J'ai plein de virus

Résolu
soph52 Messages postés 18 Statut Membre -  
 evhl -
bonjour, j'ai regardé sur le forum et donc j'ai fait un scan avec Ewido qui m'a donné ceci :
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 17:40:01 29/09/2006

+ Scan result:

C:\WINDOWS\system32\__delete_on_reboot__p_u_s_h_o_w_2_2_._d_l_l_ -> Adware.AdvertMen : No action taken.
C:\WINDOWS\system32\pushow97.dll -> Adware.AdvertMen : No action taken.
[1336] C:\WINDOWS\system32\pushow22.dll -> Adware.AdvertMen : No action taken.
[2468] C:\WINDOWS\system32\pushow22.dll -> Adware.AdvertMen : No action taken.
C:\Program Files\Fichiers communs\{EC61486A-07CF-1036-0621-050609050021}\Update.exe -> Adware.Agent : No action taken.
C:\Program Files\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
C:\Program Files\DeluxeCommunications\Dxc.exe -> Adware.DeluxeCommunications : No action taken.
C:\Program Files\DeluxeCommunications\DxcBho.dll -> Adware.DeluxeCommunications : No action taken.
C:\Program Files\DeluxeCommunications\DxcCore.dll -> Adware.DeluxeCommunications : No action taken.
HKLM\SOFTWARE\Classes\CLSID\{A8BD6820-6ED7-423E-9558-2D1486B0FEEA} -> Adware.DeluxeCommunications : No action taken.
HKLM\SOFTWARE\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
HKLM\SOFTWARE\DeluxeCommunications\Internet Explorer -> Adware.DeluxeCommunications : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\DeluxeCommunications\Internet Explorer -> Adware.DeluxeCommunications : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\Microsoft\Windows\CurrentVersion\Run\\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
C:\Program Files\Butterfly Oasis Screensaver\ButterflyOasis.exe -> Adware.GAINNetwork : No action taken.
C:\Program Files\Magic Waterfall Screensaver\MagicWaterfall.exe -> Adware.GAINNetwork : No action taken.
C:\Program Files\Aquatica Waterworlds\AQ3Uninstaller.exe -> Adware.Gator : No action taken.
HKLM\SOFTWARE\Classes\CLSID\{F62A47A7-4CA3-9D00-95A3-6724d43a9E8C} -> Adware.Generic : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F62A47A7-4CA3-9D00-95A3-6724D43A9E8C} -> Adware.Generic : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F62A47A7-4CA3-9D00-95A3-6724D43A9E8C} -> Adware.Generic : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\YourSiteBar -> Adware.ISTBar : No action taken.
HKLM\SOFTWARE\YourSiteBar -> Adware.ISTBar : No action taken.
HKLM\SOFTWARE\YourSiteBar\Historyfiles -> Adware.ISTBar : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\IST -> Adware.ISTBar : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\Prodiff\rmxnavigator\shopping\\sh163 -> Adware.Locators : No action taken.
C:\WINDOWS\system32\guard.tmp -> Adware.Look2Me : No action taken.
C:\WINDOWS\system32\ir68l5ju1.dll -> Adware.Look2Me : No action taken.
C:\WINDOWS\system32\ktpul7791.dll -> Adware.Look2Me : No action taken.
C:\nwnmff_e12.exe -> Adware.Look2Me : No action taken.
C:\WINDOWS\system32\kfwktmvg.dll -> Adware.PurityScan : No action taken.
C:\WINDOWS\system32\Μicrosoft.NET\ѕcanregw.exe -> Adware.PurityScan : No action taken.
HKLM\SOFTWARE\Classes\WUSN.1 -> Adware.SaveNow : No action taken.
C:\Program Files\Fichiers communs\Sandlot Shared\slghex.dll -> Adware.SpywareStorm : No action taken.
C:\Documents and Settings\utilisateur\Application Data\Starware -> Adware.Starware : No action taken.
C:\Documents and Settings\utilisateur\Application Data\Starware\Manager -> Adware.Starware : No action taken.
C:\Documents and Settings\utilisateur\Application Data\Starware\Manager\ManagerOptions.xml -> Adware.Starware : No action taken.
C:\Documents and Settings\utilisateur\Application Data\Starware\Manager\ManagerOptions.xml.backup -> Adware.Starware : No action taken.
C:\Program Files\SurfAccuracy -> Adware.SurfAccuracy : No action taken.
C:\Program Files\SurfAccuracy\License.lnk -> Adware.SurfAccuracy : No action taken.
C:\Program Files\SurfAccuracy\SAcc.cfg -> Adware.SurfAccuracy : No action taken.
C:\WINDOWS\Temp\u606.tmp -> Adware.SurfSide : No action taken.
C:\WINDOWS\Temp\u607.tmp -> Adware.SurfSide : No action taken.
C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
C:\Downloads\LuxorAR_Setup-dm[1].exe -> Adware.Trymedia : No action taken.
C:\Program Files\TheSearchAccelerator -> Adware.UCmore : No action taken.
C:\Program Files\WinFixer 2005 -> Adware.WinFixer : No action taken.
C:\Program Files\WinFixer 2005\lock.dat -> Adware.WinFixer : No action taken.
C:\Program Files\YourSiteBar -> Adware.YourSiteBar : No action taken.
C:\Program Files\YourSiteBar\imagemap_normal.bmp -> Adware.YourSiteBar : No action taken.
C:\Program Files\YourSiteBar\imagemap_over.bmp -> Adware.YourSiteBar : No action taken.
C:\Program Files\YourSiteBar\version.txt -> Adware.YourSiteBar : No action taken.
C:\Program Files\YourSiteBar\yoursitebar.xml -> Adware.YourSiteBar : No action taken.
C:\Program Files\YourSiteBar\ysb.dll -> Adware.YourSiteBar : No action taken.
HKLM\SOFTWARE\Classes\Ysb.YsbObj -> Adware.YourSiteBar : No action taken.
HKLM\SOFTWARE\Classes\Ysb.YsbObj.1 -> Adware.YourSiteBar : No action taken.
HKLM\SOFTWARE\Classes\Ysb.YsbObj\CLSID -> Adware.YourSiteBar : No action taken.
HKLM\SOFTWARE\Classes\Ysb.YsbObj\CurVer -> Adware.YourSiteBar : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\EGDHTML -> Dialer.Generic : No action taken.
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\CA9NNJAW\gator[1].exe -> Downloader.ConHook.ah : No action taken.
C:\WINDOWS\system32\ssttuut.dll -> Downloader.ConHook.ah : No action taken.
C:\Program Files\Fichiers communs\Yazzle1122OinAdmin.exe -> Dropper.Small : No action taken.
C:\Documents and Settings\utilisateur\Mes documents\Downloads\[LiveStream] adagio d'albinoni 1 17\install.exe -> Hijacker.Agent.hi : No action taken.
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\3AW3MZO4\SystemDoctor2006FreeInstall_fr[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.l : No action taken.
C:\Documents and Settings\utilisateur\Application Data\winantiviruspro2006freeinstall_fr[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : No action taken.
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\ZOSWIJHX\ErrorSafeFrenchNewReleaseInstall[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : No action taken.
C:\Program Files\Network Monitor\__delete_on_reboot__n_e_t_m_o_n_._e_x_e_ -> Not-A-Virus.Monitor.Win32.NetMon.a : No action taken.
C:\WINDOWS\system32\drivers\df_kmd.sys -> Rootkit.Agent.af : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@247realmedia[2].txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@incredimailltd.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@2o7[2].txt -> TrackingCookie.2o7 : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@betzipcom.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@wholesalemarketer.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@adrevolver[2].txt -> TrackingCookie.Adrevolver : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@casalemedia[2].txt -> TrackingCookie.Casalemedia : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@clickbank[1].txt -> TrackingCookie.Clickbank : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@as-eu.falkag[1].txt -> TrackingCookie.Falkag : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@as-eu.falkag[1].txt -> TrackingCookie.Falkag : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@as1.falkag[1].txt -> TrackingCookie.Falkag : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@as1.falkag[2].txt -> TrackingCookie.Falkag : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@findwhat[1].txt -> TrackingCookie.Findwhat : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@findwhat[1].txt -> TrackingCookie.Findwhat : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@ehg-avanquest.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@ehg-telecomitalia.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@ehg-telecomitalia.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@ehg-telecomitalia.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@ilead.itrack[1].txt -> TrackingCookie.Itrack : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@data2.perf.overture[1].txt -> TrackingCookie.Overture : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@perf.overture[1].txt -> TrackingCookie.Overture : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@data2.perf.overture[2].txt -> TrackingCookie.Overture : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@overture[2].txt -> TrackingCookie.Overture : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@perf.overture[1].txt -> TrackingCookie.Overture : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@creative.paypopup[1].txt -> TrackingCookie.Paypopup : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@ads.pointroll[2].txt -> TrackingCookie.Pointroll : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@revenue[1].txt -> TrackingCookie.Revenue : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@roispy[1].txt -> TrackingCookie.Roispy : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@statcounter[1].txt -> TrackingCookie.Statcounter : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@statcounter[1].txt -> TrackingCookie.Statcounter : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@weborama[1].txt -> TrackingCookie.Weborama : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@weborama[1].txt -> TrackingCookie.Weborama : No action taken.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : No action taken.
C:\Documents and Settings\utilisateur\Local Settings\Temp\Cookies\utilisateur@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : No action taken.
C:\WINDOWS\Temp\Cookies\utilisateur@zedo[2].txt -> TrackingCookie.Zedo : No action taken.
C:\WINDOWS\eg_auth_1050.dll -> Trojan.P2E.cm : No action taken.
C:\WINDOWS\egauth4_1050.dll -> Trojan.P2E.cm : No action taken.
C:\WINDOWS\p2esocks_1050.dll -> Trojan.P2E.cm : No action taken.
C:\WINDOWS\system32\eg_auth_srv_1050.dll -> Trojan.P2E.cm : No action taken.

