Virus infecter par worm allaple.c

Résolu/Fermé
kina26 - 18 mars 2007 à 20:05
 Lyonnais92 - 23 mars 2007 à 18:12
bonjour mon ordi est infecter par le virus WORM ALLAPLE.C je suis nul ds les ordi quelqun peut maider svp merci a lavanceeeeeee

kina26

39 réponses

Utilisateur anonyme
18 mars 2007 à 20:46
Bonsoir

Qu'as-tu comme anti-virus, anti-spywares et pare-feu ?
0
salut je sais que mon anti virus c avast mais pour le reste je sais pmeme pas si jai ca :S
0
Utilisateur anonyme
Modifié le 23 mars 2007 à 18:12
Ok, fait ceci :

Télécharge HijackThis :
---> https://www.commentcamarche.net/telecharger/securite/11747-hijackthis/
Installe le dans son propre dossier :
- clic droit sur le bureau, tu choisis "nouveau dossier" puis installe-le à l'intérieur.
Double-clic sur HijackThis.
Clic sur "do a system scan and save logfile"
Puis copie et colle le rapport ici stp


Démo si besoin pour HijackThis :
http://pageperso.aol.fr/balltrap34/demohijack.htm

c'est en forgeant que l'on devient forgeron !
** site perso pour forger, dans mon profil **
0
salut voila jespere lavoir bien fait !!




Logfile of HijackThis v1.99.1
Scan saved at 16:53:33, on 2007-03-18
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\HPZipm12.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\WINNT\system32\internat.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Documents and Settings\Client\Bureau\hjvirus\hijackthis_hijackthis_1.99.1_anglais_17891.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fsympatico.msn.ca%2fdefaultf.aspx%3f
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe
O4 - HKLM\..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [internat.exe] internat.exe
O4 - Global Startup: Démarrage rapide du logiciel HP Image Zone.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: KODAK Software Updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logiciel Kodak EasyShare.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour\ExplorerPlugin.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by131fd.bay131.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9602.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O20 - Winlogon Notify: igfxcui - C:\WINNT\SYSTEM32\igfxsrvc.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Service Bonjour (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINNT\system32\drivers\KodakCCS.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINNT\system32\HPZipm12.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
0
Utilisateur anonyme
18 mars 2007 à 22:14
Ou Avast te trouve t-il le virus ?
0
ds le fichier winnt le plus souvent et aussi systeme 32
0
Utilisateur anonyme
18 mars 2007 à 23:02
¤ Fait ce scan anti-virus en ligne avec Internet Explorer
Une fois qu'il a terminé colle le rapport ici stp

https://www.bitdefender.com/toolbox/


PS : indique le nom complet du virus ainsi que les anti-spywares que tu as.
0
salut jai fait le scan mais je ne voit pas comment faire mon copier coller du rapport :(

ps merci bcp de laide que tu maporte c vraiment gentil
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
19 mars 2007 à 03:26
A la fin du scan tu dois avoir un bouton "rapport" ou "log" tu as juste à cliqué dessus et de faire un copier coller comme tu as fait pour hijackthis ;-)
0
salut voila jespere que c ca!!!!!

BitDefender Online Scanner







Scan report generated at: Sun, Mar 18, 2007 - 22:41:48









Scan path: A:\;C:\;D:\;E:\;















Statistics

Time


04:29:02

Files


211064

Folders


4508

Boot Sectors


2

Archives


5453

Packed Files


7059







Results

Identified Viruses


2

Infected Files


619

Suspect Files


0

Warnings


0

Disinfected


0

Deleted Files


619







Engines Info

Virus Definitions


405776

Engine build


AVCORE v1.0 (build 2397) (i386) (Feb 8 2007 14:24:08)

Scan plugins


14

Archive plugins


38

Unpack plugins


6

E-mail plugins


6

System plugins


1







Scan Settings

First Action


Disinfect

Second Action


Delete

Heuristics


Yes

Enable Warnings


Yes

Scanned Extensions


*;

Exclude Extensions




Scan Emails


Yes

Scan Archives


Yes

Scan Packed


Yes

Scan Files


Yes

Scan Boot


Yes








Scanned File


Status

C:\nero\PowerDVD\Readme\bvsektrw.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\bvsektrw.exe


Disinfection failed

C:\nero\PowerDVD\Readme\bvsektrw.exe


Deleted

C:\nero\PowerDVD\Readme\cnejxvqk.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\cnejxvqk.exe


Disinfection failed

C:\nero\PowerDVD\Readme\cnejxvqk.exe


Deleted

C:\nero\PowerDVD\Readme\cznjjbkv.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\cznjjbkv.exe


Disinfection failed

C:\nero\PowerDVD\Readme\cznjjbkv.exe


Deleted

C:\nero\PowerDVD\Readme\hnjtheht.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\hnjtheht.exe


Disinfection failed

C:\nero\PowerDVD\Readme\hnjtheht.exe


Deleted

C:\nero\PowerDVD\Readme\jennhtbs.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\jennhtbs.exe


Disinfection failed

C:\nero\PowerDVD\Readme\jennhtbs.exe


Deleted

C:\nero\PowerDVD\Readme\jlkzzect.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\jlkzzect.exe


Disinfection failed

C:\nero\PowerDVD\Readme\jlkzzect.exe


Deleted

C:\nero\PowerDVD\Readme\jsjnrljw.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\jsjnrljw.exe


Disinfection failed

C:\nero\PowerDVD\Readme\jsjnrljw.exe


Deleted

C:\nero\PowerDVD\Readme\krlbtnzn.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\krlbtnzn.exe


Disinfection failed

C:\nero\PowerDVD\Readme\krlbtnzn.exe


Deleted

C:\nero\PowerDVD\Readme\lesvrejh.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\lesvrejh.exe


Disinfection failed

C:\nero\PowerDVD\Readme\lesvrejh.exe


Deleted

C:\nero\PowerDVD\Readme\nbjrrhwj.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\nbjrrhwj.exe


Disinfection failed

C:\nero\PowerDVD\Readme\nbjrrhwj.exe


Deleted

C:\nero\PowerDVD\Readme\nqhtlnlb.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\nqhtlnlb.exe


Disinfection failed

C:\nero\PowerDVD\Readme\nqhtlnlb.exe


Deleted

C:\nero\PowerDVD\Readme\nvkncrhk.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\nvkncrhk.exe


Disinfection failed

C:\nero\PowerDVD\Readme\nvkncrhk.exe


Deleted

C:\nero\PowerDVD\Readme\nxsnsqsw.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\nxsnsqsw.exe


Disinfection failed

C:\nero\PowerDVD\Readme\nxsnsqsw.exe


Deleted

C:\nero\PowerDVD\Readme\qxbkxktj.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\qxbkxktj.exe


Disinfection failed

C:\nero\PowerDVD\Readme\qxbkxktj.exe


Deleted

C:\nero\PowerDVD\Readme\rhjbjhkt.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\rhjbjhkt.exe


Disinfection failed

C:\nero\PowerDVD\Readme\rhjbjhkt.exe


Deleted

C:\nero\PowerDVD\Readme\srnnezrk.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\srnnezrk.exe


Disinfection failed

C:\nero\PowerDVD\Readme\srnnezrk.exe


Deleted

C:\nero\PowerDVD\Readme\vznnlkjj.exe


Infected with: Worm.Allaple.A

C:\nero\PowerDVD\Readme\vznnlkjj.exe


Disinfection failed

C:\nero\PowerDVD\Readme\vznnlkjj.exe


Deleted

C:\Program Files\AC3Filter\kxhrtrqj.exe


Infected with: Worm.Allaple.A

C:\Program Files\AC3Filter\kxhrtrqj.exe


Disinfection failed

C:\Program Files\AC3Filter\kxhrtrqj.exe


Deleted

C:\Program Files\AC3Filter\nrqhvxxb.exe


Infected with: Worm.Allaple.A

C:\Program Files\AC3Filter\nrqhvxxb.exe


Disinfection failed

C:\Program Files\AC3Filter\nrqhvxxb.exe


Deleted

C:\Program Files\AC3Filter\tzbebljn.exe


Infected with: Worm.Allaple.A

C:\Program Files\AC3Filter\tzbebljn.exe


Disinfection failed

C:\Program Files\AC3Filter\tzbebljn.exe


Deleted

C:\Program Files\Adobe\Acrobat 5.0\Reader\plug_ins\WEBBUY\HTML\ncbzhhtc.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 5.0\Reader\plug_ins\WEBBUY\HTML\ncbzhhtc.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 5.0\Reader\plug_ins\WEBBUY\HTML\ncbzhhtc.exe


Deleted

C:\Program Files\Adobe\Acrobat 5.0\Reader\plug_ins\WEBBUY\HTML\snkqkrnl.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 5.0\Reader\plug_ins\WEBBUY\HTML\snkqkrnl.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 5.0\Reader\plug_ins\WEBBUY\HTML\snkqkrnl.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\bkhtkwqe.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\bkhtkwqe.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\bkhtkwqe.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\bjkbjklx.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\bjkbjklx.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\bjkbjklx.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\bkhhbtsb.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\bkhhbtsb.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\bkhhbtsb.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\brlzthcj.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\brlzthcj.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\brlzthcj.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\bvnhjsjl.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\bvnhjsjl.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\bvnhjsjl.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\cjvlecbk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\cjvlecbk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\cjvlecbk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\ckhtwbwc.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\ckhtwbwc.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\ckhtwbwc.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\ekzrxqtj.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\ekzrxqtj.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\ekzrxqtj.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hbjcnqlv.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hbjcnqlv.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hbjcnqlv.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\heltrtzj.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\heltrtzj.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\heltrtzj.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hhqbkrlt.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hhqbkrlt.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hhqbkrlt.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hhseqbtb.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hhseqbtb.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hhseqbtb.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hsskjbsx.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hsskjbsx.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hsskjbsx.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hzrljxbz.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hzrljxbz.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\hzrljxbz.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\jrcxwrrz.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\jrcxwrrz.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\jrcxwrrz.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\jrtvtqsl.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\jrtvtqsl.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\jrtvtqsl.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\jsxlrejt.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\jsxlrejt.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\jsxlrejt.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\kbwrrwsk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\kbwrrwsk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\kbwrrwsk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\kztcevnk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\kztcevnk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\kztcevnk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lbnlevzk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lbnlevzk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lbnlevzk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lhtvlqee.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lhtvlqee.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lhtvlqee.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lhwhlbrz.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lhwhlbrz.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lhwhlbrz.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lthkxthk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lthkxthk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lthkxthk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lxnzjsxb.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lxnzjsxb.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\lxnzjsxb.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\njeshesb.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\njeshesb.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\njeshesb.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\nkltljxe.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\nkltljxe.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\nkltljxe.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\nwqkckbs.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\nwqkckbs.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\nwqkckbs.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qjxjnbtj.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qjxjnbtj.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qjxjnbtj.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qnlrskhe.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qnlrskhe.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qnlrskhe.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qqnnvhkb.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qqnnvhkb.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qqnnvhkb.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qvbxlzhs.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qvbxlzhs.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\qvbxlzhs.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rejrlcrs.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rejrlcrs.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rejrlcrs.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rlswbvkl.exe


