[Virus]infecté par trojan download win 32 bag

titou77400 Messages postés 2 Statut Membre -  
titou77400 Messages postés 2 Statut Membre -
bonjour à tous mon pc (windows xp ) est infecté , avec comme symptome l'impossiblite de faire tourner un antivirus. j'ai essayé tous les outils de désinfection que j'ai trouvé, tous les antivirus en ligne mais impossible de désinfecter merci de votre aide voici le rapport hijack
Logfile of HijackThis v1.99.1
Scan saved at 09:19:54, on 23/02/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ATKKBService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\anvshell.exe
C:\WINDOWS\system32\rundll32.exe
C:\SPAMfighter\SFAgent.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\VIRUSfighter\Bin\ZLH.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Logitech\Profiler\lwemon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Defenza\pcd-as.exe
C:\SPYWAREfighter\spftray.exe
C:\SPYWAREfighter\spfprc.exe
C:\Program Files\Internet Explorer\iexplore.exe
F:\SYSTRAN\5.0\Premium\SYSTRA~3.EXE
C:\Documents and Settings\Nous\Mes documents\hijackthis\scanner.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer avec Club-Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O3 - Toolbar: Systran50premi.IEPlugIn - {9A0844DB-84CF-4440-BDB1-1F4F7C4F7FB0} - F:\SYSTRAN\5.0\Premium\IEPlugIn.dll
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [anvshell] anvshell.exe
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\SPAMfighter\SFAgent.exe" update delay 60
O4 - HKLM\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
O4 - HKLM\..\Run: [Norman ZANDA] C:\VIRUSfighter\Bin\ZLH.EXE /LOAD /SPLASH
O4 - HKLM\..\Run: [PCDAS] C:\Program Files\Defenza\pcd-as.exe /10003
O4 - HKLM\..\Run: [spywarefighterguard] C:\SPYWAREfighter\spftray.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [OM_Monitor] C:\OLYMPUS\OLYMPUS Master\Monitor.exe -NoStart
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Start WingMan Profiler] "C:\Program Files\Logitech\Profiler\lwemon.exe" /noui
O4 - HKCU\..\Run: [D-A-L] C:\AnyDVD\AnyDVD1.exe
O4 - HKCU\..\Run: [Dirty-AnyDVD-Loader] C:\AnyDVD\AnyDVD1.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ?
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: Download with NetPumper - C:\Program Files\NetPumper\AddUrl.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\MICROS~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open and Translate in Word - res://F:\SYSTRAN\5.0\Premium\IEShellExt.dll /10
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\MICROS~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Barre de recherche Encarta - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15026/CTSUEng.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/2.0.1.13/cfweb_activex.camfrogweb.com-advanced-2.0.1.13_instmodule.exe
O16 - DPF: {2AF5BD25-90C5-4EEC-88C5-B44DC2905D8B} (DownloadManager Control) - http://dlmanager.akamaitools.com.edgesuite.net/dlmanager/versions/activex/dlm-activex-2.0.3.3.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - https://www.cult3d.com/
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://peaceandlovesaby.spaces.live.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.inoculer.com/antivirus/Msie/bitdefender.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - https://www.f-secure.com/en/home/support
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://www.pixdiscount.fr/clients/uploader_uni_dd_final.cab
O16 - DPF: {EFAEF0E4-F044-4D57-9900-1C3FF18524C9} (AV Class) - https://www.pcmatic.com/store/pcmatic.asp
O16 - DPF: {EFD3EA56-234D-4240-90EA-CC9FA3AF5A01} (ConnectivityTester Class) - http://motive.club-internet.fr:2112/lwp/static/installers/WebflowActiveXInstaller_4-0-0.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15028/CTPID.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS\system32\tmp_56.dll
O20 - Winlogon Notify: rpcc - C:\WINDOWS\system32\rpcc.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: ASUSKeyboardService - ASUSTeK COMPUTER INC. - C:\WINDOWS\asuskbservice.exe
O23 - Service: ATK Keyboard Service (ATKKeyboardService) - ASUSTeK COMPUTER INC. - C:\WINDOWS\ATKKBService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: %NVSVC.name% (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SPYWAREfighterRP - SpamFighter APS - C:\SPYWAREfighter\spfprc.exe
A voir également:

2 réponses

dessaux
 
bonjour

tout d'abord est ce que vous avez 2 partitions sur votre disque dur?

si oui formatez le disque C: si bien sur vous avez le cd d'installation de windows et sa clé

sinon faite une réparation de windows.

par contre une fois cette opération terminée je peux vous donnez un antispyware et un antivirus que j'utilise personnellement et je n'ai jamais eu de problèmes!

si vous les voulez envoyer moi un email a cette adresse :

stef.dessaux@hotmail.fr

voila j'espère que ça va mieux aller pour votre pc

a bientot

ps: si voulez avoir de plus amples conseils rejoignez moi a l'adresse email mentionné ci-dessus.
0
titou77400 Messages postés 2 Statut Membre
 
scan f-secure blacklight

02/23/07 09:44:28 [Info]: BlackLight Engine 1.0.55 initialized
02/23/07 09:44:28 [Info]: OS: 5.1 build 2600 (Service Pack 2)
02/23/07 09:44:29 [Note]: 7019 4
02/23/07 09:44:29 [Note]: 7005 0
02/23/07 09:44:30 [Note]: 7006 0
02/23/07 09:44:30 [Note]: 7011 1372
02/23/07 09:44:30 [Note]: 7026 0
02/23/07 09:44:30 [Note]: 7026 0
02/23/07 09:44:35 [Note]: FSRAW library version 1.7.1021
02/23/07 09:44:39 [Info]: Hidden file: c:\Documents and Settings\Nous\Application Data\hidires\hidr.exe
02/23/07 09:44:39 [Note]: 10002 2
02/23/07 09:44:39 [Info]: Hidden file: c:\Documents and Settings\Nous\Application Data\hidires\m_hook.sys
02/23/07 09:44:39 [Note]: 10002 2
02/23/07 09:44:39 [Note]: 10002 3
02/23/07 09:44:39 [Note]: 10002 3
02/23/07 09:44:39 [Note]: 10002 2
02/23/07 09:44:39 [Note]: 10002 2
02/23/07 09:46:12 [Info]: Hidden file: c:\Program Files\Movie Maker\Shared\Empty.txt
02/23/07 09:46:12 [Note]: 10002 3
02/23/07 09:46:12 [Info]: Hidden file: c:\Program Files\Movie Maker\Shared\Filters.xml
02/23/07 09:46:12 [Note]: 10002 3
02/23/07 09:46:12 [Info]: Hidden file: c:\Program Files\Movie Maker\Shared\news.png
02/23/07 09:46:12 [Note]: 10002 3
02/23/07 09:46:12 [Info]: Hidden file: c:\Program Files\Movie Maker\Shared\paint.png
02/23/07 09:46:12 [Note]: 10002 3
02/23/07 09:46:12 [Info]: Hidden file: c:\Program Files\Movie Maker\Shared\Profiles\Blank.txt
02/23/07 09:46:12 [Note]: 10002 3
02/23/07 09:46:12 [Info]: Hidden file: c:\Program Files\Movie Maker\Shared\Sample1.jpg
02/23/07 09:46:12 [Note]: 10002 3
02/23/07 09:46:12 [Info]: Hidden file: c:\Program Files\Movie Maker\Shared\Sample2.jpg
02/23/07 09:46:12 [Note]: 10002 3
02/23/07 09:46:12 [Note]: 10002 2
02/23/07 09:46:12 [Note]: 10002 2
02/23/07 09:50:54 [Note]: 10002 2
02/23/07 09:50:54 [Note]: 10002 2
02/23/07 09:53:49 [Note]: 2000 1012

