[Malware] analyse de mes log HJ, ewido & BD

Fermé
laelyss Messages postés 2 Date d'inscription mardi 1 mars 2005 Statut Membre Dernière intervention 7 mai 2006 - 7 mai 2006 à 20:11
 Utilisateur anonyme - 7 mai 2006 à 22:09
Bonjour à tous,

Mon ordinateur n'a pas vraiment la forme ces derniers temps...
A chaque démarrage une fenêtre dos s'ouvre avec un certain fichier 'svchost'. De plus, toujours dès l'arrivée sous windows (2000), norton (2004) détecte toujours la même intrusion de 'exmodul32.exe'.

Ci-joint les log effectué avec Hijackthis, BitDefender & ewido anti-malware.

Si quelqu'un peut m'expliquer et me donner des conseils quant à la démarche à suivre je lui en serais très reconnaissant.

Merci!

---------------------------------------------------------
ewido anti-malware - Rapport de scan
---------------------------------------------------------

+ Créé le: 20:08:31, 07/05/2006
+ Somme de contrôle: 86DC022A

+ Résultats du scan:

HKLM\SOFTWARE\Gator.com -> Adware.Gator : Nettoyer et sauvegarder
HKLM\SOFTWARE\Gator.com\Trickler -> Adware.Gator : Nettoyer et sauvegarder
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Adware.WebRebates : Nettoyer et sauvegarder
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\AMeOpt -> Adware.InternetOptimizer : Nettoyer et sauvegarder
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\70tovmto -> Adware.SAHA : Nettoyer et sauvegarder
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Windows TaskAd -> Adware.WinTaskAd : Nettoyer et sauvegarder
HKLM\SOFTWARE\ohbbackup -> Adware.EliteBar : Nettoyer et sauvegarder
HKLM\SOFTWARE\Policies\Avenue Media -> Adware.InternetOptimizer : Nettoyer et sauvegarder
HKLM\SOFTWARE\Windows TaskAd -> Adware.WinTaskAd : Nettoyer et sauvegarder
HKU\S-1-5-21-861567501-1303643608-725345543-500\Software\Microsoft\Windows\CurrentVersion\Policies\AMeOpt -> Adware.InternetOptimizer : Nettoyer et sauvegarder
HKU\S-1-5-21-861567501-1303643608-725345543-500\Software\Policies\Avenue Media -> Adware.InternetOptimizer : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Cookies\administrateur@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Cookies\administrateur@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Cookies\administrateur@statcounter[1].txt -> TrackingCookie.Statcounter : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Cookies\administrateur@weborama[2].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Cookies\administrateur@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Local Settings\Temp\Cookies\administrateur@adtech[2].txt -> TrackingCookie.Adtech : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Local Settings\Temp\Cookies\administrateur@estat[1].txt -> TrackingCookie.Estat : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Local Settings\Temp\Cookies\administrateur@statcounter[1].txt -> TrackingCookie.Statcounter : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Local Settings\Temp\Cookies\administrateur@weborama[2].txt -> TrackingCookie.Weborama : Nettoyer et sauvegarder
C:\Documents and Settings\Administrateur\Local Settings\Temp\Cookies\administrateur@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyer et sauvegarder
C:\Program Files\Microsoft AntiSpyware\Quarantine\68A77E79-5E9C-4DEB-AD29-6670CB\8D3CC8C5-A3D3-49BB-9FF7-90C0C9 -> Adware.Sahat : Nettoyer et sauvegarder
C:\temp\WebRebates_Auto_InstallSilent_Euro.exe -> Adware.WebRebates : Nettoyer et sauvegarder
C:\WINNT\system32\70tovmto.ini -> Adware.Sahat : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_0_0_445800.htm -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_0_0_445900.htm -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_0_0_446000.htm -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_1_0_448500.gif -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_1_0_448500.htm -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_1_0_448600.gif -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_1_0_448600.htm -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_1_0_453800.htm -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_2_0_814200.htm -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_2_0_815600.htm -> Adware.Cydoor : Nettoyer et sauvegarder
C:\WINNT\system32\AdCache\B_434_2_0_815900.htm -> Adware.Cydoor : Nettoyer et sauvegarder