Infected with: Trojan.Peed.Gen

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rlswbvkl.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rlswbvkl.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rlwnhqbv.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rlwnhqbv.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rlwnhqbv.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rrerewle.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rrerewle.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\rrerewle.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\shhsvkqw.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\shhsvkqw.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\shhsvkqw.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\skeeqlrh.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\skeeqlrh.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\skeeqlrh.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\slenvqer.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\slenvqer.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\slenvqer.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\snlwllee.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\snlwllee.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\snlwllee.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\svhesqjl.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\svhesqjl.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\svhesqjl.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\thhqrlht.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\thhqrlht.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\thhqrlht.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\tlslkelk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\tlslkelk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\tlslkelk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\tvbwrktk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\tvbwrktk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\tvbwrktk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\tvzbewrk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\tvzbewrk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\tvzbewrk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\txshjncs.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\txshjncs.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\txshjncs.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\vcjqresh.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\vcjqresh.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\vcjqresh.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\venvzeqw.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\venvzeqw.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\venvzeqw.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\vqvtlwrh.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\vqvtlwrh.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\vqvtlwrh.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\vscrbnzr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\vscrbnzr.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\vscrbnzr.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\wbslhnbr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\wbslhnbr.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\wbslhnbr.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\whklttwr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\whklttwr.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\whklttwr.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\wxljrttq.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\wxljrttq.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\wxljrttq.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\zbhssxlk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\zbhssxlk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\zbhssxlk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\zceelekj.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\zceelekj.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\ENU\zceelekj.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\bllswwrq.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\bllswwrq.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\bllswwrq.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\blzrxknk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\blzrxknk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\blzrxknk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\bxwtjxwt.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\bxwtjxwt.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\bxwtjxwt.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\bxxrnhcb.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\bxxrnhcb.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\bxxrnhcb.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\ezbhlbkq.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\ezbhlbkq.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\ezbhlbkq.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hhrbbrsx.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hhrbbrsx.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hhrbbrsx.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hhxjrhet.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hhxjrhet.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hhxjrhet.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hwjtrjkk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hwjtrjkk.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hwjtrjkk.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hzkkkrtc.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hzkkkrtc.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\hzkkkrtc.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jbqserqv.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jbqserqv.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jbqserqv.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jehjqsjr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jehjqsjr.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jehjqsjr.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jqrqskkt.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jqrqskkt.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jqrqskkt.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jskrqhjt.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jskrqhjt.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jskrqhjt.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jtxrrbsc.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jtxrrbsc.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jtxrrbsc.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jwwkckne.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jwwkckne.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\jwwkckne.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kbjtjxjr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kbjtjxjr.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kbjtjxjr.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kevbzhhr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kevbzhhr.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kevbzhhr.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\ksttrtxr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\ksttrtxr.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\ksttrtxr.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kwkxzjnl.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kwkxzjnl.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kwkxzjnl.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kztbjslt.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kztbjslt.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\kztbjslt.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\ljxktqlh.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\ljxktqlh.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\ljxktqlh.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\lwlrsknt.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\lwlrsknt.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\lwlrsknt.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\njbekjnl.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\njbekjnl.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\njbekjnl.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nrqhxlje.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nrqhxlje.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nrqhxlje.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nsxrrtsz.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nsxrrtsz.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nsxrrtsz.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nwcvkhej.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nwcvkhej.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nwcvkhej.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nzewrnsl.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nzewrnsl.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\nzewrnsl.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\qwlbwwtj.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\qwlbwwtj.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\qwlbwwtj.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rbtssrew.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rbtssrew.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rbtssrew.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rcxtehjz.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rcxtehjz.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rcxtehjz.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rkbvjeqw.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rkbvjeqw.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rkbvjeqw.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rlznnbcs.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rlznnbcs.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rlznnbcs.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rveelltv.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rveelltv.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\rveelltv.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sbnhjcrn.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sbnhjcrn.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sbnhjcrn.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sbqvltnj.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sbqvltnj.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sbqvltnj.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sernzkww.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sernzkww.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sernzkww.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\shenckss.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\shenckss.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\shenckss.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sqqhsshx.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sqqhsshx.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\sqqhsshx.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\stntzstv.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\stntzstv.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\stntzstv.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\thktnsjj.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\thktnsjj.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\thktnsjj.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\thtettnq.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\thtettnq.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\thtettnq.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\tjwletsb.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\tjwletsb.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\tjwletsb.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\txjhheel.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\txjhheel.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\txjhheel.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\txllhlhv.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\txllhlhv.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\txllhlhv.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\vsxsbntj.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\vsxsbntj.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\vsxsbntj.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\vvlbrccs.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\vvlbrccs.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\vvlbrccs.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\wkjbkkts.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\wkjbkkts.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\wkjbkkts.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\wwewjhrs.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\wwewjhrs.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\wwewjhrs.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xctqxrxt.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xctqxrxt.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xctqxrxt.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xhkenllc.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xhkenllc.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xhkenllc.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xsscjxwc.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xsscjxwc.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xsscjxwc.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xwlkjtth.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xwlkjtth.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\xwlkjtth.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\zhwtebwc.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\zhwtebwc.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\HowTo\FRA\zhwtebwc.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\Legal\Adobe Reader\7.0.0\fr_FR\qtehksnw.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\Legal\Adobe Reader\7.0.0\fr_FR\qtehksnw.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\Legal\Adobe Reader\7.0.0\fr_FR\qtehksnw.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PictureTasks\Howto\rtnqrwee.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PictureTasks\Howto\rtnqrwee.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\plug_ins\PictureTasks\Howto\rtnqrwee.exe


Deleted

C:\Program Files\Adobe\Acrobat 7.0\Reader\zkskjrrc.exe


Infected with: Worm.Allaple.A

C:\Program Files\Adobe\Acrobat 7.0\Reader\zkskjrrc.exe


Disinfection failed

C:\Program Files\Adobe\Acrobat 7.0\Reader\zkskjrrc.exe


Deleted

C:\Program Files\Alwil Software\Avast4\DATA\thtkrqse.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\DATA\thtkrqse.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\DATA\thtkrqse.exe


Deleted

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\bhvtjkce.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\bhvtjkce.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\bhvtjkce.exe


Deleted

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\hxseqnhh.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\hxseqnhh.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\hxseqnhh.exe


Deleted

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\knkztbrr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\knkztbrr.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\knkztbrr.exe


Deleted

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\kqsrjbzk.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\kqsrjbzk.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\kqsrjbzk.exe


Deleted

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\sentsrbx.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\sentsrbx.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\sentsrbx.exe


Deleted

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\xqvbjejz.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\xqvbjejz.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\FRENCH\HtmlData\xqvbjejz.exe


Deleted

C:\Program Files\Alwil Software\Avast4\FRENCH\njlwkhrl.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\FRENCH\njlwkhrl.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\FRENCH\njlwkhrl.exe


Deleted

C:\Program Files\Alwil Software\Avast4\FRENCH\vllsshns.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\FRENCH\vllsshns.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\FRENCH\vllsshns.exe


Deleted

C:\Program Files\Alwil Software\Avast4\FRENCH\wlsxcels.exe


Infected with: Worm.Allaple.A

C:\Program Files\Alwil Software\Avast4\FRENCH\wlsxcels.exe


Disinfection failed

C:\Program Files\Alwil Software\Avast4\FRENCH\wlsxcels.exe


Deleted

C:\Program Files\ffdshow\help\bltlhvhk.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\bltlhvhk.exe


Disinfection failed

C:\Program Files\ffdshow\help\bltlhvhk.exe


Deleted

C:\Program Files\ffdshow\help\brknntts.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\brknntts.exe


Disinfection failed

C:\Program Files\ffdshow\help\brknntts.exe


Deleted

C:\Program Files\ffdshow\help\btzvhcsx.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\btzvhcsx.exe


Disinfection failed

C:\Program Files\ffdshow\help\btzvhcsx.exe


Deleted

C:\Program Files\ffdshow\help\bwtrcleb.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\bwtrcleb.exe


Disinfection failed

C:\Program Files\ffdshow\help\bwtrcleb.exe


Deleted

C:\Program Files\ffdshow\help\bxqvhxsx.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\bxqvhxsx.exe


Disinfection failed

C:\Program Files\ffdshow\help\bxqvhxsx.exe


Deleted

C:\Program Files\ffdshow\help\cjrkzkej.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\cjrkzkej.exe


Disinfection failed

C:\Program Files\ffdshow\help\cjrkzkej.exe


Deleted

C:\Program Files\ffdshow\help\eerncnjh.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\eerncnjh.exe


Disinfection failed

C:\Program Files\ffdshow\help\eerncnjh.exe


Deleted

C:\Program Files\ffdshow\help\elskqqrn.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\elskqqrn.exe


Disinfection failed

C:\Program Files\ffdshow\help\elskqqrn.exe


Deleted

C:\Program Files\ffdshow\help\hbtervjl.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\hbtervjl.exe


