Virus Cheval de Troie pris sur MSN

Problème Cheval de Troie:J'Ai fais mon anti-virus Avg qui au début détecté des cheval de Troie et apres ça était des Adware Generic.J'ai faite 14 analyses depuis le 19 décembre et 9 d'entres elle ont détecte des objets infectées et les ont supprimés.MOn ordinateur a ferme deux fois de suites sans meme que je le ferme moi même et un autre jour il a redemarre tu seul.PApres 2 jours sans rien avoir détécté mon AVG aujourd'hui a encore détecét des cheval de toie.

J'aimerai l'oter complètement de mon ordi comment je fais??

Merci de m'aider
Configuration: Windows XP
Internet Explorer 6.0

40 réponses

Résumé de la discussion

Le souci principal est une détection répétée de chevaux de Troie et d’adware par AVG sur un PC Windows XP, accompagnée de redémarrages imprévus et de fermetures système hors de l’ordinaire. Des analyses successives ont signalé des fichiers infectés et des objets supprimés, mais la menace persiste, notamment dans des répertoires temporaires et des éléments de restauration système. Les solutions évoquées incluent l’utilisation d’un scanner en ligne complémentaire (BitDefender Online Scanner), la désinfection des fichiers identifiés et la suppression des éléments répertoriés dans les restaurations. En outre, certains conseils soulignent que reformater peut ne pas suffire et qu’il faut nettoyer les restaurations et vérifier les journaux via des outils spécialisés pour éviter une réinfection.

Bobot (l’IA à votre service)
  1. Modérateur
    Salut

    as tu un parfeu ???

    Télécharge ceci sur ton bureau :

    Lien : hijackthis

    Démo : http://pageperso.aol.fr/balltrap34/demohijack.htm

    Choisir l'option "do a scan and a logfile", et faire un copier/coller du rapport ainsi générer sur le forum.

    ++
    0
    1. est-ce qu'il faut que je télécharge la démo? ou les deux c'est la même chose?
      0
      1. Logfile of HijackThis v1.99.1
        Scan saved at 14:14:36, on 2006-12-22
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
        C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
        C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
        C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
        C:\WINDOWS\system32\msasvc.exe
        C:\WINDOWS\system32\nvsvc32.exe
        C:\WINDOWS\system32\slserv.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\Explorer.EXE
        C:\WINDOWS\system32\RUNDLL32.EXE
        C:\WINDOWS\RTHDCPL.EXE
        C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
        C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
        C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
        C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAIA.EXE
        C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files\MSN Messenger\MsnMsgr.Exe
        C:\Program Files\Messenger\msmsgs.exe
        C:\Program Files\WinZip\WZQKPICK.EXE
        C:\Program Files\Internet Explorer\iexplore.exe
        C:\Program Files\Internet Explorer\iexplore.exe
        C:\Documents and Settings\Marie-Andrée\Bureau\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.ca/?gws_rd=ssl
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
        O2 - BHO: Bar888 - {C1B4DEC2-2623-438e-9CA2-C9043AB28508} - C:\PROGRA~1\FICHIE~1\{382DE~1\Bar888.dll (file missing)
        O3 - Toolbar: Bar888 - {C1B4DEC2-2623-438e-9CA2-C9043AB28508} - C:\PROGRA~1\FICHIE~1\{382DE~1\Bar888.dll (file missing)
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
        O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
        O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
        O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
        O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
        O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
        O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
        O4 - HKLM\..\Run: [Ink Monitor] C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
        O4 - HKLM\..\Run: [EPSON Stylus Photo R220 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAIA.EXE /P30 "EPSON Stylus Photo R220 Series" /O6 "USB001" /M "Stylus Photo R220"
        O4 - HKLM\..\Run: [Ulead AutoDetector] C:\Program Files\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe
        O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
        O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
        O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
        O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
        O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
        O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
        O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
        O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
        O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
        O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
        O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
        O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
        O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
        O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
        O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
        O20 - AppInit_DLLs: C:\WINDOWS\system32\svch33.dll
        O20 - Winlogon Notify: rpcc - C:\WINDOWS\system32\rpcc.dll (file missing)
        O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
        O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
        O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
        O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
        O23 - Service: COM+ Messages - Unknown owner - C:\WINDOWS\system32\svchosts.exe" -e mc-110-12-0001411 (file missing)
        O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
        O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
        O23 - Service: Microsoft authenticate service (MsaSvc) - Unknown owner - C:\WINDOWS\system32\msasvc.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
        O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
        0
        1. Mais la sa se peut qui aille e rien pcq mon Avg a passer dessus avant mais c'est pcq sa reviens tjrs
          0
          1. Modérateur
            re