::Fin du rapport

----------------------------------------------------------------------------

BitDefender Online Scanner



Scan report generated at: Sun, May 07, 2006 - 18:27:15





Scan path: A:\;C:\;D:\;E:\;F:\;







Statistics

Time
03:11:51

Files
560705

Folders
7115

Boot Sectors
2

Archives
5752

Packed Files
57139




Results

Identified Viruses
46

Infected Files
117

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
213




Engines Info

Virus Definitions
373689

Engine build
AVCORE v1.0 (build 2292) (i386) (Mar 3 2005 11:57:29)

Scan plugins
13

Archive plugins
39

Unpack plugins
4

E-mail plugins
6

System plugins
1




Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes




Scanned File
Status

C:\Program Files\MSN Messenger\Smileys\419 Clins d'Oeil + 41 Images Perso Animées + 5 Meegos\w&madder.exe
Infected with: Trojan.Downloader.2667.A

C:\Program Files\MSN Messenger\Smileys\419 Clins d'Oeil + 41 Images Perso Animées + 5 Meegos\w&madder.exe
Disinfection failed

C:\Program Files\MSN Messenger\Smileys\419 Clins d'Oeil + 41 Images Perso Animées + 5 Meegos\w&madder.exe
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\02AB561D.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\02AB561D.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\02AB561D.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\042A5137=>(Quarantine-2)
Infected with: Trojan.Downloader.Small.YA

C:\Program Files\Norton AntiVirus\Quarantine\042A5137=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\042A5137=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\059513C4.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\059513C4.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\059513C4.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\060012B8.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\060012B8.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\060012B8.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\0B770608=>(Quarantine-2)
Infected with: Trojan.Horse.AU

C:\Program Files\Norton AntiVirus\Quarantine\0B770608=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\0B770608=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\0CFD4A62.exe=>(Quarantine-2)
Infected with: Backdoor.Ircflood.BI

C:\Program Files\Norton AntiVirus\Quarantine\0CFD4A62.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\0CFD4A62.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\0D4666E1=>(Quarantine-2)
Infected with: Trojan.Protelite.B

C:\Program Files\Norton AntiVirus\Quarantine\0D4666E1=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\0D4666E1=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\0DB50CD3.dll=>(Quarantine-2)
Infected with: IRC-Worm.Randon.T

C:\Program Files\Norton AntiVirus\Quarantine\0DB50CD3.dll=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\0DB50CD3.dll=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\0DB836CF.bat=>(Quarantine-2)
Infected with: Trojan.BAT.Passer.A

C:\Program Files\Norton AntiVirus\Quarantine\0DB836CF.bat=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\0DB836CF.bat=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\0DB836CF.EXE=>(Quarantine-2)
Infected with: Trojan.Glitch.A

C:\Program Files\Norton AntiVirus\Quarantine\0DB836CF.EXE=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\0DB836CF.ini=>(Quarantine-2)
Infected with: IRC-Worm.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\0DB836CF.ini=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\0DB836CF.ini=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\13275DB1.exe=>(Quarantine-2)
Infected with: Backdoor.Sdbot.ET

C:\Program Files\Norton AntiVirus\Quarantine\13275DB1.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\13275DB1.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\135F1419=>(Quarantine-2)
Infected with: Virtool.HiddenRun.B

C:\Program Files\Norton AntiVirus\Quarantine\135F1419=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\135F1419=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.bat=>(Quarantine-2)
Infected with: Trojan.BAT.Passer.A

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.bat=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.bat=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.dll=>(Quarantine-2)
Infected with: IRC-Worm.Randon.T

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.dll=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.dll=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.EXE=>(Quarantine-2)
Infected with: Trojan.Glitch.A

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.EXE=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.ini=>(Quarantine-2)
Infected with: IRC-Worm.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.ini=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\16AD58F4.ini=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\17DE6AC8.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\17DE6AC8.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\17DE6AC8.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\19BF74FD.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\19BF74FD.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\19BF74FD.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\20545E9C.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\20545E9C.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\20545E9C.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\20EA69F7.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\20EA69F7.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\20EA69F7.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\20FE1D04.exe=>(Quarantine-2)
Infected with: Trojan.Proxy.Small.A