Disinfection failed

C:\Program Files\ffdshow\help\hbtervjl.exe


Deleted

C:\Program Files\ffdshow\help\hhecrhts.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\hhecrhts.exe


Disinfection failed

C:\Program Files\ffdshow\help\hhecrhts.exe


Deleted

C:\Program Files\ffdshow\help\hlvtszkk.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\hlvtszkk.exe


Disinfection failed

C:\Program Files\ffdshow\help\hlvtszkk.exe


Deleted

C:\Program Files\ffdshow\help\hrtebqwb.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\hrtebqwb.exe


Disinfection failed

C:\Program Files\ffdshow\help\hrtebqwb.exe


Deleted

C:\Program Files\ffdshow\help\hsjbxerr.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\hsjbxerr.exe


Disinfection failed

C:\Program Files\ffdshow\help\hsjbxerr.exe


Deleted

C:\Program Files\ffdshow\help\hsqsrjhh.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\hsqsrjhh.exe


Disinfection failed

C:\Program Files\ffdshow\help\hsqsrjhh.exe


Deleted

C:\Program Files\ffdshow\help\htxlvrbn.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\htxlvrbn.exe


Disinfection failed

C:\Program Files\ffdshow\help\htxlvrbn.exe


Deleted

C:\Program Files\ffdshow\help\jcnbelhh.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\jcnbelhh.exe


Disinfection failed

C:\Program Files\ffdshow\help\jcnbelhh.exe


Deleted

C:\Program Files\ffdshow\help\jcqtxbsl.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\jcqtxbsl.exe


Disinfection failed

C:\Program Files\ffdshow\help\jcqtxbsl.exe


Deleted

C:\Program Files\ffdshow\help\jllcjlsr.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\jllcjlsr.exe


Disinfection failed

C:\Program Files\ffdshow\help\jllcjlsr.exe


Deleted

C:\Program Files\ffdshow\help\jrtxebhr.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\jrtxebhr.exe


Disinfection failed

C:\Program Files\ffdshow\help\jrtxebhr.exe


Deleted

C:\Program Files\ffdshow\help\kjkqbkhb.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\kjkqbkhb.exe


Disinfection failed

C:\Program Files\ffdshow\help\kjkqbkhb.exe


Deleted

C:\Program Files\ffdshow\help\ksherbct.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\ksherbct.exe


Disinfection failed

C:\Program Files\ffdshow\help\ksherbct.exe


Deleted

C:\Program Files\ffdshow\help\ktzjjnsx.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\ktzjjnsx.exe


Disinfection failed

C:\Program Files\ffdshow\help\ktzjjnsx.exe


Deleted

C:\Program Files\ffdshow\help\kznbjlxe.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\kznbjlxe.exe


Disinfection failed

C:\Program Files\ffdshow\help\kznbjlxe.exe


Deleted

C:\Program Files\ffdshow\help\ljvtckts.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\ljvtckts.exe


Disinfection failed

C:\Program Files\ffdshow\help\ljvtckts.exe


Deleted

C:\Program Files\ffdshow\help\lkqqnnvz.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\lkqqnnvz.exe


Disinfection failed

C:\Program Files\ffdshow\help\lkqqnnvz.exe


Deleted

C:\Program Files\ffdshow\help\lshxhtjn.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\lshxhtjn.exe


Disinfection failed

C:\Program Files\ffdshow\help\lshxhtjn.exe


Deleted

C:\Program Files\ffdshow\help\lskkqbqn.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\lskkqbqn.exe


Disinfection failed

C:\Program Files\ffdshow\help\lskkqbqn.exe


Deleted

C:\Program Files\ffdshow\help\ltnljzje.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\ltnljzje.exe


Disinfection failed

C:\Program Files\ffdshow\help\ltnljzje.exe


Deleted

C:\Program Files\ffdshow\help\lwztejnx.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\lwztejnx.exe


Disinfection failed

C:\Program Files\ffdshow\help\lwztejnx.exe


Deleted

C:\Program Files\ffdshow\help\lzxnjctt.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\lzxnjctt.exe


Disinfection failed

C:\Program Files\ffdshow\help\lzxnjctt.exe


Deleted

C:\Program Files\ffdshow\help\ncwjjnrr.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\ncwjjnrr.exe


Disinfection failed

C:\Program Files\ffdshow\help\ncwjjnrr.exe


Deleted

C:\Program Files\ffdshow\help\nerkrcwh.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\nerkrcwh.exe


Disinfection failed

C:\Program Files\ffdshow\help\nerkrcwh.exe


Deleted

C:\Program Files\ffdshow\help\nkrbjkbv.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\nkrbjkbv.exe


Disinfection failed

C:\Program Files\ffdshow\help\nkrbjkbv.exe


Deleted

C:\Program Files\ffdshow\help\nlhebjrv.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\nlhebjrv.exe


Disinfection failed

C:\Program Files\ffdshow\help\nlhebjrv.exe


Deleted

C:\Program Files\ffdshow\help\nwelsset.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\nwelsset.exe


Disinfection failed

C:\Program Files\ffdshow\help\nwelsset.exe


Deleted

C:\Program Files\ffdshow\help\qkqtqtkk.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\qkqtqtkk.exe


Disinfection failed

C:\Program Files\ffdshow\help\qkqtqtkk.exe


Deleted

C:\Program Files\ffdshow\help\rbrjtvvk.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\rbrjtvvk.exe


Disinfection failed

C:\Program Files\ffdshow\help\rbrjtvvk.exe


Deleted

C:\Program Files\ffdshow\help\rhvtrzkh.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\rhvtrzkh.exe


Disinfection failed

C:\Program Files\ffdshow\help\rhvtrzkh.exe


Deleted

C:\Program Files\ffdshow\help\rthnsbvn.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\rthnsbvn.exe


Disinfection failed

C:\Program Files\ffdshow\help\rthnsbvn.exe


Deleted

C:\Program Files\ffdshow\help\rwenxthb.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\rwenxthb.exe


Disinfection failed

C:\Program Files\ffdshow\help\rwenxthb.exe


Deleted

C:\Program Files\ffdshow\help\rwxsrrsl.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\rwxsrrsl.exe


Disinfection failed

C:\Program Files\ffdshow\help\rwxsrrsl.exe


Deleted

C:\Program Files\ffdshow\help\shqvhtxx.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\shqvhtxx.exe


Disinfection failed

C:\Program Files\ffdshow\help\shqvhtxx.exe


Deleted

C:\Program Files\ffdshow\help\sjnebble.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\sjnebble.exe


Disinfection failed

C:\Program Files\ffdshow\help\sjnebble.exe


Deleted

C:\Program Files\ffdshow\help\ssbltlrc.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\ssbltlrc.exe


Disinfection failed

C:\Program Files\ffdshow\help\ssbltlrc.exe


Deleted

C:\Program Files\ffdshow\help\tbrsjlsl.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\tbrsjlsl.exe


Disinfection failed

C:\Program Files\ffdshow\help\tbrsjlsl.exe


Deleted

C:\Program Files\ffdshow\help\tbserzen.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\tbserzen.exe


Disinfection failed

C:\Program Files\ffdshow\help\tbserzen.exe


Deleted

C:\Program Files\ffdshow\help\twjsjvhe.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\twjsjvhe.exe


Disinfection failed

C:\Program Files\ffdshow\help\twjsjvhe.exe


Deleted

C:\Program Files\ffdshow\help\zhssveqk.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\zhssveqk.exe


Disinfection failed

C:\Program Files\ffdshow\help\zhssveqk.exe


Deleted

C:\Program Files\ffdshow\help\zshkknkq.exe


Infected with: Worm.Allaple.A

C:\Program Files\ffdshow\help\zshkknkq.exe


Disinfection failed

C:\Program Files\ffdshow\help\zshkknkq.exe


Deleted

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\bxjsjwkl.exe


Infected with: Worm.Allaple.A

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\bxjsjwkl.exe


Disinfection failed

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\bxjsjwkl.exe


Deleted

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\cvhrrnkr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\cvhrrnkr.exe


Disinfection failed

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\cvhrrnkr.exe


Deleted

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\ekzwrrrn.exe


Infected with: Worm.Allaple.A

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\ekzwrrrn.exe


Disinfection failed

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\ekzwrrrn.exe


Deleted

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\hvxbzklt.exe


Infected with: Worm.Allaple.A

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\hvxbzklt.exe


Disinfection failed

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\hvxbzklt.exe


Deleted

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\jekrcktb.exe


Infected with: Worm.Allaple.A

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\jekrcktb.exe


Disinfection failed

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\jekrcktb.exe


Deleted

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\lhlksbkv.exe


Infected with: Worm.Allaple.A

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\lhlksbkv.exe


Disinfection failed

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\lhlksbkv.exe


Deleted

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\llvbnekb.exe


Infected with: Worm.Allaple.A

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\llvbnekb.exe


Disinfection failed

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\llvbnekb.exe


Deleted

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\nshxrvsz.exe


Infected with: Worm.Allaple.A

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\nshxrvsz.exe


Disinfection failed

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\nshxrvsz.exe


Deleted

C:\Program Files\Fichiers communs\Microsoft Shared\Papier à lettres\qhckqwhr.exe


Infected with: Worm.Allaple.A

C:\Program Files\Fichi
0
Utilisateur anonyme
19 mars 2007 à 21:06
Salut

T'as choppé une belle saloprie, tout tes programmes sont infectés.
Tu retrouveras pas un PC propre ! Si tu veux le retrouver comme avant, j'te conseille de le formater et le mettre à jour te le sécuriser dès que tu es connecté pas comme actuellement.

