Pb de connexion - mon rapport Hijack this
Fermé
ard123
Messages postés
34
Date d'inscription
lundi 21 août 2006
Statut
Membre
Dernière intervention
4 novembre 2008
-
21 août 2006 à 12:18
ard123 Messages postés 34 Date d'inscription lundi 21 août 2006 Statut Membre Dernière intervention 4 novembre 2008 - 26 août 2006 à 00:35
ard123 Messages postés 34 Date d'inscription lundi 21 août 2006 Statut Membre Dernière intervention 4 novembre 2008 - 26 août 2006 à 00:35
A voir également:
- Pb de connexion - mon rapport Hijack this
- Gmail connexion - Guide
- Gmail connexion autre compte - Guide
- Hotmail connexion - Guide
- Plan rapport de stage - Guide
- Facebook connexion - Guide
4 réponses
Utilisateur anonyme
22 août 2006 à 05:27
22 août 2006 à 05:27
Salut,
il y a un probléme tu as PC-Cillin9, Sygate et antivir, il ne faut qu'un anti-virus et un pare-feu ! fait le ménage!
Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [HP Software Update] "D:\Programme\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "D:\Programme\Daemon tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [key2] C:\WINDOWS\system32\winlog.exe
O4 - HKLM\..\Run: [anti_troj] C:\WINDOWS\system32\anti_troj.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [key2] C:\WINDOWS\system32\winlog.exe
O4 - HKCU\..\Run: [anti_troj] C:\WINDOWS\system32\anti_troj.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
Clic sur demarrer, rechercher, cherche et supprime si présent :
anti_troj.exe
winlog.exe
*Si un fichier persiste lors de la suppression fais ceci:
-Redemarres ton pc, dès l'allumage de celui-ci tapote la touche f8, à l'écran qui va apparaitre choisis "mode sans echec" attends un peu.. puis vas supprimer les fichiers/dossiers qui persistaient, vides ta corbeille et redemarres normalement
Telecharge, installe puis mets à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système et colle le rapport ici avec un nouveau rapport hijackthis
Ewido: (installe le en anglais il passera en français, reste gratuit après la période d'essai)
Télécharger Ewido Security Suite
A++
il y a un probléme tu as PC-Cillin9, Sygate et antivir, il ne faut qu'un anti-virus et un pare-feu ! fait le ménage!
Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [HP Software Update] "D:\Programme\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "D:\Programme\Daemon tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [key2] C:\WINDOWS\system32\winlog.exe
O4 - HKLM\..\Run: [anti_troj] C:\WINDOWS\system32\anti_troj.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [key2] C:\WINDOWS\system32\winlog.exe
O4 - HKCU\..\Run: [anti_troj] C:\WINDOWS\system32\anti_troj.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
Clic sur demarrer, rechercher, cherche et supprime si présent :
anti_troj.exe
winlog.exe
*Si un fichier persiste lors de la suppression fais ceci:
-Redemarres ton pc, dès l'allumage de celui-ci tapote la touche f8, à l'écran qui va apparaitre choisis "mode sans echec" attends un peu.. puis vas supprimer les fichiers/dossiers qui persistaient, vides ta corbeille et redemarres normalement
Telecharge, installe puis mets à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système et colle le rapport ici avec un nouveau rapport hijackthis
Ewido: (installe le en anglais il passera en français, reste gratuit après la période d'essai)
Télécharger Ewido Security Suite
A++
ard123
Messages postés
34
Date d'inscription
lundi 21 août 2006
Statut
Membre
Dernière intervention
4 novembre 2008
22 août 2006 à 17:03
22 août 2006 à 17:03
Salut Boulepate62!
merci pour ta réponse.
J'ai antivir comme anti virus, et sygate comme firewall.
Pc-cillin, je l'ai désinstallé, c'est ce que j'utilisais avant comme antivirus et firewall.
J'ai fais ce que tu m'as dit concernant le rapport de "hijack this".
Par contre je n'ai pas réussi à localiser les fichiers anti_troj.exe et winlog.exe Introuvable!!!! j'ai fait une recherche dans mes deux partitions de mon disque, j'ai essayé aussi en mode sans echec, sans résultat...