::Report end
et avec hijackthis :
Logfile of HijackThis v1.99.1
Scan saved at 14:55:38, on 29/09/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Network Monitor\netmon.exe
C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Norton AntiVirus\SAVScan.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\PROGRA~1\PRINTV~1\pvmodule.exe
C:\Program Files\Fichiers communs\{EC61486A-07CF-1036-0621-050609050021}\Update.exe
C:\Program Files\Shareaza\Shareaza.exe
C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\Calendrier\Cld2000.exe
C:\DOCUME~1\UTILIS~1\MESDOC~1\SKS~1\dvdplay.exe
C:\WINDOWS\system32\?icrosoft.NET\?canregw.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Boonty\BoontyBox\BoontyBox.exe
C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe
C:\WINDOWS\system32\VirtualExpander\VirtualExpander.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Norton AntiVirus\OPScan.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Telecom Italia France\Barre Magique 1.05.08.22\BBarHelpers.exe
C:\PROGRA~1\INCRED~1\bin\ImNotfy.exe
C:\Mes téléchargements\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://portail.free.fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - C:\Program Files\DeluxeCommunications\DxcBho.dll
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {153B8030-6685-3251-F3A8-6343B264A1CB} - C:\WINDOWS\system32\kfwktmvg.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Barre &Magique - {01A7812B-59E8-4A4F-BFD6-EEE6D4CB6BA2} - C:\Program Files\Telecom Italia France\Barre Magique 1.05.08.22\Tiscali BBar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: YourSiteBar - {86227D9C-0EFE-4f8a-AA55-30386A3F5686} - C:\Program Files\YourSiteBar\ysb.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [PVModule] C:\PROGRA~1\PRINTV~1\pvmodule.exe
O4 - HKLM\..\RunServices: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O4 - HKCU\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [Cld2000.exe] C:\Program Files\Calendrier\Cld2000.exe
O4 - HKCU\..\Run: [Soeb] "C:\DOCUME~1\UTILIS~1\MESDOC~1\SKS~1\dvdplay.exe" -vt yazb
O4 - HKCU\..\Run: [Taoxpu] C:\WINDOWS\system32\?icrosoft.NET\?canregw.exe
O4 - Startup: BoontyBox Alice Jeux.lnk = C:\Program Files\Boonty\BoontyBox\BoontyBox.exe
O4 - Startup: MSN Pictures Displayer.lnk = C:\Program Files\MSN Pictures Displayer\MSN Pictures Displayer.exe
O4 - Startup: reminder-Enregistrement du produit ScanSoft.lnk = C:\RECYCLER\NPROTECT\00000754.dll
O4 - Startup: VirtualExpander.lnk = C:\WINDOWS\system32\VirtualExpander\VirtualExpander.exe
O4 - Global Startup: Démarrage rapide du logiciel HP Image Zone.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logiciel Kodak EasyShare.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Ne m'oublie pas !.lnk = C:\MicroApp\Cartes d'Anniversaire\REMIND.EXE
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZNxpt233IMFR
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: fdjeux - https://www.fdjeux.net/classes/fdjeux.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {041816FE-7869-4B5F-9BE4-FFF3B7368727} (IsHere Class) - http://barremagique.aliceadsl.fr/download/BarreMagique.cab
O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - ak.exe.imgfarm.com
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} - https://support.norton.com/sp/en/us/home/current/info
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - https://support.norton.com/sp/en/us/home/current/info
O16 - DPF: {3ABC79F3-E345-43B9-A79F-5D5C7A8EC4DC} - http://es6-scripts.dlv4.com/binaries/egauth4/egauth4_1050_FR_XP.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-3-30.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - update.microsoft.com
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - update.microsoft.com
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - a840.g.akamai.net
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.extrafilm.fr/net/import/ImageUploader3.cab
O16 - DPF: {A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9} (InetDownload Class) - https://media.pineconeresearch.com/ActiveX/downloadcontrol.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game11.zylom.aliceadsl.fr/activex/zylomgamesplayer.cab
O16 - DPF: {F11BFF96-CC7A-4482-819B-91EAE4C454EF} (NTR ActiveX 1.1.6) - http://www.inquiero.com/inquiero/mod/setup/ntractivex116_14.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - AppInit_DLLs: dxclib303562752.dll,pushow22.dll
O20 - Winlogon Notify: Setup - C:\WINDOWS\system32\p8p6li7s18.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: InCD Helper (read only) (InCDsrvR) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Windows Log - Unknown owner - C:\WINDOWS\system32\nvsvcd.exe

quelqu'un pourrait m'aider à résoudre ce problème ?
avec tous mes remerciements
sophie
A voir également:

14 réponses

Utilisateur anonyme
 
Salut,

refais un scan avec Ewido et supprime tout (delete)

Désinstalle MSN+ et réinstalle le sans les sponsors.

Fait ce nettoyage: (à faire réguliérement)

¤Telecharges et installes ceci:
CCleaner:
Ccleaner

dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes

¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"

A+++
0
soph52 Messages postés 18 Statut Membre
 
bonjour,
j'ai fait tout ce que tu m'as dit de faire mais j'ai un petit problème.
Aprél avoir fait le nettoyage avec le programme ccleaner , il me demande de désinstaller des programmes mais ceux sont des programmes que je me sers , est ce que je dois désinstaller ou pas ?
merci de me répondre et bonne fin de week-end
sophie
0
Utilisateur anonyme
 
Salut,

normalement, il te dit rien, sauf si t uas été cliqué ailleur.. tu cliques juste sur "nettoyeur du registre (chose du genre) il devrait pas te demander de désinstaller un programme en particulier si tu t'en sert alors ne les supprime pas.

Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp

https://www.bitdefender.com/toolbox/

0
soph52 Messages postés 18 Statut Membre
 
bonjour, j'ai fait ce que tu m'as dit et voici le rapport :
BitDefender Online Scanner



Scan report generated at: Mon, Oct 02, 2006 - 13:00:25





Scan path: C:\;D:\;E:\;F:\;G:\;H:\;







Statistics

Time
01:02:48

Files
325438

Folders
5535

Boot Sectors
2

Archives
16672

Packed Files
33012




Results

Identified Viruses
33

Infected Files
275

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
276




Engines Info

Virus Definitions
473400

Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)

Scan plugins
13

Archive plugins
38

Unpack plugins
6

E-mail plugins
6

System plugins
1




Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes




Scanned File
Status

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Magic Waterfall Screensaver\Magic Waterfall Settings.lnk=>C:\Program Files\Magic Waterfall Screensaver\MagicWaterfall.exe
Infected with: Trojan.Starter.H

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Magic Waterfall Screensaver\Magic Waterfall Settings.lnk=>C:\Program Files\Magic Waterfall Screensaver\MagicWaterfall.exe
Disinfection failed

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Magic Waterfall Screensaver\Magic Waterfall Settings.lnk=>C:\Program Files\Magic Waterfall Screensaver\MagicWaterfall.exe
Deleted

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Magic Waterfall Screensaver\Magic Waterfall Settings.lnk
Update failed

C:\Documents and Settings\utilisateur\Application Data\winantiviruspro2006freeinstall_fr[1].exe
Infected with: Trojan.Downloader.Winfixer.O

C:\Documents and Settings\utilisateur\Application Data\winantiviruspro2006freeinstall_fr[1].exe
Disinfection failed

C:\Documents and Settings\utilisateur\Application Data\winantiviruspro2006freeinstall_fr[1].exe
Deleted

C:\Documents and Settings\utilisateur\Local Settings\Temp\!update.exe
Infected with: Trojan.Downloader.PurityScan.BP

C:\Documents and Settings\utilisateur\Local Settings\Temp\!update.exe
Disinfection failed

C:\Documents and Settings\utilisateur\Local Settings\Temp\!update.exe
Deleted

C:\Documents and Settings\utilisateur\Local Settings\Temporary Internet Files\Content.IE5\X3FQRZU2\!update-4295[1].0000
Infected with: Trojan.Downloader.PurityScan.BP

C:\Documents and Settings\utilisateur\Local Settings\Temporary Internet Files\Content.IE5\X3FQRZU2\!update-4295[1].0000
Disinfection failed

C:\Documents and Settings\utilisateur\Local Settings\Temporary Internet Files\Content.IE5\X3FQRZU2\!update-4295[1].0000
Deleted

C:\Documents and Settings\utilisateur\Mes documents\SKS~1\dvdplay.exe
Infected with: Trojan.Clspring.BU

C:\Documents and Settings\utilisateur\Mes documents\SKS~1\dvdplay.exe
Disinfection failed

C:\Documents and Settings\utilisateur\Mes documents\SKS~1\dvdplay.exe
Delete failed

C:\RECYCLER\NPROTECT\01050578.EXE
Infected with: Trojan.Starter.H

C:\RECYCLER\NPROTECT\01050578.EXE
Disinfection failed

C:\RECYCLER\NPROTECT\01050578.EXE
Deleted

C:\RECYCLER\NPROTECT\01050579.EXE
Infected with: Trojan.Downloader.Winfixer.O

C:\RECYCLER\NPROTECT\01050579.EXE
Disinfection failed

C:\RECYCLER\NPROTECT\01050579.EXE
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP436\A0048286.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP436\A0048286.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP436\A0048286.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048434.exe
Infected with: Win32.Worm.VB.DW

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048434.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048434.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048452.exe
Infected with: Trojan.Downloader.Adload.DX

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048452.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048452.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048465.dll
Infected with: Trojan.Candebe.CZ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048465.dll
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048465.dll
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048473.dll
Infected with: Trojan.Candebe.CZ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048473.dll
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048473.dll
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048480.exe
Infected with: Backdoor.Rbot.CMN

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048480.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048480.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048481.exe
Infected with: Win32.Worm.VB.DW

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048481.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048481.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048513.exe
Infected with: Trojan.Downloader.Agent.AJP