C:\Program Files\Norton AntiVirus\Quarantine\20FE1D04.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\20FE1D04.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>regkeyadd.bat
Infected with: Backdoor.Irc.Zcrew.AP

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>regkeyadd.bat
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>regkeyadd.bat
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>explore.DAT
Infected with: Trojan.Irc.Flood.C

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>explore.DAT
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>explore.DAT
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>explore.EXE
Infected with: Trojan.Glitch.A

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>explore.EXE
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>explorer.exe
Infected with: Backdoor.Ircflood.BI

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>explorer.exe
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>explorer.exe
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>hidden32.exe
Infected with: Virtool.HiddenRun.B

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>hidden32.exe
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>hidden32.exe
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>iiscache.dll
Infected with: IRC-Worm.Randon.T

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>iiscache.dll
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>iiscache.dll
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>moo.dll
Detected with: Application.MBMON.A

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>moo.dll
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>moo.dll
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>navdb.dbx
Infected with: Trojan.Irc.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>navdb.dbx
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>navdb.dbx
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>rcfg.ini
Infected with: IRC-Worm.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>rcfg.ini
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>rcfg.ini
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>www\moo.dll
Infected with: Backdoor.Irc.Lambot.G

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>www\moo.dll
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>www\moo.dll
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>regkeyadd.reg
Infected with: Backdoor.BAT.Zcrew

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>regkeyadd.reg
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>regkeyadd.reg
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>SECURE.BAT
Infected with: Backdoor.IRC.Digarix.A

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>SECURE.BAT
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>SECURE.BAT
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>start.bat
Infected with: Backdoor.IRC.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>start.bat
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>start.bat
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>svchost.exe
Infected with: Virtool.Hidewindows.B

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>svchost.exe
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>svchost.exe
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>v32driver.bat
Infected with: Trojan.BAT.Passer.A

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>v32driver.bat
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>v32driver.bat
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>web.swf
Infected with: Backdoor.GTSE.1.0 (mIRC)

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>web.swf
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>web.swf
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>win32.exe
Infected with: Backdoor.IRC.Shiznat.A

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>win32.exe
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)=>win32.exe
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\225A0E1F=>(Quarantine-2)=>(RAR Sfx o)
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\24EF4AAE.exe=>(Quarantine-2)
Infected with: Win32.Randex.D

C:\Program Files\Norton AntiVirus\Quarantine\24EF4AAE.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\291002DE.exe=>(Quarantine-2)
Infected with: Backdoor.Ircflood.BI

C:\Program Files\Norton AntiVirus\Quarantine\291002DE.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\291002DE.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\2AEB20AD.dll=>(Quarantine-2)
Infected with: IRC-Worm.Randon.T

C:\Program Files\Norton AntiVirus\Quarantine\2AEB20AD.dll=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\2AEB20AD.dll=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\2AEE4AAA.bat=>(Quarantine-2)
Infected with: Trojan.BAT.Passer.A

C:\Program Files\Norton AntiVirus\Quarantine\2AEE4AAA.bat=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\2AEE4AAA.bat=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\2AEE4AAA.EXE=>(Quarantine-2)
Infected with: Trojan.Glitch.A

C:\Program Files\Norton AntiVirus\Quarantine\2AEE4AAA.EXE=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\2AEE4AAA.ini=>(Quarantine-2)
Infected with: IRC-Worm.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\2AEE4AAA.ini=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\2AEE4AAA.ini=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\2ED265CD.exe=>(Quarantine-2)
Infected with: Trojan.Proxy.Small.A

C:\Program Files\Norton AntiVirus\Quarantine\2ED265CD.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\2ED265CD.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\2F4D36A4.exe=>(Quarantine-2)
Infected with: Backdoor.Ircflood.BI

C:\Program Files\Norton AntiVirus\Quarantine\2F4D36A4.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\2F4D36A4.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\2FD74D8A.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\2FD74D8A.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\2FD74D8A.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\30A41672=>(Quarantine-2)
Infected with: Trojan.Downloader.Small.AAQ

C:\Program Files\Norton AntiVirus\Quarantine\30A41672=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\32633DB4
Infected with: Win32.Netsky.P@mm

