A voir également:
- Rayures verticales écran pc portable
- Double ecran pc - Guide
- Écran noir pc portable - Guide
- Annuaire portable gratuit a partir d'un nom ✓ - Forum Mobile
- Nettoyer pc portable - Guide
- Test performance pc - Guide
30 réponses
rebonsoir,
mon probleme de rayure continue malheureusement et cela vient de recommencer là à l'instant !.
Grrrrrrrrrrrrr j'en ai marre et que faire ???. Merci.
mon probleme de rayure continue malheureusement et cela vient de recommencer là à l'instant !.
Grrrrrrrrrrrrr j'en ai marre et que faire ???. Merci.
tanteelise
Messages postés
28196
Date d'inscription
lundi 5 avril 2010
Statut
Contributeur
Dernière intervention
26 avril 2024
4 541
12 janv. 2013 à 18:06
12 janv. 2013 à 18:06
je ne vois qu'une chose, transférer votre post dans la section virus/sécurité où un spécialiste vous prendra en charge. Suivez bien ses instructions jusqu'au bout.
Je le transfère de ce pas.
Bonne chance
Je le transfère de ce pas.
Bonne chance
Rebonsoir,
j'espere que quelqu'un va vraiment m'aider sur ce nouveau forum et qu'on ne m'y met pas pour être sur une voie de garage ???.
Je suis inquiet et j'ai peur qu'on me laisse tomber !!!
.Pourquoi ce déplacement soudain ?. Merci de m'expliquer.
jean pierre.
j'espere que quelqu'un va vraiment m'aider sur ce nouveau forum et qu'on ne m'y met pas pour être sur une voie de garage ???.
Je suis inquiet et j'ai peur qu'on me laisse tomber !!!
.Pourquoi ce déplacement soudain ?. Merci de m'expliquer.
jean pierre.
tanteelise
Messages postés
28196
Date d'inscription
lundi 5 avril 2010
Statut
Contributeur
Dernière intervention
26 avril 2024
4 541
12 janv. 2013 à 18:21
12 janv. 2013 à 18:21
voilà, il y a déjà quelqu'un, on ne vous oublie pas :)
Utilisateur anonyme
12 janv. 2013 à 18:18
12 janv. 2013 à 18:18
salut
▶ Téléchargez UsbFix (créé par El Desaparecido) sur votre Bureau.
▶ Si votre antivirus affiche une alerte, ignorez-la et désactivez l'antivirus temporairement.
▶ Branchez toutes vos sources de données externes à votre PC (clé USB, disque dur externe, etc...) sans les ouvrir.
▶ Double cliquez sur UsbFix.exe. (pour les utilisateurs de windows Vista , windows 7 , windows 8 , clique droit => executer en tant qu'administrateur"
▶ Cliquez sur Suppression.
▶ Laissez travailler l'outil.
▶ À la fin du scan, un rapport va s'afficher, postez-le dans votre prochaine réponse sur le forum.
▶ Le rapport est aussi sauvegardé à la racine du disque système ( C:\UsbFix.txt ).
▶ Tutoriel vidéo
==============
tous les processus "non vitaux de windows" vont être coupés , enregistre ton travail. Il y aura une extinction du bureau pendant le scan --> pas de panique.
Désactive toutes tes protections si possible , antivirus , sandbox , pare-feux , etc....: https://forum.pcastuces.com/default.asp
telecharge et enregistre Pre_Scan sur ton bureau :
https://forums-fec.be/gen-hackman/Pre_Scan.exe
si le lien ne fonctionne pas :
http://www.archive-host.com
si l'outil est relancé plusieurs fois , il te proposera un menu et qu'aucune option n'est demandée, lance l'option "Scan|Kill"
si l'outil est bloqué par l'infection utilise cette version avec extension .pif :
https://forums-fec.be/gen-hackman/Pre_Scan.pif
si l'outil detecte un proxy et que tu n'en as pas installé clique sur "supprimer le proxy"
Il se peut que des fenêtres noires clignotent , laisse-le travailler.
Laisse l'outil redemarrer ton pc.
Poste Pre_Scan_la_date_et_l'heure.txt qui apparaitra à la racine de ton disque système ( généralement C:\ )
NE LE POSTE PAS SUR LE FORUM !!! (il est trop long)
Heberge le rapport sur https://www.cjoint.com/ puis donne le lien obtenu en echange sur le forum où tu te fais aider
▶ Téléchargez UsbFix (créé par El Desaparecido) sur votre Bureau.
▶ Si votre antivirus affiche une alerte, ignorez-la et désactivez l'antivirus temporairement.
▶ Branchez toutes vos sources de données externes à votre PC (clé USB, disque dur externe, etc...) sans les ouvrir.
▶ Double cliquez sur UsbFix.exe. (pour les utilisateurs de windows Vista , windows 7 , windows 8 , clique droit => executer en tant qu'administrateur"
▶ Cliquez sur Suppression.
▶ Laissez travailler l'outil.
▶ À la fin du scan, un rapport va s'afficher, postez-le dans votre prochaine réponse sur le forum.
▶ Le rapport est aussi sauvegardé à la racine du disque système ( C:\UsbFix.txt ).
▶ Tutoriel vidéo
==============
tous les processus "non vitaux de windows" vont être coupés , enregistre ton travail. Il y aura une extinction du bureau pendant le scan --> pas de panique.
Désactive toutes tes protections si possible , antivirus , sandbox , pare-feux , etc....: https://forum.pcastuces.com/default.asp
telecharge et enregistre Pre_Scan sur ton bureau :
https://forums-fec.be/gen-hackman/Pre_Scan.exe
si le lien ne fonctionne pas :
http://www.archive-host.com
si l'outil est relancé plusieurs fois , il te proposera un menu et qu'aucune option n'est demandée, lance l'option "Scan|Kill"
si l'outil est bloqué par l'infection utilise cette version avec extension .pif :
https://forums-fec.be/gen-hackman/Pre_Scan.pif
si l'outil detecte un proxy et que tu n'en as pas installé clique sur "supprimer le proxy"
Il se peut que des fenêtres noires clignotent , laisse-le travailler.
Laisse l'outil redemarrer ton pc.
Poste Pre_Scan_la_date_et_l'heure.txt qui apparaitra à la racine de ton disque système ( généralement C:\ )
NE LE POSTE PAS SUR LE FORUM !!! (il est trop long)
Heberge le rapport sur https://www.cjoint.com/ puis donne le lien obtenu en echange sur le forum où tu te fais aider
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Re,
je ne peux pas le poster car cela m'à foutu un bordel ce logiciel "pré-scan" et quand mon ordi devait redemarrer ,
il à commencé à le faire mais l'écran restait tout noir et du coup j'ai été obligé d'arrêter moi-même ma tour et de la faire redemarrer sinon j'attendais jusqu'à la saint glinglin ainsi !. Désolé !. Je dois le refaire où pas donc ???.
je ne peux pas le poster car cela m'à foutu un bordel ce logiciel "pré-scan" et quand mon ordi devait redemarrer ,
il à commencé à le faire mais l'écran restait tout noir et du coup j'ai été obligé d'arrêter moi-même ma tour et de la faire redemarrer sinon j'attendais jusqu'à la saint glinglin ainsi !. Désolé !. Je dois le refaire où pas donc ???.
Utilisateur anonyme
Modifié par g3n-h@ckm@n le 12/01/2013 à 19:26
Modifié par g3n-h@ckm@n le 12/01/2013 à 19:26
t'es trop impatient... et en plus j'ai demandé usbfix avant !
¤¤¤¤¤¤¤¤¤¤ Pre_Scan_Concept ¤¤¤¤¤¤¤¤¤¤
¤¤¤¤¤¤¤¤¤¤ Pre_Scan_Concept ¤¤¤¤¤¤¤¤¤¤
re, là vous allez pas commencer à me faire des histoires pour des conneries d'égo non ???. J'ai dejà fais usb fix et j'ai posté le rapport alors quoi ???.
De plus je ne savais pas qu'il fallait attendre car vous ne me dites rien alors comment je peux deviner que mon ecran noir c'etait normal ???. Arrêtez de vous sentir blessé car depuis hier c'est moi qui suit perjudiquer avec ce probleme récurrent car je suis coincé ici chez moi à la place d'aller me ballader alors que j'aurais eu bien besoin de m'aérer l'esprit aujourd'hui aussi !.
J'essaie de faire au mieux mais j'en ai tres marre car depuis hier , je ne fais que cela et c'est stressant et cela m'énerve maintenant !.
Je suis humain et pas un robot !.
De plus je ne savais pas qu'il fallait attendre car vous ne me dites rien alors comment je peux deviner que mon ecran noir c'etait normal ???. Arrêtez de vous sentir blessé car depuis hier c'est moi qui suit perjudiquer avec ce probleme récurrent car je suis coincé ici chez moi à la place d'aller me ballader alors que j'aurais eu bien besoin de m'aérer l'esprit aujourd'hui aussi !.
J'essaie de faire au mieux mais j'en ai tres marre car depuis hier , je ne fais que cela et c'est stressant et cela m'énerve maintenant !.
Je suis humain et pas un robot !.
Rebonjour, de nouveau le rapport de uusbfix ici collé . Merci d'en prendre note.
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Avira Desktop [(!) Disabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 458 Go (366 Go libre(s) - 80%) [Acer] # NTFS
D:\ -> Disque fixe # 458 Go (457 Go libre(s) - 100%) [DATA] # NTFS
E:\ -> CD-ROM
################## | Processus Actif |
C:\Windows\system32\csrss.exe (464)
C:\Windows\system32\wininit.exe (532)
C:\Windows\system32\csrss.exe (552)
C:\Windows\system32\services.exe (588)
C:\Windows\system32\lsass.exe (604)
C:\Windows\system32\lsm.exe (612)
C:\Windows\system32\winlogon.exe (660)
C:\Windows\system32\svchost.exe (776)
C:\Windows\system32\svchost.exe (864)
C:\Windows\system32\atiesrxx.exe (928)
C:\Windows\System32\svchost.exe (1004)
C:\Windows\System32\svchost.exe (148)
C:\Windows\system32\svchost.exe (356)
C:\Windows\system32\svchost.exe (792)
C:\Windows\system32\svchost.exe (1028)
C:\Windows\system32\svchost.exe (1128)
C:\Windows\System32\spoolsv.exe (1252)
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (1292)
C:\Windows\system32\svchost.exe (1312)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1428)
C:\Windows\system32\atieclxx.exe (1460)
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (1524)
C:\Windows\system32\svchost.exe (1564)
C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (1592)
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (1632)
C:\Program Files\Microsoft LifeCam\MSCamS64.exe (1752)
C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe (1824)
C:\Windows\system32\Dwm.exe (2172)
C:\Windows\system32\taskhost.exe (2180)
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (2220)
C:\Windows\system32\svchost.exe (2284)
C:\Program Files\Acer\Acer Updater\UpdaterService.exe (2316)
C:\OEM\USBDECTION\USBS3S4Detection.exe (2372)
C:\Windows\Explorer.EXE (2420)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2440)
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (2480)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2796)
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (2856)
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (2780)
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (2360)
C:\Windows\system32\conhost.exe (2732)
C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe (1472)
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (3068)
C:\Program Files\Eraser\Eraser.exe (3056)
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (3048)
C:\Program Files\Windows Sidebar\sidebar.exe (3032)
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (3516)
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (3560)
C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe (3588)
C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe (3700)
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (3796)
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (3836)
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3856)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (4012)
C:\Windows\system32\SearchIndexer.exe (1620)
C:\Windows\system32\svchost.exe (3924)
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (3496)
C:\Windows\System32\WUDFHost.exe (4200)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (4872)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (3960)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3884)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2080)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2072)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3508)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (3548)
C:\Windows\System32\svchost.exe (5088)
C:\Program Files\Windows Media Player\wmpnetwk.exe (1776)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (560)
C:\OEM\USBDECTION\FixIt.exe (3260)
C:\Windows\system32\taskeng.exe (628)
C:\Users\el catala\AppData\Local\Screamer Radio\screamer.exe (2504)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4684)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (1668)
C:\Windows\system32\wbem\wmiprvse.exe (996)
C:\UsbFix\Go.exe (4672)
################## | Processus Stoppés |
Stoppé! C:\Windows\system32\atiesrxx.exe (928)
Stoppé! C:\Windows\System32\spoolsv.exe (1252)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (1292)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1428)
Stoppé! C:\Windows\system32\atieclxx.exe (1460)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (1524)
Stoppé! C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (1592)
Stoppé! C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (1632)
Stoppé! C:\Program Files\Microsoft LifeCam\MSCamS64.exe (1752)
Stoppé! C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe (1824)
Stoppé! C:\Windows\system32\taskhost.exe (2180)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (2220)
Stoppé! C:\Program Files\Acer\Acer Updater\UpdaterService.exe (2316)
Stoppé! C:\OEM\USBDECTION\USBS3S4Detection.exe (2372)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2440)
Stoppé! C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (2480)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2796)
Stoppé! C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (2856)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (2780)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (2360)
Stoppé! C:\Windows\system32\conhost.exe (2732)
Stoppé! C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe (1472)
Stoppé! C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (3068)
Stoppé! C:\Program Files\Eraser\Eraser.exe (3056)
Stoppé! C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (3048)
Stoppé! C:\Program Files\Windows Sidebar\sidebar.exe (3032)
Stoppé! C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (3516)
Stoppé! C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (3560)
Stoppé! C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe (3588)
Stoppé! C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe (3700)
Stoppé! C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (3796)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (3836)
Stoppé! C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3856)
Stoppé! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (4012)
Stoppé! C:\Windows\system32\SearchIndexer.exe (1620)
Stoppé! C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (3496)
Stoppé! C:\Windows\System32\WUDFHost.exe (4200)
Stoppé! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (4872)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (3960)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3884)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2080)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2072)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3508)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (3548)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (1776)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (560)
Stoppé! C:\OEM\USBDECTION\FixIt.exe (3260)
Stoppé! C:\Windows\system32\taskeng.exe (628)
Stoppé! C:\Users\el catala\AppData\Local\Screamer Radio\screamer.exe (2504)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4684)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (1668)
################## | Éléments infectieux |
Supprimé! C:\Users\ELCATA~1\AppData\Local\Temp\12-10_vista_win7_win8_64_dd_ccc_whql_net4.exe
Supprimé! C:\Users\ELCATA~1\AppData\Local\Temp\7za.exe
Supprimé! C:\$RECYCLE.BIN\S-1-5-20
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-270391582-4040308789-2649344155-1001
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-270391582-4040308789-2649344155-500
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-683195984-2707618574-1192538689-500
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-2439230621-146712487-739280163-1001
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-270391582-4040308789-2649344155-1001
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-270391582-4040308789-2649344155-500
(!) Fichiers temporaires supprimés.