J'ai installé ewido, voici le rapport :
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 17:01:40 22/08/2006
+ Scan result:
:mozilla.61:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.62:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.63:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.488:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.489:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.524:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.666:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.705:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.706:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.712:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.713:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.714:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.715:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.100:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.99:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.196:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.197:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.198:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.199:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.482:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.487:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.76:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.707:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.321:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.322:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.323:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.75:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.77:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.78:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.79:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.80:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.123:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.278:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.285:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.336:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.361:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.362:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.492:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.518:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.692:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.724:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.669:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.670:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.64:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
:mozilla.594:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Myaffiliateprogram : No action taken.
:mozilla.121:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.122:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.771:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Paycounter : No action taken.
:mozilla.767:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.768:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.769:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.770:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.226:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sitestat : No action taken.
:mozilla.10:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.7:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.8:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.9:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.102:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.103:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.104:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.106:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.324:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.325:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.71:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.72:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.73:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.130:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
:mozilla.786:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Yadro : No action taken.
:mozilla.787:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Yadro : No action taken.
::Report end
Voila le rapport.
A+ et merci
merci pour ta réponse.
J'ai antivir comme anti virus, et sygate comme firewall.
Pc-cillin, je l'ai désinstallé, c'est ce que j'utilisais avant comme antivirus et firewall.
J'ai fais ce que tu m'as dit concernant le rapport de "hijack this".
Par contre je n'ai pas réussi à localiser les fichiers anti_troj.exe et winlog.exe Introuvable!!!! j'ai fait une recherche dans mes deux partitions de mon disque, j'ai essayé aussi en mode sans echec, sans résultat...
J'ai installé ewido, voici le rapport :
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 17:01:40 22/08/2006
+ Scan result:
:mozilla.61:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.62:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.63:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.488:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.489:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.524:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.666:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.705:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.706:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.712:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.713:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.714:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.715:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adocean : No action taken.
:mozilla.100:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.99:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.196:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.197:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.198:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.199:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.482:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.487:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.76:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.707:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.321:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.322:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.323:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Comclick : No action taken.
:mozilla.75:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.77:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Estat : No action taken.
:mozilla.78:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.79:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.80:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.123:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.278:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.285:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.336:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.361:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.362:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.492:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.518:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.692:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.724:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.669:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.670:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.64:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
:mozilla.594:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Myaffiliateprogram : No action taken.
:mozilla.121:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.122:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.771:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Paycounter : No action taken.
:mozilla.767:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.768:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.769:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.770:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.226:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Sitestat : No action taken.
:mozilla.10:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.7:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.8:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.9:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.102:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.103:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.104:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.106:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.324:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.325:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.71:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.72:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.73:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.130:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
:mozilla.786:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Yadro : No action taken.
:mozilla.787:C:\Documents and Settings\NCL.LSDBOT-III.000\Application Data\Mozilla\Profiles\default\22erz00q.slt\cookies.txt -> TrackingCookie.Yadro : No action taken.
::Report end
Voila le rapport.
A+ et merci
Salut Ard123
ok pour Pc cillin.
Fais ce nettoyage: (à faire réguliérement)
¤Telecharges et installes ceci:
CCleaner:
Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
A+++
ok pour Pc cillin.
Fais ce nettoyage: (à faire réguliérement)
¤Telecharges et installes ceci:
CCleaner:
Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
A+++
ard123
Messages postés
34
Date d'inscription
lundi 21 août 2006
Statut
Membre
Dernière intervention
4 novembre 2008
23 août 2006 à 11:44
23 août 2006 à 11:44
bon voila, j'ai fait ce que tu m'a demandé.