C:\Program Files\Norton AntiVirus\Quarantine\32633DB4
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\350C3B45.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.KI

C:\Program Files\Norton AntiVirus\Quarantine\350C3B45.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\369A3D8F.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\369A3D8F.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\369D678B.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\369D678B.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\36A01187.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\36A01187.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\36A43B84.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\36A43B84.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\36A76580.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\36A76580.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\36AA0F7D.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\36AA0F7D.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\36AE3979.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\36AE3979.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\36B16375.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\36B16375.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\38084FAA.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\38084FAA.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\38084FAA.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\388347C9=>(Quarantine-2)=>(unicode)
Infected with: Exploit.Html.Iframe.Bof.Gen

C:\Program Files\Norton AntiVirus\Quarantine\388347C9=>(Quarantine-2)=>(unicode)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\388347C9=>(Quarantine-2)=>(unicode)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\395A77A7.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\395A77A7.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\395A77A7.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3D070333.part=>(Quarantine-2)
Infected with: Trojan.Dropper.SillyBor

C:\Program Files\Norton AntiVirus\Quarantine\3D070333.part=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3D070333.part=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3E3F07DE.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\3E3F07DE.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3F9673A7.exe=>(Quarantine-2)
Infected with: Trojan.Proxy.Small.A

C:\Program Files\Norton AntiVirus\Quarantine\3F9673A7.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3F9673A7.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3F9F44E8=>(Quarantine-2)
Detected with: Adware.Gator.B

C:\Program Files\Norton AntiVirus\Quarantine\3F9F44E8=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3FA062C6=>(Quarantine-2)
Infected with: Trojan.Adclicker.BA

C:\Program Files\Norton AntiVirus\Quarantine\3FA062C6=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3FA062C6=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3FA26EE4=>(Quarantine-2)
Detected with: Adware.Gator.B

C:\Program Files\Norton AntiVirus\Quarantine\3FA26EE4=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3FA618E1=>(Quarantine-2)
Infected with: Virtool.Hidewindows.B

C:\Program Files\Norton AntiVirus\Quarantine\3FA618E1=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3FA618E1=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3FA636BE=>(Quarantine-2)
Infected with: Trojan.Adclicker.BA

C:\Program Files\Norton AntiVirus\Quarantine\3FA636BE=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3FA636BE=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3FA960BB=>(Quarantine-2)
Infected with: Trojan.Adclicker.BA

C:\Program Files\Norton AntiVirus\Quarantine\3FA960BB=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3FA960BB=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3FAD0AB7=>(Quarantine-2)
Infected with: Trojan.Adclicker.BA

C:\Program Files\Norton AntiVirus\Quarantine\3FAD0AB7=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3FAD0AB7=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3FB034B4=>(Quarantine-2)
Infected with: Trojan.Adclicker.BA

C:\Program Files\Norton AntiVirus\Quarantine\3FB034B4=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3FB034B4=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3FB35EB0=>(Quarantine-2)
Infected with: Trojan.Adclicker.BA

C:\Program Files\Norton AntiVirus\Quarantine\3FB35EB0=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3FB35EB0=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\3FBA32A9=>(Quarantine-2)
Infected with: Trojan.Winad.S

C:\Program Files\Norton AntiVirus\Quarantine\3FBA32A9=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\3FBA32A9=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\40AC6476.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\40AC6476.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\40AC6476.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\40CE2602.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\40CE2602.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\40CE2602.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\41621888=>(Quarantine-2)
Infected with: Trojan.Downloader.Dyfuca.DD

C:\Program Files\Norton AntiVirus\Quarantine\41621888=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\42EA4702.htm=>(Quarantine-2)
Infected with: Exploit.Html.MhtRedir.Gen

C:\Program Files\Norton AntiVirus\Quarantine\42EA4702.htm=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\42EA4702.htm=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\454375BA=>(Quarantine-2)
Infected with: Trojan.Downloader.Istbar.BB

C:\Program Files\Norton AntiVirus\Quarantine\454375BA=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\454375BA=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\47104690.dll=>(Quarantine-2)
Infected with: IRC-Worm.Randon.T

