Win32:host
sergeserge
Messages postés
9
Date d'inscription
Statut
Membre
-
afideg Messages postés 10466 Date d'inscription Statut Contributeur sécurité Dernière intervention -
afideg Messages postés 10466 Date d'inscription Statut Contributeur sécurité Dernière intervention -
bonjour, suite a l'invasion du virus win32:horst et ne sachant pas si je l ai eradiqué
voici mon rapport hijackthis
pourriez vous me dire si tous va bien maintenant? mercie d'avance
Logfile of HijackThis v1.99.1
Scan saved at 11:20:51, on 23/02/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HPQ\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Fichiers communs\Teleca Shared\CapabilityManager.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\HPQ\SHARED\HPQWMI.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.hp.com/fr/extension-garantie/iconlanding
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] "%ProgramFiles%\HPQ\HP Wireless Assistant\HP Wireless Assistant.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /Minimized
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV03.EXE
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
voici mon rapport hijackthis
pourriez vous me dire si tous va bien maintenant? mercie d'avance
Logfile of HijackThis v1.99.1
Scan saved at 11:20:51, on 23/02/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HPQ\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Fichiers communs\Teleca Shared\CapabilityManager.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\HPQ\SHARED\HPQWMI.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.hp.com/fr/extension-garantie/iconlanding
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] "%ProgramFiles%\HPQ\HP Wireless Assistant\HP Wireless Assistant.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /Minimized
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: EPSON Status Monitor 3 Environment Check.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV03.EXE
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
Configuration: Windows XP Internet Explorer 6.0
2 réponses
-
slt,
désinstalle la msn toolbar qui ne t'ai d'aucune utilité.
sinon ton log hijack me parait clean.
- > Pour vérifier, scanne ton PC avec cet antivirus en ligne (sous IE et accepte l’activX) :
http://www.bitdefender.fr/bd/site/search.php#
Clique sur « Bitdefender scan on line » suis les instructions.
Démo (merci à balltrap pour cette démo) :
http://perso.orange.fr/rginformatique/section%20virus/defender.htm
Et colle le rapport.
a+-
merci pour tes conseils,
voila le rapport bidefender
merci de bien vouloir me dire si tout est ok.
et merci encor pour ton aide
BitDefender Online Scanner
Scan report generated at: Fri, Feb 23, 2007 - 11:09:33
Scan path: C:\;D:\;
Statistics
Time
00:57:34
Files
187039
Folders
4215
Boot Sectors
2
Archives
6975
Packed Files
275
Results
Identified Viruses
4
Infected Files
43
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
43
Engines Info
Virus Definitions
357400
Engine build
AVCORE v1.0 (build 2397) (i386) (Feb 8 2007 14:24:08)
Scan plugins
2
Archive plugins
10
Unpack plugins
2
E-mail plugins
1
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\serge\Local Settings\Temp\13exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\13exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\13exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\17exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\17exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\17exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\18exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\18exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\18exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\22exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\22exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\22exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\24exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\24exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\24exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\24exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\24exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\24exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\27exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\27exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\27exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\27exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\27exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\27exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\29exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\29exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\29exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\2exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\2exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\2exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\33exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\33exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\33exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\34exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\34exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\34exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\39exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\39exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\39exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\3exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\3exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\3exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\40exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\40exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\40exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\44exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\44exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\44exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\46exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\46exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\46exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\48exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\48exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\48exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\48exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\48exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\48exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\51exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\51exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\51exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\56exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\56exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\56exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\56exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\56exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\56exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\59exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\59exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\59exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\61exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\61exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\61exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\70exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\70exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\70exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\72exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\72exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\72exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\76exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\76exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\76exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\79exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\79exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\79exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\81exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\81exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\81exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\83exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\83exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\83exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\83exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\83exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\83exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\86exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\86exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\86exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\89exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\89exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\89exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\91exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\91exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\91exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\92exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\92exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\92exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\94exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\94exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\94exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\97exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\97exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\97exssd32a.4.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\98exmodul32i.d.exe
Infected with: DeepScan:Generic.Spammer.55BE76A1
C:\Documents and Settings\serge\Local Settings\Temp\98exmodul32i.d.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\98exmodul32i.d.exe
Deleted
C:\Documents and Settings\serge\Local Settings\Temp\9exssd32a.4.exe
Infected with: DeepScan:Generic.Spammer.6A5EBEC8
C:\Documents and Settings\serge\Local Settings\Temp\9exssd32a.4.exe
Disinfection failed
C:\Documents and Settings\serge\Local Settings\Temp\9exssd32a.4.exe
Deleted
C:\Program Files\Services en ligne\iminitel\i-minitel HP.EXE
Infected with: Win32.Worm.Gael.A
C:\Program Files\Services en ligne\iminitel\i-minitel HP.EXE
Disinfection failed
C:\Program Files\Services en ligne\iminitel\i-minitel HP.EXE
Deleted
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP339\A0069287.exe
Infected with: Win32.Worm.Gael.A
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP339\A0069287.exe
Disinfection failed
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP339\A0069287.exe
Deleted
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP359\A0079173.EXE
Infected with: Win32.Worm.Gael.A
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP359\A0079173.EXE
Disinfection failed
C:\System Volume Information\_restore{B8687C25-491C-4B92-A950-D228172F494F}\RP359\A0079173.EXE
Deleted
C:\WINDOWS\system\smss.exe
Infected with: DeepScan:Generic.Horst.B2AC1E4F
C:\WINDOWS\system\smss.exe
Disinfection failed
C:\WINDOWS\system\smss.exe
Deleted
-
-