Voici le rapport de bitfender :
BitDefender Online Scanner
Scan report generated at: Wed, Aug 23, 2006 - 11:40:40
Scan path: C:\;
Statistics
Time
00:25:41
Files
153645
Folders
3842
Boot Sectors
3
Archives
1824
Packed Files
8381
Results
Identified Viruses
4
Infected Files
13
Suspect Files
3
Warnings
0
Disinfected
0
Deleted Files
16
Engines Info
Virus Definitions
450309
Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)
Scan plugins
13
Archive plugins
39
Unpack plugins
5
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>message.scr
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)=>[Subject: hi][Date: Thu, 7 Apr 2005 16:55:31 +0200]=>(MIME part)=>game_xxo.zip=>data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)=>[Subject: hi][Date: Thu, 7 Apr 2005 16:55:31 +0200]=>(MIME part)=>game_xxo.zip=>data.rtf .scr
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)=>[Subject: hi][Date: Thu, 7 Apr 2005 16:55:31 +0200]=>(MIME part)=>game_xxo.zip
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)=>[Subject: hi][Date: Thu, 7 Apr 2005 16:55:31 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)=>[Subject: Re: Word file][Date: Thu, 7 Apr 2005 16:03:53 +0200]=>(MIME part)=>document_word.pif
Infected with: Win32.Netsky.D@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)=>[Subject: Re: Word file][Date: Thu, 7 Apr 2005 16:03:53 +0200]=>(MIME part)=>document_word.pif
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)=>[Subject: Re: Word file][Date: Thu, 7 Apr 2005 16:03:53 +0200]=>(MIME part)=>document_word.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)=>[Subject: Re: Word file][Date: Thu, 7 Apr 2005 16:03:53 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)=>[Subject: Re: Hi][Date: Thu, 7 Apr 2005 14:46:40 +0200]=>(MIME part)=>your_file.pif
Infected with: Win32.Netsky.D@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)=>[Subject: Re: Hi][Date: Thu, 7 Apr 2005 14:46:40 +0200]=>(MIME part)=>your_file.pif
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)=>[Subject: Re: Hi][Date: Thu, 7 Apr 2005 14:46:40 +0200]=>(MIME part)=>your_file.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)=>[Subject: Re: Hi][Date: Thu, 7 Apr 2005 14:46:40 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)=>[Subject: Re: Re: Re: Your document][Date: Thu, 7 Apr 2005 09:06:04 +0200]=>(MIME part)=>document_4351.pif
Infected with: Win32.Netsky.D@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)=>[Subject: Re: Re: Re: Your document][Date: Thu, 7 Apr 2005 09:06:04 +0200]=>(MIME part)=>document_4351.pif
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)=>[Subject: Re: Re: Re: Your document][Date: Thu, 7 Apr 2005 09:06:04 +0200]=>(MIME part)=>document_4351.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)=>[Subject: Re: Re: Re: Your document][Date: Thu, 7 Apr 2005 09:06:04 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)=>[Subject: Notice again][Date: Thu, 7 Apr 2005 10:07:43 +0200]=>(MIME part)=>abuses_ncl.zip=>details.txt .pif
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)=>[Subject: Notice again][Date: Thu, 7 Apr 2005 10:07:43 +0200]=>(MIME part)=>abuses_ncl.zip=>details.txt .pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)=>[Subject: Notice again][Date: Thu, 7 Apr 2005 10:07:43 +0200]=>(MIME part)=>abuses_ncl.zip
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)=>[Subject: Notice again][Date: Thu, 7 Apr 2005 10:07:43 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>message.scr
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>message.scr
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 179)=>[Subject: Re: Your document][Date: Wed, 6 Apr 2005 10:23:40 +0200]=>(MIME part)=>your_document.doc.pif
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 179)=>[Subject: Re: Your document][Date: Wed, 6 Apr 2005 10:23:40 +0200]=>(MIME part)=>your_document.doc.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 179)=>[Subject: Re: Your document][Date: Wed, 6 Apr 2005 10:23:40 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 179)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)=>[Subject: Re: Re: Document][Date: Wed, 6 Apr 2005 09:23:56 +0200]=>(MIME part)=>your_document.pif
Infected with: Win32.Netsky.D@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)=>[Subject: Re: Re: Document][Date: Wed, 6 Apr 2005 09:23:56 +0200]=>(MIME part)=>your_document.pif
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)=>[Subject: Re: Re: Document][Date: Wed, 6 Apr 2005 09:23:56 +0200]=>(MIME part)=>your_document.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)=>[Subject: Re: Re: Document][Date: Wed, 6 Apr 2005 09:23:56 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\System Volume Information\_restore{3C0907F0-7857-49B7-8CC5-D96436425DE5}\RP23\A0005405.exe
Infected with: Win32.Bagz.H@mm
C:\System Volume Information\_restore{3C0907F0-7857-49B7-8CC5-D96436425DE5}\RP23\A0005405.exe
Deleted
C:\WINDOWS\hosts
Infected with: Generic.Qhost.04FB2A00
C:\WINDOWS\hosts
Disinfection failed
C:\WINDOWS\hosts
Deleted
C:\WINDOWS\system32\hosts
Infected with: Generic.Qhost.04FB2A00
C:\WINDOWS\system32\hosts
Disinfection failed
C:\WINDOWS\system32\hosts
Deleted
voila!