C:\Program Files\Norton AntiVirus\Quarantine\47104690.dll=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\47104690.dll=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\47104690.EXE=>(Quarantine-2)
Infected with: Trojan.Glitch.A

C:\Program Files\Norton AntiVirus\Quarantine\47104690.EXE=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\4713708C.bat=>(Quarantine-2)
Infected with: Trojan.BAT.Passer.A

C:\Program Files\Norton AntiVirus\Quarantine\4713708C.bat=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\4713708C.bat=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\4713708C.ini=>(Quarantine-2)
Infected with: IRC-Worm.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\4713708C.ini=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\4713708C.ini=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\4AAF5A93.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\4AAF5A93.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\4AAF5A93.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\4E892B33.exe=>(Quarantine-2)
Infected with: Backdoor.mIRC-based

C:\Program Files\Norton AntiVirus\Quarantine\4E892B33.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\4E892B33.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\4E932255=>(Quarantine-2)
Infected with: MemScan:Adware.Winad.A

C:\Program Files\Norton AntiVirus\Quarantine\4E932255=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\4E932255=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\4FC1087B=>(Quarantine-2)
Detected with: Adware.Windupdates.Dlder

C:\Program Files\Norton AntiVirus\Quarantine\4FC1087B=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\4FC1087B=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\54657485.exe=>(Quarantine-2)
Infected with: Backdoor.Ircflood.BI

C:\Program Files\Norton AntiVirus\Quarantine\54657485.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\54657485.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\555F7FDB.exe=>(Quarantine-2)
Infected with: Trojan.Downloader.Agent.IL

C:\Program Files\Norton AntiVirus\Quarantine\555F7FDB.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\56E37786=>(Quarantine-2)=>[Subject: Surprise][Date: Wed, 5 Nov 2003 17:37:41 +0100 (CET)]=>(MIME part)
Infected with: Win32.Sober.A@mm

C:\Program Files\Norton AntiVirus\Quarantine\56E37786=>(Quarantine-2)=>[Subject: Surprise][Date: Wed, 5 Nov 2003 17:37:41 +0100 (CET)]=>(MIME part)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\56E37786=>(Quarantine-2)
Updated

C:\Program Files\Norton AntiVirus\Quarantine\56E37786
Update failed

C:\Program Files\Norton AntiVirus\Quarantine\5F1C270C.exe=>(Quarantine-2)
Infected with: Backdoor.Optix.Pro.1.3

C:\Program Files\Norton AntiVirus\Quarantine\5F1C270C.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\5F1C270C.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\62257752=>(Quarantine-2)
Infected with: MemScan:Adware.Winad.A

C:\Program Files\Norton AntiVirus\Quarantine\62257752=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\62257752=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\625F03B6=>(Quarantine-2)
Infected with: Trojan.Dialer.FU

C:\Program Files\Norton AntiVirus\Quarantine\625F03B6=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\625F03B6=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\642005CA=>(Quarantine-2)
Infected with: Backdoor.Cmjspy.AC

C:\Program Files\Norton AntiVirus\Quarantine\642005CA=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\642005CA=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\66472595=>(Quarantine-2)
Detected with: Adware.Gator.B

C:\Program Files\Norton AntiVirus\Quarantine\66472595=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\66904FE7.exe=>(Quarantine-2)
Infected with: Trojan.Proxy.Small.A

C:\Program Files\Norton AntiVirus\Quarantine\66904FE7.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\66904FE7.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\67EE31BC.exe=>(Quarantine-2)
Infected with: Win32.Worm.Randex.Q

C:\Program Files\Norton AntiVirus\Quarantine\67EE31BC.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\67EE31BC.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\69FA7302.exe=>(Quarantine-2)
Infected with: Win32.Slanper.D

C:\Program Files\Norton AntiVirus\Quarantine\69FA7302.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\69FA7302.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\6A9A7C51.exe=>(Quarantine-2)
Infected with: Backdoor.Sdbot.ET

C:\Program Files\Norton AntiVirus\Quarantine\6A9A7C51.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\6A9A7C51.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\6CBB5A0B.exe=>(Quarantine-2)
Infected with: Backdoor.Ircflood.BI