################## | Registre |
################## | Mountpoints2 |
################## | Listing |
[12/01/2013 - 18:24:04 | SHD ] C:\$Recycle.Bin
[12/01/2013 - 13:21:44 | N | 6236] C:\AdwCleaner[R1].txt
[12/01/2013 - 13:23:28 | N | 6296] C:\AdwCleaner[R2].txt
[12/01/2013 - 13:23:40 | N | 5966] C:\AdwCleaner[S2].txt
[12/01/2013 - 01:06:22 | D ] C:\AMD
[27/07/2011 - 18:56:47 | D ] C:\book
[08/12/2010 - 06:58:48 | N | 8192] C:\BOOTSECT.BAK
[14/07/2009 - 06:08:56 | SHD ] C:\Documents and Settings
[04/10/2011 - 13:41:57 | D ] C:\hercules instal.exe
[12/01/2013 - 13:24:41 | ASH | 3214204928] C:\hiberfil.sys
[08/12/2010 - 07:16:47 | D ] C:\Intel
[27/07/2011 - 19:29:29 | D ] C:\OEM
[12/01/2013 - 13:24:45 | ASH | 4285607936] C:\pagefile.sys
[14/07/2009 - 04:20:08 | D ] C:\PerfLogs
[12/01/2013 - 02:15:16 | D ] C:\Program Files
[12/01/2013 - 02:21:11 | D ] C:\Program Files (x86)
[12/01/2013 - 13:23:38 | HD ] C:\ProgramData
[27/07/2011 - 19:27:33 | SHD ] C:\Recovery
[27/07/2011 - 18:51:48 | N | 2188] C:\RHDSetup.log
[12/01/2013 - 02:23:16 | SHD ] C:\System Volume Information
[01/08/2011 - 17:27:22 | D ] C:\ubuntu
[12/01/2013 - 18:24:04 | D ] C:\UsbFix
[12/01/2013 - 18:21:41 | A | 10792] C:\UsbFix.txt
[27/07/2011 - 19:27:44 | D ] C:\Users
[12/01/2013 - 01:46:49 | D ] C:\Windows
[07/10/2012 - 18:17:30 | D ] C:\Yahoo!
[29/07/2011 - 16:30:24 | D ] C:\ZMSoft
[12/01/2013 - 18:24:04 | SHD ] D:\$RECYCLE.BIN
[26/07/2011 - 21:10:39 | RASHD ] D:\Autorun.inf
[23/07/2011 - 22:24:32 | D ] D:\Config.Msi
[11/04/2008 - 09:07:18 | N | 3820] D:\eula.1028.txt
[11/04/2008 - 09:07:18 | N | 15428] D:\eula.1031.txt
[11/04/2008 - 09:07:18 | N | 10058] D:\eula.1033.txt
[11/04/2008 - 09:07:18 | N | 12246] D:\eula.1036.txt
[11/04/2008 - 09:07:18 | N | 13912] D:\eula.1040.txt
[11/04/2008 - 09:07:18 | N | 5868] D:\eula.1041.txt
[11/04/2008 - 09:07:18 | N | 5970] D:\eula.1042.txt
[11/04/2008 - 09:07:18 | N | 10134] D:\eula.1049.txt
[11/04/2008 - 09:07:18 | N | 3814] D:\eula.2052.txt
[11/04/2008 - 09:07:18 | N | 12936] D:\eula.3082.txt
[11/04/2008 - 09:07:18 | N | 1110] D:\globdata.ini
[11/04/2008 - 07:03:48 | N | 562688] D:\install.exe
[11/04/2008 - 09:07:18 | N | 843] D:\install.ini
[11/04/2008 - 07:03:48 | N | 76304] D:\install.res.1028.dll
[11/04/2008 - 07:03:48 | N | 96272] D:\install.res.1031.dll
[11/04/2008 - 07:03:48 | N | 91152] D:\install.res.1033.dll
[11/04/2008 - 07:03:48 | N | 97296] D:\install.res.1036.dll
[11/04/2008 - 07:03:48 | N | 95248] D:\install.res.1040.dll
[11/04/2008 - 07:03:48 | N | 81424] D:\install.res.1041.dll
[11/04/2008 - 07:03:48 | N | 79888] D:\install.res.1042.dll
[11/04/2008 - 09:09:24 | N | 93200] D:\install.res.1049.dll
[11/04/2008 - 07:03:48 | N | 75792] D:\install.res.2052.dll
[11/04/2008 - 07:03:48 | N | 96272] D:\install.res.3082.dll
[01/12/2006 - 22:37:14 | N | 904704] D:\msdia80.dll
[12/01/2013 - 00:11:53 | D ] D:\msdownld.tmp
[23/07/2011 - 22:24:28 | D ] D:\Symbols
[19/03/2011 - 10:59:55 | SHD ] D:\System Volume Information
[11/04/2008 - 09:07:18 | N | 5686] D:\vcredist.bmp
[11/04/2008 - 09:09:38 | N | 3797292] D:\VC_RED.cab
[11/04/2008 - 09:11:40 | N | 233472] D:\VC_RED.MSI
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
################## | Upload |
Veuillez envoyer le fichier: C:\UsbFix_Upload_Me_ELCATALA-PC.zip
http://eldesaparecido.com/upload.php
Merci de votre contribution.
################## | E.O.F |
OS: Microsoft Windows 7 Édition Familiale Premium (6.1.7601 64-Bit) # Service Pack 1
WB: Windows Internet Explorer 9.0.8112.16421
SC: Security Center Service [Enabled]
WU: Windows Update Service [Enabled]
AV: Avira Desktop [(!) Disabled | Updated]
FW: Windows FireWall Service [Enabled]
C:\ (%systemdrive%) -> Disque fixe # 458 Go (366 Go libre(s) - 80%) [Acer] # NTFS
D:\ -> Disque fixe # 458 Go (457 Go libre(s) - 100%) [DATA] # NTFS
E:\ -> CD-ROM
################## | Processus Actif |
C:\Windows\system32\csrss.exe (464)
C:\Windows\system32\wininit.exe (532)
C:\Windows\system32\csrss.exe (552)
C:\Windows\system32\services.exe (588)
C:\Windows\system32\lsass.exe (604)
C:\Windows\system32\lsm.exe (612)
C:\Windows\system32\winlogon.exe (660)
C:\Windows\system32\svchost.exe (776)
C:\Windows\system32\svchost.exe (864)
C:\Windows\system32\atiesrxx.exe (928)
C:\Windows\System32\svchost.exe (1004)
C:\Windows\System32\svchost.exe (148)
C:\Windows\system32\svchost.exe (356)
C:\Windows\system32\svchost.exe (792)
C:\Windows\system32\svchost.exe (1028)
C:\Windows\system32\svchost.exe (1128)
C:\Windows\System32\spoolsv.exe (1252)
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (1292)
C:\Windows\system32\svchost.exe (1312)
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1428)
C:\Windows\system32\atieclxx.exe (1460)
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (1524)
C:\Windows\system32\svchost.exe (1564)
C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (1592)
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (1632)
C:\Program Files\Microsoft LifeCam\MSCamS64.exe (1752)
C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe (1824)
C:\Windows\system32\Dwm.exe (2172)
C:\Windows\system32\taskhost.exe (2180)
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (2220)
C:\Windows\system32\svchost.exe (2284)
C:\Program Files\Acer\Acer Updater\UpdaterService.exe (2316)
C:\OEM\USBDECTION\USBS3S4Detection.exe (2372)
C:\Windows\Explorer.EXE (2420)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2440)
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (2480)
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2796)
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (2856)
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (2780)
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (2360)
C:\Windows\system32\conhost.exe (2732)
C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe (1472)
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (3068)
C:\Program Files\Eraser\Eraser.exe (3056)
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (3048)
C:\Program Files\Windows Sidebar\sidebar.exe (3032)
C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (3516)
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (3560)
C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe (3588)
C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe (3700)
C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (3796)
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (3836)
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3856)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (4012)
C:\Windows\system32\SearchIndexer.exe (1620)
C:\Windows\system32\svchost.exe (3924)
C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (3496)
C:\Windows\System32\WUDFHost.exe (4200)
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (4872)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (3960)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3884)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2080)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2072)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3508)
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (3548)
C:\Windows\System32\svchost.exe (5088)
C:\Program Files\Windows Media Player\wmpnetwk.exe (1776)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (560)
C:\OEM\USBDECTION\FixIt.exe (3260)
C:\Windows\system32\taskeng.exe (628)
C:\Users\el catala\AppData\Local\Screamer Radio\screamer.exe (2504)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4684)
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (1668)
C:\Windows\system32\wbem\wmiprvse.exe (996)
C:\UsbFix\Go.exe (4672)
################## | Processus Stoppés |
Stoppé! C:\Windows\system32\atiesrxx.exe (928)
Stoppé! C:\Windows\System32\spoolsv.exe (1252)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (1292)
Stoppé! C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (1428)
Stoppé! C:\Windows\system32\atieclxx.exe (1460)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (1524)
Stoppé! C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (1592)
Stoppé! C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (1632)
Stoppé! C:\Program Files\Microsoft LifeCam\MSCamS64.exe (1752)
Stoppé! C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe (1824)
Stoppé! C:\Windows\system32\taskhost.exe (2180)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (2220)
Stoppé! C:\Program Files\Acer\Acer Updater\UpdaterService.exe (2316)
Stoppé! C:\OEM\USBDECTION\USBS3S4Detection.exe (2372)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (2440)
Stoppé! C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (2480)
Stoppé! C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (2796)
Stoppé! C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (2856)
Stoppé! C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (2780)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (2360)
Stoppé! C:\Windows\system32\conhost.exe (2732)
Stoppé! C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe (1472)
Stoppé! C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (3068)
Stoppé! C:\Program Files\Eraser\Eraser.exe (3056)
Stoppé! C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (3048)
Stoppé! C:\Program Files\Windows Sidebar\sidebar.exe (3032)
Stoppé! C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (3516)
Stoppé! C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (3560)
Stoppé! C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe (3588)
Stoppé! C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe (3700)
Stoppé! C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe (3796)
Stoppé! C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (3836)
Stoppé! C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (3856)
Stoppé! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (4012)
Stoppé! C:\Windows\system32\SearchIndexer.exe (1620)
Stoppé! C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (3496)
Stoppé! C:\Windows\System32\WUDFHost.exe (4200)
Stoppé! C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (4872)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (3960)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3884)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2080)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (2072)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (3508)
Stoppé! C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (3548)
Stoppé! C:\Program Files\Windows Media Player\wmpnetwk.exe (1776)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (560)
Stoppé! C:\OEM\USBDECTION\FixIt.exe (3260)
Stoppé! C:\Windows\system32\taskeng.exe (628)
Stoppé! C:\Users\el catala\AppData\Local\Screamer Radio\screamer.exe (2504)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (4684)
Stoppé! C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (1668)
################## | Éléments infectieux |
Supprimé! C:\Users\ELCATA~1\AppData\Local\Temp\12-10_vista_win7_win8_64_dd_ccc_whql_net4.exe
Supprimé! C:\Users\ELCATA~1\AppData\Local\Temp\7za.exe
Supprimé! C:\$RECYCLE.BIN\S-1-5-20
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-270391582-4040308789-2649344155-1001
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-270391582-4040308789-2649344155-500
Supprimé! C:\$RECYCLE.BIN\S-1-5-21-683195984-2707618574-1192538689-500
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-2439230621-146712487-739280163-1001
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-270391582-4040308789-2649344155-1001
Supprimé! D:\$RECYCLE.BIN\S-1-5-21-270391582-4040308789-2649344155-500
(!) Fichiers temporaires supprimés.