Télécharge SmitfraudFix (enregistre le sur le "bureau")
http://siri.urz.free.fr/Fix/SmitfraudFix.zip

décompresse SmitfraudFix
Lance le fichier SmitfraudFix ou SmitfraudFix.cmd et choisis l'option 1 copie le rapport ici stp
0
bioman93 Messages postés 336 Date d'inscription dimanche 15 octobre 2006 Statut Membre Dernière intervention 25 juin 2009 4
19 mars 2007 à 21:21
Non : boulepate62 , il ya une solution apar le formatage :)

Si tu me laisse m'occuper de son cas ou sinon je te file la procedure en MP ;)

A++
0
Utilisateur anonyme
19 mars 2007 à 21:29
Je sais très bien que l'on peut y remédier mais si sais pour laisser une base de registre pourri j'en vois pas trop l'utilité.
;-)
0
bioman93 Messages postés 336 Date d'inscription dimanche 15 octobre 2006 Statut Membre Dernière intervention 25 juin 2009 4
19 mars 2007 à 21:34
J'en connais qui ont trés bien reussi à éliminer ce ver et aprés ils sont tranquil aucun soucis...

Enfin tous dépend de Kina ;)

A++
0
Utilisateur anonyme
19 mars 2007 à 21:48
Chacun voit ça comme il le veut !

Si je peux continuer seul ! merci
0
kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011
19 mars 2007 à 22:21
salut bon je suis un peu meler ds les discution lolll que dois je faire hihihi

merci

ps ca ne me derange pas je suis prete a formater mais je ne sais pas comment ce que je veut c mon ordi sans virus !!!!!
0
kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011
19 mars 2007 à 22:36
vooila jai fait le raport que tu ma demander !!
un gros merci pour laide que tu maporte c vraiment aprecier :)




SmitFraudFix v2.150

Rapport fait à 17:32:36,81, lun. 2007-03-19
Executé à partir de C:\Documents and Settings\Client\Bureau\SmitfraudFix
OS: Microsoft Windows 2000 [Version 5.00.2195] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal

»»»»»»»»»»»»»»»»»»»»»»»» hosts


»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINNT


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINNT\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINNT\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINNT\system32


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Client


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Client\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Client\Favoris


»»»»»»»»»»»»»»»»»»»»»»»» Bureau


»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues


»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32-huy32


»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll


»»»»»»»»»»»»»»»»»»»»»»»» Fin
0
Utilisateur anonyme > kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011
19 mars 2007 à 22:49
Tu peux garder Smitfraudfix de côté.


Télécharge SDFix
------>>> http://downloads.andymanchesta.com/RemovalTools/SDFix.exe

Double clic sur SDFix.exe et choisis Install pour l'extraire, il sera à la racine de ton Disqie dur principal.

Redémarre ton ordinateur en mode sans échec
**Redémarre ton PC. Dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaître choisis "mode sans echec" attends un peu..

Ouvre le dossier SDFix qui vient d'être créé double clic sur RunThis.bat pour lancer le script.
Appuie sur Y pour commencer le processus de nettoyage.
Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
Appuie sur une touche pour redémarrer le PC.
Ton système sera plus long pour redémarrer c'est normal.
Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
Appuie sur une touche pour finir l'exécution du script.
Le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
Copie et colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum, avec un nouveau rapport Hijackthis stp
0
kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011 > Utilisateur anonyme
19 mars 2007 à 23:16
voici le premier raport que tu ma demander je te fait lautres toute suite !!


SDFix: Version 1.73

Run by Client - lun. 2007-03-19 - 18:02:24,51

Microsoft Windows 2000 [Version 5.00.2195]

Running From: C:\SDFix

Safe Mode:
Checking Services:






Restoring Windows Registry Entries
Restoring Default Hosts File


Rebooting...

Normal Mode:
Checking Files:

Below files will be copied to Backups folder then removed:

C:\DOCUME~1\Client\LOCALS~1\Temp\ICD1.tmp\MsnPUpld.dll - Deleted
C:\DOCUME~1\Client\LOCALS~1\Temp\ICD1.tmp\MSNPupld.inf - Deleted
C:\DOCUME~1\Client\LOCALS~1\Temp\ICD1.tmp\PURen-us.dll - Deleted


Folder C:\DOCUME~1\Client\LOCALS~1\Temp\ICD1.tmp - Removed

ADS Check:

C:\WINNT\system32
No streams found.


Final Check:

Remaining Services:
------------------



Remaining Files:
---------------

Backups Folder: - C:\SDFix\backups\backups.zip

Checking For Files with Hidden Attributes :


Finished
0
kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011 > kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011
19 mars 2007 à 23:18
voici lautre !!!


Logfile of HijackThis v1.99.1
Scan saved at 18:15:24, on 2007-03-19
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\HPZipm12.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINNT\system32\notepad.exe
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\WINNT\system32\internat.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Documents and Settings\Client\Bureau\hjvirus\hijackthis_hijackthis_1.99.1_anglais_17891.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fsympatico.msn.ca%2fdefaultf.aspx%3f
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe
O4 - HKLM\..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [internat.exe] internat.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: Démarrage rapide du logiciel HP Image Zone.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: KODAK Software Updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logiciel Kodak EasyShare.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour\ExplorerPlugin.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by131fd.bay131.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9602.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O20 - Winlogon Notify: igfxcui - C:\WINNT\SYSTEM32\igfxsrvc.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Service Bonjour (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINNT\system32\drivers\KodakCCS.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINNT\system32\HPZipm12.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
0
bioman93 Messages postés 336 Date d'inscription dimanche 15 octobre 2006 Statut Membre Dernière intervention 25 juin 2009 4
19 mars 2007 à 21:58
Derien j'espère que je t'ai pas saouler ^^

A++
0
Utilisateur anonyme
20 mars 2007 à 01:08
Ok, merci.

¤ Installe ce pare-feu pour te protéger des attaques extérieure et te permettre de mieux contrôler tes applications.

Kerio (pare-feu) : reste gratuit après la période d'essai en français
----> http://www.infos-du-net.com/telecharger/Firewall-Kerio-Personal,0301-390.html

Regarde ce tutoriel si tu as besoin d'aide pour l'installation, la configuration et compréhension de Kerio
--> http://kerio.probb.fr/Systemesd-exploitation-c1/Logiciels-et-tutoriels-gratuits-tries-par-categorie-f6/Tutoriel-pour-Kerio-43635-t248.htm

Plus d'info :
->https://kerio.probb.fr/



¤ Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked"

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe
O4 - HKLM\..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [internat.exe] internat.exe
O4 - Global Startup: KODAK Software Updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logiciel Kodak EasyShare.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by131fd.bay131.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9602.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/



¤ Clic sur C:, WINNT, cherche et supprime ce dossier :

- web

¤ Clic sur C:,WINNT, et vide le contenu de ce dossier :

- Downloaded Program Files


¤ Clic sur C:, SDfix, double-clic sur RunThis.bat.
Appuie sur la touche "u" puis autorise ton pare-feu pour qu'il fasse la mise à jour. Soit patient(e) ça peut duré plusieurs minutes.
Une fois que la mise à jour est terminé, appuie sur une touche.
Réinstalle-le "install" il sera à la racine de ton disque dur C:
Redémarre en mode sans echec.
Entre dans le dossier SDfix, double-clic RunThis.bat , appuie sur Y puis fait comme tout à l'heure ;-)


¤ Dès que c'est fait :

Télécharge ComboScan sur ton bureau.
http://www.techsupportforum.com/sectools/Deckard/comboscan.exe

Ferme toutes les applications en cours : antivirus, pare-feu, etc .. C'est important !
Double-clic sur comboscan.exe.
A la fenêtre de prévention, clique sur OK.
L'analyse peut prendre quelques minutes.
A la fenêtre indiquant la fin de l'analyse, clique sur OK.
Le rapport Comboscan.txt s'affichera, copie et colle le contenu de ce rapport ici.

A++ ;-)
0
kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011
20 mars 2007 à 02:13
et voila jespere que je lai fait comme il faut pour ce qui est des application jespere avoir tout fermer mais est ce que c normal que mon avast ne saffiche plus ds ma barre en bas je ne le voit plus :S
merci


ComboScan v20070306.20 run by Client on 2007-03-19 at 21:06:16
Computer is in Normal Mode.
--------------------------------------------------------------------------------

Performed disk cleanup.


-- HijackThis (run as Client.exe) ----------------------------------------------

Logfile of HijackThis v1.99.1
Scan saved at 21:06:45, on 2007-03-19
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\HPZipm12.exe
C:\WINNT\system32\regsvc.exe
C:\WINNT\system32\MSTask.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\notepad.exe
C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Client\Bureau\comboscan.exe
C:\DOCUME~1\Client\Bureau\hjvirus\Client.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fsympatico.msn.ca%2fdefaultf.aspx%3f
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [DrvLsnr] C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe -AutoStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: Démarrage rapide du logiciel HP Image Zone.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logiciel Kodak EasyShare.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour\ExplorerPlugin.dll
O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
O20 - AppInit_DLLs: MsgPlusLoader.dll
O20 - Winlogon Notify: igfxcui - C:\WINNT\SYSTEM32\igfxsrvc.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Service Bonjour (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINNT\system32\drivers\KodakCCS.exe
O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINNT\system32\HPZipm12.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe


-- HijackThis Fixed Entries (C:\DOCUME~1\Client\Bureau\hjvirus\backups\) -------

backup-20070319-203829-294 O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
backup-20070319-203829-323 O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
backup-20070319-203829-385 O4 - Global Startup: KODAK Software Updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
backup-20070319-203829-405 O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
backup-20070319-203829-441 O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINNT\web\related.htm
backup-20070319-203829-481 O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
backup-20070319-203829-544 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
backup-20070319-203829-568 O4 - HKLM\..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
backup-20070319-203829-570 O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
backup-20070319-203829-602 O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by131fd.bay131.hotmail.msn.com/resources/MsnPUpld.cab
backup-20070319-203829-623 O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
backup-20070319-203829-685 O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
backup-20070319-203829-688 O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
backup-20070319-203829-719 O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
backup-20070319-203829-744 O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
backup-20070319-203829-776 O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
backup-20070319-203829-808 O4 - HKCU\..\Run: [internat.exe] internat.exe
backup-20070319-203829-831 O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINNT\system32\NeroCheck.exe
backup-20070319-203829-884 O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
backup-20070319-203829-887 O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
backup-20070319-203830-323 O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
backup-20070319-203830-790 O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9602.cab