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048513.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048513.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048515.exe
Infected with: Trojan.Downloader.Small.BOJ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048515.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048515.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048517.exe
Infected with: Trojan.Downloader.Small.BOJ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048517.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048517.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048519.exe
Infected with: Win32.Worm.VB.DW

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048519.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048519.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048520.dll
Infected with: Trojan.Downloader.YM

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048520.dll
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048520.dll
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048521.dll
Infected with: Trojan.Downloader.YM

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048521.dll
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048521.dll
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048522.exe
Infected with: Backdoor.Rbot.CMN

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048522.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP437\A0048522.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048534.exe
Infected with: Trojan.Downloader.Adload.DW

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048534.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048534.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048549.dll
Infected with: Trojan.Candebe.CZ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048549.dll
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048549.dll
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048563.dll
Infected with: Trojan.Candebe.CZ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048563.dll
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048563.dll
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048567.exe
Infected with: Trojan.Downloader.Adload.DW

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048567.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048567.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048570.EXE
Infected with: Trojan.Downloader.Small.BUY

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048570.EXE
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048571.EXE
Infected with: Trojan.Downloader.Small.BUY

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048571.EXE
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048573.EXE
Infected with: Trojan.Canbede.L

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048573.EXE
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048573.EXE
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048673.dll
Infected with: Trojan.Candebe.CZ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048673.dll
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048673.dll
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048685.exe
Infected with: Trojan.Downloader.Adload.DX

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048685.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048685.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048721.dll
Infected with: Trojan.Candebe.CZ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048721.dll
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048721.dll
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048728.dll
Infected with: Trojan.Candebe.CZ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048728.dll
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048728.dll
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048761.exe
Infected with: Trojan.Downloader.Small.BUY

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048761.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048764.exe
Infected with: Trojan.Canbede.L

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048764.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048764.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048766.exe
Infected with: Trojan.Adload.FK

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048766.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048766.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048767.exe
Infected with: Trojan.Downloader.Adload.DW

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048767.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048767.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048768.exe
Infected with: Trojan.Downloader.Small.BUY

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048768.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048769.exe
Infected with: Trojan.Downloader.Adload.DX

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048769.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048769.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048773.exe
Infected with: Trojan.Adclick.C

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048773.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048773.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048775.exe
Infected with: Trojan.Downloader.Adload.DW

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048775.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048775.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048776.exe
Infected with: Trojan.Canbede.L

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048776.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048776.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048849.exe
Infected with: Dropped:Trojan.Starter.H

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048849.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048849.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048850.exe
Infected with: Trojan.Downloader.IstBar.PE

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048850.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048850.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048860.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048860.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048860.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048861.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048861.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048861.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048862.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048862.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048862.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048863.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048863.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048863.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048866.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048866.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048866.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048873.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048873.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048873.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048874.exe
Infected with: Trojan.Proxy.493

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048874.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048874.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048875.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048875.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048875.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048876.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048876.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048876.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048877.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048877.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048877.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048878.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048878.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048878.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048879.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048879.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048879.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048880.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048880.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048880.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048881.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048881.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048881.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048882.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048882.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048882.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048883.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048883.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048883.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048884.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048884.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048884.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048885.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048885.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048885.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048886.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048886.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048886.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048887.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048887.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048887.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048888.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048888.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048888.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048889.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048889.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048889.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048890.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048890.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048890.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048891.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048891.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048891.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048892.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048892.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048892.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048893.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048893.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048893.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048894.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048894.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048894.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048895.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048895.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048895.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048896.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048896.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048896.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048897.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048897.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048897.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048899.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048899.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048899.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048901.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048901.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048901.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048902.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048902.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048902.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048903.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048903.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048903.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048904.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048904.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048904.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048905.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048905.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048905.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048906.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048906.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048906.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048907.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048907.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048907.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048908.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048908.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048908.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048910.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048910.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048910.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048911.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048911.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048911.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048912.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048912.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048912.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048913.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048913.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048913.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048914.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048914.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048914.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048915.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048915.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048915.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048916.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048916.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048916.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048917.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048917.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048917.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048918.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048918.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048918.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048919.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048919.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048919.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048920.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048920.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048920.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048921.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048921.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048921.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048922.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048922.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048922.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048923.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048923.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048923.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048924.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048924.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048924.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048925.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048925.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048925.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048926.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048926.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048926.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048927.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048927.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048927.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048928.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048928.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048928.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048929.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048929.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048929.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048930.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048930.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048930.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048931.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048931.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048931.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048932.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048932.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048932.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048933.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048933.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048933.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048934.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048934.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048934.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048935.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048935.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048935.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048936.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048936.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048936.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048937.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048937.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048937.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048938.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048938.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048938.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048939.exe
Infected with: Trojan.Proxy.Horst.HQ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048939.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048939.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048940.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048940.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048940.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048941.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048941.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048941.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048942.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048942.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048942.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048943.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048943.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048943.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048944.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048944.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048944.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048945.exe
Infected with: Trojan.Proxy.Horst.HQ

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048945.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048945.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048946.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048946.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048946.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048947.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048947.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048947.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048948.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048948.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048948.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048949.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048949.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048949.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048950.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048950.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048950.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048951.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048951.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048951.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048952.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048952.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048952.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048953.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048953.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048953.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048954.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048954.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048954.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048955.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048955.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048955.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048956.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048956.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048956.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048957.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048957.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048957.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048958.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048958.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048958.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048959.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048959.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048959.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048960.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048960.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048960.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048961.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048961.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048961.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048962.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048962.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048962.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048963.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048963.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048963.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048964.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048964.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048964.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048965.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048965.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048965.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048966.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048966.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048966.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048967.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048967.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048967.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048968.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048968.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048968.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048969.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048969.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048969.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048970.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048970.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048970.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048971.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048971.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048971.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048972.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048972.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048972.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048973.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048973.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048973.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048974.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048974.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048974.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048975.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048975.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048975.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048976.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048976.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048976.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048977.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048977.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048977.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048978.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048978.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048978.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048979.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048979.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048979.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048980.exe
Infected with: Generic.Malware.SMYVdg.E5BB740A

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048980.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048980.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048981.exe
Infected with: Trojan.Zlob.Gen

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048981.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048981.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048982.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048982.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048982.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048983.exe
Infected with: Generic.Malware.SMYVdg.CFD645D5

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048983.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048983.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048984.exe
Infected with: Generic.Malware.SMYVdg.35148937

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048984.exe
Disinfection failed

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048984.exe
Deleted

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048985.exe
Infected with: Generic.Malware.SMYVdg.D93DC46D

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP438\A0048985.exe
Di
0
Utilisateur anonyme
 
Salut,

clic sur démarrer, poste de travail, C:, program files et supprime ce dossier

Magic Waterfall Screensaver < ne le retélécharge plus il contient des salopries

Alors ceci; C:\System Volume Information\_restore(voir rapport Bitdefender) indique que ta restauration du systeme etait infecté ou est infecté, pour être sûr, nous allons créer un point propre.

Clic sur "demarrer", cliques droit sur "poste de travail", "propriétés", onglet "restauration du systeme"

¤ coches la case "desactiver la Restauration du systéme sur tous les lecteurs", puis clic ur "appliquer"
¤ decoches la case et clic sur "appliquer" puis "ok".

Maintenant, que l'ont à effacés les point infectés, nous allons créer un point propre:

Clic sur "demarrer", "tous les programmes", "accessoires", "outils système", "restauration du système", choisis "créer un point de restauration" nommes le " ccm" par exemple, cliques sur "créer" puis "ok".
Voilà, maintenant le point de restauration est créer si un jour tu décides tu pourra revenir en arriere à la date que tu l'as créer donc à ce jour; en fesant la marche arriére tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux.

Refais un nettoyage complet avec Ccleaner.

Refais un scan complet de ton système avec Ewido et colle le rapport ici avec un nouveau rappor thijackthis stp
0
soph52 Messages postés 18 Statut Membre
 
désolée de n'avoir répondu plus rapidement mais je suis partie en vacances puis j'ai eu des problèmes d'ordi !
je vous envoie le rapport ewido puis celui d'hitjackthis !
avec tous mes remerciements
a bientôt sophie
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 17:26:37 25/11/2006

+ Scan result:

C:\Program Files\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
C:\Program Files\DeluxeCommunications\Dxc.exe -> Adware.DeluxeCommunications : No action taken.
C:\Program Files\DeluxeCommunications\DxcBho.dll -> Adware.DeluxeCommunications : No action taken.
C:\Program Files\DeluxeCommunications\DxcCore.dll -> Adware.DeluxeCommunications : No action taken.
HKLM\SOFTWARE\Classes\CLSID\{A8BD6820-6ED7-423E-9558-2D1486B0FEEA} -> Adware.DeluxeCommunications : No action taken.
HKLM\SOFTWARE\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
HKLM\SOFTWARE\DeluxeCommunications\Internet Explorer -> Adware.DeluxeCommunications : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\DeluxeCommunications\Internet Explorer -> Adware.DeluxeCommunications : No action taken.
HKU\S-1-5-21-2085665842-942427178-2982065257-1006\Software\Microsoft\Windows\CurrentVersion\Run\\DeluxeCommunications -> Adware.DeluxeCommunications : No action taken.
C:\Program Files\Butterfly Oasis Screensaver\ButterflyOasis.exe -> Adware.GAINNetwork : No action taken.
C:\Program Files\Aquatica Waterworlds\AQ3Uninstaller.exe -> Adware.Gator : No action taken.
C:\Program Files\Fichiers communs\Sandlot Shared\slghex.dll -> Adware.SpywareStorm : No action taken.
C:\Documents and Settings\utilisateur\Application Data\Starware -> Adware.Starware : No action taken.
C:\Documents and Settings\utilisateur\Application Data\Starware\Manager -> Adware.Starware : No action taken.
C:\Documents and Settings\utilisateur\Application Data\Starware\Manager\ManagerOptions.xml -> Adware.Starware : No action taken.
C:\Documents and Settings\utilisateur\Application Data\Starware\Manager\ManagerOptions.xml.backup -> Adware.Starware : No action taken.
C:\Program Files\SurfAccuracy -> Adware.SurfAccuracy : No action taken.
C:\Program Files\SurfAccuracy\License.lnk -> Adware.SurfAccuracy : No action taken.
C:\Program Files\SurfAccuracy\SAcc.cfg -> Adware.SurfAccuracy : No action taken.
C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
[1348] C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
[2756] C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
[2764] C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
[2800] C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
[2856] C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
[3324] C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
[4088] C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
[504] C:\WINDOWS\system32\dxclib303562752.dll -> Adware.SurfSide : No action taken.
C:\Downloads\LuxorAR_Setup-dm[1].exe -> Adware.Trymedia : No action taken.
C:\Program Files\TheSearchAccelerator -> Adware.UCmore : No action taken.
C:\Program Files\WinFixer 2005 -> Adware.WinFixer : No action taken.
C:\Program Files\WinFixer 2005\lock.dat -> Adware.WinFixer : No action taken.