            ce logiciel est gratuit !

            fais le 1/ et 2/ de ce lien stp :

            virus methode preliminaire de desinfection version fr

            ++
            0
            1. Mais si c'Est déja AVG?je peut tu passer au deuxieme?
              0
              1. ---------------------------------------------------------
                AVG Anti-Spyware - Rapport d'analyse
                ---------------------------------------------------------

                + Créé à: 14:57:21 2006-12-22

                + Résultat de l'analyse:

                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016146.exe -> Adware.Maxifiles : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015969.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015970.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015971.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015972.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015973.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015974.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015975.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015976.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015977.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015978.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015979.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015980.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015981.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015982.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015983.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015984.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015985.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015986.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015987.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015988.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015989.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015990.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015991.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015992.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015993.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015994.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015995.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015996.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015997.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015998.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015999.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016000.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016001.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016002.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016003.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016004.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016005.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016006.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016007.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016008.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016009.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016010.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016011.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016012.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016013.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016014.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016015.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016016.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016017.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016018.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016019.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016020.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016021.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016022.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016023.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016024.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016025.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016026.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016027.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016028.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016029.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016030.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016031.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016032.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016033.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016034.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016035.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016036.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016037.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016038.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016039.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016040.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016041.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016042.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016043.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016044.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016045.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016046.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016047.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016048.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016049.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016050.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016051.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016052.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016053.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016054.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016055.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016056.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016057.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016058.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016059.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016060.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016061.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016062.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016063.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016064.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016065.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016066.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016067.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016068.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016069.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016070.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016071.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016072.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016073.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016074.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016075.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016076.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016077.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016078.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016079.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016080.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016081.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016082.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016083.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016084.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016085.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016086.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016087.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016088.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016089.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016090.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016091.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016092.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016093.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016094.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016095.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016096.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016097.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016098.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016099.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016100.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016101.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016102.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016103.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016104.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016105.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016106.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016107.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016108.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016109.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016110.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016111.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016112.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016113.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016114.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016115.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016116.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016117.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016118.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016119.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016129.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016130.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016131.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016132.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016137.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016138.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016139.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016147.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016148.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016149.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016150.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016151.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016152.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016153.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016154.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016155.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016156.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016157.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016158.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016159.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016160.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016161.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016162.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016163.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016164.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016165.