C:\Program Files\Norton AntiVirus\Quarantine\6CBB5A0B.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\6CBB5A0B.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\76B520FF.exe=>(Quarantine-2)
Infected with: Trojan.Proxy.Small.A

C:\Program Files\Norton AntiVirus\Quarantine\76B520FF.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\76B520FF.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\76DA1E42=>(Quarantine-2)
Infected with: Trojan.Irc.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\76DA1E42=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\76DA1E42=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7A25760E=>(Quarantine-2)
Detected with: Adware.Winad.A

C:\Program Files\Norton AntiVirus\Quarantine\7A25760E=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\7A25760E=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7A57295F.exe=>(Quarantine-2)
Infected with: Backdoor.Ircflood.BI

C:\Program Files\Norton AntiVirus\Quarantine\7A57295F.exe=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\7A57295F.exe=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7C3E7E96=>(Quarantine-2)
Infected with: Trojan.Dialer.FU

C:\Program Files\Norton AntiVirus\Quarantine\7C3E7E96=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7CF53541.bat=>(Quarantine-2)
Infected with: Trojan.BAT.Passer.A

C:\Program Files\Norton AntiVirus\Quarantine\7CF53541.bat=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\7CF53541.bat=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7CF85F3D.dll=>(Quarantine-2)
Infected with: IRC-Worm.Randon.T

C:\Program Files\Norton AntiVirus\Quarantine\7CF85F3D.dll=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\7CF85F3D.dll=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7CF85F3D.EXE=>(Quarantine-2)
Infected with: Trojan.Glitch.A

C:\Program Files\Norton AntiVirus\Quarantine\7CF85F3D.EXE=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7CF85F3D.ini=>(Quarantine-2)
Infected with: IRC-Worm.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\7CF85F3D.ini=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\7CF85F3D.ini=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.bat=>(Quarantine-2)
Infected with: Trojan.BAT.Passer.A

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.bat=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.bat=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.dll=>(Quarantine-2)
Infected with: IRC-Worm.Randon.T

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.dll=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.dll=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.EXE=>(Quarantine-2)
Infected with: Trojan.Glitch.A

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.EXE=>(Quarantine-2)
Deleted

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.ini=>(Quarantine-2)
Infected with: IRC-Worm.Zcrew.A

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.ini=>(Quarantine-2)
Disinfection failed

C:\Program Files\Norton AntiVirus\Quarantine\7D5225B7.ini=>(Quarantine-2)
Deleted