::Report end

Logfile of HijackThis v1.99.1
Scan saved at 17:46:00, on 25/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Anuman Interactive\Le journal de votre naissance\anniv.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\utilisateur\Mes documents\Mes fichiers reçus\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.fr.netscape.com/fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://portail.free.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://keyword.fr.netscape.com/keyword/%s
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - C:\Program Files\DeluxeCommunications\DxcBho.dll
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {153B8030-6685-3251-F3A8-6343B264A1CB} - (no file)
O2 - BHO: (no name) - {81958136-67D6-3207-F7AE-661347DB3EC0} - C:\WINDOWS\system32\vquyhhpj.dll (file missing)
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: (no name) - {D4AFE883-5F6A-5DE8-4102-5CF079C86D9C} - (no file)
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Barre &Magique - {01A7812B-59E8-4A4F-BFD6-EEE6D4CB6BA2} - C:\Program Files\Telecom Italia France\Barre Magique 1.05.08.22\Tiscali BBar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Anniversaires] C:\Anuman Interactive\Le journal de votre naissance\anniv.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\RunServices: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O4 - HKCU\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - HKCU\..\Run: [Soeb] "C:\DOCUME~1\UTILIS~1\MESDOC~1\SKS~1\dvdplay.exe" -vt tzt
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZNxpt233IMFR
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: fdjeux - https://www.fdjeux.net/classes/fdjeux.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {041816FE-7869-4B5F-9BE4-FFF3B7368727} (IsHere Class) - http://barremagique.aliceadsl.fr/download/BarreMagique.cab
O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei/SmileyCentralFWBInitialSetup1.0.0.15.cab
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://support.norton.com/sp/en/us/home/current/info
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - https://support.norton.com/sp/en/us/home/current/info
O16 - DPF: {3ABC79F3-E345-43B9-A79F-5D5C7A8EC4DC} - http://es6-scripts.dlv4.com/binaries/egauth4/egauth4_1050_FR_XP.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-3-30.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/1003233b6f50153f7706/netzip/RdxIE601_fr.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.extrafilm.fr/net/import/ImageUploader3.cab
O16 - DPF: {A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9} (InetDownload Class) - https://media.pineconeresearch.com/ActiveX/downloadcontrol.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game11.zylom.aliceadsl.fr/activex/zylomgamesplayer.cab
O16 - DPF: {F11BFF96-CC7A-4482-819B-91EAE4C454EF} (NTR ActiveX 1.1.6) - http://www.inquiero.com/inquiero/mod/setup/ntractivex116_14.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - AppInit_DLLs: dxclib303562752.dll,pushow22.dll
O20 - Winlogon Notify: Setup - C:\WINDOWS\system32\p8p6li7s18.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: InCD Helper (read only) (InCDsrvR) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe (file missing)
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Windows Log - Unknown owner - C:\WINDOWS\system32\nvsvcd.exe

bon courage
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
Salut,

il va falloir que tu refasses un scanne complet avec Ewido et que tu "delete" tout car là rien n'a été engagé est l'infection toujours là.

Regarde le tutoriel je t'ai donné si tu as besoin d'aide
0
soph52 Messages postés 18 Statut Membre
 
voilà j'ai refait ewido et supprimer les virus
voici un nouveau rapport
avec tous mes remerciements
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 15:53:14 27/11/2006

+ Scan result:



C:\Program Files\Butterfly Oasis Screensaver\ButterflyOasis.exe -> Adware.GAINNetwork : Cleaned with backup (quarantined).
C:\Program Files\Aquatica Waterworlds\AQ3Uninstaller.exe -> Adware.Gator : Cleaned with backup (quarantined).
C:\Documents and Settings\utilisateur\Local Settings\Temporary Internet Files\Content.IE5\YASME4ZP\cadrebas[1].html -> Adware.MediaMotor : Cleaned with backup (quarantined).
C:\Program Files\Fichiers communs\Sandlot Shared\slghex.dll -> Adware.SpywareStorm : Cleaned with backup (quarantined).
C:\Documents and Settings\utilisateur\Application Data\Starware -> Adware.Starware : Cleaned with backup (quarantined).
C:\Documents and Settings\utilisateur\Application Data\Starware\Manager -> Adware.Starware : Cleaned with backup (quarantined).
C:\Documents and Settings\utilisateur\Application Data\Starware\Manager\ManagerOptions.xml -> Adware.Starware : Cleaned with backup (quarantined).
C:\Documents and Settings\utilisateur\Application Data\Starware\Manager\ManagerOptions.xml.backup -> Adware.Starware : Cleaned with backup (quarantined).
C:\Program Files\SurfAccuracy -> Adware.SurfAccuracy : Cleaned with backup (quarantined).
C:\Program Files\SurfAccuracy\License.lnk -> Adware.SurfAccuracy : Cleaned with backup (quarantined).
C:\Program Files\SurfAccuracy\SAcc.cfg -> Adware.SurfAccuracy : Cleaned with backup (quarantined).
C:\Downloads\LuxorAR_Setup-dm[1].exe -> Adware.Trymedia : Cleaned with backup (quarantined).
C:\Program Files\TheSearchAccelerator -> Adware.UCmore : Cleaned with backup (quarantined).
C:\Program Files\WinFixer 2005 -> Adware.WinFixer : Cleaned with backup (quarantined).
C:\Program Files\WinFixer 2005\lock.dat -> Adware.WinFixer : Cleaned with backup (quarantined).
C:\Documents and Settings\utilisateur\Cookies\utilisateur@247realmedia[2].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@ehg-telecomitalia.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.


::Report end
0
Utilisateur anonyme
 
Très bien merci
Peux tu maintenant, remettre un nouveau rapport hijackthis
0
soph52 Messages postés 18 Statut Membre
 
bonsoir, je te mets le rapport hijackthis
bonne soirée et à bientôt
Logfile of HijackThis v1.99.1
Scan saved at 20:29:41, on 28/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Anuman Interactive\Le journal de votre naissance\anniv.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\vVX3000.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Mes téléchargements\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.fr.netscape.com/fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://portail.free.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://keyword.fr.netscape.com/keyword/%s
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - C:\Program Files\DeluxeCommunications\DxcBho.dll
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {153B8030-6685-3251-F3A8-6343B264A1CB} - (no file)
O2 - BHO: (no name) - {81958136-67D6-3207-F7AE-661347DB3EC0} - (no file)
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: (no name) - {D4AFE883-5F6A-5DE8-4102-5CF079C86D9C} - (no file)
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Barre &Magique - {01A7812B-59E8-4A4F-BFD6-EEE6D4CB6BA2} - C:\Program Files\Telecom Italia France\Barre Magique 1.05.08.22\Tiscali BBar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Anniversaires] C:\Anuman Interactive\Le journal de votre naissance\anniv.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\RunServices: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZNxpt233IMFR
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: fdjeux - https://www.fdjeux.net/classes/fdjeux.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {041816FE-7869-4B5F-9BE4-FFF3B7368727} (IsHere Class) - http://barremagique.aliceadsl.fr/download/BarreMagique.cab
O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei/SmileyCentralFWBInitialSetup1.0.0.15.cab
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://support.norton.com/sp/en/us/home/current/info
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - https://support.norton.com/sp/en/us/home/current/info
O16 - DPF: {3ABC79F3-E345-43B9-A79F-5D5C7A8EC4DC} - http://es6-scripts.dlv4.com/binaries/egauth4/egauth4_1050_FR_XP.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-3-30.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/1003233b6f50153f7706/netzip/RdxIE601_fr.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.extrafilm.fr/net/import/ImageUploader3.cab
O16 - DPF: {A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9} (InetDownload Class) - https://media.pineconeresearch.com/ActiveX/downloadcontrol.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game11.zylom.aliceadsl.fr/activex/zylomgamesplayer.cab
O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.pixdiscount.fr/clients/uploader_v2.1.0.53.cab
O16 - DPF: {F11BFF96-CC7A-4482-819B-91EAE4C454EF} (NTR ActiveX 1.1.6) - http://www.inquiero.com/inquiero/mod/setup/ntractivex116_14.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - AppInit_DLLs: dxclib303562752.dll,pushow22.dll
O20 - Winlogon Notify: Setup - C:\WINDOWS\system32\p8p6li7s18.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: InCD Helper (read only) (InCDsrvR) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe (file missing)
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Windows Log - Unknown owner - C:\WINDOWS\system32\nvsvcd.exe
0
Utilisateur anonyme
 
Merci

Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked"