################## | Registre |
################## | Mountpoints2 |
################## | Listing |
[12/01/2013 - 18:24:04 | SHD ] C:\$Recycle.Bin
[12/01/2013 - 13:21:44 | N | 6236] C:\AdwCleaner[R1].txt
[12/01/2013 - 13:23:28 | N | 6296] C:\AdwCleaner[R2].txt
[12/01/2013 - 13:23:40 | N | 5966] C:\AdwCleaner[S2].txt
[12/01/2013 - 01:06:22 | D ] C:\AMD
[27/07/2011 - 18:56:47 | D ] C:\book
[08/12/2010 - 06:58:48 | N | 8192] C:\BOOTSECT.BAK
[14/07/2009 - 06:08:56 | SHD ] C:\Documents and Settings
[04/10/2011 - 13:41:57 | D ] C:\hercules instal.exe
[12/01/2013 - 13:24:41 | ASH | 3214204928] C:\hiberfil.sys
[08/12/2010 - 07:16:47 | D ] C:\Intel
[27/07/2011 - 19:29:29 | D ] C:\OEM
[12/01/2013 - 13:24:45 | ASH | 4285607936] C:\pagefile.sys
[14/07/2009 - 04:20:08 | D ] C:\PerfLogs
[12/01/2013 - 02:15:16 | D ] C:\Program Files
[12/01/2013 - 02:21:11 | D ] C:\Program Files (x86)
[12/01/2013 - 13:23:38 | HD ] C:\ProgramData
[27/07/2011 - 19:27:33 | SHD ] C:\Recovery
[27/07/2011 - 18:51:48 | N | 2188] C:\RHDSetup.log
[12/01/2013 - 02:23:16 | SHD ] C:\System Volume Information
[01/08/2011 - 17:27:22 | D ] C:\ubuntu
[12/01/2013 - 18:24:04 | D ] C:\UsbFix
[12/01/2013 - 18:21:41 | A | 10792] C:\UsbFix.txt
[27/07/2011 - 19:27:44 | D ] C:\Users
[12/01/2013 - 01:46:49 | D ] C:\Windows
[07/10/2012 - 18:17:30 | D ] C:\Yahoo!
[29/07/2011 - 16:30:24 | D ] C:\ZMSoft
[12/01/2013 - 18:24:04 | SHD ] D:\$RECYCLE.BIN
[26/07/2011 - 21:10:39 | RASHD ] D:\Autorun.inf
[23/07/2011 - 22:24:32 | D ] D:\Config.Msi
[11/04/2008 - 09:07:18 | N | 3820] D:\eula.1028.txt
[11/04/2008 - 09:07:18 | N | 15428] D:\eula.1031.txt
[11/04/2008 - 09:07:18 | N | 10058] D:\eula.1033.txt
[11/04/2008 - 09:07:18 | N | 12246] D:\eula.1036.txt
[11/04/2008 - 09:07:18 | N | 13912] D:\eula.1040.txt
[11/04/2008 - 09:07:18 | N | 5868] D:\eula.1041.txt
[11/04/2008 - 09:07:18 | N | 5970] D:\eula.1042.txt
[11/04/2008 - 09:07:18 | N | 10134] D:\eula.1049.txt
[11/04/2008 - 09:07:18 | N | 3814] D:\eula.2052.txt
[11/04/2008 - 09:07:18 | N | 12936] D:\eula.3082.txt
[11/04/2008 - 09:07:18 | N | 1110] D:\globdata.ini
[11/04/2008 - 07:03:48 | N | 562688] D:\install.exe
[11/04/2008 - 09:07:18 | N | 843] D:\install.ini
[11/04/2008 - 07:03:48 | N | 76304] D:\install.res.1028.dll
[11/04/2008 - 07:03:48 | N | 96272] D:\install.res.1031.dll
[11/04/2008 - 07:03:48 | N | 91152] D:\install.res.1033.dll
[11/04/2008 - 07:03:48 | N | 97296] D:\install.res.1036.dll
[11/04/2008 - 07:03:48 | N | 95248] D:\install.res.1040.dll
[11/04/2008 - 07:03:48 | N | 81424] D:\install.res.1041.dll
[11/04/2008 - 07:03:48 | N | 79888] D:\install.res.1042.dll
[11/04/2008 - 09:09:24 | N | 93200] D:\install.res.1049.dll
[11/04/2008 - 07:03:48 | N | 75792] D:\install.res.2052.dll
[11/04/2008 - 07:03:48 | N | 96272] D:\install.res.3082.dll
[01/12/2006 - 22:37:14 | N | 904704] D:\msdia80.dll
[12/01/2013 - 00:11:53 | D ] D:\msdownld.tmp
[23/07/2011 - 22:24:28 | D ] D:\Symbols
[19/03/2011 - 10:59:55 | SHD ] D:\System Volume Information
[11/04/2008 - 09:07:18 | N | 5686] D:\vcredist.bmp
[11/04/2008 - 09:09:38 | N | 3797292] D:\VC_RED.cab
[11/04/2008 - 09:11:40 | N | 233472] D:\VC_RED.MSI
################## | Vaccin |
C:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
D:\Autorun.inf -> Vaccin créé par UsbFix (El Desaparecido)
################## | Upload |
Veuillez envoyer le fichier: C:\UsbFix_Upload_Me_ELCATALA-PC.zip
http://eldesaparecido.com/upload.php
Merci de votre contribution.
################## | E.O.F |
Dudule100
Messages postés
563
Date d'inscription
jeudi 25 octobre 2012
Statut
Membre
Dernière intervention
22 janvier 2017
30
11 janv. 2013 à 14:15
11 janv. 2013 à 14:15
C'est ta carte graphique qu'y n'est pas asser performante. Ce sont de petite rayure qui reste figer au meme endroi et si elle te paresse bleu c'est que c'est le bando en haut de Face book qui les géneres !
Rebonjour,
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Scan | 3.0112 | g3n-h@ckm@n & Saachaa ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
~ ¤¤¤¤¤ XP | Vista | 7 | 8 - 32/64 bits ¤¤¤¤¤
~ Update on 12/01/2013 | 16.20 by g3n-h@ckm@n
~ Evolution : http://gen-hackman.forum-pro.fr/t64-historique-de-l-outil
~ Pre_Script Infos : http://gen-hackman.forum-pro.fr/t89-les-switchs
~ Pre_scan Feedbacks : http://gen-hackman.forum-pro.fr/t93-feedback-pre_scan#505
~ [el catala (Administrator)] - [ELCATALA-PC]
~ SID = S-1-5-21-270391582-4040308789-2649344155-1001
~ System : Windows 7 Home Premium (64 bits) HomePremium Service Pack 1
~ ProcessorNameString : Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz
~ Identifier : Intel64 Family 6 Model 30 Stepping 5
~ Mémory RAM = Total (KB) : 4185160 | Used (%) : 24 | Free (KB) : 3158680
~ Pagefile = Total (KB) : 8368480 | Free (KB) : 7131440
~ Virtual = Total (KB) : 4194180 | Free (KB) : 4022680
¤¤¤¤¤¤¤¤¤¤ | Boot's scripts
C:\Windows\Setup\Scripts\MonitorAuto_x64.exe
C:\Windows\Setup\Scripts\MOD01SET5O000N0002.enc
C:\Windows\Setup\Scripts\useralaunch.cmd
C:\Windows\Setup\Scripts\OOBE.CMD
C:\Windows\Setup\Scripts\SetupComplete.cmd
¤¤¤¤¤¤¤¤¤¤ | Drives
c:\ -> [Fixed] | [Acer] | Total : 468940 Mo | Free : 374010 Mo -> NTFS
d:\ -> [Fixed] | [DATA] | Total : 469470 Mo | Free : 467950 Mo -> NTFS
¤¤¤¤¤¤¤¤¤¤ | Windows Updates
¤¤¤¤¤¤¤¤¤¤ | Sessions
~ C:\Windows\system32\config\systemprofile
~ C:\Windows\ServiceProfiles\LocalService
~ C:\Windows\ServiceProfiles\NetworkService
~ C:\Users\el catala
New restorepoint created
18:34:47
¤¤¤¤¤¤¤¤¤¤ | stopped Processes
(4476) -- rundll32.exe
(3536) -- WUDFHost.exe
(4392) -- WLIDSVC.EXE
(2648) -- WLIDSVCM.EXE
(4408) -- taskeng.exe
(5032) -- SearchIndexer.exe
(5016) -- wmpnetwk.exe
(4528) -- spoolsv.exe
(1700) -- explorer.exe
(3144) -- iexplore.exe
(4692) -- chrome.exe
(1304) -- chrome.exe
(4524) -- chrome.exe
(1068) -- chrome.exe
(4272) -- chrome.exe
(3288) -- chrome.exe
(1560) -- chrome.exe
(2740) -- chrome.exe
(2580) -- Eraser.exe
¤¤¤¤¤¤¤¤¤¤ | Running processes
Boot : Normal
[MD5.1911A3356FA3F77CCC825CCBAC038C2A] - [14/07/2009 00:19:50] - 328 | C:\Windows\System32\smss.exe (.Microsoft Corporation - Gestionnaire de sessions Windows.) - (6.1.7600.16385) -> \SystemRoot\System32\smss.exe [112640 Ko]
[MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 00:19:49] - 464 | C:\Windows\system32\csrss.exe (.Microsoft Corporation - Processus d'exécution client-serveur.) - (6.1.7600.16385) -> %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 [7680 Ko]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - [14/07/2009 00:52:37] - 532 | C:\Windows\system32\wininit.exe (.Microsoft Corporation - Application de démarrage de Windows.) - (6.1.7600.16385) -> wininit.exe [129024 Ko]
[MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 00:19:49] - 552 | C:\Windows\system32\csrss.exe (.Microsoft Corporation - Processus d'exécution client-serveur.) - (6.1.7600.16385) -> %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 [7680 Ko]
[MD5.3EE6C4A17173C0B6822585296E9AB209] - [14/07/2009 00:19:46] - 588 | C:\Windows\system32\services.exe (.Microsoft Corporation - Applications Services et Contrôleur.) - (6.1.7600.16385) -> C:\Windows\system32\services.exe [328704 Ko]
[MD5.C118A82CD78818C29AB228366EBF81C3] - [11/01/2012 23:51:42] - 604 | C:\Windows\system32\lsass.exe (.Microsoft Corporation - Local Security Authority Process.) - (6.1.7601.17725) -> C:\Windows\system32\lsass.exe [31232 Ko]
[MD5.F2BF82316E93E590FF081B95F68443B7] - [27/07/2011 21:10:26] - 612 | C:\Windows\system32\lsm.exe (.Microsoft Corporation - Service du gestionnaire de session locale.) - (6.1.7601.17514) -> C:\Windows\system32\lsm.exe [343040 Ko]
[MD5.8ACDF26E44D108653FE638ABDF5BB043] - [27/07/2011 21:10:27] - 660 | C:\Windows\system32\winlogon.exe (.Microsoft Corporation - Application d'ouverture de session Windows.) - (6.1.7601.17514) -> winlogon.exe [390656 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 776 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k DcomLaunch [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 864 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k RPCSS [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1004 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 148 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 356 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k netsvcs [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 792 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k GPSvcGroup [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1028 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k LocalService [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1128 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k NetworkService [27136 Ko]
[MD5.B458A95F12D36F55F98A42FD66BAEBFA] - [29/08/2012 17:00:30] - 1292 | C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (.Avira Operations GmbH & Co. KG - Avira Scheduler.) - (12.3.0.15) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe" [86224 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1312 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork [27136 Ko]
[MD5.CC3110EEF77AA0810CAA03741168BA8F] - [29/08/2012 17:00:30] - 1524 | C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) - (12.3.0.15) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe" [110032 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1564 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [27136 Ko]
[MD5.F162D5F5E845B9DC352DD1BAD8CEF1BC] - [14/07/2009 00:37:38] - 2172 | C:\Windows\system32\Dwm.exe (.Microsoft Corporation - Gestionnaire de fenêtres du Bureau.) - (6.1.7600.16385) -> "C:\Windows\system32\Dwm.exe" [120320 Ko]
[MD5.2AC4915A44F9F5E1B4A9EB4ED5F8414C] - [29/08/2012 17:00:30] - 2360 | C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (.Avira Operations GmbH & Co. KG - Avira Shadow Copy Service.) - (12.3.0.8) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_000005f4 [248784 Ko]
[MD5.689C68A3F1A6A9DA60358FA077F511DA] - [29/08/2012 17:00:30] - 3836 | C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (.Avira Operations GmbH & Co. KG - Avira System Tray Tool.) - (12.3.0.26) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [348664 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 3924 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 5088 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\System32\svchost.exe -k secsvcs [27136 Ko]
[MD5.F7DD2BC3F480A7A066CF539AEE0F9060] - [12/01/2013 18:32:16] - 2784 | C:\Users\el catala\Downloads\winlogon.exe (. - g3n-h@ckm@n.) - (3.1.1.2) -> "C:\Users\el catala\Downloads\winlogon.exe" [2486447 Ko]
[MD5.66CAA5901B0B6D224271A4BEF1F7B755] - [04/01/2013 13:52:12] - 4696 | C:\Pre_Scan\Process\Pre_Scan_Protect.exe (. - g3n-h@ckm@n.) - (2.1.2.23) -> "C:\Pre_Scan\Process\Pre_Scan_Protect.exe" [311093 Ko]
[MD5.34D4C852C7EAAD794C5932D7B894CBA8] - [27/07/2011 21:10:32] - 4528 | C:\Windows\system32\wbem\wmiprvse.exe (.Microsoft Corporation - WMI Provider Host.) - (6.1.7601.17514) -> C:\Windows\system32\wbem\wmiprvse.exe [372736 Ko]
¤¤¤¤¤¤¤¤¤¤ | Winlogon User : OK !