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016166.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016167.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016168.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016169.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016170.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016256.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016257.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016258.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016259.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016260.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016261.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016262.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016263.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016264.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016265.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016266.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016267.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016268.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016269.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016270.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016271.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016272.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016273.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016274.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016275.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016276.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016277.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016278.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016279.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016280.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016281.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016282.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016283.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016284.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016285.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016286.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016287.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016288.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016289.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016290.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016291.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016292.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016293.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016294.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016295.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016299.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016307.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016308.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016313.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016314.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016332.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016333.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0018343.dll -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0018344.exe -> Adware.Softomate : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP82\A0016191.rbf -> Backdoor.MSNMaker.ab : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0018338.exe -> Downloader.Agent.bca : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016122.exe -> Downloader.Small.bpz : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016135.exe -> Downloader.Small.bpz : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016300.exe -> Downloader.Small.crd : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP87\A0022362.dll -> Downloader.Small.ece : Aucune action entreprise.
                C:\Program Files\ipwins\Uninst.exe -> Dropper.DollarR.b : Aucune action entreprise.
                C:\Program Files\Fichiers communs\Yazzle1122OinAdmin.exe -> Dropper.Small : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP87\A0022363.dll -> Proxy.Dlena.az : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@247realmedia[2].txt -> TrackingCookie.247realmedia : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@247realmedia[1].txt -> TrackingCookie.247realmedia : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@workopolis.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Max\Cookies\max@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@microsoftwlmessengermkt.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@2o7[2].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@msnaccountservices.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@notrefamille.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@adbrite[2].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@adjuggler[1].txt -> TrackingCookie.Adjuggler : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@rotator.adjuggler[2].txt -> TrackingCookie.Adjuggler : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@adjuggler[1].txt -> TrackingCookie.Adjuggler : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@rotator.adjuggler[2].txt -> TrackingCookie.Adjuggler : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@adrevolver[2].txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@adrevolver[2].txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
                C:\Documents and Settings\Max\Cookies\max@adtech[2].txt -> TrackingCookie.Adtech : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@adtech[2].txt -> TrackingCookie.Adtech : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@advertising[2].txt -> TrackingCookie.Advertising : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@advertising[2].txt -> TrackingCookie.Advertising : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
                C:\Documents and Settings\Max\Cookies\max@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@bluestreak[2].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
                C:\Documents and Settings\Max\Cookies\max@bluestreak[1].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@bluestreak[2].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@bluestreak[2].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@citi.bridgetrack[1].txt -> TrackingCookie.Bridgetrack : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@burstnet[1].txt -> TrackingCookie.Burstnet : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@www.burstnet[2].txt -> TrackingCookie.Burstnet : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@casalemedia[1].txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@casalemedia[1].txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@com[1].txt -> TrackingCookie.Com : Aucune action entreprise.
                C:\Documents and Settings\Max\Cookies\max@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@bilbo.counted[2].txt -> TrackingCookie.Counted : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
                C:\Documents and Settings\Max\Cookies\max@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@e-2dj6wgkoanczgdq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@as-us.falkag[1].txt -> TrackingCookie.Falkag : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@as1.falkag[1].txt -> TrackingCookie.Falkag : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@fastclick[2].txt -> TrackingCookie.Fastclick : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@fastclick[2].txt -> TrackingCookie.Fastclick : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@fastclick[2].txt -> TrackingCookie.Fastclick : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@ehg-ctv.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@ehg-mybc.hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@ehg-mybc.hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@questionmarket[1].txt -> TrackingCookie.Questionmarket : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@revenue[2].txt -> TrackingCookie.Revenue : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
                C:\Documents and Settings\Max\Cookies\max@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@statcounter[2].txt -> TrackingCookie.Statcounter : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@webstat[1].txt -> TrackingCookie.Web-stat : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@weborama[1].txt -> TrackingCookie.Weborama : Aucune action entreprise.
                C:\Documents and Settings\Max\Cookies\max@weborama[2].txt -> TrackingCookie.Weborama : Aucune action entreprise.
                C:\Documents and Settings\Sonia\Cookies\sonia@weborama[2].txt -> TrackingCookie.Weborama : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@weborama[1].txt -> TrackingCookie.Weborama : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Aucune action entreprise.
                C:\Documents and Settings\Marie-Andrée\Cookies\marie-andrée@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@c1.zedo[1].txt -> TrackingCookie.Zedo : Aucune action entreprise.
                C:\Documents and Settings\Édith\Cookies\édith@zedo[1].txt -> TrackingCookie.Zedo : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015964.exe -> Trojan.ProcKill.DJ : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015965.exe -> Trojan.ProcKill.DJ : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015966.exe -> Trojan.ProcKill.DJ : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015967.exe -> Trojan.ProcKill.DJ : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0015968.exe -> Trojan.ProcKill.DJ : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016142.exe -> Trojan.ProcKill.DJ : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016143.exe -> Trojan.ProcKill.DJ : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016144.exe -> Trojan.ProcKill.DJ : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016145.exe -> Trojan.ProcKill.DJ : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016121.exe -> Trojan.Rustock.nay : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP87\A0022361.exe -> Trojan.Rustock.nay : Aucune action entreprise.
                C:\WINDOWS\system32:lzx32.sys -> Trojan.Rustock.nay : Aucune action entreprise.
                C:\WINDOWS\system32\msasvc.exe -> Trojan.Sinowal.bh : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016330.dll -> Trojan.Sinowal.br : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016331.dll -> Trojan.Sinowal.br : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016298.dll -> Trojan.Sinowal.bs : Aucune action entreprise.
                C:\RECYCLER\S-1-5-21-3786097620-1490169944-3164776863-1006\Dc48.wma -> Trojan.Wimad.a : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016127.exe -> Worm.VB.ar : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016128.exe -> Worm.VB.ar : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP81\A0016136.exe -> Worm.VB.ar : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016254.exe -> Worm.VB.ar : Aucune action entreprise.
                C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP83\A0016329.exe -> Worm.VB.ar : Aucune action entreprise.