merci et a+
;-)
Voici le rapport de bitfender :
BitDefender Online Scanner
Scan report generated at: Wed, Aug 23, 2006 - 11:40:40
Scan path: C:\;
Statistics
Time
00:25:41
Files
153645
Folders
3842
Boot Sectors
3
Archives
1824
Packed Files
8381
Results
Identified Viruses
4
Infected Files
13
Suspect Files
3
Warnings
0
Disinfected
0
Deleted Files
16
Engines Info
Virus Definitions
450309
Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)
Scan plugins
13
Archive plugins
39
Unpack plugins
5
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)=>message.scr
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 16:55:15 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 136)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)=>[Subject: hi][Date: Thu, 7 Apr 2005 16:55:31 +0200]=>(MIME part)=>game_xxo.zip=>data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)=>[Subject: hi][Date: Thu, 7 Apr 2005 16:55:31 +0200]=>(MIME part)=>game_xxo.zip=>data.rtf .scr
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)=>[Subject: hi][Date: Thu, 7 Apr 2005 16:55:31 +0200]=>(MIME part)=>game_xxo.zip
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)=>[Subject: hi][Date: Thu, 7 Apr 2005 16:55:31 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 137)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)=>[Subject: Re: Word file][Date: Thu, 7 Apr 2005 16:03:53 +0200]=>(MIME part)=>document_word.pif
Infected with: Win32.Netsky.D@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)=>[Subject: Re: Word file][Date: Thu, 7 Apr 2005 16:03:53 +0200]=>(MIME part)=>document_word.pif
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)=>[Subject: Re: Word file][Date: Thu, 7 Apr 2005 16:03:53 +0200]=>(MIME part)=>document_word.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)=>[Subject: Re: Word file][Date: Thu, 7 Apr 2005 16:03:53 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 149)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)=>[Subject: Re: Hi][Date: Thu, 7 Apr 2005 14:46:40 +0200]=>(MIME part)=>your_file.pif
Infected with: Win32.Netsky.D@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)=>[Subject: Re: Hi][Date: Thu, 7 Apr 2005 14:46:40 +0200]=>(MIME part)=>your_file.pif
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)=>[Subject: Re: Hi][Date: Thu, 7 Apr 2005 14:46:40 +0200]=>(MIME part)=>your_file.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)=>[Subject: Re: Hi][Date: Thu, 7 Apr 2005 14:46:40 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 151)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)=>[Subject: Re: Re: Re: Your document][Date: Thu, 7 Apr 2005 09:06:04 +0200]=>(MIME part)=>document_4351.pif
Infected with: Win32.Netsky.D@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)=>[Subject: Re: Re: Re: Your document][Date: Thu, 7 Apr 2005 09:06:04 +0200]=>(MIME part)=>document_4351.pif
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)=>[Subject: Re: Re: Re: Your document][Date: Thu, 7 Apr 2005 09:06:04 +0200]=>(MIME part)=>document_4351.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)=>[Subject: Re: Re: Re: Your document][Date: Thu, 7 Apr 2005 09:06:04 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 169)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)=>[Subject: Notice again][Date: Thu, 7 Apr 2005 10:07:43 +0200]=>(MIME part)=>abuses_ncl.zip=>details.txt .pif
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)=>[Subject: Notice again][Date: Thu, 7 Apr 2005 10:07:43 +0200]=>(MIME part)=>abuses_ncl.zip=>details.txt .pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)=>[Subject: Notice again][Date: Thu, 7 Apr 2005 10:07:43 +0200]=>(MIME part)=>abuses_ncl.zip
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)=>[Subject: Notice again][Date: Thu, 7 Apr 2005 10:07:43 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 170)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)=>message.scr