-- File Associations -----------------------------------------------------------

.bat - batfile - "%1" %*
.chm - chm.file - "C:\WINNT\hh.exe" %1
.cmd - cmdfile - "%1" %*
.com - comfile - "%1" %*
.exe - exefile - "%1" %*
.hlp - hlpfile - %SystemRoot%\System32\winhlp32.exe %1
.inf - inffile - %SystemRoot%\System32\NOTEPAD.EXE %1
.ini - inifile - %SystemRoot%\System32\NOTEPAD.EXE %1
.js - JSFile - %SystemRoot%\System32\WScript.exe "%1" %*
.lnk - lnkfile - {00021401-0000-0000-C000-000000000046}
.pif - piffile - "%1" %*
.reg - regfile - regedit.exe "%1"
.scr - scrfile - "%1" /S
.txt - txtfile - %SystemRoot%\system32\NOTEPAD.EXE %1
.vbs - VBSFile - %SystemRoot%\System32\WScript.exe "%1" %*


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

1R Aavmker4 (avast! Asynchronous Virus Monitor) - C:\WINNT\system32\drivers\aavmker4.sys
3R aeaudio - C:\WINNT\system32\drivers\aeaudio.sys
2R aswMon (avast! Standard Shield Support) - C:\WINNT\system32\drivers\aswmon.sys
3R aswRdr - C:\WINNT\system32\drivers\aswRdr.sys
1R aswTdi (avast! Network Shield Support) - C:\WINNT\system32\drivers\aswTdi.sys
3S CCDECODE (Closed Caption Decoder) - C:\WINNT\system32\drivers\ccdecode.sys
1R Cdr4_2K - C:\WINNT\system32\drivers\cdr4_2k.sys
1R Cdralw2k - C:\WINNT\system32\drivers\cdralw2k.sys
1R DcCam (Kodak Camera Proxy) - C:\WINNT\system32\drivers\DcCam.sys
3S DcFpoint - C:\WINNT\system32\drivers\DcFpoint.sys
2R DCFS2K (Kodak DCFS2K Driver) - C:\WINNT\system32\drivers\DCFS2k.sys
3S DcLps (Legacy Polling Service) - C:\WINNT\system32\drivers\DcLps.sys
3S DcPTP - C:\WINNT\system32\drivers\DcPtp.sys
3R E100B (Intel(R) PRO Network Connection Driver) - C:\WINNT\system32\drivers\e100bnt5.sys
3S EL90BC (Pilote de carte 3Com EtherLink XL B/C) - C:\WINNT\system32\drivers\el90xbc5.sys
1S Exportit - C:\WINNT\system32\drivers\ExportIt.sys
1R fwdrv (Firewall Driver) - C:\WINNT\system32\drivers\fwdrv.sys
3R HPZid412 (IEEE-1284.4 Driver HPZid412) - C:\WINNT\system32\drivers\HPZid412.sys
3R HPZipr12 (Print Class Driver for IEEE-1284.4 HPZipr12) - C:\WINNT\system32\drivers\HPZipr12.sys
3R HPZius12 (USB to IEEE-1284.4 Translation Driver HPZius12) - C:\WINNT\system32\drivers\HPZius12.sys
3S ialm - C:\WINNT\system32\drivers\ialmnt5.sys
1R khips (Kerio HIPS Driver) - C:\WINNT\system32\drivers\khips.sys
3S MPE (BDA MPE Filter) - C:\WINNT\system32\drivers\mpe.sys
3S MSTEE (Convertisseur en T/site-à-site de répartition Microsoft) - C:\WINNT\system32\drivers\mstee.sys
3S NABTSFEC (NABTS/FEC VBI Codec) - C:\WINNT\system32\drivers\nabtsfec.sys
3S NdisIP (Microsoft TV/Video Connection) - C:\WINNT\system32\drivers\ndisip.sys
3R nv - C:\WINNT\system32\drivers\nv4_mini.sys
3S nv4 - C:\WINNT\system32\drivers\nv4.sys
0R PxHelp20 - C:\WINNT\system32\drivers\pxhelp20.sys
3S SLIP (BDA Slip De-Framer) - C:\WINNT\system32\drivers\slip.sys
3R smwdm - C:\WINNT\system32\drivers\smwdm.sys
3S streamip (BDA IPSink) - C:\WINNT\system32\drivers\streamip.sys
3R usbaudio (Pilote USB audio (WDM)) - C:\WINNT\system32\drivers\USBAUDIO.sys
3R usbprint (Classe d'imprimantes USB Microsoft) - C:\WINNT\system32\drivers\usbprint.sys
3R usbscan (Pilote de scanneur USB) - C:\WINNT\system32\drivers\usbscan.sys
3R USBSTOR (Pilote de stockage de masse USB) - C:\WINNT\system32\drivers\usbstor.sys
3S WSTCODEC (World Standard Teletext Codec) - C:\WINNT\system32\drivers\wstcodec.sys
3R Z302Mic (USB(VGA) Camera Mic Audio Filter Driver) - C:\WINNT\system32\drivers\UsbMicfilt.sys
3R ZSMC302 (USB(VGA) Camera) - C:\WINNT\system32\drivers\usbvm302.sys


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

3S aspnet_state (ASP.NET State Service) - C:\WINNT\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
2R aswUpdSv (avast! iAVS4 Control Service) - "C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"
2R avast! Antivirus - "C:\Program Files\Alwil Software\Avast4\ashServ.exe"
3R avast! Mail Scanner - "C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service
3R avast! Web Scanner - "C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service
2R Bonjour Service (Service Bonjour) - "C:\Program Files\Bonjour\mDNSResponder.exe"
3S clr_optimization_v2.0.50727_32 (.NET Runtime Optimization Service v2.0.50727_X86) - C:\WINNT\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
3S IDriverT (InstallDriver Table Manager) - "C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe"
3S KodakCCS (Kodak Camera Connection Software) - C:\WINNT\system32\drivers\KodakCCS.exe
2S KPF4 (Sunbelt Kerio Personal Firewall 4) - "C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe"
2R LightScribeService (LightScribeService Direct Disc Labeling Service) - "C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe"
2R NVSvc (NVIDIA Display Driver Service) - C:\WINNT\system32\nvsvc32.exe
2R Pml Driver HPZ12 - C:\WINNT\system32\HPZipm12.exe
2R SoundMAX Agent Service (default) (SoundMAX Agent Service) - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
2R StiSvc (Still Image Service) - C:\WINNT\system32\stisvc.exe
3S WmdmPmSN (Service de numéro de série du lecteur multimédia portable) - C:\WINNT\System32\svchost.exe -k netsvcs


-- Files created between 2007-02-19 and 2007-03-19 -----------------------------

2007-03-19 20:45:10 58952 --a------ C:\WINNT\system32\MsgPlusLoader.dll<MSGPLU~1.DLL>
2007-03-19 20:43:53 697975 --a------ C:\SDFix.exe
2007-03-19 20:25:01 0 d-------- C:\Program Files\Sunbelt Software<SUNBEL~1>
2007-03-19 17:52:13 0 d-------- C:\SDFix
2007-03-19 17:32:38 1866 --a------ C:\WINNT\system32\tmp.reg
2007-03-19 17:31:37 79360 --a------ C:\WINNT\system32\swxcacls.exe
2007-03-19 17:31:37 40960 --a------ C:\WINNT\system32\swsc.exe
2007-03-19 17:31:37 135168 --a------ C:\WINNT\system32\swreg.exe
2007-03-19 17:31:37 288417 --a------ C:\WINNT\system32\SrchSTS.exe
2007-03-19 17:31:37 53248 --a------ C:\WINNT\system32\Process.exe
2007-03-19 17:31:37 51200 --a------ C:\WINNT\system32\dumphive.exe
2007-03-18 18:09:33 0 d-------- C:\WINNT\BDOSCAN8
2007-03-18 13:40:48 0 d-------- C:\WINNT\report
2007-03-18 13:38:01 229957 --a------ C:\WINNT\tsc.exe
2007-03-18 13:38:01 71749 --a------ C:\WINNT\hcextoutput.dll<HCEXTO~1.DLL>
2007-03-18 13:38:01 0 d-------- C:\WINNT\AU_Backup<AU_BAC~1>
2007-03-18 13:38:00 1101904 --a------ C:\WINNT\vsapi32.dll
2007-03-18 13:38:00 86094 --a------ C:\WINNT\BPMNT.dll
2007-03-18 13:32:46 0 d-------- C:\WINNT\AU_Temp
2007-03-18 13:32:46 0 d-------- C:\WINNT\AU_Log
2007-03-18 13:32:43 69689 --a------ C:\WINNT\UNZIP.DLL
2007-03-18 13:32:43 507904 --a------ C:\WINNT\TMUPDATE.DLL
2007-03-18 13:32:42 286720 --a------ C:\WINNT\PATCH.EXE
2007-03-18 10:53:16 0 d-------- C:\Program Files\Windows Live Safety Center<WINDOW~4>
2007-03-18 09:20:54 0 d-a------ C:\Documents and Settings\All Users\Application Data\Avg7
2007-03-18 08:43:10 0 dr-h----- C:\$VAULT$.AVG
2007-03-18 08:40:36 0 d-------- C:\Documents and Settings\Default User\Application Data\Help
2007-03-18 08:12:50 0 d-------- C:\Program Files\Grisoft
2007-03-16 09:56:10 72496 --a------ C:\WINNT\system32\drivers\khips.sys
2007-03-16 09:56:06 302000 --a------ C:\WINNT\system32\drivers\fwdrv.sys
2007-03-12 15:31:01 0 d-------- C:\WINNT\system32\UpMedia
2007-02-23 08:29:12 0 d-------- C:\Program Files\Messenger<MESSEN~1>
2007-02-21 12:16:53 0 d-------- C:\Program Files\Msncolor
2007-02-20 18:35:13 0 d-------- C:\Program Files\Tronics
2007-02-20 09:25:17 0 d-------- C:\WINNT\winsxs
2007-02-20 09:25:17 0 d-------- C:\WINNT\PCHEALTH