                Fin du rapport
                0
                1. Modérateur
                  re

                  as tu supprimer ce qu'il ta trouver ???

                  sinon, le scan est à refaire !

                  ++
                  0
                  1. Ou c'est qui faut que ji aille pour faire ça?
                    0
                    1. C'est marquer supprimer et quanrantaine a coter des objets infectés faut tu j'en refasse une autre
                      0
                      1. OK la j'ai tout supprimer avec Appliquer les actions et ce que je peut faire le #2?
                        0
                        1. Modérateur
                          j'attends le 2éme rapport, on verra par là suite ...

                          0
                          1. BitDefender Online Scanner

                            Scan report generated at: Fri, Dec 22, 2006 - 16:46:48

                            Scan path: C:\;D:\;

                            Statistics

                            Time
                            01:28:41

                            Files
                            700453

                            Folders
                            4073

                            Boot Sectors
                            2

                            Archives
                            5199

                            Packed Files
                            72298

                            Results

                            Identified Viruses
                            2

                            Infected Files
                            3

                            Suspect Files
                            0

                            Warnings
                            0

                            Disinfected
                            0

                            Deleted Files
                            3

                            Engines Info

                            Virus Definitions
                            355958

                            Engine build
                            AVCORE v1.0 (build 2371) (i386) (Dec 13 2006 11:16:42)

                            Scan plugins
                            14

                            Archive plugins
                            38

                            Unpack plugins
                            6

                            E-mail plugins
                            6

                            System plugins
                            1

                            Scan Settings

                            First Action
                            Disinfect

                            Second Action
                            Delete

                            Heuristics
                            Yes

                            Enable Warnings
                            Yes

                            Scanned Extensions
                            *;

                            Exclude Extensions

                            Scan Emails
                            Yes

                            Scan Archives
                            Yes

                            Scan Packed
                            Yes

                            Scan Files
                            Yes

                            Scan Boot
                            Yes

                            Scanned File
                            Status

                            C:\Documents and Settings\Marie-Andrée\Local Settings\Temp\b104.exe=>(NSIS o)=>lzma_solid_nsis0002
                            Infected with: Trojan.Downloader.Small.BUY

                            C:\Documents and Settings\Marie-Andrée\Local Settings\Temp\b104.exe=>(NSIS o)=>lzma_solid_nsis0002
                            Deleted

                            C:\Documents and Settings\Marie-Andrée\Local Settings\Temp\b104.exe=>(NSIS o)
                            Update failed

                            C:\Documents and Settings\Marie-Andrée\Local Settings\Temp\b116.exe=>(NSIS o)=>lzma_solid_nsis0002
                            Infected with: Trojan.Downloader.PurityScan.AR

                            C:\Documents and Settings\Marie-Andrée\Local Settings\Temp\b116.exe=>(NSIS o)=>lzma_solid_nsis0002
                            Disinfection failed

                            C:\Documents and Settings\Marie-Andrée\Local Settings\Temp\b116.exe=>(NSIS o)=>lzma_solid_nsis0002
                            Deleted

                            C:\Documents and Settings\Marie-Andrée\Local Settings\Temp\b116.exe=>(NSIS o)
                            Update failed