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Thu, 7 Apr 2005 10:08:00 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 171)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>(MIME part)=>(message body)
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>message.scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)=>message.scr
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)=>[Subject: Mail Delivery (failure ncl@libertysurf][Date: Wed, 6 Apr 2005 10:21:34 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 178)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 179)=>[Subject: Re: Your document][Date: Wed, 6 Apr 2005 10:23:40 +0200]=>(MIME part)=>your_document.doc.pif
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 179)=>[Subject: Re: Your document][Date: Wed, 6 Apr 2005 10:23:40 +0200]=>(MIME part)=>your_document.doc.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 179)=>[Subject: Re: Your document][Date: Wed, 6 Apr 2005 10:23:40 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 179)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)=>[Subject: Re: Re: Document][Date: Wed, 6 Apr 2005 09:23:56 +0200]=>(MIME part)=>your_document.pif
Infected with: Win32.Netsky.D@mm
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)=>[Subject: Re: Re: Document][Date: Wed, 6 Apr 2005 09:23:56 +0200]=>(MIME part)=>your_document.pif
Disinfection failed
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)=>[Subject: Re: Re: Document][Date: Wed, 6 Apr 2005 09:23:56 +0200]=>(MIME part)=>your_document.pif
Deleted
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)=>[Subject: Re: Re: Document][Date: Wed, 6 Apr 2005 09:23:56 +0200]=>(MIME part)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 180)
Updated
C:\Documents and Settings\NCL.LSDBOT-III.000\Local Settings\Application Data\Identities\{B643A13F-A2F0-4401-B79D-9F6FAEB8D40E}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\System Volume Information\_restore{3C0907F0-7857-49B7-8CC5-D96436425DE5}\RP23\A0005405.exe
Infected with: Win32.Bagz.H@mm
C:\System Volume Information\_restore{3C0907F0-7857-49B7-8CC5-D96436425DE5}\RP23\A0005405.exe
Deleted
C:\WINDOWS\hosts
Infected with: Generic.Qhost.04FB2A00
C:\WINDOWS\hosts
Disinfection failed
C:\WINDOWS\hosts
Deleted
C:\WINDOWS\system32\hosts
Infected with: Generic.Qhost.04FB2A00
C:\WINDOWS\system32\hosts
Disinfection failed
C:\WINDOWS\system32\hosts
Deleted
voila!
merci et a+
;-)
Salut,
maintenant, si tu n'as pas ces logiciels qui suivent telecharges les et scan ton pc completement:
SpyBot-Search & Destroy: (gratuit)
Spybot Search & Destroy
A² free: (gratuit)
A² Squared
Ad-Aware SE Personal: (en anglais, gratuit))
Ad-aware
-Le patch pour le faire fonctionner Ad-Aware SE en français: Patch français pour Ad-aware
refais ensuite un scan complet avec Ewido et supprime tout ce qu'il te trouve.
Puis pour finir (normalement) Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2(en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
_Online Scanner
_Kaspersky Online Scanner
_My Computer
https://www.kaspersky.fr/downloads
A++
maintenant, si tu n'as pas ces logiciels qui suivent telecharges les et scan ton pc completement:
SpyBot-Search & Destroy: (gratuit)
Spybot Search & Destroy
A² free: (gratuit)
A² Squared
Ad-Aware SE Personal: (en anglais, gratuit))
Ad-aware
-Le patch pour le faire fonctionner Ad-Aware SE en français: Patch français pour Ad-aware
refais ensuite un scan complet avec Ewido et supprime tout ce qu'il te trouve.
Puis pour finir (normalement) Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2(en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
_Online Scanner
_Kaspersky Online Scanner
_My Computer
https://www.kaspersky.fr/downloads
A++
ard123
Messages postés
34
Date d'inscription
lundi 21 août 2006
Statut
Membre
Dernière intervention
4 novembre 2008
26 août 2006 à 00:35
26 août 2006 à 00:35
ok, je continue.
Merci pour ton aide ;-)
Merci pour ton aide ;-)