-- Find3M Report ---------------------------------------------------------------

2007-03-19 18:49:57 0 d-------- C:\Program Files\Mozilla Firefox<MOZILL~1>
2007-03-19 09:45:18 0 d-------- C:\Documents and Settings\Client\Application Data\OpenOffice.org2<OPENOF~1.ORG>
2007-03-18 19:20:06 0 d-------- C:\Program Files\Room Arranger<ROOMAR~1>
2007-03-18 19:19:57 0 d-------- C:\Program Files\OpenOffice.org 2.0<OPENOF~1.0>
2007-03-18 18:56:52 0 d-------- C:\Program Files\AC3Filter<AC3FIL~1>
2007-03-18 09:20:51 0 d---s---- C:\Documents and Settings\Client\Application Data\Microsoft<MICROS~1>
2007-03-03 16:32:31 0 d-------- C:\Program Files\mIRC
2007-02-23 09:02:30 0 d-------- C:\Program Files\DivX
2007-02-23 08:34:08 0 d-------- C:\Program Files\MSN Messenger<MSNMES~1>
2007-02-21 09:10:38 454862 --a------ C:\WINNT\system32\perfh00C.dat
2007-02-21 09:10:38 72164 --a------ C:\WINNT\system32\perfc00C.dat
2007-02-20 09:27:37 0 d-a------ C:\Program Files\Fichiers communs\Microsoft Shared<MICROS~1>
2007-02-17 10:21:17 0 d-ah----- C:\Program Files\WindowsUpdate<WINDOW~3>
2007-02-13 07:11:21 0 d-------- C:\Documents and Settings\Client\Application Data\AdobeUM
2007-02-13 07:04:56 0 d-------- C:\Program Files\Fichiers communs\System
2007-02-13 07:03:50 0 d-------- C:\Program Files\MSXML 4.0<MSXML4~1.0>
2007-02-13 06:34:27 0 d-------- C:\Program Files\Java
2007-01-25 17:52:58 0 d-------- C:\Documents and Settings\Client\Application Data\Macromedia<MACROM~1>
2007-01-24 21:02:05 0 d-------- C:\Program Files\Fichiers communs\Adobe
2007-01-24 15:39:08 0 d-------- C:\Documents and Settings\Client\Application Data\Adobe
2007-01-22 18:27:22 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_448.dat<PERFLI~4.DAT>
2007-01-22 10:44:34 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_398.dat<PEDCE8~1.DAT>
2007-01-17 09:13:25 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_1f0.dat<PERFLI~3.DAT>
2007-01-16 07:46:10 4096 --a------ C:\WINNT\d3dx.dat
2007-01-16 07:45:40 577 --a------ C:\WINNT\PowerReg.dat
2007-01-15 12:32:07 689280 --a------ C:\WINNT\system32\aswBoot.exe
2007-01-15 12:23:20 90112 --a------ C:\WINNT\system32\AVASTSS.scr
2007-01-10 11:21:00 212992 --a------ C:\WINNT\system32\odbc32.dll
2007-01-07 08:29:41 1744 --a------ C:\WINNT\system32\d3d9caps.dat
2007-01-05 21:46:30 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_1fc.dat<PERFLI~2.DAT>
2007-01-05 08:49:50 22752 --a------ C:\WINNT\system32\spupdsvc.exe
2007-01-05 08:40:24 61712 --a------ C:\WINNT\system32\odbcji32.dll
2007-01-03 18:02:13 16384 --a-----t C:\WINNT\system32\Perflib_Perfdata_1f4.dat<PERFLI~1.DAT>
2007-01-02 18:59:54 359112 --a------ C:\Program Files\LimeWireWin.exe<LIMEWI~1.EXE>
2006-12-31 18:34:51 69636 --a------ C:\WINNT\hpoins05.dat
2006-12-29 17:56:05 1632 --a------ C:\WINNT\system32\d3d8caps.dat
2006-12-28 20:59:34 1367553 --a------ C:\Program Files\mirc621.exe
2006-12-28 19:30:22 4335 --a------ C:\WINNT\mozver.dat


-- Registry Dump ---------------------------------------------------------------


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"eMuleAutoStart"="C:\\Program Files\\eMule\\emule.exe -AutoStart"
"msnmsgr"="\"C:\\Program Files\\MSN Messenger\\msnmsgr.exe\" /background"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"Synchronization Manager"="mobsync.exe /logon"
"DrvLsnr"="C:\\Program Files\\Analog Devices\\SoundMAX\\DrvLsnr.exe"
"IgfxTray"="C:\\WINNT\\System32\\igfxtray.exe"
"HotKeysCmds"="C:\\WINNT\\System32\\hkcmd.exe"
"NWEReboot"=""
"NvCplDaemon"="RUNDLL32.EXE C:\\WINNT\\system32\\NvCpl.dll,NvStartup"

[HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce]
"^SetupICWDesktop"="C:\\Program Files\\Internet Explorer\\Connection Wizard\\icwconn1.exe /desktop"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"appinit_dlls"="MsgPlusLoader.dll"


[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"internat.exe"="internat.exe"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
rpcss REG_MULTI_SZ RpcSs\0\0
wugroup REG_MULTI_SZ wuauserv\0\0
BITSgroup REG_MULTI_SZ BITS\0\0



-- End of ComboScan: finished at 2007-03-19 at 21:07:38 ------------------------


il y avais cela aussi dafficher je te lai mis au cas ou loll

ComboScan v20070306.20 run by Client on 2007-03-19 at 21:06:16
Supplementary logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information ----------------------------------------------------------

Microsoft Windows 2000 Professionnel (build 2195) SP 4.0
Architecture: X86; Language: French

CPU 0: Intel(R) Pentium(R) 4 CPU 1.80GHz
Percentage of Memory in Use: 59%
Physical Memory (total/avail): 255.42 MiB / 104.4 MiB
Pagefile Memory (total/avail): 604.83 MiB / 303.84 MiB
Virtual Memory (total/avail): 2047.88 MiB / 2014.77 MiB

A: is Removable (No Media)
C: is Fixed (NTFS) - 18.64 GiB total, 8.32 GiB free.
D: is CDROM (No Media)
E: is Removable (No Media)


-- Security Center -------------------------------------------------------------

AUOptions is scheduled to auto-install.


-- Environment Variables -------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Client\Application Data
CommonProgramFiles=C:\Program Files\Fichiers communs
COMPUTERNAME=COMPAQ-EVO
ComSpec=C:\WINNT\system32\cmd.exe
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Client
LOGONSERVER=\\COMPAQ-EVO
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Os2LibPath=C:\WINNT\system32\os2\dll;
Path=C:\Program Files\Internet Explorer;;C:\WINNT\system32;C:\WINNT;C:\WINNT\System32\Wbem
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 1 Stepping 2, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0102
ProgramFiles=C:\Program Files
PROMPT=$P$G
SystemDrive=C:
SystemRoot=C:\WINNT
TEMP=C:\DOCUME~1\Client\LOCALS~1\Temp
TMP=C:\DOCUME~1\Client\LOCALS~1\Temp
USERDOMAIN=COMPAQ-EVO
USERNAME=Client
USERPROFILE=C:\Documents and Settings\Client
windir=C:\WINNT


-- User Profiles ---------------------------------------------------------------

Client [I](admin)[/I]