1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.fr.netscape.com/fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://portail.free.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://keyword.fr.netscape.com/keyword/%s
R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - C:\Program Files\DeluxeCommunications\DxcBho.dll
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: (no name) - {153B8030-6685-3251-F3A8-6343B264A1CB} - (no file)
O2 - BHO: (no name) - {81958136-67D6-3207-F7AE-661347DB3EC0} - (no file)
O2 - BHO: (no name) - {D4AFE883-5F6A-5DE8-4102-5CF079C86D9C} - (no file)
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Barre &Magique - {01A7812B-59E8-4A4F-BFD6-EEE6D4CB6BA2} - C:\Program Files\Telecom Italia France\Barre Magique 1.05.08.22\Tiscali BBar.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [VX3000] C:\WINDOWS\vVX3000.exe
O4 - HKLM\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O4 - HKCU\..\Run: [DeluxeCommunications] C:\Program Files\DeluxeCommunications\Dxc.exe
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZNxpt233IMFR
O16 - DPF: fdjeux - https://www.fdjeux.net/classes/fdjeux.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {041816FE-7869-4B5F-9BE4-FFF3B7368727} (IsHere Class) - http://barremagique.aliceadsl.fr/download/BarreMagique.cab
O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://support.norton.com/sp/en/us/home/current/info
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - https://support.norton.com/sp/en/us/home/current/info
O16 - DPF: {3ABC79F3-E345-43B9-A79F-5D5C7A8EC4DC} - http://es6-scripts.dlv4.com/binaries/egauth4/egauth4_1050_FR_XP.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/eBay_Enhanced_Picture_Control_v1-0-3-30.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/1003233b6f50153f7706/netzip/RdxIE601_fr.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/default.aspx
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.extrafilm.fr/net/import/ImageUploader3.cab
O16 - DPF: {A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9} (InetDownload Class) - https://media.pineconeresearch.com/ActiveX/downloadcontrol.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game11.zylom.aliceadsl.fr/activex/zylomgamesplayer.cab
O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.pixdiscount.fr/clients/uploader_v2.1.0.53.cab
O16 - DPF: {F11BFF96-CC7A-4482-819B-91EAE4C454EF} (NTR ActiveX 1.1.6) - http://www.inquiero.com/inquiero/mod/setup/ntractivex116_14.cab
O20 - AppInit_DLLs: dxclib303562752.dll,pushow22.dll
O20 - Winlogon Notify: Setup - C:\WINDOWS\system32\p8p6li7s18.dll (file missing)

Clic sur "demarrer", "executer", tape: services.msc ,cherche dans la liste cette ligne, fais un clic droit dessus choisis "propriétés" et régle la sur "désactivé"

Windows Log

Clic sur démarrer, rechercher et supprime ces processus:

nvsvcd.exe
winlog.exe

Clic sur démarrer, poste de travail, C:, program files et supprime ces dossiers:

google
Telecom Italia France
MSN Apps
DeluxeCommunications
WinFixer 2005
Butterfly Oasis Screensaver < à ne plus installer ce genre de fond d'écran
Aquatica Waterworlds < même chose c'est beau mais avec des virus

**Si un fichier persiste lors de la suppression fait ceci:
-Redemarres ton pc, dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaitre choisis "mode sans echec" attends un peu.. puis vas supprimer les fichiers/dossiers qui persistaient, vides ta corbeille et redemarres normalement

télécharge, installe et mets à jour ce logiciel et supprime tout ce qu'il te trouvera et mets le rapport ici stp avec un nouveau rapport hijackthis

A² squared: (gratuit en Français)
A-squared
Si tu as besoin d'aide avec A-squared regarde ce tutoriel:
https://www.pcparadise.fr
0
soph52 Messages postés 18 Statut Membre
 
j'ai fait ce que tu m'as dit de faire, par contre je n'ai pas trouvé le fichier WinFixer 2005 nulle part
je te mets le rapport d'A-Squared puis hijackthis
Version - a-squared Free 2.1

Réglages Scan:

Objets: Mémoire, Traces, Cookies, C:\WINDOWS\, C:\Program Files
Scan archives: Marche
Heuristiques: Marche
Scan ADS: Marche

Début du scan: 29/11/2006 15:21:34

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\gain publishing Détecter: Trace.Directory.Claria.CommonComponents
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ebay\ebay toolbar Détecter: Trace.Directory.eBay
C:\Program Files\ebay\ebay toolbar2 Détecter: Trace.Directory.eBay
C:\Program Files\ebay\ebay toolbar2\bookmarks Détecter: Trace.Directory.eBay
C:\Program Files\ebay\ebay toolbar2\users Détecter: Trace.Directory.eBay
C:\Program Files\instant access Détecter: Trace.Directory.EGroup
C:\Program Files\funwebproducts Détecter: Trace.Directory.FunWebProducts
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\gain publishing Détecter: Trace.Directory.Gator
C:\Program Files\funwebproducts\screensaver Détecter: Trace.Directory.MyWebSearch Toolbar
C:\Program Files\funwebproducts\screensaver\images Détecter: Trace.Directory.MyWebSearch Toolbar
C:\Program Files\funwebproducts\shared Détecter: Trace.Directory.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar Détecter: Trace.Directory.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar\history Détecter: Trace.Directory.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar\settings Détecter: Trace.Directory.MyWebSearch Toolbar
C:\Program Files\mywebsearch Détecter: Trace.Directory.MyWebSearchToobar
C:\Program Files\mywebsearch Détecter: Trace.Directory.MyWebSearchToolbar
C:\Program Files\network monitor Détecter: Trace.Directory.NetMon
C:\Program Files\Fichiers communs\whenu Détecter: Trace.Directory.WhenU.WeatherCast
C:\Program Files\Fichiers communs\winsoftware Détecter: Trace.Directory.WinFixer_2005
C:\Documents and Settings\utilisateur\Application Data\dxcknwrd.dll Détecter: Trace.File.DeluxeCommunications
C:\Program Files\ebay\ebay toolbar2\ebay.ico Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaydaemon.log Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaytb.dll Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaytbcareapp.exe Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaytbdaemon.exe Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaytoolbarcomm.dll Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\tbversion.xml Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\tbversion.xml.tmp Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\toolbar.log Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\toolbar.zim Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\whitelist.dat Détecter: Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\wsasc.zip Détecter: Trace.File.eBay
C:\Documents and Settings\utilisateur\trace.log Détecter: Trace.File.ErrorSafe
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\gain publishing\gain publishing web site.url Détecter: Trace.File.Gator
C:\Program Files\mywebsearch\bar\history\search2 Détecter: Trace.File.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar\settings\prevcfg2.htm Détecter: Trace.File.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar\settings\s_pid.dat Détecter: Trace.File.MyWebSearch Toolbar
C:\WINDOWS\system32\readme.txt Détecter: Trace.File.PCBloodhound
Key: HKEY_CLASSES_ROOT\appid\{8c65aef6-e413-4314-815b-82717a3f1603} Détecter: Trace.Registry.Begin2Search
Key: HKEY_CLASSES_ROOT\appid\checkproduct2.dll Détecter: Trace.Registry.Begin2Search
Key: HKEY_CLASSES_ROOT\interface\{4f79d1c5-24f9-4e59-8022-604d4b41d5ca} Détecter: Trace.Registry.Begin2Search
Key: HKEY_CLASSES_ROOT\typelib\{30ed49a5-ca6c-4918-b5f3-5e6818c91d8b} Détecter: Trace.Registry.Begin2Search
Key: HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Détecter: Trace.Registry.Claria.CommonComponents
Key: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gef Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gmg Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gmi Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> lastinstall Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sevt Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sih Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> siseq Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sseq Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> uets Détecter: Trace.Registry.Claria.CommonComponents
Value: HKEY_CURRENT_USER\Software\DeluxeCommunications\Internet Explorer --> Settings Détecter: Trace.Registry.DeluxeCommunications
Value: HKEY_CURRENT_USER\Software\DeluxeCommunications\Internet Explorer --> Timer Détecter: Trace.Registry.DeluxeCommunications
Value: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run --> DeluxeCommunications Détecter: Trace.Registry.DeluxeCommunications
Value: HKEY_LOCAL_MACHINE\SOFTWARE\DeluxeCommunications\Internet Explorer --> PInfo Détecter: Trace.Registry.DeluxeCommunications
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> id_cmb_mainsearch Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> tb_btn_search Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> tbs_button_020425 Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> Widthcombo11 Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> Widthcombo21 Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> AutoComplete Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> autoUpdateMsg Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> connectionError Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> corruptedMsg Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> CurrentFont Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> CurrentLayout Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> DescriptiveText Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> deskbar_id Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> EditWidthcombo1 Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> EditWidthcombo2 Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> firstTime Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> firstURL Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> FontSize Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> KeepHistory Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> lastVersionMsg Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> MinibrowserAnimated Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> MinibrowserAutoClose Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> MinibrowserDisplayResults Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> OpenNew Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> RunSearchAutomatically Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> RunSearchDragAutomatically Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> Scope Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> serverpath Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> ShowHighlightButton Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> toolbar_version Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> ToolbarIsFailed Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> uninstallMsg Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> UpdateAutomatically Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> updateMsg Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> updateUrl Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> urlAfterUninstall Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> urlAfterUpdate Détecter: Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> versionError Détecter: Trace.Registry.DeskBar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> DisplayIcon Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> DisplayName Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> DisplayVersion Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> InstallLocation Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> LogFile Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> LogMode Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> MajorVersion Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> MinorVersion Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> ProductGuid Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> UninstallString Détecter: Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> Version Détecter: Trace.Registry.eBay