¤¤¤¤¤¤¤¤¤¤ | Winlogon Machine
Changed : [HKLM | Winlogon]|[AutoRestartShell] : 1 -> 0
Changed : [HKLM64 | Winlogon]|[AutoRestartShell] : 1 -> 0
Repaired : [HKLM | Winlogon]|[userinit] : Userinit.exe, -> C:\Windows\SysWOW64\userinit.exe,
Repaired : [HKLM | Winlogon]|[PowerDownAfterShutdown] : -> 1
Repaired : [HKLM64 | Winlogon]|[PowerDownAfterShutdown] : 0 -> 1
¤¤¤¤¤¤¤¤¤¤ | Associations
Repaired : [HKCR\Folder\shell\open\command] : %SystemRoot%\Explorer.exe -> C:\Windows\Explorer.exe
¤
Repaired : [HKLM | IExplore.exe\shell\open\command] : C:\Program Files (x86)\Internet Explorer\iexplore.exe -> "C:\Program Files (x86)\Internet Explorer\iexplore.exe"
Repaired : [HKLM | Google Chrome\shell\open\command] : "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -> "C:\Users\el catala\AppData\Local\Google\Chrome\Application\Chrome.exe"
Repaired : [Assoc | Applications] | @ : http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s
Repaired : [Assoc64 | Applications] | @ : http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s
¤¤¤¤¤¤¤¤¤¤ | Registry
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{9343812e-1c37-4a49-a12e-4b2d810d956b}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{9343812e-1c37-4a49-a12e-4b2d810d956b}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{20D04FE0-3AEA-1069-A2D8-08002B30309D}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{20D04FE0-3AEA-1069-A2D8-08002B30309D}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{208D2C60-3AEA-1069-A2D7-08002B30309D}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{208D2C60-3AEA-1069-A2D7-08002B30309D}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{871C5380-42A0-1069-A2EA-08002B30309D}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{871C5380-42A0-1069-A2EA-08002B30309D}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{59031a47-3f72-44a7-89c5-5595fe6b30ee}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{59031a47-3f72-44a7-89c5-5595fe6b30ee}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\policies\Explorer]|[NoDriveTypeAutoRun] : 0 -> 145
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Policies\Explorer]|[NoActiveDesktop] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Policies\Explorer]|[NoActiveDesktopChanges] : 1 -> 0
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Microsoft\Windows\CurrentVersion\Explorer\Advanced]|[Hidden] : 2 -> 0
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Microsoft\Windows\CurrentVersion\Policies\Explorer]|[NoDriveTypeAutoRun] : 0 -> 145
¤¤¤¤¤¤¤¤¤¤ | SafeBoot | Control | Repair
Safeboot Keys are O.K
Alternate shell is OK !
¤
Safeboot Minimal Subkeys : O.K !
¤
Safeboot Network Subkeys : O.K !
¤¤¤¤¤¤¤¤¤¤ | IFEO : OK !
¤¤¤¤¤¤¤¤¤¤ | Mountpoints2 : OK !
¤¤¤¤¤¤¤¤¤¤ | Windows
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\Boot]|[Shell] : SYS:Microsoft\Windows NT\CurrentVersion\Winlogon
Winsrv : OK !
Repaired : [HKLM | Windows]|[AppInit_DLLS] : browse~1\23762~1.17\{16cdf~1\browse~1.dll ->
[HKLM64\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[AppInit_DLLS] :
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[LoadAppInit_DLLs] : 1
[HKLM64\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[LoadAppInit_DLLs] : 1
¤¤¤¤¤¤¤¤¤¤ | Security Center
¤¤¤¤¤¤¤¤¤¤ | Services Corrections
Repaired : [HKLM | Services\Compbatt] : 3 -> 0
Repaired : [HKLM | Services\agp440] : 3 -> 2
Repaired : [HKLM | Services\EapHost] : 3 -> 2
Repaired : [HKLM | Services\Wlansvc] : 3 -> 2
Repaired : [HKLM | Services\SharedAccess] : 4 -> 2
Repaired : [HKLM | Services\WerSvc] : 3 -> 2
¤¤¤¤¤¤¤¤¤¤ | Internet Explorer
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Internet Explorer\Main]|[Start Page] : http://fr.msn.com/ -> http://www.google.com/
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Internet Explorer\Main]|[Local Page] : C:\Windows\system32\blank.htm -> C:\Windows\SysWOW64\blank.htm
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Internet Explorer\Main]|[Search Page] : http://go.microsoft.com/fwlink/?LinkId=54896 -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Repaired : [HKLM | Internet Explorer\Search]|[SearchAssistant] : -> http://www.google.com/ie
Repaired : [HKLM64 | Internet Explorer\Search]|[SearchAssistant] : -> http://www.google.com/ie
Repaired : [HKLM | Internet Explorer\Main]|[Start Page] : http://fr.msn.com/ -> http://go.microsoft.com/fwlink/?LinkId=69157
Repaired : [HKLM64 | Internet Explorer\Main]|[Start Page] : http://acer.msn.com -> http://go.microsoft.com/fwlink/?LinkId=69157
Repaired : [HKLM64 | Internet Explorer\Main]|[Local Page] : C:\Windows\System32\blank.htm -> C:\Windows\SysWOW64\blank.htm
Repaired : [HKLM | Internet Explorer\Main]|[Default_Search_URL] : http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch -> http://go.microsoft.com/fwlink/?LinkId=54896
Repaired : [HKLM | Internet Explorer\Main]|[Default_Page_URL] : http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome -> http://go.microsoft.com/fwlink/?LinkId=69157
Repaired : [HKLM64 | Internet Explorer\Main]|[Default_Page_URL] : http://acer.msn.com -> http://go.microsoft.com/fwlink/?LinkId=69157
Repaired : [HKLM64 | Internet Explorer\AboutURLs]|[Tabs] : -> res://ieframe.dll/tabswelcome.htm
¤
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Windows\CurrentVersion\Internet settings]|[WarnonZoneCrossing] : 0 -> 1
¤¤¤¤¤¤¤¤¤¤ | Hosts
C:\Windows\System32\Drivers\etc\hosts : Replaced
¤¤¤¤¤¤¤¤¤¤ | Files | Folders | Registry
Deleted : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001\Software\fAfvfSfP [fVf#f" fEfBfU [fh'Å ¶ ¬'³'ê'½f [fJf< fAfvfSfP [fVf#f"]
Impossible to move : C:\Users\ELCATA~1\AppData\Local\Temp\~DF5A793496059E5601.TMP
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\15F52EC7-BAB0-7891-B8EC-BD4889C30D2B\Latest\SetupStrings.dat
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\15F52EC7-BAB0-7891-B8EC-BD4889C30D2B\Latest\sqlite3.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\CRX_75DAF8CB7768\manifest.json
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\index.dat
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\clientad_rotator_090324[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\combo[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\flashwrite_1_2[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\gr10-swfo22_201105121000[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[10].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[11].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[4].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[5].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[6].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[7].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[8].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[9].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\index[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\combo[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\imp[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\imp[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\imp[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\niftybase_20120727[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\surly[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\upsell_conn_201010291509[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\ylc_1.9[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\adserv[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\bcr_2.0.5[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\bc_2.0.5[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\clk[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\clk[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\clk[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\flashgeneric20081104min1[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[4].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[5].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[6].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[7].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\index[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\combo[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\format.201112191406[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[10].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[4].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[5].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[6].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[7].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[8].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[9].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\visi.201109071817[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\yql[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\History\History.IE5\index.dat
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\MCConfigNsis\mcsetup.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\scoped_dir_4056_31651\CRX_INSTALL\contentscript.js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\scoped_dir_4056_31651\CRX_INSTALL\manifest.json
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleCrashHandler.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleCrashHandler64.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleUpdate.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleUpdateBroker.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleUpdateOnDemand.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleUpdateSetup.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdate.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_am.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ar.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_bg.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_bn.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ca.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_cs.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_da.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_de.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_el.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_en-GB.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_en.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_es-419.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_es.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_et.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_fa.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_fi.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_fil.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_fr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_gu.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_hi.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_hr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_hu.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_id.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_is.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_it.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_iw.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ja.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_kn.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ko.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_lt.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_lv.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ml.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_mr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ms.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_nl.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_no.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_pl.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_pt-BR.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_pt-PT.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ro.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ru.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sk.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sl.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sv.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sw.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ta.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_te.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_th.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_tr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_uk.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ur.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_vi.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_zh-CN.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_zh-TW.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\npGoogleUpdate3.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\psmachine.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\psuser.dll
Moved to quarantine successfully : C:\Users\el catala\Downloads\.~lock.claudia r (1).odt#
Moved to quarantine successfully : C:\Users\el catala\Downloads\.~lock.claudia r.odt#