scan panda software

Incident Status Location

Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Nous\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\java.jar-47723671-1598f8df.zip[NewSecurityClassLoader.class]
Hacktool:Exploit/ByteVerify Not disinfected C:\Documents and Settings\Nous\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\java.jar-5f22f99-7db7888c.zip[NewSecurityClassLoader.class]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Nous\Cookies\nous@247realmedia[1].txt
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Nous\Cookies\nous@2o7[1].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Nous\Cookies\nous@ad.yieldmanager[1].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Nous\Cookies\nous@adrevolver[1].txt
Spyware:Cookie/AdDynamix Not disinfected C:\Documents and Settings\Nous\Cookies\nous@ads.addynamix[1].txt
Spyware:Cookie/Adserver Not disinfected C:\Documents and Settings\Nous\Cookies\nous@adserver.terra[1].txt
Spyware:Cookie/Adtech Not disinfected C:\Documents and Settings\Nous\Cookies\nous@adtech[2].txt
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Nous\Cookies\nous@advertising[1].txt
Spyware:Cookie/Adviva Not disinfected C:\Documents and Settings\Nous\Cookies\nous@adviva[2].txt
Spyware:Cookie/Falkag Not disinfected C:\Documents and Settings\Nous\Cookies\nous@as1.falkag[2].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Nous\Cookies\nous@atdmt[2].txt
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Nous\Cookies\nous@bravenet[1].txt
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Nous\Cookies\nous@bs.serving-sys[2].txt
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Nous\Cookies\nous@casalemedia[1].txt
Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Nous\Cookies\nous@com[1].txt
Spyware:Cookie/Coremetrics Not disinfected C:\Documents and Settings\Nous\Cookies\nous@data.coremetrics[1].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Nous\Cookies\nous@doubleclick[1].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Nous\Cookies\nous@drivecleaner[2].txt
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Nous\Cookies\nous@fastclick[2].txt
Spyware:Cookie/Comclick Not disinfected C:\Documents and Settings\Nous\Cookies\nous@fl01.ct2.comclick[1].txt
Spyware:Cookie/Hitbox Not disinfected C:\Documents and Settings\Nous\Cookies\nous@hitbox[2].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Nous\Cookies\nous@media.adrevolver[1].txt
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Nous\Cookies\nous@mediaplex[1].txt
Spyware:Cookie/MetriWeb Not disinfected C:\Documents and Settings\Nous\Cookies\nous@metriweb[1].txt
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Nous\Cookies\nous@overture[1].txt
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Nous\Cookies\nous@questionmarket[1].txt
Spyware:Cookie/Searchportal Not disinfected C:\Documents and Settings\Nous\Cookies\nous@searchportal.information[1].txt
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Nous\Cookies\nous@serving-sys[2].txt
Spyware:Cookie/Smartadserver Not disinfected C:\Documents and Settings\Nous\Cookies\nous@smartadserver[2].txt
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Nous\Cookies\nous@statcounter[2].txt
Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Nous\Cookies\nous@statse.webtrendslive[2].txt
Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\Nous\Cookies\nous@toplist[1].txt
Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Nous\Cookies\nous@tradedoubler[1].txt
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Nous\Cookies\nous@tribalfusion[1].txt
Spyware:Cookie/Weborama Not disinfected C:\Documents and Settings\Nous\Cookies\nous@weborama[2].txt
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Nous\Cookies\nous@www.drivecleaner[1].txt
Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Nous\Cookies\nous@www3.addfreestats[1].txt
Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\Nous\Cookies\nous@xiti[1].txt
Spyware:Cookie/Adserver Not disinfected C:\Documents and Settings\Nous\Cookies\nous@z1.adserver[1].txt
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Nous\Cookies\nous@zedo[2].txt
Hacktool:HackTool/EvID Not disinfected C:\eChanblard\EvID4226Patch.exe
Spyware:Cookie/Gorillanation Not disinfected F:\Documents and Settings\Nous\Cookies\nous@ads.gorillanation[1].txt
Spyware:Cookie/Com.com Not disinfected F:\Documents and Settings\Nous\Cookies\nous@com[2].txt
Spyware:Cookie/fe.lea.lycos Not disinfected F:\Documents and Settings\Nous\Cookies\nous@fe.lea.lycos[1].txt
Spyware:Cookie/Go Not disinfected F:\Documents and Settings\Nous\Cookies\nous@go[1].txt
Spyware:Cookie/Itrack Not disinfected F:\Documents and Settings\Nous\Cookies\nous@ilead.itrack[1].txt
Spyware:Cookie/MyWay Not disinfected F:\Documents and Settings\Nous\Cookies\nous@www.xzoomy[1].txt
Spyware:Cookie/Xiti Not disinfected F:\Documents and Settings\Nous\Cookies\nous@xiti[1].txt
Spyware:Cookie/Yadro
0