Key: HKEY_CLASSES_ROOT\clsid\{9afb8248-617f-460d-9366-d71cdeda3179} Détecter: Trace.Registry.FunWebProducts
Key: HKEY_CLASSES_ROOT\interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} Détecter: Trace.Registry.FunWebProducts
Key: HKEY_LOCAL_MACHINE\software\fun web products Détecter: Trace.Registry.FunWebProducts
Key: HKEY_LOCAL_MACHINE\software\funwebproducts Détecter: Trace.Registry.FunWebProducts
Key: HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Détecter: Trace.Registry.Gator
Key: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Détecter: Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gef Détecter: Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gmg Détecter: Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gmi Détecter: Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> lastinstall Détecter: Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sevt Détecter: Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sih Détecter: Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> siseq Détecter: Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sseq Détecter: Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> uets Détecter: Trace.Registry.Gator
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\extensions\cmdmapping --> {946b3e9e-e21a-49c8-9f63-900533fafe14} Détecter: Trace.Registry.Hotbar.ShopperReports
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\shellbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} Détecter: Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} Détecter: Trace.Registry.HotBar
Key: HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\explorer bars\{7e66936c-fea0-4984-ad26-7b6661ac5b2e} Détecter: Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} --> DisplayName Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} --> URL Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> aim.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> icq.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> icqlite.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> incmail.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> msimn.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> msmsgs.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> msn.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> msnmsgr.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> mwsSrcAs.dll Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> outlook.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> waol.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> ypager.exe Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\Email-IM\0 --> AppName Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\Email-IM\0 --> Toolbar Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\ScreenSaver --> ImagesDir Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn --> ETag Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn --> HTMLMenuRevision Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn --> LastHTMLMenuURL Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn --> ETag Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn --> HTMLMenuRevision Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn --> LastHTMLMenuURL Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn --> ETag Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn --> HTMLMenuRevision Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn --> LastHTMLMenuURL Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyFreqNone Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyFreqUninstalled Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyTextNone.0 Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyTextNone.numActive Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyTextUninstalled.0 Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyTextUninstalled.numActive Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> MSN.1 Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> MSN.2 Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> MSN.numActive Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> MSN.numActive2 Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn --> ETag Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn --> HTMLMenuPosDeleted Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn --> HTMLMenuRevision Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn --> LastHTMLMenuURL Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products --> CacheDir Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products --> JpegConversionLib Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> CacheDir Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> CheckForConnection Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> CurInstall Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> Dir Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> pl Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> sr Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} --> DisplayName Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} --> URL Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> CacheDir Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> ConfigDateStamp Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> CurInstall Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> Dir Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> Flags Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> HistoryDir Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> HTMLMenuRevision Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> Id Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> pid Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> pl Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> PluginPath Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> SettingsDir Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> sr Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> sscLabel Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> sscSet Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> sscURL Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> ABS Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> ConfigDateStamp Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> CurInstall Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> DES Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> Dir Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> eintl Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> esh Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> Id Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> lsp Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> pid Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> pl Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> sr Détecter: Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SkinTools --> PlayerPath Détecter: Trace.Registry.MyWebSearch Toolbar
Key: HKEY_CLASSES_ROOT\clsid\{147a976f-eee1-4377-8ea7-4716e4cdd239} Détecter: Trace.Registry.MyWebSearchToobar
Key: HKEY_CLASSES_ROOT\clsid\{a4730ebe-43a6-443e-9776-36915d323ad3} Détecter: Trace.Registry.MyWebSearchToobar
Key: HKEY_CLASSES_ROOT\interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} Détecter: Trace.Registry.MyWebSearchToobar
Key: HKEY_CURRENT_USER\software\mywebsearch Détecter: Trace.Registry.MyWebSearchToobar
Key: HKEY_LOCAL_MACHINE\software\mywebsearch Détecter: Trace.Registry.MyWebSearchToobar
Key: HKEY_CLASSES_ROOT\clsid\{147a976f-eee1-4377-8ea7-4716e4cdd239} Détecter: Trace.Registry.MyWebSearchToolbar
Key: HKEY_CLASSES_ROOT\clsid\{a4730ebe-43a6-443e-9776-36915d323ad3} Détecter: Trace.Registry.MyWebSearchToolbar
Key: HKEY_CLASSES_ROOT\interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} Détecter: Trace.Registry.MyWebSearchToolbar
Key: HKEY_CURRENT_USER\software\mywebsearch Détecter: Trace.Registry.MyWebSearchToolbar
Key: HKEY_LOCAL_MACHINE\software\mywebsearch Détecter: Trace.Registry.MyWebSearchToolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> Contact Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> DisplayName Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> DisplayVersion Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> NoModify Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> NoRemove Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> NoRepair Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> UninstallString Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor\Enum --> 0 Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor\Enum --> Count Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor\Enum --> NextInstance Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor\Security --> Security Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> DisplayName Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> ErrorControl Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> ImagePath Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> ObjectName Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> Start Détecter: Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> Type Détecter: Trace.Registry.NetMon
Key: HKEY_LOCAL_MACHINE\software\sacc Détecter: Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> accid Détecter: Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> CfgReload Détecter: Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> CfgReloadAttempts Détecter: Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> DbgInfo Détecter: Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> InstallDate Détecter: Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> srecovery Détecter: Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> subaccid Détecter: Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> Version Détecter: Trace.Registry.SurfAccuracy
Key: HKEY_CLASSES_ROOT\appid\{8c65aef6-e413-4314-815b-82717a3f1603} Détecter: Trace.Registry.WinFixer
Key: HKEY_CLASSES_ROOT\appid\checkproduct2.dll Détecter: Trace.Registry.WinFixer
Key: HKEY_CLASSES_ROOT\interface\{4f79d1c5-24f9-4e59-8022-604d4b41d5ca} Détecter: Trace.Registry.WinFixer
Key: HKEY_CLASSES_ROOT\typelib\{30ed49a5-ca6c-4918-b5f3-5e6818c91d8b} Détecter: Trace.Registry.WinFixer
C:\Documents and Settings\utilisateur\Cookies\utilisateur@247realmedia[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@adtech[2].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@advertising[2].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@as1.falkag[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@atdmt[2].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@bluestreak[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@cgi-bin[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@data.coremetrics[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@doubleclick[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@hitbox[2].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@mediaplex[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@pacificpoker[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@server.iad.liveperson[2].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@tradedoubler[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@weborama[1].txt Détecter: Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@www.cibleclick[1].txt Détecter: Trace.TrackingCookie
C:\Program Files\PrintView\printhook030.dll Détecter: Adware.Win32.PrintView.a
C:\Program Files\PrintView\pvmodule.exe Détecter: Adware.Win32.PrintView.a