-- Add/Remove Programs ---------------------------------------------------------

--> C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
--> C:\WINNT\IsUninst.exe -fC:\WINNT\system32\UninstIPP.isu
123 Free Solitaire --> C:\PROGRA~1\123FRE~1\UNWISE.EXE C:\PROGRA~1\123FRE~1\INSTALL.LOG
AC3Filter (remove only) --> C:\Program Files\AC3Filter\uninstall.exe
Ad-Aware SE Personal --> C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
Adobe Acrobat 5.0 --> C:\WINNT\ISUN040C.EXE -f"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Fichiers communs\Adobe\Acrobat 5.0\NT\Uninst.dll"
Adobe Reader 7.0.9 - Français --> MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A70900000002}
Adobe Shockwave Player --> C:\WINNT\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINNT\system32\Macromed\SHOCKW~1\Install.log
Apple Software Update --> MsiExec.exe /I{A50C25D7-62E9-4511-AD70-8E2DA5E79B7D}
avast! Antivirus --> rundll32 C:\PROGRA~1\ALWILS~1\Avast4\Setup\setiface.dll,RunSetup
Bonjour --> C:\Program Files\Fichiers communs\InstallShield\Driver\8\Intel 32\IDriver.exe /M{E0A96F36-D546-4A2A-BDAA-2A2A578B2C0D} /l1036
CCScore --> MsiExec.exe /I{B4B44FE7-41FF-4DAD-8C0A-E406DDA72992}
CoreVorbis Audio Decoder (remove only) --> "C:\WINNT\system32\CoreVorbis-uninstall.exe"
Correctif cumulatif 1 pour Windows 2000 SP4 --> "C:\WINNT\$NtUpdateRollupPackUninstall$\spuninst\spuninst.exe"
Correctif Lecteur Windows Media 9 [Voir KB885492 pour plus d'informations] --> C:\WINNT\$NtUninstallKB885492$\spuninst\spuninst.exe
Correctif pour le Lecteur Windows Media [Voir Q828026 pour plus d'informations] --> C:\WINNT\$NtUninstallQ828026$\spuninst\spuninst.exe
Correctif Windows 2000 - KB842773 --> C:\WINNT\$NtUninstallKB842773$\spuninst\spuninst.exe
Correctif Windows 2000 - KB887797 --> C:\WINNT\$NtUninstallKB887797-OE6SP1-20041112.131144$\spuninst\spuninst.exe
Correctif Windows 2000 - KB889293 --> C:\WINNT\$NtUninstallKB889293-IE6SP1-20041111.235619$\spuninst\spuninst.exe
Correctif Windows 2000 - KB890046 --> "C:\WINNT\$NtUninstallKB890046$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB893756 --> "C:\WINNT\$NtUninstallKB893756$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB896358 --> "C:\WINNT\$NtUninstallKB896358$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB896422 --> "C:\WINNT\$NtUninstallKB896422$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB896423 --> "C:\WINNT\$NtUninstallKB896423$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB896424 --> "C:\WINNT\$NtUninstallKB896424$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB896688 --> "C:\WINNT\$NtUninstallKB896688-IE6SP1-20051004.130236$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB897715 --> "C:\WINNT\$NtUninstallKB897715-OE6SP1-20050503.210336$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB899587 --> "C:\WINNT\$NtUninstallKB899587$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB899589 --> "C:\WINNT\$NtUninstallKB899589$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB900725 --> "C:\WINNT\$NtUninstallKB900725$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB901017 --> "C:\WINNT\$NtUninstallKB901017$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB901214 --> "C:\WINNT\$NtUninstallKB901214$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB902400 --> "C:\WINNT\$NtUninstallKB902400$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB905414 --> "C:\WINNT\$NtUninstallKB905414$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB905495 --> "C:\WINNT\$NtUninstallKB905495-IE6SP1-20050805.184113$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB905749 --> "C:\WINNT\$NtUninstallKB905749$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB908519 --> "C:\WINNT\$NtUninstallKB908519$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB908523 --> "C:\WINNT\$NtUninstallKB908523$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB908531 --> "C:\WINNT\$NtUninstallKB908531$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB911280 --> "C:\WINNT\$NtUninstallKB911280$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB911567 --> "C:\WINNT\$NtUninstallKB911567-OE6SP1-20060316.165634$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB912919 --> "C:\WINNT\$NtUninstallKB912919$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB913580 --> "C:\WINNT\$NtUninstallKB913580$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB914388 --> "C:\WINNT\$NtUninstallKB914388$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB914389 --> "C:\WINNT\$NtUninstallKB914389$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB916281 --> "C:\WINNT\$NtUninstallKB916281-IE6SP1-20060526.162249$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB917008 --> "C:\WINNT\$NtUninstallKB917008$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB917159 --> "C:\WINNT\$NtUninstallKB917159$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB917422 --> "C:\WINNT\$NtUninstallKB917422$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB917537 --> "C:\WINNT\$NtUninstallKB917537$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB917736 --> "C:\WINNT\$NtUninstallKB917736$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB917953 --> "C:\WINNT\$NtUninstallKB917953$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB918118 --> "C:\WINNT\$NtUninstallKB918118$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB920213 --> "C:\WINNT\$NtUninstallKB920213$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB920670 --> "C:\WINNT\$NtUninstallKB920670$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB920683 --> "C:\WINNT\$NtUninstallKB920683$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB920685 --> "C:\WINNT\$NtUninstallKB920685$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB920958 --> "C:\WINNT\$NtUninstallKB920958$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB921398 --> "C:\WINNT\$NtUninstallKB921398$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB922582 --> "C:\WINNT\$NtUninstallKB922582$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB922616 --> "C:\WINNT\$NtUninstallKB922616$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB923191 --> "C:\WINNT\$NtUninstallKB923191$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB923414 --> "C:\WINNT\$NtUninstallKB923414$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB923694 --> "C:\WINNT\$NtUninstallKB923694-OE6SP1-20061106.120000$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB923980 --> "C:\WINNT\$NtUninstallKB923980$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB924191 --> "C:\WINNT\$NtUninstallKB924191$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB924270 --> "C:\WINNT\$NtUninstallKB924270$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB924667 --> "C:\WINNT\$NtUninstallKB924667$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB925454 --> "C:\WINNT\$NtUninstallKB925454-IE6SP1-20061116.120000$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB926436 --> "C:\WINNT\$NtUninstallKB926436$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB928090 --> "C:\WINNT\$NtUninstallKB928090-IE6SP1-20070125.120000$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB928843 --> "C:\WINNT\$NtUninstallKB928843$\spuninst\spuninst.exe"
Correctif Windows 2000 - KB929969 --> "C:\WINNT\$NtUninstallKB929969-IE6SP1-20061220.120000$\spuninst\spuninst.exe"
Correctif Windows 2000 (SP5) Q818043 --> C:\WINNT\$NtUninstallQ818043$\spuninst\spuninst.exe
Direct Show Ogg Vorbis Filter (remove only) --> "C:\WINNT\system32\OggDSuninst.exe"
Disney Tarzan, Atelier de Jeux --> C:\WINNT\IsUn040c.exe -fC:\PROGRA~1\DISNEY~1\DISNEY~1\DeIsL1.isu
DivX Codec --> C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Player --> C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player --> C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
ESSBrwr --> MsiExec.exe /I{643EAE81-920C-4931-9F0B-4B343B225CA6}
ESSCDBK --> MsiExec.exe /I{AE1FA02D-E6A4-4EA0-8E58-6483CAC016DD}
ESScore --> MsiExec.exe /I{9D8FEE90-0377-49A9-AEFB-525BDE549BA4}
ESSgui --> MsiExec.exe /I{91517631-A9F3-4B7C-B482-43E0068FD55A}
ESShelp --> MsiExec.exe /I{87843A41-7808-4F2E-B13F-25C1E67CF2FD}
ESSini --> MsiExec.exe /I{8E92D746-CD9F-4B90-9668-42B74C14F765}
ESSPCD --> MsiExec.exe /I{14D4ED84-6A9A-45A0-96F6-1753768C3CB5}
ESSPDock --> MsiExec.exe /I{FCDB1C92-03C6-4C76-8625-371224256091}
ESSSONIC --> MsiExec.exe /I{073F22CE-9A5B-4A40-A604-C7270AC6BF34}
ESSTOOLS --> MsiExec.exe /I{8A502E38-29C9-49FA-BCFA-D727CA062589}
essvatgt --> MsiExec.exe /I{2D03B6F8-DF36-4980-B7B6-5B93D5BA3A8F}
essvcpt --> MsiExec.exe /I{D1973749-F5E7-40EB-B528-F2B78685B9FF}
ffdshow (remove only) --> "C:\Program Files\ffdshow\uninstall.exe"
Halo Zero V1.8.6 --> C:\Program Files\Dobermann\Halo Zero\Uninstal.exe
HijackThis 1.99.1 --> C:\Documents and Settings\Client\Bureau\hjvirus\HijackThis.exe /uninstall
HLPPDOCK --> MsiExec.exe /I{154508C0-07C5-4659-A7A0-E49968750D21}
HP Extended Capabilities 4.7 --> C:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Image Zone 4.7 --> C:\Program Files\HP\Digital Imaging\uninstall\hpzscr01.exe -datfile hpqscr01.dat
HP PSC & OfficeJet 4.7 --> "C:\Program Files\HP\Digital Imaging\{342C7C88-D335-4bc2-8CF1-281857629CE2}\setup\hpzscr01.exe" -datfile hposcr05.dat
HP Software Update --> MsiExec.exe /X{64FC0C98-B035-4530-B15D-3D30610B6DF1}
Huffyuv AVI lossless video codec (Remove Only) --> rundll.exe setupx.dll,InstallHinfSection DefaultUninstall 132 C:\WINNT\INF\HUFFYUV.INF
Ink --> MsiExec.exe /I{9FCB2876-554D-491D-A2CD-58F8252D6C64}
Intel(R) Extreme Graphics Driver --> RUNDLL32.EXE C:\WINNT\System32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_2562
Intel(R) PRO Network Connections Drivers --> Prounstl.exe
J2SE Runtime Environment 5.0 Update 11 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150110}
J2SE Runtime Environment 5.0 Update 8 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150080}
Java 2 Runtime Environment, SE v1.4.2_04 --> MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142040}
kgcbaby --> MsiExec.exe /I{E18B549C-5D15-45DA-8D8F-8FD2BD946344}
kgcbase --> MsiExec.exe /I{F22C222C-3CE2-4A4B-A83F-AF4681371ABE}
kgchday --> MsiExec.exe /I{11F3F858-4131-4FFA-A560-3FE282933B6E}
kgchlwn --> MsiExec.exe /I{03EDED24-8375-407D-A721-4643D9768BE1}
kgcinvt --> MsiExec.exe /I{9BD54685-1496-46A5-AB62-357CD140ED8B}
kgckids --> MsiExec.exe /I{693C08A7-9E76-43FF-B11E-9A58175474C4}
kgcmove --> MsiExec.exe /I{A1588373-1D86-4D44-86C9-78ABD190F9CC}
kgcvday --> MsiExec.exe /I{8A8664E1-84C8-4936-891C-BC1F07797549}
KSU --> MsiExec.exe /I{B997C2A0-4383-41BF-B76E-9B8B7ECFB267}
Language pack for Ad-Aware SE --> C:\PROGRA~1\Lavasoft\AD-AWA~1\Plugins\Langs\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\Plugins\Langs\INSTALL.LOG
LimeWire 4.12.6 --> "C:\Program Files\LimeWire\uninstall.exe"
Logiciel Kodak EasyShare --> C:\Documents and Settings\All Users\Application Data\Kodak\EasyShareSetup\$SETUP_140010_96904cd\Setup.exe /APR-REMOVE
Messenger Plus! 3 --> "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /Remove
Microsoft .NET Framework 1.1 --> msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1 --> MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1 French Language Pack --> MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
Microsoft .NET Framework 1.1 Hotfix (KB886903) --> "C:\WINNT\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINNT\Microsoft.NET\Framework\v1.1.4322\Updates\M886903\M886903Uninstall.msp"
Microsoft .NET Framework 2.0 --> C:\WINNT\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft Office PowerPoint Viewer 2003 --> MsiExec.exe /X{90AF040C-6000-11D3-8CFE-0150048383C9}
mIRC --> "C:\Program Files\mIRC\mirc.exe" -uninstall
Mise à jour de sécurité pour Lecteur Windows Media (KB911564) --> "C:\WINNT\$NtUninstallKB911564$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398) --> "C:\WINNT\$NtUninstallKB925398_WMP64$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Lecteur Windows Media 9 (KB917734) --> "C:\WINNT\$NtUninstallKB917734_WMP9$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows 2000 (KB904706) --> "C:\WINNT\$NtUninstallKB904706$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows 2000 (KB923689) --> "C:\WINNT\$NtUninstallKB923689$\spuninst\spuninst.exe"
Mise à jour système du Lecteur Windows Media (Série 9) --> C:\PROGRA~1\WINDOW~2\setup_wm.exe /Uninstall
Morgan Stream Switcher --> "C:\Program Files\Morgan\mmswitch\uninst.exe"
Mozilla Firefox (1.5.0.10) --> C:\PROGRA~1\MOZILL~1\uninstall\uninstall.exe /ua "1.5.0.10 (fr)"
MSN Messenger 7.0 --> MsiExec.exe /I{ABEB838C-A1A7-4C5D-B7E1-8B4314600816}
MSXML 4.0 SP2 (KB927978) --> MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
Nero Burning Rom Screensaver --> C:\WINNT\Nero Burning Rom Screensaver.scr /u
Nero Suite --> C:\Program Files\Fichiers communs\Nero\Uninstall\Setupx.exe /uninstall ExtraUninstallID=""
NickToons Racing --> RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4B4F81E0-9150-11D4-A594-0050BAC6946A}\setup.exe"
Notifier --> MsiExec.exe /I{0008546E-DF6E-4CC1-AFD0-2CB8E16C95A2}
NVIDIA Drivers --> C:\WINNT\system32\nvudisp.exe UninstallGUI
OfotoXMI --> MsiExec.exe /I{B162D0A6-9A1D-4B7C-91A5-88FB48113C45}
OpenOffice.org 2.0 --> MsiExec.exe /I{E2C356F6-84B5-4CCB-8FED-12E0F1C2E97B}
OTtBP --> MsiExec.exe /I{F71760CD-0F8B-4DCC-B7B7-6B223CC3843C}
OTtBPSDK --> MsiExec.exe /I{3CA39B0C-BA85-4D42-AC0F-1FF5F60C3353}
PC Wizard 2005.1.65 --> "C:\Program Files\PC Wizard 2005\unins000.exe"
PowerArchiver --> C:\Program Files\PowerArchiver\UNINST.EXE
Presto! Mr. Photo --> C:\WINNT\IsUn040c.exe -f"C:\Program Files\NewSoft\MrPhoto16\DeIsL1.isu"
Presto! VideoWorks 4.5 --> RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{39D8C213-B0DF-11D5-9293-0050BA073EEC}\Setup.exe" -l0x40c
Pseudo MSN Couleur --> MsiExec.exe /I{0A8F0B94-04B2-434E-8535-A8AAFF6DA723}
Room Arranger (remove only) --> "C:\Program Files\Room Arranger\uninstall.exe"
Security Update for Microsoft .NET Framework 2.0 (KB922770) --> C:\WINNT\system32\msiexec.exe /promptrestart /uninstall {0E92DD42-76F5-4EF2-B381-F9C1D72BE23D} /package {7131646D-CD3C-40F4-97B9-CD9E4E6262EF}
Security Update pour Microsoft .NET Framework 2.0 (KB917283) --> C:\WINNT\system32\msiexec.exe /promptrestart /uninstall {967B098A-042D-4367-BAC9-8BC11684174F} /package {7131646D-CD3C-40F4-97B9-CD9E4E6262EF}
SFR --> MsiExec.exe /I{DB02F716-6275-42E9-B8D2-83BA2BF5100B}
SHASTA --> MsiExec.exe /I{605A4E39-613C-4A12-B56F-DEFBE6757237}
SKIN0001 --> MsiExec.exe /I{FDF9943A-3D5C-46B3-9679-586BD237DDEE}
SKINXSDK --> MsiExec.exe /I{F4A2E7CC-60CA-4AFA-B67F-AD5E58173C3F}
SoundMAX --> RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F0A37341-D692-11D4-A984-009027EC0A9C}\Setup.exe"
Spybot - Search & Destroy 1.4 --> "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
staticcr --> MsiExec.exe /I{8943CE61-53BD-475E-90E1-A580869E98A2}
Sunbelt Kerio Personal Firewall --> MsiExec.exe /X{E659E0EE-10E6-49B7-8696-60F38D0EB174}
UNO© Freeware --> C:\WINNT\GPInstall.exe "/UNINST=C:\Program Files\UNO Freeware\UnInst.log" "/APPNAME=UNO© Freeware"
USB(VGA) Camera --> C:\Program Files\InstallShield Installation Information\{93897DBF-9110-40EE-AB53-0A464BC1EA25}\Setup.exe 1
VPRINTOL --> MsiExec.exe /I{999D43F4-9709-4887-9B1A-83EBB15A8370}
Windows 2000 Service Pack 4 --> C:\WINNT\$NtServicePackUninstall$\spuninst\spuninst.exe
Windows Genuine Advantage v1.3.0254.0 --> MsiExec.exe /I{63569CE9-FA00-469C-AF5C-E5D4D93ACF91}
Windows Live OneCare safety scanner --> RunDll32.exe "C:\Program Files\Windows Live Safety Center\wlscCore.dll",UninstallFunction WLSC_SCANNER_PRODUCT
WIRELESS --> MsiExec.exe /I{F9593CFB-D836-49BC-BFF1-0E669A411D9F}
XviD MPEG-4 Video Codec --> "C:\Program Files\XviD\unins000.exe"