Moved to quarantine successfully : C:\Users\el catala\Downloads\01net_SpyBot_-_Search___Destroy.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\12-10_vista_win7_win8_64_dd_ccc_whql_net4.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\7z920.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\adwcleaner.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Apache_OpenOffice_incubating_3.4.0_Win_x86_install_fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Apache_OpenOffice_incubating_3.4.1_Win_x86_install_fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\avira-antivir-personal-free-antivirus_avira_antivir_personal_free_10.2.0.703_francais_10821.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\avira_free_antivirus_fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\ccsetup308.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\CertiNomis.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\ChromeFrameSetup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\chromeinstall-7u9.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\ChromeSetup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\DivXInstaller.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Eraser 6.0.8.2273.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Eraser_64_bits_5.86a_2024.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\FacebookVideoCallSetup_v1.2.203.0.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Firefox Setup 10.0.1.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\flashplayer11_b1_install_win_pi64_071311.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\flashplayer11_b1_uninstall_win_64_071311.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\flashplayer11_rc1_install_win_pi64_090611 (1).exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\flashplayer11_rc1_install_win_pi64_090611.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\FLVPlayerSetup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\iata_cd.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\iMeshV11.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Installation_Messenger2011.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\installer_adobe_reader_French.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\install_flash_player.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\iTunes64Setup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\MaConfig_5_2_2_0.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\MaConfig_win.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\mbam-setup-1.70.0.1100.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\msgr11fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Opera_1151_int_Setup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\PowerPointViewer.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\QuickTimeInstaller.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Radio_Fr_solo-Install.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\RealPlayer.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\RealPlayer_fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\san2013-1911-BQR.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\screamer043.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\screamer044.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\SetupImgBurn_2.5.5.0.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\SetupLCL.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Silverlight.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Silverlight_x64.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\sisoftware-sandra-lite_sandra_lite_2013_19.23_francais_19863.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\spybotsd162.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\TuneUpUtilities2011_fr-FR.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\UsbFix.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\veetle-0.9.18.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\veetle-0.9.19.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\vlc-1.1.11-win32.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\wlsetup-custom.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\wlsetup-web.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\wmpfirefoxplugin.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\xiphplins_win32_0_5.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\xiph_player_plugins_0.7.exe
Moved to quarantine successfully : C:\Users\el catala\AppData\Roaming\SoftGrid Client\shortcut_ex.dat
Moved to quarantine successfully : C:\Users\el catala\AppData\Roaming\SoftGrid Client\userinfo.dat
Moved to quarantine successfully : C:\ProgramData\Common Files\55830FE3-B61F-A48D-CB6E-ED2C6FD2CEA2.dat
Moved to quarantine successfully : C:\ProgramData\eSobi\esobiData.dat
Moved to quarantine successfully : C:\ProgramData\FullRemove.exe
Moved to quarantine successfully : C:\ProgramData\ma-config.com\mcbase.db
Impossible to move : C:\ProgramData\ma-config.com
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5DDBB414-3F9B-4C96-9AEB-1A167360CDBC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5F79DBE2-A952-46F4-A193-F378D8B57A7D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{72FB597F-FFB4-4AA2-8C6B-06C68DEFBDD0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{23D17707-E922-4034-B5E2-D0DC7E693116} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5D749D9F-5EB2-4761-92D1-75FAAC251919} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3400B36A-E939-423C-A155-47CF5EB5170A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3CAAEB55-BFBD-47C6-9DA1-7228354B65ED} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{66549ACB-7F71-4B58-8E4E-E595BF374074} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{069935E0-C8C8-41C5-9D49-4310FEB5EEDA} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{33CD088B-3622-470E-9C97-50E5B593ED50} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{39ED6793-20C0-475A-BDBD-1E145F2A54E4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{949E29BC-84BE-4BD4-988E-CBB420494921} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9078185E-3BC2-4D90-8AB7-C27E52579C6A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{784FBA40-CC97-4491-BEC7-D624181780B4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{71C19664-BA62-4B2B-98D5-77457E0856EB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{927EBCB4-746A-48CC-8BC3-8A153932344C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9FF25466-9754-4DDD-AC2D-10738F4449A1} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{65C485A2-D3A6-422E-9D50-863FCA96FF2E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CB36F47E-9231-4DBB-8745-4066A796EAD8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8B2B1C41-FA33-46E5-A88A-14EC7748A640} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{4FD575C6-7E14-45EB-84A2-4CA08F3FDF41} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{355C2D1E-8136-406B-8D7A-46D972DE2EE5} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{247E9E33-5989-4ACE-8F2D-9FFE87A8ABBA} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A5099008-4E0B-44FB-907C-C8AEF71F6015} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{DF2CBE53-2C62-44CA-A908-B290DC22D670} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{191903F7-A115-44AC-9881-16109477BEC9} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{6EB7953C-65CC-4824-BF3C-93D421E9A0C8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{688C5A12-275F-4817-BF6B-B87546BBF62B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{FA869B1C-F7E9-4B84-982B-3F4E4C8BC4C4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3CF11447-CB01-4C80-BB9D-57E4A292589B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{02049393-6ED4-4C2F-A73C-0790C035D93F} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{DBD64731-FBC4-4258-BCAB-8D6A7E59B295} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{31BC16D4-1E5F-4061-89D1-89E7E32441CC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CB88147C-103B-4B85-840D-FB3E91A1AEC7} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A35369C8-32D8-4B7C-A69E-95C4598F69FD} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E89E6F7F-D4CE-469F-BA73-BC4CAD26ADA8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{224DE05E-774C-476D-9899-C6FE8B567CA1} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{17BC162C-18F4-4EA6-AAAF-C5D2ED84F26C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0ED18EAE-7F11-4809-B403-8AA81E40AE29} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{BCA208D0-716F-45C1-B82E-E08F30F02F48} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{83D26FC9-3361-4250-B8A4-38AE8AB4B3B7} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F000AAF2-34F7-4659-B146-584FF4CC9C79} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{33775BE9-2A12-4812-B49C-52A56BC854B4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C8C7A0D0-E234-457E-8766-0B3339C59E98} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1EB1C94D-7BCF-4734-A339-74B67CCBE60D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{07AA76D4-A203-47BA-A7A3-B2A78CDFABBE} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9B598217-B509-41D8-8B18-7996FB7B5EF9} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{31BFDE1B-2433-4FB8-AAC8-9EDCA0B409B0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{AD2FC755-DF4E-48C5-83C0-4B81DA1AEBE4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{69B716F8-48B5-4891-BE24-0B999787153C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{22D52EC4-A23C-4ED7-A1A7-5371218FA8AE} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{39BA97F3-3BC3-4BD4-93BC-8B8689B41682} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5990A470-83B3-4E59-86F7-6F745837BA3C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{26A8C827-887B-4E8B-9857-9D03E5974260} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{85B57101-A219-4400-9B54-79CEA6C1AE11} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{09FE98C8-4773-4FD9-866B-D1CC76B893FE} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B3287112-92F7-4640-8B19-4F5A1F7DD7A5} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F4DE3955-202D-4F4F-912F-391649447F33} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8F5E5F82-E47A-4F06-ABAF-63B1DFB5288B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E9894083-CAC6-4751-9647-16FAD1AFCB47} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{641EAE3B-0E07-4C9E-8C94-B2D1C5947EC8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E14C0C71-FA36-46C5-8C09-D998A66DED81} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3F84CB99-6377-482C-87A2-662BC78055A5} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{D05DEF01-2C52-492F-ABF0-BF661EE9D502} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1A1A40B7-021B-4F80-9B19-65CC9E6F89DC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{893E778E-1291-400B-83C2-0153DE115FE3} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A4AAB5BA-9912-4ECA-9B0C-3423FD400AD9} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3AAF4F62-38A7-44BE-872F-8F5D69BD2D73} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8A925C6B-3715-485C-8159-0BE5FE6BD014} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{619B0D1E-E868-4B01-9153-7AF33109A338} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{12F7B0C9-F789-49AF-B0E5-31D496C699A5} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5B254C9E-5638-4355-B2A3-F699C9A8B945} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B837B820-184F-4B03-A1A5-68267C8A0C79} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{56367308-1DE7-4225-ADE6-158C9B52D69D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8467C662-37BA-4AF7-936E-7B7AC486547C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{FC56F919-063F-4BC8-88BE-0BF5DC638D72} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{11A20D80-325B-42B9-9EF9-F269C906BFC1} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{74ACE5CC-6505-44C5-BACF-1908DAFA6955} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{EF39192A-F78C-48D5-B879-285A221F4005} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{7ED1A514-A8E0-4078-8D66-A97B18756F9A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5F88B0D4-AC06-4A8D-A756-5F30AA9AD254} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C5A1B5F2-0BC8-43B5-89CD-1E21F51E0C26} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{93F09404-0E0D-47BD-ADE1-9A83EEEB1BBF} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C7C62918-9E03-4DFD-877C-572FF77774FD} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1A4D5C49-F257-4954-AAC5-D6A5125F14FC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{EA7BDB39-B387-40FA-ACEF-5A2055FD7E9B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B8E31D38-EEB9-4190-B160-774C95FAC83B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0BC14BF7-9CBE-442B-B460-E6B785542A7E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{73422FF8-3EDE-4688-A479-5C7CFED1EED2} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1F3527AC-7BD0-4946-BD68-2A3C84875D50} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C93C8261-112E-481C-A291-05B219B8DE03} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F59254C3-437B-41B8-A353-0D3C1237D4E8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8F66E31D-138E-49F8-A04F-FB19F130C9CB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{51CEE0C0-A683-48B2-B9D0-D03CD09DECE6} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F35FACEF-E176-441D-BA3E-72AEE10FEF51} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CAABE8AC-0CA4-4A33-A196-02E1A1E9F350} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{03C97E74-6CC9-49A9-B672-E972E31C0B8D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8EA854CB-3FCE-4598-910F-340E6E7554FB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{AE9D2D36-9A7D-4C91-9C95-6B31E951568B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CA18FBA6-9356-47F5-B164-C38E5F47537B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E49D5C9A-898A-4740-A2D0-982F09A397AD} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{FF5ACD9B-444B-4631-A406-DF3A1A988DC8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{051588C8-BDE0-4290-91C3-A64D17170003} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0E31FC2C-93DB-484B-93E2-3B888E8C2FF0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{4AD9DD46-6BBB-45C1-90BC-65AE8D9FA5B4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{6FFC3DD1-4C0F-4B72-B2BF-42FB1AF82D7F} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{D59F2092-9FFC-463F-9F36-447BA2460675} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{97E827FD-52B1-4697-929F-EBF797497BFB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{229C87C3-C9BE-4D9D-814E-2974EF2AF93B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{831E6E3E-E330-4A45-A94D-