Scanné

Fichiers: 40233
Traces: 85716
Cookies: 163
Processus: 8

Trouver

Fichiers: 2
Traces: 244
Cookies: 16
Processus: 0
Clés de Registre: 0

Fin du Scan: 29/11/2006 15:39:40
Temps du Scan: 00:18:06

C:\Program Files\PrintView\printhook030.dll Supprimé Adware.Win32.PrintView.a
C:\Program Files\PrintView\pvmodule.exe Supprimé Adware.Win32.PrintView.a
C:\Documents and Settings\utilisateur\Cookies\utilisateur@247realmedia[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@adtech[2].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@advertising[2].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@as1.falkag[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@atdmt[2].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@bluestreak[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@cgi-bin[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@data.coremetrics[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@doubleclick[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@hitbox[2].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@mediaplex[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@pacificpoker[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@server.iad.liveperson[2].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@tradedoubler[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@weborama[1].txt Supprimé Trace.TrackingCookie
C:\Documents and Settings\utilisateur\Cookies\utilisateur@www.cibleclick[1].txt Supprimé Trace.TrackingCookie
Key: HKEY_CLASSES_ROOT\appid\{8c65aef6-e413-4314-815b-82717a3f1603} Supprimé Trace.Registry.WinFixer
Key: HKEY_CLASSES_ROOT\appid\checkproduct2.dll Supprimé Trace.Registry.WinFixer
Key: HKEY_CLASSES_ROOT\interface\{4f79d1c5-24f9-4e59-8022-604d4b41d5ca} Supprimé Trace.Registry.WinFixer
Key: HKEY_CLASSES_ROOT\typelib\{30ed49a5-ca6c-4918-b5f3-5e6818c91d8b} Supprimé Trace.Registry.WinFixer
Key: HKEY_LOCAL_MACHINE\software\sacc Supprimé Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> accid Supprimé Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> CfgReload Supprimé Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> CfgReloadAttempts Supprimé Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> DbgInfo Supprimé Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> InstallDate Supprimé Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> srecovery Supprimé Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> subaccid Supprimé Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\SAcc --> Version Supprimé Trace.Registry.SurfAccuracy
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> Contact Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> DisplayName Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> DisplayVersion Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> NoModify Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> NoRemove Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> NoRepair Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A394E835-C8D6-4B4B-884B-D2709059F3BE} --> UninstallString Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor\Enum --> 0 Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor\Enum --> Count Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor\Enum --> NextInstance Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor\Security --> Security Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> DisplayName Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> ErrorControl Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> ImagePath Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> ObjectName Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> Start Supprimé Trace.Registry.NetMon
Value: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Network Monitor --> Type Supprimé Trace.Registry.NetMon
Key: HKEY_CLASSES_ROOT\clsid\{147a976f-eee1-4377-8ea7-4716e4cdd239} Supprimé Trace.Registry.MyWebSearchToolbar
Key: HKEY_CLASSES_ROOT\clsid\{a4730ebe-43a6-443e-9776-36915d323ad3} Supprimé Trace.Registry.MyWebSearchToolbar
Key: HKEY_CLASSES_ROOT\interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} Supprimé Trace.Registry.MyWebSearchToolbar
Key: HKEY_CURRENT_USER\software\mywebsearch Supprimé Trace.Registry.MyWebSearchToolbar
Key: HKEY_LOCAL_MACHINE\software\mywebsearch Supprimé Trace.Registry.MyWebSearchToolbar
Key: HKEY_CLASSES_ROOT\clsid\{147a976f-eee1-4377-8ea7-4716e4cdd239} Supprimé Trace.Registry.MyWebSearchToobar
Key: HKEY_CLASSES_ROOT\clsid\{a4730ebe-43a6-443e-9776-36915d323ad3} Supprimé Trace.Registry.MyWebSearchToobar
Key: HKEY_CLASSES_ROOT\interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} Supprimé Trace.Registry.MyWebSearchToobar
Key: HKEY_CURRENT_USER\software\mywebsearch Supprimé Trace.Registry.MyWebSearchToobar
Key: HKEY_LOCAL_MACHINE\software\mywebsearch Supprimé Trace.Registry.MyWebSearchToobar
Value: HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} --> DisplayName Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} --> URL Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> aim.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> icq.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> icqlite.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> incmail.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> msimn.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> msmsgs.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> msn.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> msnmsgr.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> mwsSrcAs.dll Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> outlook.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> waol.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\bar\Switches --> ypager.exe Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\Email-IM\0 --> AppName Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive\Email-IM\0 --> Toolbar Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\ScreenSaver --> ImagesDir Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn --> ETag Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn --> HTMLMenuRevision Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\CursorManiaBtn --> LastHTMLMenuURL Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn --> ETag Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn --> HTMLMenuRevision Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\FunBuddyIconBtn --> LastHTMLMenuURL Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn --> ETag Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn --> HTMLMenuRevision Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\MyFunCardsIMBtn --> LastHTMLMenuURL Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyFreqNone Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyFreqUninstalled Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyTextNone.0 Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyTextNone.numActive Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyTextUninstalled.0 Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> BuddyTextUninstalled.numActive Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> MSN.1 Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> MSN.2 Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> MSN.numActive Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\Promos --> MSN.numActive2 Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn --> ETag Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn --> HTMLMenuPosDeleted Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn --> HTMLMenuRevision Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products\Settings\SmileyCentralBtn --> LastHTMLMenuURL Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products --> CacheDir Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products --> JpegConversionLib Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> CacheDir Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> CheckForConnection Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> CurInstall Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> Dir Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> pl Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts\Installer --> sr Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} --> DisplayName Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256A51-B582-467e-B8D4-7786EDA79AE0} --> URL Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> CacheDir Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> ConfigDateStamp Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> CurInstall Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> Dir Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> Flags Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> HistoryDir Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> HTMLMenuRevision Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> Id Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> pid Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> pl Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> PluginPath Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> SettingsDir Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> sr Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> sscLabel Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> sscSet Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\bar --> sscURL Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> ABS Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> ConfigDateStamp Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> CurInstall Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> DES Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> Dir Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> eintl Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> esh Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> Id Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> lsp Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> pid Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> pl Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SearchAssistant --> sr Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch\SkinTools --> PlayerPath Supprimé Trace.Registry.MyWebSearch Toolbar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\shellbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} Supprimé Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\toolbar\webbrowser --> {74cc49f7-eb32-4a08-b204-948962a6e3db} Supprimé Trace.Registry.HotBar
Key: HKEY_LOCAL_MACHINE\software\microsoft\internet explorer\explorer bars\{7e66936c-fea0-4984-ad26-7b6661ac5b2e} Supprimé Trace.Registry.HotBar
Value: HKEY_CURRENT_USER\software\microsoft\internet explorer\extensions\cmdmapping --> {946b3e9e-e21a-49c8-9f63-900533fafe14} Supprimé Trace.Registry.Hotbar.ShopperReports
Key: HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Supprimé Trace.Registry.Gator
Key: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Supprimé Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gef Supprimé Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gmg Supprimé Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gmi Supprimé Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> lastinstall Supprimé Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sevt Supprimé Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sih Supprimé Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> siseq Supprimé Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sseq Supprimé Trace.Registry.Gator
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> uets Supprimé Trace.Registry.Gator
Key: HKEY_CLASSES_ROOT\clsid\{9afb8248-617f-460d-9366-d71cdeda3179} Supprimé Trace.Registry.FunWebProducts
Key: HKEY_CLASSES_ROOT\interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} Supprimé Trace.Registry.FunWebProducts
Key: HKEY_LOCAL_MACHINE\software\fun web products Supprimé Trace.Registry.FunWebProducts
Key: HKEY_LOCAL_MACHINE\software\funwebproducts Supprimé Trace.Registry.FunWebProducts
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> DisplayIcon Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> DisplayName Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> DisplayVersion Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> InstallLocation Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> LogFile Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> LogMode Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> MajorVersion Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> MinorVersion Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> ProductGuid Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> UninstallString Supprimé Trace.Registry.eBay
Value: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3DB5FD00-BB93-4AF3-B925-77DAA0E4E2F4} --> Version Supprimé Trace.Registry.eBay
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> id_cmb_mainsearch Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> tb_btn_search Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> tbs_button_020425 Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> Widthcombo11 Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar\tb_items --> Widthcombo21 Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> AutoComplete Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> autoUpdateMsg Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> connectionError Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> corruptedMsg Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> CurrentFont Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> CurrentLayout Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> DescriptiveText Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> deskbar_id Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> EditWidthcombo1 Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> EditWidthcombo2 Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> firstTime Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> firstURL Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> FontSize Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> KeepHistory Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> lastVersionMsg Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> MinibrowserAnimated Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> MinibrowserAutoClose Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> MinibrowserDisplayResults Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> OpenNew Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> RunSearchAutomatically Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> RunSearchDragAutomatically Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> Scope Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> serverpath Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> ShowHighlightButton Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> toolbar_version Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> ToolbarIsFailed Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> uninstallMsg Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> UpdateAutomatically Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> updateMsg Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> updateUrl Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> urlAfterUninstall Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> urlAfterUpdate Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DBTB00001\Deskbar --> versionError Supprimé Trace.Registry.DeskBar
Value: HKEY_CURRENT_USER\Software\DeluxeCommunications\Internet Explorer --> Settings Supprimé Trace.Registry.DeluxeCommunications
Value: HKEY_CURRENT_USER\Software\DeluxeCommunications\Internet Explorer --> Timer Supprimé Trace.Registry.DeluxeCommunications
Value: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run --> DeluxeCommunications Supprimé Trace.Registry.DeluxeCommunications
Value: HKEY_LOCAL_MACHINE\SOFTWARE\DeluxeCommunications\Internet Explorer --> PInfo Supprimé Trace.Registry.DeluxeCommunications
Key: HKEY_CLASSES_ROOT\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Supprimé Trace.Registry.Claria.CommonComponents
Key: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} Supprimé Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gef Supprimé Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gmg Supprimé Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> gmi Supprimé Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> lastinstall Supprimé Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sevt Supprimé Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sih Supprimé Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> siseq Supprimé Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> sseq Supprimé Trace.Registry.Claria.CommonComponents
Value: HKEY_LOCAL_MACHINE\software\classes\clsid\{21ffb6c0-0da1-11d5-a9d5-00500413153c} --> uets Supprimé Trace.Registry.Claria.CommonComponents
Key: HKEY_CLASSES_ROOT\appid\{8c65aef6-e413-4314-815b-82717a3f1603} Supprimé Trace.Registry.Begin2Search
Key: HKEY_CLASSES_ROOT\appid\checkproduct2.dll Supprimé Trace.Registry.Begin2Search
Key: HKEY_CLASSES_ROOT\interface\{4f79d1c5-24f9-4e59-8022-604d4b41d5ca} Supprimé Trace.Registry.Begin2Search
Key: HKEY_CLASSES_ROOT\typelib\{30ed49a5-ca6c-4918-b5f3-5e6818c91d8b} Supprimé Trace.Registry.Begin2Search
C:\WINDOWS\system32\readme.txt Supprimé Trace.File.PCBloodhound
C:\Program Files\mywebsearch\bar\history\search2 Supprimé Trace.File.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar\settings\prevcfg2.htm Supprimé Trace.File.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar\settings\s_pid.dat Supprimé Trace.File.MyWebSearch Toolbar
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\gain publishing\gain publishing web site.url Supprimé Trace.File.Gator
C:\Documents and Settings\utilisateur\trace.log Supprimé Trace.File.ErrorSafe
C:\Program Files\ebay\ebay toolbar2\ebay.ico Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaydaemon.log Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaytb.dll Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaytbcareapp.exe Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaytbdaemon.exe Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\ebaytoolbarcomm.dll Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\tbversion.xml Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\tbversion.xml.tmp Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\toolbar.log Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\toolbar.zim Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\whitelist.dat Supprimé Trace.File.eBay
C:\Program Files\ebay\ebay toolbar2\wsasc.zip Supprimé Trace.File.eBay
C:\Documents and Settings\utilisateur\Application Data\dxcknwrd.dll Supprimé Trace.File.DeluxeCommunications
C:\Program Files\Fichiers communs\winsoftware Supprimé Trace.Directory.WinFixer_2005
C:\Program Files\Fichiers communs\whenu Supprimé Trace.Directory.WhenU.WeatherCast
C:\Program Files\network monitor Supprimé Trace.Directory.NetMon
C:\Program Files\mywebsearch Supprimé Trace.Directory.MyWebSearchToolbar
C:\Program Files\mywebsearch Supprimé Trace.Directory.MyWebSearchToobar
C:\Program Files\funwebproducts\screensaver Supprimé Trace.Directory.MyWebSearch Toolbar
C:\Program Files\funwebproducts\screensaver\images Supprimé Trace.Directory.MyWebSearch Toolbar
C:\Program Files\funwebproducts\shared Supprimé Trace.Directory.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar Supprimé Trace.Directory.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar\history Supprimé Trace.Directory.MyWebSearch Toolbar
C:\Program Files\mywebsearch\bar\settings Supprimé Trace.Directory.MyWebSearch Toolbar
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\gain publishing Supprimé Trace.Directory.Gator
C:\Program Files\funwebproducts Supprimé Trace.Directory.FunWebProducts
C:\Program Files\instant access Supprimé Trace.Directory.EGroup
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\ebay\ebay toolbar Supprimé Trace.Directory.eBay
C:\Program Files\ebay\ebay toolbar2 Supprimé Trace.Directory.eBay
C:\Program Files\ebay\ebay toolbar2\bookmarks Supprimé Trace.Directory.eBay
C:\Program Files\ebay\ebay toolbar2\users Supprimé Trace.Directory.eBay
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\gain publishing Supprimé Trace.Directory.Claria.CommonComponents

Supprimé

Fichiers: 2
Traces: 244
Cookies: 16
Logfile of HijackThis v1.99.1
Scan saved at 15:42:33, on 29/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\P
0
Utilisateur anonyme
 
