)=>winswap\newdr.exe
Infecté par: Trojan.Downloader.Adload.P

C:\WINDOWS\winswap.exe=>(RAR Sfx o)=>winswap\newdr.exe
Supprimé

C:\WINDOWS\winswap.exe=>(RAR Sfx o)
Echec de la mise à jour
0
Kristopher Messages postés 3731 Date d'inscription vendredi 18 novembre 2005 Statut Contributeur Dernière intervention 10 juillet 2009 106
14 févr. 2006 à 11:44
Salut,

Clique droit sur Poste de travail, Propriétés, onglet Restauration du système, tu coches Désactiver la Restauration du système sur tous les lecteurs, Appliquer, Oui.
Ensuite, tu décoches Désactiver la Restauration du système sur tous les lecteurs, Appliquer, OK.
Ensuite, coche la case à nouveau, Appliquer, OK.

Et remets un new log HijackThis.

++
0
hermes060 Messages postés 12 Date d'inscription dimanche 12 février 2006 Statut Membre Dernière intervention 16 février 2006
15 févr. 2006 à 23:17
salut a tous
aprés tous ce que vous m'avez dit et renseigner
j ai du racheter un dd.
lancien je vais le mettre en esclave et par "patition magic" le foramter.

merci a tous

sinon pas de renseignements sur ces virus???
bonne soiré a tous
alain
0
Kristopher Messages postés 3731 Date d'inscription vendredi 18 novembre 2005 Statut Contributeur Dernière intervention 10 juillet 2009 106
16 févr. 2006 à 14:10
Bonjour Alain,

Concernant W32/Poebot-C j'ai trouvé cette page :
http://www.sophos.com/virusinfo/analyses/w32poebotc.html

Il s'agirait en fait d'un ver/spyware qui :
- Désactive la protection antivirus
- Permet à des utilisateurs malveillants d'accéder au PC
- Vole des informations
- Télécharge des codes (malicieux) à partir d'Internet
- Réduit la sécurité du PC

Si vous voulez que je vous donne des conseils concernant la sécurité de votre PC, postez ici un nouveau log HijackThis en procédant ainsi :

- Télécharge HijackThis : http://www.01net.com/telecharger/windows/Internet/internet_utlitaire/fiches/29061.html
- Installe le dans son propre dossier.
Par exemple, C:\HijackThis
Choisis l'option "do a scan and a logfile", il va te générer un rapport, copie et colle sur le forum.
Regarde la démo : http://pageperso.aol.fr/balltrap34/demohijack.htm

Bonne chance.
0
hermes060 Messages postés 12 Date d'inscription dimanche 12 février 2006 Statut Membre Dernière intervention 16 février 2006
16 févr. 2006 à 14:40
salut kris.
voici le rapport :
Logfile of HijackThis v1.99.1
Scan saved at 14:34:34, on 16/02/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\LVCOMSX.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\SAVScan.exe
C:\PROGRA~1\INCRED~1\bin\IncMail.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\MA\Mes documents\hijackthi\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.neuf.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet Security Professional\UrlLstCk.exe
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\System32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security Professional\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe

comment vois tu quelques chose la dedans
salutations
alain
0
Kristopher Messages postés 3731 Date d'inscription vendredi 18 novembre 2005 Statut Contributeur Dernière intervention 10 juillet 2009 106
16 févr. 2006 à 14:55
Re alain,

comment vois tu quelques chose la dedans

Et bien je met mes lunettes 3D :D :D :D

Plus sérieusement, ton log a l'air propre.

Je te conseille néanmoins ceci :

Télécharge, mets à jour et scannes ton PC avec Ad-Aware et SpyBot Search & Destroy :
- Ad-Aware SE Personal : http://www.01net.com/telecharger/windows/Internet/internet_utlitaire/fiches/11643.html
- SpyBot - Search & Destroy :
http://www.01net.com/telecharger/windows/Internet/internet_utlitaire/fiches/26157.html

- Télécharge CCLEANER et nettoie ton PC avec : http://www.01net.com/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/32599.html
Tutorial là : http://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php

Et ensuite ce sera OK ^^
0
hermes060 Messages postés 12 Date d'inscription dimanche 12 février 2006 Statut Membre Dernière intervention 16 février 2006
16 févr. 2006 à 15:40
no probleme
salut ta tion Haut a tous


amicalement
merci pour ce site..
Alain
0
Kristopher Messages postés 3731 Date d'inscription vendredi 18 novembre 2005 Statut Contributeur Dernière intervention 10 juillet 2009 106
16 févr. 2006 à 15:48
Il n'y a pas de quoi :o)
0