BE37C8019006} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{22AD3933-EAFE-4556-A64D-4FE52D8D86D1} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{07A0F6B7-9B55-4F0E-932D-8A489615F5D3} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C26B4754-AA23-4066-B603-F8D9F0772E26} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{AFB290E2-9723-4FB1-A8FC-D51C28205B8C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1C0D3D30-A96E-46BE-8AE8-27F1C3CF7654} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B8B0E26B-E53C-47AD-A4E9-4846208E7F0A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{02F20876-6033-4D22-BA11-A836DF597A04} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F8781756-4A6A-4008-B908-E7B6875D0E6E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5902F696-DC02-47E2-87A8-F8012C97DB40} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{7EE39E2A-2FDF-4F90-B141-3A0BFC84187E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3C65C400-3CCE-42F2-9D81-EB12DED4D14C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5764A922-2F47-4156-B1BC-E1025741F72E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0574E964-CFFA-4A98-A306-D9EAA32E984D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{06EA0124-3A96-4A0F-9192-5428B2D579AC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{BFE95516-B058-4CBC-83CA-35268B68FE03} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A50EFA00-CA04-48B5-97DF-18903E954006} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{7F78FC3F-5857-468B-A43C-70BB5AD3CD48} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A86A1B9A-7379-4C90-97A4-D3127DE4058A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{97D84E44-2200-458D-8A7B-06470444C56B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8338177E-76BC-437D-A4E7-07C63314E629} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{2A6E5B40-2CAD-4ECC-B1FF-574507EC1EA0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{436B8D77-2411-4DBD-9E53-0805A2B140F6} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0BCC1941-5979-45FD-B7ED-8BA6620FBFFC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{120ECF5D-F964-41ED-8131-749BB80E3180} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3094C57B-BF5E-425D-8490-005556D38056} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{EF8D84F4-8955-46A2-9C7B-B8DE279CF865} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E6155E19-2973-41D1-952A-9FFFCF29B12D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{7F990459-28C2-4FB7-9F93-973BE150E063} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8F8ACDD2-3FA6-4E54-AC9C-508A079CC9F8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{02F2044D-B29D-465B-A1B5-2C8905095030} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9B3365C6-AB66-49BC-BE2A-A2BBBCCA17CF} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{04459092-5ACA-4DC7-9D43-36A059AAFBE7} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{BA33D487-095E-40EB-8B2A-C1F0B52FBED6} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{95295FE2-851E-416C-9785-9EF1C588679E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C67D3F59-3065-474D-9851-5D0584C2E3CB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C8996F63-772C-4E54-9D41-3078A2E6E18B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B73A6B0B-7296-498C-8A1E-B09FD7170A8A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{2ED1C071-1AFD-44DF-BF19-03BF88E04756} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{19117715-DA68-48EC-82B1-B9BABCC82977} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{64ADE483-E387-4842-AAA3-E85990F4D638} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8B80CD9B-1575-4220-A851-5BD52773282F} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CB2260CE-0D77-4471-8B66-B353561C202A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B5371906-35DF-4757-886E-C502E5856C3E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0F3825ED-D40F-42BA-AEBE-E2A68227DE75} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F610CE70-38D6-4453-B6D0-59774509BC22} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8BA13AA5-11DA-40C9-B165-5C51DB030357} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9931BA12-E798-4B9B-AEFA-F73A09323CF4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{FEEE706D-0C92-42A3-AA6C-32F37F9C0840} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{75A26012-0B07-451F-8FE3-5999CBFBB2BC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B4D42005-7FBF-4B52-A11F-CD74DFA4D0EB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{35F0AB1C-B250-4D87-BEDB-B5258E0B2329} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{21EE345F-9E02-4031-AAFA-266E183D636A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1D227748-B2A3-4EE9-B526-6E597B1C4140} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{6C430AA7-45CE-4DA0-85CB-AA3CAEB5958B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E94426FB-F465-4B99-BE65-8AF0571A39DB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{60A04A69-21C3-4A47-88A6-A6EC2FB0940F} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{82942283-3629-4011-A1D0-5C6C08EAD863} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0DA2AD0C-2121-422A-9464-A5BAC51139DF} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B92BD2C9-2E31-479D-A47B-F4698E92F530} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{16490C2E-4B02-4769-9879-17FABADC5F1A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C5EBF9B0-EC25-41A1-A84C-56CAC62189F6} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{DD085AD0-11C4-40D7-866D-EDA7E8A6C0DE} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{2ACA37E9-DC4C-442C-84B3-90BFB4F86092} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0DB3FAAD-2DB8-4181-8621-FF77EBA3FF78} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{2397113E-407D-4678-A534-10CDB8BB8A1A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{214335E9-CD0C-4502-9F08-CBA75A944164} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{201AEE20-8A17-4E01-882F-E652306F5DA0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{04C52E69-9CCF-42AD-A1D1-03607AD08348} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{DD1622D9-9A98-42FA-874E-D29B37887497} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{881EB201-9D7D-4F38-A1D5-C1045776D240} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{D7CC2F82-08CD-485E-B299-A88E5F8A7E40} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{181A4043-47F2-4A10-95B7-A454699CF594} -> WLM
Moved to quarantine successfully :
¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Pre_Scan | 3.0112 | g3n-h@ckm@n & Saachaa ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
~ ¤¤¤¤¤ XP | Vista | 7 | 8 - 32/64 bits ¤¤¤¤¤
~ Update on 12/01/2013 | 16.20 by g3n-h@ckm@n
~ Evolution : http://gen-hackman.forum-pro.fr/t64-historique-de-l-outil
~ Pre_Script Infos : http://gen-hackman.forum-pro.fr/t89-les-switchs
~ Pre_scan Feedbacks : http://gen-hackman.forum-pro.fr/t93-feedback-pre_scan#505
~ [el catala (Administrator)] - [ELCATALA-PC]
~ SID = S-1-5-21-270391582-4040308789-2649344155-1001
~ System : Windows 7 Home Premium (64 bits) HomePremium Service Pack 1
~ ProcessorNameString : Intel(R) Core(TM) i7 CPU 870 @ 2.93GHz
~ Identifier : Intel64 Family 6 Model 30 Stepping 5
~ Mémory RAM = Total (KB) : 4185160 | Used (%) : 24 | Free (KB) : 3158680
~ Pagefile = Total (KB) : 8368480 | Free (KB) : 7131440
~ Virtual = Total (KB) : 4194180 | Free (KB) : 4022680
¤¤¤¤¤¤¤¤¤¤ | Boot's scripts
C:\Windows\Setup\Scripts\MonitorAuto_x64.exe
C:\Windows\Setup\Scripts\MOD01SET5O000N0002.enc
C:\Windows\Setup\Scripts\useralaunch.cmd
C:\Windows\Setup\Scripts\OOBE.CMD
C:\Windows\Setup\Scripts\SetupComplete.cmd
¤¤¤¤¤¤¤¤¤¤ | Drives
c:\ -> [Fixed] | [Acer] | Total : 468940 Mo | Free : 374010 Mo -> NTFS
d:\ -> [Fixed] | [DATA] | Total : 469470 Mo | Free : 467950 Mo -> NTFS
¤¤¤¤¤¤¤¤¤¤ | Windows Updates
¤¤¤¤¤¤¤¤¤¤ | Sessions
~ C:\Windows\system32\config\systemprofile
~ C:\Windows\ServiceProfiles\LocalService
~ C:\Windows\ServiceProfiles\NetworkService
~ C:\Users\el catala
New restorepoint created
18:34:47
¤¤¤¤¤¤¤¤¤¤ | stopped Processes
(4476) -- rundll32.exe
(3536) -- WUDFHost.exe
(4392) -- WLIDSVC.EXE
(2648) -- WLIDSVCM.EXE
(4408) -- taskeng.exe
(5032) -- SearchIndexer.exe
(5016) -- wmpnetwk.exe
(4528) -- spoolsv.exe
(1700) -- explorer.exe
(3144) -- iexplore.exe
(4692) -- chrome.exe
(1304) -- chrome.exe
(4524) -- chrome.exe
(1068) -- chrome.exe
(4272) -- chrome.exe
(3288) -- chrome.exe
(1560) -- chrome.exe
(2740) -- chrome.exe
(2580) -- Eraser.exe
¤¤¤¤¤¤¤¤¤¤ | Running processes
Boot : Normal
[MD5.1911A3356FA3F77CCC825CCBAC038C2A] - [14/07/2009 00:19:50] - 328 | C:\Windows\System32\smss.exe (.Microsoft Corporation - Gestionnaire de sessions Windows.) - (6.1.7600.16385) -> \SystemRoot\System32\smss.exe [112640 Ko]
[MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 00:19:49] - 464 | C:\Windows\system32\csrss.exe (.Microsoft Corporation - Processus d'exécution client-serveur.) - (6.1.7600.16385) -> %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 [7680 Ko]
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - [14/07/2009 00:52:37] - 532 | C:\Windows\system32\wininit.exe (.Microsoft Corporation - Application de démarrage de Windows.) - (6.1.7600.16385) -> wininit.exe [129024 Ko]
[MD5.60C2862B4BF0FD9F582EF344C2B1EC72] - [14/07/2009 00:19:49] - 552 | C:\Windows\system32\csrss.exe (.Microsoft Corporation - Processus d'exécution client-serveur.) - (6.1.7600.16385) -> %SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16 [7680 Ko]
[MD5.3EE6C4A17173C0B6822585296E9AB209] - [14/07/2009 00:19:46] - 588 | C:\Windows\system32\services.exe (.Microsoft Corporation - Applications Services et Contrôleur.) - (6.1.7600.16385) -> C:\Windows\system32\services.exe [328704 Ko]
[MD5.C118A82CD78818C29AB228366EBF81C3] - [11/01/2012 23:51:42] - 604 | C:\Windows\system32\lsass.exe (.Microsoft Corporation - Local Security Authority Process.) - (6.1.7601.17725) -> C:\Windows\system32\lsass.exe [31232 Ko]
[MD5.F2BF82316E93E590FF081B95F68443B7] - [27/07/2011 21:10:26] - 612 | C:\Windows\system32\lsm.exe (.Microsoft Corporation - Service du gestionnaire de session locale.) - (6.1.7601.17514) -> C:\Windows\system32\lsm.exe [343040 Ko]
[MD5.8ACDF26E44D108653FE638ABDF5BB043] - [27/07/2011 21:10:27] - 660 | C:\Windows\system32\winlogon.exe (.Microsoft Corporation - Application d'ouverture de session Windows.) - (6.1.7601.17514) -> winlogon.exe [390656 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 776 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k DcomLaunch [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 864 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k RPCSS [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1004 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 148 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 356 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k netsvcs [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 792 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k GPSvcGroup [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1028 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k LocalService [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1128 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k NetworkService [27136 Ko]
[MD5.B458A95F12D36F55F98A42FD66BAEBFA] - [29/08/2012 17:00:30] - 1292 | C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (.Avira Operations GmbH & Co. KG - Avira Scheduler.) - (12.3.0.15) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe" [86224 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1312 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork [27136 Ko]
[MD5.CC3110EEF77AA0810CAA03741168BA8F] - [29/08/2012 17:00:30] - 1524 | C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (.Avira Operations GmbH & Co. KG - Avira On-Access Service.) - (12.3.0.15) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe" [110032 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 1564 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [27136 Ko]
[MD5.F162D5F5E845B9DC352DD1BAD8CEF1BC] - [14/07/2009 00:37:38] - 2172 | C:\Windows\system32\Dwm.exe (.Microsoft Corporation - Gestionnaire de fenêtres du Bureau.) - (6.1.7600.16385) -> "C:\Windows\system32\Dwm.exe" [120320 Ko]
[MD5.2AC4915A44F9F5E1B4A9EB4ED5F8414C] - [29/08/2012 17:00:30] - 2360 | C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (.Avira Operations GmbH & Co. KG - Avira Shadow Copy Service.) - (12.3.0.8) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_000005f4 [248784 Ko]
[MD5.689C68A3F1A6A9DA60358FA077F511DA] - [29/08/2012 17:00:30] - 3836 | C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (.Avira Operations GmbH & Co. KG - Avira System Tray Tool.) - (12.3.0.26) -> "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [348664 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 3924 | C:\Windows\system32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted [27136 Ko]
[MD5.C78655BC80301D76ED4FEF1C1EA40A7D] - [14/07/2009 00:31:13] - 5088 | C:\Windows\System32\svchost.exe (.Microsoft Corporation - Processus hôte pour les services Windows.) - (6.1.7600.16385) -> C:\Windows\System32\svchost.exe -k secsvcs [27136 Ko]
[MD5.F7DD2BC3F480A7A066CF539AEE0F9060] - [12/01/2013 18:32:16] - 2784 | C:\Users\el catala\Downloads\winlogon.exe (. - g3n-h@ckm@n.) - (3.1.1.2) -> "C:\Users\el catala\Downloads\winlogon.exe" [2486447 Ko]
[MD5.66CAA5901B0B6D224271A4BEF1F7B755] - [04/01/2013 13:52:12] - 4696 | C:\Pre_Scan\Process\Pre_Scan_Protect.exe (. - g3n-h@ckm@n.) - (2.1.2.23) -> "C:\Pre_Scan\Process\Pre_Scan_Protect.exe" [311093 Ko]
[MD5.34D4C852C7EAAD794C5932D7B894CBA8] - [27/07/2011 21:10:32] - 4528 | C:\Windows\system32\wbem\wmiprvse.exe (.Microsoft Corporation - WMI Provider Host.) - (6.1.7601.17514) -> C:\Windows\system32\wbem\wmiprvse.exe [372736 Ko]
¤¤¤¤¤¤¤¤¤¤ | Winlogon User : OK !