                            C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP87\A0022369.exe
                            Infected with: Trojan.Downloader.PurityScan.AR

                            C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP87\A0022369.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{A55613E6-8078-44D4-B3B3-1F464F8BEACE}\RP87\A0022369.exe
                            Deleted
                            0
                            1. Modérateur
                              ok,

                              poste un nouveau hijackthis stp

                              ++
                              0
                              1. Logfile of HijackThis v1.99.1
                                Scan saved at 17:03:38, on 2006-12-22
                                Platform: Windows XP SP2 (WinNT 5.01.2600)
                                MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

                                Running processes:
                                C:\WINDOWS\System32\smss.exe
                                C:\WINDOWS\system32\winlogon.exe
                                C:\WINDOWS\system32\services.exe
                                C:\WINDOWS\system32\lsass.exe
                                C:\WINDOWS\system32\svchost.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\system32\spoolsv.exe
                                C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
                                C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
                                C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
                                C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
                                C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
                                C:\WINDOWS\system32\nvsvc32.exe
                                C:\WINDOWS\system32\slserv.exe
                                C:\WINDOWS\system32\svchost.exe
                                C:\WINDOWS\Explorer.EXE
                                C:\WINDOWS\system32\RUNDLL32.EXE
                                C:\WINDOWS\RTHDCPL.EXE
                                C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
                                C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
                                C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
                                C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAIA.EXE
                                C:\Program Files\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe
                                C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
                                C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
                                C:\WINDOWS\system32\ctfmon.exe
                                C:\Program Files\Messenger\msmsgs.exe
                                C:\Program Files\MSN Messenger\MsnMsgr.Exe
                                C:\Program Files\WinZip\WZQKPICK.EXE
                                C:\Program Files\Internet Explorer\iexplore.exe
                                C:\WINDOWS\system32\svchost.exe
                                C:\Program Files\Internet Explorer\iexplore.exe
                                C:\Documents and Settings\Marie-Andrée\Bureau\HijackThis.exe

                                R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.ca/?gws_rd=ssl
                                R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                                O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
                                O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
                                O2 - BHO: Bar888 - {C1B4DEC2-2623-438e-9CA2-C9043AB28508} - C:\PROGRA~1\FICHIE~1\{382DE~1\Bar888.dll (file missing)
                                O3 - Toolbar: Bar888 - {C1B4DEC2-2623-438e-9CA2-C9043AB28508} - C:\PROGRA~1\FICHIE~1\{382DE~1\Bar888.dll (file missing)
                                O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                                O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
                                O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
                                O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
                                O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
                                O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
                                O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
                                O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
                                O4 - HKLM\..\Run: [Ink Monitor] C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
                                O4 - HKLM\..\Run: [EPSON Stylus Photo R220 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAIA.EXE /P30 "EPSON Stylus Photo R220 Series" /O6 "USB001" /M "Stylus Photo R220"
                                O4 - HKLM\..\Run: [Ulead AutoDetector] C:\Program Files\Ulead Systems\Ulead Photo Explorer 8.0 SE Basic\Monitor.exe
                                O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
                                O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                                O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
                                O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
                                O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
                                O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
                                O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
                                O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
                                O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
                                O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
                                O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
                                O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
                                O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
                                O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
                                O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
                                O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                                O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                                O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
                                O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
                                O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
                                O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
                                O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
                                O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
                                O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
                                O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
                                O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
                                O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
                                O20 - AppInit_DLLs: C:\WINDOWS\system32\svch33.dll
                                O20 - Winlogon Notify: rpcc - C:\WINDOWS\system32\rpcc.dll (file missing)
                                O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
                                O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
                                O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
                                O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
                                O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
                                O23 - Service: COM+ Messages - Unknown owner - C:\WINDOWS\system32\svchosts.exe" -e mc-110-12-0001411 (file missing)
                                O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
                                O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
                                O23 - Service: Microsoft authenticate service (MsaSvc) - Unknown owner - C:\WINDOWS\system32\msasvc.exe (file missing)
                                O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
                                O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
                                0
                                • 1
                                • 2