Salut,

remet un rapport hijackthis stp et dis moi ou en est ton problème
0
soph52 Messages postés 18 Statut Membre
 
bonsoir, ça va mieux mais tu ne m'as pas dit si je devais supprimer ou garder ewido comme j'ai maintenant a-squared
merci à plus
Logfile of HijackThis v1.99.1
Scan saved at 18:13:22, on 30/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Anuman Interactive\Le journal de votre naissance\anniv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\Mes téléchargements\hijackthis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - (no file)
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll (file missing)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Advanced Tools Check] C:\PROGRA~1\NORTON~1\AdvTools\ADVCHK.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Anniversaires] C:\Anuman Interactive\Le journal de votre naissance\anniv.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\RunServices: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game07.zylom.com/activex/zylomgamesplayer.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: InCD Helper (read only) (InCDsrvR) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton AntiVirus\AdvTools\NPROTECT.EXE
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe
0
Utilisateur anonyme
 
Salut,

oui, garde ewido et a-squared tu pourra faire le ménage de temps en temps comme ça

Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked"

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - (no file)
O4 - HKLM\..\RunServices: [RegisterDropHandler] C:\PROGRA~1\TEXTBR~1.0\Bin\REGIST~1.EXE
O4 - HKLM\..\RunServices: [winlog] winlog.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll

Voila, si tu as encore des soucis n'hésite pas à le dire ;-)
0
soph52 Messages postés 18 Statut Membre
 
Bonsoir,
apparemment ça a l'air d'aller car je n'ai plus de fenêtres de pub qui s'ouvrent mais par contre j'ai internet qui est lent. J'ai téléphoné à Alice pour savoir si ça venait d'eux et ils m'ont dit que c'était mon ordi qui déconnait et que je devais appeler un technicien de windows. Tu pourrais m'aider pour ce problème ?
Merci d'avance
sophie
0
Utilisateur anonyme
 
Salut,

peux tu refaire un scanne complet avec Ewido et mettre me rapport ici stp

Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2(en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp

_Online Scanner
_Kaspersky Online Scanner
_My Computer

https://www.kaspersky.fr/downloads
0
soph52 Messages postés 18 Statut Membre
 
bonjour,
voilà je te mets les 2 rapports et encore merci pour tout !

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 13:53:49 04/12/2006

+ Scan result:



C:\Documents and Settings\utilisateur\Local Settings\Temporary Internet Files\Content.IE5\YASME4ZP\cadrebas[1].htm -> Adware.MediaMotor : Cleaned with backup (quarantined).
C:\Documents and Settings\utilisateur\Cookies\utilisateur@247realmedia[2].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@boonty.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@opodo.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@estat[1].txt -> TrackingCookie.Estat : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@as1.falkag[1].txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@ehg-danieljouvance.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@ehg-nestlefr.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@ehg-telecomitalia.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\utilisateur\Cookies\utilisateur@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Cleaned.


::Report end

Monday, December 04, 2006 3:08:31 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 4/12/2006
Kaspersky Anti-Virus database records: 234003


Scan Settings
Scan using the following antivirus database standard
Scan Archives true
Scan Mail Bases true

Scan Target My Computer
C:\
D:\
E:\
F:\
G:\
H:\

Scan Statistics
Total number of scanned objects 86200
Number of viruses found 11
Number of infected objects 20 / 0
Number of suspicious objects 0
Duration of the scan process 00:56:48

Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\settings.dat Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\2006-12-04_Log.ALUSchedulerSvc.LiveUpdate Object is locked skipped

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\utilisateur\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\utilisateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\utilisateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\utilisateur\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\utilisateur\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped

C:\Documents and Settings\utilisateur\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\utilisateur\ntuser.dat Object is locked skipped

C:\Documents and Settings\utilisateur\ntuser.dat.LOG Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcrst.dll Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SNDALRT.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SNDCON.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SNDDBG.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SNDFW.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SNDIDS.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SNDSYS.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SPPolicy.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SPStart.log Object is locked skipped

C:\Program Files\Fichiers communs\Symantec Shared\SPStop.log Object is locked skipped

C:\Program Files\Norton AntiVirus\AVApp.log Object is locked skipped

C:\Program Files\Norton AntiVirus\AVError.log Object is locked skipped

C:\Program Files\Norton AntiVirus\AVVirus.log Object is locked skipped

C:\Program Files\Norton AntiVirus\Quarantine\140F22C9 Infected: Trojan-Downloader.Win32.Agent.aol skipped

C:\Program Files\Norton AntiVirus\Quarantine\1E736A22 Infected: P2P-Worm.Win32.VB.dw skipped

C:\Program Files\Norton AntiVirus\Quarantine\2BC44214 Infected: Trojan-Downloader.Win32.Small.cyh skipped

C:\Program Files\Norton AntiVirus\Quarantine\2E5275AF Infected: P2P-Worm.Win32.VB.dw skipped

C:\Program Files\Norton AntiVirus\Quarantine\306C27C7.exe Infected: Trojan-Clicker.Win32.VB.ly skipped

C:\Program Files\Norton AntiVirus\Quarantine\36522307 Infected: P2P-Worm.Win32.VB.dw skipped

C:\Program Files\Norton AntiVirus\Quarantine\36554D03 Infected: Trojan-Clicker.Win32.VB.fl skipped

C:\Program Files\Norton AntiVirus\Quarantine\376469D9 Infected: Worm.Win32.VB.an skipped

C:\Program Files\Norton AntiVirus\Quarantine\4A3A417A Infected: Backdoor.Win32.EggDrop.v skipped

C:\Program Files\Norton AntiVirus\Quarantine\4EA83D8B.wma Infected: Trojan-Downloader.WMA.Wimad.d skipped

C:\Program Files\Norton AntiVirus\Quarantine\52C008C8.wma Infected: Trojan-Downloader.WMA.Wimad.d skipped

C:\Program Files\Norton AntiVirus\Quarantine\5417120D.exe Infected: Trojan-Downloader.Win32.VB.alg skipped

C:\Program Files\Norton AntiVirus\Quarantine\55F00946.wma Infected: Trojan-Downloader.WMA.Wimad.d skipped

C:\Program Files\Norton AntiVirus\Quarantine\569D0506 Infected: Trojan-Downloader.Win32.Small.cyh skipped

C:\Program Files\Norton AntiVirus\Quarantine\65FC6415 Infected: Backdoor.Win32.EggDrop.v skipped

C:\Program Files\Norton AntiVirus\Quarantine\6D646621 Infected: Trojan-Downloader.Win32.Agent.aol skipped

C:\RECYCLER\NPROTECT\NPROTECT.LOG Object is locked skipped

C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP453\A0056134.exe Infected: Trojan-Downloader.Win32.VB.alg skipped

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP453\A0056135.exe Infected: Trojan-Clicker.Win32.VB.ly skipped

C:\System Volume Information\_restore{B1FA4960-CFC3-433E-BDA2-F6AF039E64AC}\RP516\change.log Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

C:\WINDOWS\Sti_Trace.log Object is locked skipped

C:\WINDOWS\system\smss.exe Infected: Trojan-Proxy.Win32.Horst.hr skipped

C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped

C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped

C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\default Object is locked skipped

C:\WINDOWS\system32\config\default.LOG Object is locked skipped

C:\WINDOWS\system32\config\Internet.evt Object is locked skipped

C:\WINDOWS\system32\config\SAM Object is locked skipped

C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\SECURITY Object is locked skipped

C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

C:\WINDOWS\system32\config\software Object is locked skipped

C:\WINDOWS\system32\config\software.LOG Object is locked skipped

C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\system Object is locked skipped

C:\WINDOWS\system32\config\system.LOG Object is locked skipped

C:\WINDOWS\system32\h323log.txt Object is locked skipped

C:\WINDOWS\system32\nvsvcd.exe Infected: Trojan-Proxy.Win32.Horst.av skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

C:\WINDOWS\wiadebug.log Object is locked skipped

C:\WINDOWS\wiaservc.log Object is locked skipped

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

Scan process completed.
0
Utilisateur anonyme
 
Ok, merci
Pense à nettoyer réguliérement ton PC avec CCleaner donné au déssus.

Pur finir, fait ça et tu me dira ou en est ton problème

Alors ceci; C:\System Volume Information\_restore(voir rapport KASPERSKY) indique que ta restauration du systeme etait infecté ou est infecté, pour être sûr, nous allons créer un point propre.

Clic sur "demarrer", cliques droit sur "poste de travail", "propriétés", onglet "restauration du systeme"

¤ coches la case "desactiver la Restauration du systéme sur tous les lecteurs", puis clic ur "appliquer"
¤ decoches la case et clic sur "appliquer" puis "ok".

Maintenant, que l'ont à effacés les point infectés, nous allons créer un point propre:

Clic sur "demarrer", "tous les programmes", "accessoires", "outils système", "restauration du système", choisis "créer un point de restauration" nommes le " ccm" par exemple, cliques sur "créer" puis "ok".
Voilà, maintenant le point de restauration est créer si un jour tu décides tu pourra revenir en arriere à la date que tu l'as créer donc à ce jour; en fesant la marche arriére tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux.
0
soph52 Messages postés 18 Statut Membre
 
tout a l'air de bien fonctionner que se soit l'ordi ou internet !!! enfin
merci pour ton aide précieuse
par contre je voudrais savoir si je dois garder ewido et a-squared comme j'ai déjà norton ?
à bientôt
sophie
0
Utilisateur anonyme
 
Ok, c'est cool ;-)

Ewido et a-squared sont des anti-spywares complémentaire de ton anti-virus Norton.
Je te conseille fortement de les garder, pense à scanner réguliérement ton PC avec eux

A++
0
evhl
 
Bonjour,
j ai un probleme avec mon ordi enfin comme beaucoup de monde je vois j ai attrape un trojan ou plusieurs je crois mon antivirus kapersky n est apparement pas en mesure de l eliminer kapaersky internet 7.0
il s appelle trojan downloader win 32 zlobcyh et l autre c est bojo a la fin
j ai fais un scan avec ad aware mais rien ne fonctionne je suis plutot novice
des que je vais dans mes doc ça me redirige sur internet explorer
avez vous une solution pour moi
merci d avance
0