¤¤¤¤¤¤¤¤¤¤ | Winlogon Machine
Changed : [HKLM | Winlogon]|[AutoRestartShell] : 1 -> 0
Changed : [HKLM64 | Winlogon]|[AutoRestartShell] : 1 -> 0
Repaired : [HKLM | Winlogon]|[userinit] : Userinit.exe, -> C:\Windows\SysWOW64\userinit.exe,
Repaired : [HKLM | Winlogon]|[PowerDownAfterShutdown] : -> 1
Repaired : [HKLM64 | Winlogon]|[PowerDownAfterShutdown] : 0 -> 1
¤¤¤¤¤¤¤¤¤¤ | Associations
Repaired : [HKCR\Folder\shell\open\command] : %SystemRoot%\Explorer.exe -> C:\Windows\Explorer.exe
¤
Repaired : [HKLM | IExplore.exe\shell\open\command] : C:\Program Files (x86)\Internet Explorer\iexplore.exe -> "C:\Program Files (x86)\Internet Explorer\iexplore.exe"
Repaired : [HKLM | Google Chrome\shell\open\command] : "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -> "C:\Users\el catala\AppData\Local\Google\Chrome\Application\Chrome.exe"
Repaired : [Assoc | Applications] | @ : http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s
Repaired : [Assoc64 | Applications] | @ : http://go.microsoft.com/fwlink/?LinkId=57426&Ext=%s -> http://shell.windows.com/fileassoc/%04x/xml/redir.asp?Ext=%s
¤¤¤¤¤¤¤¤¤¤ | Registry
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{9343812e-1c37-4a49-a12e-4b2d810d956b}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{9343812e-1c37-4a49-a12e-4b2d810d956b}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{F02C1A0D-BE21-4350-88B0-7367FC96EF3C}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{20D04FE0-3AEA-1069-A2D8-08002B30309D}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{20D04FE0-3AEA-1069-A2D8-08002B30309D}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{208D2C60-3AEA-1069-A2D7-08002B30309D}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{208D2C60-3AEA-1069-A2D7-08002B30309D}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{871C5380-42A0-1069-A2EA-08002B30309D}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{871C5380-42A0-1069-A2EA-08002B30309D}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{5399E694-6CE5-4D6C-8FCE-1D8870FDCBA0}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{59031a47-3f72-44a7-89c5-5595fe6b30ee}] : 1 -> 0
Repaired : [HKLM64 | Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel]|[{59031a47-3f72-44a7-89c5-5595fe6b30ee}] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\policies\Explorer]|[NoDriveTypeAutoRun] : 0 -> 145
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Policies\Explorer]|[NoActiveDesktop] : 1 -> 0
Repaired : [HKLM | Microsoft\Windows\CurrentVersion\Policies\Explorer]|[NoActiveDesktopChanges] : 1 -> 0
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Microsoft\Windows\CurrentVersion\Explorer\Advanced]|[Hidden] : 2 -> 0
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Microsoft\Windows\CurrentVersion\Policies\Explorer]|[NoDriveTypeAutoRun] : 0 -> 145
¤¤¤¤¤¤¤¤¤¤ | SafeBoot | Control | Repair
Safeboot Keys are O.K
Alternate shell is OK !
¤
Safeboot Minimal Subkeys : O.K !
¤
Safeboot Network Subkeys : O.K !
¤¤¤¤¤¤¤¤¤¤ | IFEO : OK !
¤¤¤¤¤¤¤¤¤¤ | Mountpoints2 : OK !
¤¤¤¤¤¤¤¤¤¤ | Windows
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping\system.ini\Boot]|[Shell] : SYS:Microsoft\Windows NT\CurrentVersion\Winlogon
Winsrv : OK !
Repaired : [HKLM | Windows]|[AppInit_DLLS] : browse~1\23762~1.17\{16cdf~1\browse~1.dll ->
[HKLM64\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[AppInit_DLLS] :
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[LoadAppInit_DLLs] : 1
[HKLM64\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]|[LoadAppInit_DLLs] : 1
¤¤¤¤¤¤¤¤¤¤ | Security Center
¤¤¤¤¤¤¤¤¤¤ | Services Corrections
Repaired : [HKLM | Services\Compbatt] : 3 -> 0
Repaired : [HKLM | Services\agp440] : 3 -> 2
Repaired : [HKLM | Services\EapHost] : 3 -> 2
Repaired : [HKLM | Services\Wlansvc] : 3 -> 2
Repaired : [HKLM | Services\SharedAccess] : 4 -> 2
Repaired : [HKLM | Services\WerSvc] : 3 -> 2
¤¤¤¤¤¤¤¤¤¤ | Internet Explorer
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Internet Explorer\Main]|[Start Page] : http://fr.msn.com/ -> http://www.google.com/
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Internet Explorer\Main]|[Local Page] : C:\Windows\system32\blank.htm -> C:\Windows\SysWOW64\blank.htm
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Internet Explorer\Main]|[Search Page] : http://go.microsoft.com/fwlink/?LinkId=54896 -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Repaired : [HKLM | Internet Explorer\Search]|[SearchAssistant] : -> http://www.google.com/ie
Repaired : [HKLM64 | Internet Explorer\Search]|[SearchAssistant] : -> http://www.google.com/ie
Repaired : [HKLM | Internet Explorer\Main]|[Start Page] : http://fr.msn.com/ -> http://go.microsoft.com/fwlink/?LinkId=69157
Repaired : [HKLM64 | Internet Explorer\Main]|[Start Page] : http://acer.msn.com -> http://go.microsoft.com/fwlink/?LinkId=69157
Repaired : [HKLM64 | Internet Explorer\Main]|[Local Page] : C:\Windows\System32\blank.htm -> C:\Windows\SysWOW64\blank.htm
Repaired : [HKLM | Internet Explorer\Main]|[Default_Search_URL] : http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch -> http://go.microsoft.com/fwlink/?LinkId=54896
Repaired : [HKLM | Internet Explorer\Main]|[Default_Page_URL] : http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome -> http://go.microsoft.com/fwlink/?LinkId=69157
Repaired : [HKLM64 | Internet Explorer\Main]|[Default_Page_URL] : http://acer.msn.com -> http://go.microsoft.com/fwlink/?LinkId=69157
Repaired : [HKLM64 | Internet Explorer\AboutURLs]|[Tabs] : -> res://ieframe.dll/tabswelcome.htm
¤
Repaired : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001 | Windows\CurrentVersion\Internet settings]|[WarnonZoneCrossing] : 0 -> 1
¤¤¤¤¤¤¤¤¤¤ | Hosts
C:\Windows\System32\Drivers\etc\hosts : Replaced
¤¤¤¤¤¤¤¤¤¤ | Files | Folders | Registry
Deleted : [HKU\S-1-5-21-270391582-4040308789-2649344155-1001\Software\fAfvfSfP [fVf#f" fEfBfU [fh'Å ¶ ¬'³'ê'½f [fJf< fAfvfSfP [fVf#f"]
Impossible to move : C:\Users\ELCATA~1\AppData\Local\Temp\~DF5A793496059E5601.TMP
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\15F52EC7-BAB0-7891-B8EC-BD4889C30D2B\Latest\SetupStrings.dat
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\15F52EC7-BAB0-7891-B8EC-BD4889C30D2B\Latest\sqlite3.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\CRX_75DAF8CB7768\manifest.json
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\index.dat
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\clientad_rotator_090324[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\combo[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\flashwrite_1_2[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\gr10-swfo22_201105121000[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[10].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[11].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[4].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[5].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[6].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[7].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[8].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\imp[9].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\8WP0WMZB\index[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\combo[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\imp[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\imp[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\imp[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\niftybase_20120727[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\surly[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\upsell_conn_201010291509[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\FEZH8U99\ylc_1.9[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\adserv[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\bcr_2.0.5[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\bc_2.0.5[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\clk[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\clk[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\clk[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\flashgeneric20081104min1[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[4].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[5].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[6].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\imp[7].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\SZKN3TRP\index[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\combo[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\format.201112191406[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[10].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[2].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[3].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[4].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[5].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[6].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[7].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[8].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\imp[9].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\visi.201109071817[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\Fichiers Internet temporaires\Content.IE5\XKOVE61A\yql[1].js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\History\History.IE5\index.dat
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\MCConfigNsis\mcsetup.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\scoped_dir_4056_31651\CRX_INSTALL\contentscript.js
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\scoped_dir_4056_31651\CRX_INSTALL\manifest.json
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleCrashHandler.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleCrashHandler64.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleUpdate.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleUpdateBroker.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleUpdateOnDemand.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\GoogleUpdateSetup.exe
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdate.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_am.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ar.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_bg.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_bn.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ca.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_cs.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_da.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_de.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_el.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_en-GB.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_en.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_es-419.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_es.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_et.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_fa.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_fi.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_fil.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_fr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_gu.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_hi.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_hr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_hu.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_id.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_is.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_it.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_iw.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ja.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_kn.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ko.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_lt.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_lv.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ml.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_mr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ms.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_nl.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_no.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_pl.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_pt-BR.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_pt-PT.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ro.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ru.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sk.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sl.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sv.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_sw.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ta.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_te.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_th.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_tr.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_uk.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_ur.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_vi.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_zh-CN.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\goopdateres_zh-TW.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\npGoogleUpdate3.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\psmachine.dll
Moved to quarantine successfully : C:\Users\ELCATA~1\AppData\Local\Temp\{0BE4F2D3-0EC9-4B20-9703-7F4A69C6C37E}\psuser.dll
Moved to quarantine successfully : C:\Users\el catala\Downloads\.~lock.claudia r (1).odt#
Moved to quarantine successfully : C:\Users\el catala\Downloads\.~lock.claudia r.odt#
Moved to quarantine successfully : C:\Users\el catala\Downloads\01net_SpyBot_-_Search___Destroy.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\12-10_vista_win7_win8_64_dd_ccc_whql_net4.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\7z920.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\adwcleaner.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Apache_OpenOffice_incubating_3.4.0_Win_x86_install_fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Apache_OpenOffice_incubating_3.4.1_Win_x86_install_fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\avira-antivir-personal-free-antivirus_avira_antivir_personal_free_10.2.0.703_francais_10821.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\avira_free_antivirus_fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\ccsetup308.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\CertiNomis.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\ChromeFrameSetup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\chromeinstall-7u9.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\ChromeSetup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\DivXInstaller.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Eraser 6.0.8.2273.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Eraser_64_bits_5.86a_2024.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\FacebookVideoCallSetup_v1.2.203.0.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Firefox Setup 10.0.1.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\flashplayer11_b1_install_win_pi64_071311.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\flashplayer11_b1_uninstall_win_64_071311.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\flashplayer11_rc1_install_win_pi64_090611 (1).exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\flashplayer11_rc1_install_win_pi64_090611.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\FLVPlayerSetup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\iata_cd.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\iMeshV11.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Installation_Messenger2011.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\installer_adobe_reader_French.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\install_flash_player.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\iTunes64Setup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\MaConfig_5_2_2_0.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\MaConfig_win.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\mbam-setup-1.70.0.1100.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\msgr11fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Opera_1151_int_Setup.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\PowerPointViewer.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\QuickTimeInstaller.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Radio_Fr_solo-Install.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\RealPlayer.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\RealPlayer_fr.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\san2013-1911-BQR.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\screamer043.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\screamer044.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\SetupImgBurn_2.5.5.0.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\SetupLCL.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Silverlight.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\Silverlight_x64.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\sisoftware-sandra-lite_sandra_lite_2013_19.23_francais_19863.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\spybotsd162.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\TuneUpUtilities2011_fr-FR.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\UsbFix.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\veetle-0.9.18.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\veetle-0.9.19.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\vlc-1.1.11-win32.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\wlsetup-custom.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\wlsetup-web.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\wmpfirefoxplugin.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\xiphplins_win32_0_5.exe