C:\WINNT\Web\printers\images\explore.DAT
Infected with: Trojan.Irc.Flood.C

C:\WINNT\Web\printers\images\explore.DAT
Disinfection failed

C:\WINNT\Web\printers\images\explore.DAT
Deleted

C:\WINNT\Web\printers\images\moo.dll
Detected with: Application.MBMON.A

C:\WINNT\Web\printers\images\moo.dll
Disinfection failed

C:\WINNT\Web\printers\images\moo.dll
Deleted


----------------------------------------------------------------------------


Logfile of HijackThis v1.99.1
Scan saved at 20:14:46, on 07/05/2006
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\Ati2evxx.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton Personal Firewall\NISUM.EXE
C:\WINNT\system32\regsvc.exe
C:\PROGRA~1\Dantz\RETROS~1\retrorun.exe
C:\WINNT\system32\MSTask.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\System32\MsPMSPSv.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Norton Personal Firewall\ccPxySvc.exe
C:\WINNT\system32\Ati2evxx.exe
C:\WINNT\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\PROGRA~1\MESSAG~1\StartMessager.exe
C:\PROGRA~1\Maxtor\OneTouch\Utils\OneTouch.exe
C:\Program Files\ScanSoft\OmniPagePro14.0\Opware14.exe
C:\Program Files\ScanSoft\OmniPagePro14.0\OpScheduler.exe
C:\Program Files\ScanSoft\OmniPagePro14.0\PdfPrn\SPrnAgent.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\WINNT\system32\spool\DRIVERS\W32X86\3\E_S4I0R2.EXE
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINNT\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\WINNT\system32\LVComS.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINNT\system32\wisptis.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Documents and Settings\Administrateur\Mes documents\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.courrierinternational.com/gabarits/default_online.asp?ord_id=38
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.courrierinternational.com/gabarits/default_online.asp?ord_id=38
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - _{08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Microsoft Configuration - {40205287-E793-41AC-B95C-D8D064BA33CA} - C:\WINNT\system32\mscfg.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [PtiuPbmd] Rundll32.exe Ptipbm.dll,SetWriteBack
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [ccRegVfy] "C:\Program Files\Fichiers communs\Symantec Shared\ccRegVfy.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
O4 - HKLM\..\Run: [MessagerStarter Wanadoo] C:\PROGRA~1\MESSAG~1\StartMessager.exe Messager Wanadoo
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe
O4 - HKLM\..\Run: [MaxtorOneTouch] C:\PROGRA~1\Maxtor\OneTouch\Utils\OneTouch.exe
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [Opware14] "C:\Program Files\ScanSoft\OmniPagePro14.0\Opware14.exe"
O4 - HKLM\..\Run: [OpScheduler] "C:\Program Files\ScanSoft\OmniPagePro14.0\OpScheduler.exe"
O4 - HKLM\..\Run: [PDF Converter Registry Controller] "C:\Program Files\ScanSoft\OmniPagePro14.0\PdfCnv\RegistryController.exe"
O4 - HKLM\..\Run: [SSPrnAgent] C:\Program Files\ScanSoft\OmniPagePro14.0\PdfPrn\SPrnAgent.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [nortonupdate] nortonuptdate.dll
O4 - HKLM\..\Run: [EPSON Stylus C86 Series] C:\WINNT\system32\spool\DRIVERS\W32X86\3\E_S4I0R2.EXE /P23 "EPSON Stylus C86 Series" /O5 "LPT1:" /M "Stylus C86"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [hednHh$vùõš/‚²95ßPC:\Program Files\ISTsvc\istsvc.exe] C:\WINNT\anmwq.exe
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [.nvsvc] C:\WINNT\system\smss.exe /w
O4 - HKCU\..\Run: [ctfmon.exe] ctfmon.exe
O4 - HKCU\..\Run: [EPSON Stylus C86 Series] C:\WINNT\system32\spool\DRIVERS\W32X86\3\E_S4I0R2.EXE /P23 "EPSON Stylus C86 Series" /M "Stylus C86" /EF "HKCU"
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar3.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar3.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar3.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar3.dll/cmcache.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir le fichier PDF dans Word - res://C:\Program Files\ScanSoft\OmniPagePro14.0\PdfCnv\IEShellExt.dll /300
O8 - Extra context menu item: Personnaliser - C:\Program Files\PROMT98\promtie4\options.htm
O8 - Extra context menu item: Rechercher sur Internet - C:\Program Files\PROMT98\promtie4\search.htm
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar3.dll/cmsimilar.html
O8 - Extra context menu item: Traduire - C:\Program Files\PROMT98\promtie4\translat.htm
O8 - Extra context menu item: Traduire dans WebView - C:\Program Files\PROMT98\promtie4\webview.htm
O8 - Extra context menu item: Traduire la page - C:\Program Files\PROMT98\promtie4\page.htm
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar3.dll/cmtrans.html
O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: Télécharger tout avec FlashGet - C:\Program Files\FlashGet\jc_all.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\PROGRA~1\ICQ\ICQ.exe
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Organise-notes - {9455301C-CF6B-11D3-A266-00C04F689C50} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Researcher\EROPROJ.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) - http://fr.encyclopedia.yahoo.com/rsc/tdserver.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://appldnld.m7z.net/content.info.apple.com/iTunes4/WW/win/019-0312.20050111.M...
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by17fd.bay17.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/272862d3fc14ff549405/netzip/RdxIE601_fr.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {92E7E45A-D8C8-480E-AF99-176E43997CAA} (Aurigma Image Uploader 3.5 Combo Control) - http://www.pixdiscount.be/clients/ImageUploader3.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O20 - Winlogon Notify: nwprovau - C:\WINNT\SYSTEM32\nwprovau.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINNT\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINNT\system32\ati2sgag.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINNT\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Proxy Service (ccPxySvc) - Symantec Corporation - C:\Program Files\Norton Personal Firewall\ccPxySvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: License Management Service ESD - Unknown owner - C:\Program Files\Fichiers communs\element5 Shared\Service\Licence Manager ESD.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: maya3flex - Unknown owner - C:\AW\COM\etc\lmgrd.exe (file missing)
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Personal Firewall Accounts Manager (NISUM) - Symantec Corporation - C:\Program Files\Norton Personal Firewall\NISUM.EXE
O23 - Service: Qltcrtuiluln - Logitech Inc. - (no file)
O23 - Service: Retrospect Launcher (RetroLauncher) - Dantz Development Corporation - C:\PROGRA~1\Dantz\RETROS~1\retrorun.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Windows Log - Unknown owner - C:\WINNT\system32\nvsvcd.exe
A voir également:

3 réponses

Utilisateur anonyme
7 mai 2006 à 21:12
Salut,
Relance HijackThis, choisis " do a scan only" coche la case devant les lignes ci-dessous et clique en bas sur "fix checked"


R3 - URLSearchHook: (no name) - _{08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)
O2 - BHO: Microsoft Configuration - {40205287-E793-41AC-B95C-D8D064BA33CA} - C:\WINNT\system32\mscfg.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [nortonupdate] nortonuptdate.dll
O4 - HKLM\..\Run: [hednHh$vùõš/‚²95ßPC:\Program Files\ISTsvc\istsvc.exe] C:\WINNT\anmwq.exe
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [.nvsvc] C:\WINNT\system\smss.exe /w
O4 - HKCU\..\Run: [ctfmon.exe] ctfmon.exe
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar3.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar3.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar3.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar3.dll/cmcache.html
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) - http://fr.encyclopedia.yahoo.com/rsc/tdserver.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://appldnld.m7z.net/content.info.apple.com/iTunes4/WW/win/019-0312.20050111.M...
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by17fd.bay17.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/272862d3fc14ff549405/netzip/RdxIE601_fr.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {92E7E45A-D8C8-480E-AF99-176E43997CAA} (Aurigma Image Uploader 3.5 Combo Control) - http://www.pixdiscount.be/clients/ImageUploader3.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O20 - Winlogon Notify: nwprovau - C:\WINNT\SYSTEM32\nwprovau.dll
O23 - Service: Windows Log - Unknown owner - C:\WINNT\system32\nvsvcd.exe


Clique sur demarrer, executer, tape: services.msc ,cherche dans la liste cette ligne et regle la sur "desactivé"

Windows Log


Désinstalle le programme FlasGet il contient un spyware;
demarrer, panneau de configuration, ajouter/supprimer des programmes


Clique sur demarrer, rechercher, cherche et supprime ces fichiers:

nvsvcd.exe
nwprovau.dll
ctfmon.exe < pas celui present dans /system32
smss.exe < pas celui present dans /system32
anmwq.exe
mscfg.dll
nortonuptdate.dll
istsvc.exe

si un fichier persiste lors de la suppression fais ceci:
-Redemarres ton pc, dès l'allumage de celui ci tapotes la touche f8, à l'ecran qui va apparaitre choisis "mode sans echec" attends un peu.. puis vas supprimer les fichiers/dossiers, vides ta corbeille et redemarres normalement


Fait ce nettoyage:

¤Telecharges et installes ceci, dans la colonne de gauche cliques sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs

CCleaner:
Ccleaner

¤Relance Ccleaner ,vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis cliques sur "lancer le nettoyage"


Puis remet un rapport hijackthis

A++
0
Utilisateur anonyme
7 mai 2006 à 21:42
laisse ce fichier stp:
nvsvcd.exe
0
laelyss Messages postés 2 Date d'inscription mardi 1 mars 2005 Statut Membre Dernière intervention 7 mai 2006
7 mai 2006 à 22:04
Olala... J4ai supprimé ce fichier sans le laisser dans la corbeille... Que faire ? Je n'ose pas redémarrer l'ordi... Une solution ????
0
Utilisateur anonyme
7 mai 2006 à 22:09
ce n'est pas grave..continue le reste ou si non remet un rapport ;-)
0