Moved to quarantine successfully : C:\Users\el catala\Downloads\xiph_player_plugins_0.7.exe
Moved to quarantine successfully : C:\Users\el catala\AppData\Roaming\SoftGrid Client\shortcut_ex.dat
Moved to quarantine successfully : C:\Users\el catala\AppData\Roaming\SoftGrid Client\userinfo.dat
Moved to quarantine successfully : C:\ProgramData\Common Files\55830FE3-B61F-A48D-CB6E-ED2C6FD2CEA2.dat
Moved to quarantine successfully : C:\ProgramData\eSobi\esobiData.dat
Moved to quarantine successfully : C:\ProgramData\FullRemove.exe
Moved to quarantine successfully : C:\ProgramData\ma-config.com\mcbase.db
Impossible to move : C:\ProgramData\ma-config.com
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5DDBB414-3F9B-4C96-9AEB-1A167360CDBC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5F79DBE2-A952-46F4-A193-F378D8B57A7D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{72FB597F-FFB4-4AA2-8C6B-06C68DEFBDD0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{23D17707-E922-4034-B5E2-D0DC7E693116} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5D749D9F-5EB2-4761-92D1-75FAAC251919} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3400B36A-E939-423C-A155-47CF5EB5170A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3CAAEB55-BFBD-47C6-9DA1-7228354B65ED} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{66549ACB-7F71-4B58-8E4E-E595BF374074} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{069935E0-C8C8-41C5-9D49-4310FEB5EEDA} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{33CD088B-3622-470E-9C97-50E5B593ED50} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{39ED6793-20C0-475A-BDBD-1E145F2A54E4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{949E29BC-84BE-4BD4-988E-CBB420494921} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9078185E-3BC2-4D90-8AB7-C27E52579C6A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{784FBA40-CC97-4491-BEC7-D624181780B4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{71C19664-BA62-4B2B-98D5-77457E0856EB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{927EBCB4-746A-48CC-8BC3-8A153932344C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9FF25466-9754-4DDD-AC2D-10738F4449A1} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{65C485A2-D3A6-422E-9D50-863FCA96FF2E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CB36F47E-9231-4DBB-8745-4066A796EAD8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8B2B1C41-FA33-46E5-A88A-14EC7748A640} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{4FD575C6-7E14-45EB-84A2-4CA08F3FDF41} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{355C2D1E-8136-406B-8D7A-46D972DE2EE5} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{247E9E33-5989-4ACE-8F2D-9FFE87A8ABBA} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A5099008-4E0B-44FB-907C-C8AEF71F6015} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{DF2CBE53-2C62-44CA-A908-B290DC22D670} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{191903F7-A115-44AC-9881-16109477BEC9} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{6EB7953C-65CC-4824-BF3C-93D421E9A0C8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{688C5A12-275F-4817-BF6B-B87546BBF62B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{FA869B1C-F7E9-4B84-982B-3F4E4C8BC4C4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3CF11447-CB01-4C80-BB9D-57E4A292589B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{02049393-6ED4-4C2F-A73C-0790C035D93F} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{DBD64731-FBC4-4258-BCAB-8D6A7E59B295} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{31BC16D4-1E5F-4061-89D1-89E7E32441CC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CB88147C-103B-4B85-840D-FB3E91A1AEC7} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A35369C8-32D8-4B7C-A69E-95C4598F69FD} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E89E6F7F-D4CE-469F-BA73-BC4CAD26ADA8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{224DE05E-774C-476D-9899-C6FE8B567CA1} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{17BC162C-18F4-4EA6-AAAF-C5D2ED84F26C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0ED18EAE-7F11-4809-B403-8AA81E40AE29} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{BCA208D0-716F-45C1-B82E-E08F30F02F48} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{83D26FC9-3361-4250-B8A4-38AE8AB4B3B7} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F000AAF2-34F7-4659-B146-584FF4CC9C79} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{33775BE9-2A12-4812-B49C-52A56BC854B4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C8C7A0D0-E234-457E-8766-0B3339C59E98} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1EB1C94D-7BCF-4734-A339-74B67CCBE60D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{07AA76D4-A203-47BA-A7A3-B2A78CDFABBE} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9B598217-B509-41D8-8B18-7996FB7B5EF9} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{31BFDE1B-2433-4FB8-AAC8-9EDCA0B409B0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{AD2FC755-DF4E-48C5-83C0-4B81DA1AEBE4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{69B716F8-48B5-4891-BE24-0B999787153C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{22D52EC4-A23C-4ED7-A1A7-5371218FA8AE} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{39BA97F3-3BC3-4BD4-93BC-8B8689B41682} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5990A470-83B3-4E59-86F7-6F745837BA3C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{26A8C827-887B-4E8B-9857-9D03E5974260} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{85B57101-A219-4400-9B54-79CEA6C1AE11} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{09FE98C8-4773-4FD9-866B-D1CC76B893FE} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B3287112-92F7-4640-8B19-4F5A1F7DD7A5} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F4DE3955-202D-4F4F-912F-391649447F33} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8F5E5F82-E47A-4F06-ABAF-63B1DFB5288B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E9894083-CAC6-4751-9647-16FAD1AFCB47} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{641EAE3B-0E07-4C9E-8C94-B2D1C5947EC8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E14C0C71-FA36-46C5-8C09-D998A66DED81} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3F84CB99-6377-482C-87A2-662BC78055A5} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{D05DEF01-2C52-492F-ABF0-BF661EE9D502} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1A1A40B7-021B-4F80-9B19-65CC9E6F89DC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{893E778E-1291-400B-83C2-0153DE115FE3} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A4AAB5BA-9912-4ECA-9B0C-3423FD400AD9} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3AAF4F62-38A7-44BE-872F-8F5D69BD2D73} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8A925C6B-3715-485C-8159-0BE5FE6BD014} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{619B0D1E-E868-4B01-9153-7AF33109A338} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{12F7B0C9-F789-49AF-B0E5-31D496C699A5} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5B254C9E-5638-4355-B2A3-F699C9A8B945} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B837B820-184F-4B03-A1A5-68267C8A0C79} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{56367308-1DE7-4225-ADE6-158C9B52D69D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8467C662-37BA-4AF7-936E-7B7AC486547C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{FC56F919-063F-4BC8-88BE-0BF5DC638D72} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{11A20D80-325B-42B9-9EF9-F269C906BFC1} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{74ACE5CC-6505-44C5-BACF-1908DAFA6955} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{EF39192A-F78C-48D5-B879-285A221F4005} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{7ED1A514-A8E0-4078-8D66-A97B18756F9A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5F88B0D4-AC06-4A8D-A756-5F30AA9AD254} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C5A1B5F2-0BC8-43B5-89CD-1E21F51E0C26} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{93F09404-0E0D-47BD-ADE1-9A83EEEB1BBF} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C7C62918-9E03-4DFD-877C-572FF77774FD} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1A4D5C49-F257-4954-AAC5-D6A5125F14FC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{EA7BDB39-B387-40FA-ACEF-5A2055FD7E9B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B8E31D38-EEB9-4190-B160-774C95FAC83B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0BC14BF7-9CBE-442B-B460-E6B785542A7E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{73422FF8-3EDE-4688-A479-5C7CFED1EED2} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1F3527AC-7BD0-4946-BD68-2A3C84875D50} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C93C8261-112E-481C-A291-05B219B8DE03} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F59254C3-437B-41B8-A353-0D3C1237D4E8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8F66E31D-138E-49F8-A04F-FB19F130C9CB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{51CEE0C0-A683-48B2-B9D0-D03CD09DECE6} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F35FACEF-E176-441D-BA3E-72AEE10FEF51} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CAABE8AC-0CA4-4A33-A196-02E1A1E9F350} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{03C97E74-6CC9-49A9-B672-E972E31C0B8D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8EA854CB-3FCE-4598-910F-340E6E7554FB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{AE9D2D36-9A7D-4C91-9C95-6B31E951568B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CA18FBA6-9356-47F5-B164-C38E5F47537B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E49D5C9A-898A-4740-A2D0-982F09A397AD} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{FF5ACD9B-444B-4631-A406-DF3A1A988DC8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{051588C8-BDE0-4290-91C3-A64D17170003} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0E31FC2C-93DB-484B-93E2-3B888E8C2FF0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{4AD9DD46-6BBB-45C1-90BC-65AE8D9FA5B4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{6FFC3DD1-4C0F-4B72-B2BF-42FB1AF82D7F} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{D59F2092-9FFC-463F-9F36-447BA2460675} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{97E827FD-52B1-4697-929F-EBF797497BFB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{229C87C3-C9BE-4D9D-814E-2974EF2AF93B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{831E6E3E-E330-4A45-A94D-BE37C8019006} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{22AD3933-EAFE-4556-A64D-4FE52D8D86D1} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{07A0F6B7-9B55-4F0E-932D-8A489615F5D3} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C26B4754-AA23-4066-B603-F8D9F0772E26} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{AFB290E2-9723-4FB1-A8FC-D51C28205B8C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1C0D3D30-A96E-46BE-8AE8-27F1C3CF7654} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B8B0E26B-E53C-47AD-A4E9-4846208E7F0A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{02F20876-6033-4D22-BA11-A836DF597A04} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F8781756-4A6A-4008-B908-E7B6875D0E6E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5902F696-DC02-47E2-87A8-F8012C97DB40} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{7EE39E2A-2FDF-4F90-B141-3A0BFC84187E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3C65C400-3CCE-42F2-9D81-EB12DED4D14C} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{5764A922-2F47-4156-B1BC-E1025741F72E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0574E964-CFFA-4A98-A306-D9EAA32E984D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{06EA0124-3A96-4A0F-9192-5428B2D579AC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{BFE95516-B058-4CBC-83CA-35268B68FE03} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A50EFA00-CA04-48B5-97DF-18903E954006} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{7F78FC3F-5857-468B-A43C-70BB5AD3CD48} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{A86A1B9A-7379-4C90-97A4-D3127DE4058A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{97D84E44-2200-458D-8A7B-06470444C56B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8338177E-76BC-437D-A4E7-07C63314E629} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{2A6E5B40-2CAD-4ECC-B1FF-574507EC1EA0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{436B8D77-2411-4DBD-9E53-0805A2B140F6} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0BCC1941-5979-45FD-B7ED-8BA6620FBFFC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{120ECF5D-F964-41ED-8131-749BB80E3180} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{3094C57B-BF5E-425D-8490-005556D38056} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{EF8D84F4-8955-46A2-9C7B-B8DE279CF865} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E6155E19-2973-41D1-952A-9FFFCF29B12D} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{7F990459-28C2-4FB7-9F93-973BE150E063} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8F8ACDD2-3FA6-4E54-AC9C-508A079CC9F8} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{02F2044D-B29D-465B-A1B5-2C8905095030} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9B3365C6-AB66-49BC-BE2A-A2BBBCCA17CF} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{04459092-5ACA-4DC7-9D43-36A059AAFBE7} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{BA33D487-095E-40EB-8B2A-C1F0B52FBED6} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{95295FE2-851E-416C-9785-9EF1C588679E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C67D3F59-3065-474D-9851-5D0584C2E3CB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C8996F63-772C-4E54-9D41-3078A2E6E18B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B73A6B0B-7296-498C-8A1E-B09FD7170A8A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{2ED1C071-1AFD-44DF-BF19-03BF88E04756} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{19117715-DA68-48EC-82B1-B9BABCC82977} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{64ADE483-E387-4842-AAA3-E85990F4D638} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8B80CD9B-1575-4220-A851-5BD52773282F} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{CB2260CE-0D77-4471-8B66-B353561C202A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B5371906-35DF-4757-886E-C502E5856C3E} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0F3825ED-D40F-42BA-AEBE-E2A68227DE75} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{F610CE70-38D6-4453-B6D0-59774509BC22} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{8BA13AA5-11DA-40C9-B165-5C51DB030357} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{9931BA12-E798-4B9B-AEFA-F73A09323CF4} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{FEEE706D-0C92-42A3-AA6C-32F37F9C0840} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{75A26012-0B07-451F-8FE3-5999CBFBB2BC} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B4D42005-7FBF-4B52-A11F-CD74DFA4D0EB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{35F0AB1C-B250-4D87-BEDB-B5258E0B2329} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{21EE345F-9E02-4031-AAFA-266E183D636A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{1D227748-B2A3-4EE9-B526-6E597B1C4140} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{6C430AA7-45CE-4DA0-85CB-AA3CAEB5958B} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{E94426FB-F465-4B99-BE65-8AF0571A39DB} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{60A04A69-21C3-4A47-88A6-A6EC2FB0940F} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{82942283-3629-4011-A1D0-5C6C08EAD863} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0DA2AD0C-2121-422A-9464-A5BAC51139DF} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{B92BD2C9-2E31-479D-A47B-F4698E92F530} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{16490C2E-4B02-4769-9879-17FABADC5F1A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{C5EBF9B0-EC25-41A1-A84C-56CAC62189F6} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{DD085AD0-11C4-40D7-866D-EDA7E8A6C0DE} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{2ACA37E9-DC4C-442C-84B3-90BFB4F86092} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{0DB3FAAD-2DB8-4181-8621-FF77EBA3FF78} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{2397113E-407D-4678-A534-10CDB8BB8A1A} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{214335E9-CD0C-4502-9F08-CBA75A944164} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{201AEE20-8A17-4E01-882F-E652306F5DA0} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{04C52E69-9CCF-42AD-A1D1-03607AD08348} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{DD1622D9-9A98-42FA-874E-D29B37887497} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{881EB201-9D7D-4F38-A1D5-C1045776D240} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{D7CC2F82-08CD-485E-B299-A88E5F8A7E40} -> WLM
Moved to quarantine successfully : C:\Users\el catala\AppData\Local\{181A4043-47F2-4A10-95B7-A454699CF594} -> WLM
Moved to quarantine successfully :