-- End of ComboScan: finished at 2007-03-19 at 21:07:38 ------------------------



0
Utilisateur anonyme
20 mars 2007 à 04:16
Merci

désolé pour Avast, fais ceci :

- Ouvre hijackthis
- Clic sur "view the list of backups"
- coche la case devant cette ligne "O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" puis clic sur "RESTORE" présent sur la droite


¤ Désinstalle ces programmes :

- J2SE Runtime Environment 5.0 Update 8
- Java 2 Runtime Environment, SE v1.4.2_04


¤ Clic sur C:, et supprime ce dossier :

- $VAULT$.AVG


¤ Clic sur C:, WINNT cherche et supprime ce fichier :

- d3dx.dat

**Si un fichier/dossier persiste lors de la suppression fait ceci:
- Redémarre ton PC. Dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaître choisis "mode sans echec" attends un peu..
Puis va supprimer les fichiers/dossiers, vide ta corbeille et redémarre ton PC normalement.



¤ Clic sur "démarrer", "exécuter", tape: services.msc
Cherche dans la liste les lignes ci-dessous, tu fais un clic droit dessus choisis "propriétés" et régle les sur "désactivé"

- InstallDriver Table Manager
- NVIDIA Display Driver Service



¤ Rend toi sur cette page et enregistre le fichier ou tu le retrouveras facilement.
https://www.silentrunners.org/Silent%20Runners.vbs

Double-clic dessus, un message va apparaître clic sur "YES"
Attends quelques minutes, il va créer un fichier texte juste à côté de SilentRunners (Startup Programs ...)
Attends qu'un message t'avertis et clic sur "OK"
Ensuite, copie et colle le contenu de ce fichier ici.



¤ Télécharge et installe AVG anti-spyware :
Tu fais un scan complet de ton système, dès qu'il a fini.
Si il te trouve des espions, supprime les. Enregistre le rapport et colle le ici stp

AVG anti-spyware : reste gratuit après la période d'essai en français
---->http://www.infos-du-net.com/telecharger/Anti-Spyware-AVG,0301-7063.html

Si tu as besoin d'aide avec Ewido(devenu AVG-antispyware) regarde ce tutoriel:
--> http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html


A plus tard ;-)
0
voila le raport jespere que c le bon!!
a+


"Silent Runners.vbs", revision R50, https://www.silentrunners.org/
Operating System: Windows 2000
Output limited to non-default values, except where indicated by "{++}"


Startup items buried in registry:
---------------------------------

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++}
"eMuleAutoStart" = "C:\Program Files\eMule\emule.exe -AutoStart" [file not found]
"msnmsgr" = ""C:\Program Files\MSN Messenger\msnmsgr.exe" /background" [MS]

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ {++}
"Synchronization Manager" = "mobsync.exe /logon" [MS]
"DrvLsnr" = "C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe" ["adi"]
"IgfxTray" = "C:\WINNT\System32\igfxtray.exe" ["Intel Corporation"]
"HotKeysCmds" = "C:\WINNT\System32\hkcmd.exe" ["Intel Corporation"]
"NWEReboot" = "(empty string)" [file not found]
"NvCplDaemon" = "RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup" [MS]
"avast!" = "C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [null data]

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\(Default) = (no title provided)
-> {HKLM...CLSID} = "Adobe PDF Reader Link Helper"
\InProcServer32\(Default) = "C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll" ["Adobe Systems Incorporated"]
{53707962-6F74-2D53-2644-206D7942484F}\(Default) = (no title provided)
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\PROGRA~1\SPYBOT~1\SDHelper.dll" ["Safer Networking Limited"]

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
"{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Extension Affichage Panorama du Panneau de configuration"
-> {HKLM...CLSID} = "Extension Affichage Panorama du Panneau de configuration"
\InProcServer32\(Default) = "deskpan.dll" [file not found]
"{88895560-9AA2-1069-930E-00AA0030EBC8}" = "HyperTerminal Icon Ext"
-> {HKLM...CLSID} = "HyperTerminal Icon Ext"
\InProcServer32\(Default) = "C:\WINNT\System32\hticons.dll" ["Hilgraeve, Inc."]
0
kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011
20 mars 2007 à 19:54
salut est ce que c normal que quand jessaye daller sur certaine page web ca me dise que elle vont saffiche mal vue que mon active X est cocher ds mon antispyware???
0
Utilisateur anonyme
20 mars 2007 à 19:54
Oui, c'est le bon mais il n'est pas complet ;-)
Pense à AVG anti-spywares

A++
0
kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011
20 mars 2007 à 19:55
celui la ????


:mozilla.26:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.27:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
C:\Documents and Settings\Client\Local Settings\Temp\Cookies\client@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.171:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.188:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.75:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.76:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.77:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Client\Local Settings\Temp\Cookies\client@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.57:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.187:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
:mozilla.176:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Com : Nettoyé.
:mozilla.102:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Counted : Nettoyé.
:mozilla.18:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
:mozilla.124:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
:mozilla.19:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.20:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.21:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.22:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.23:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.24:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.12:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.13:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.14:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.25:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.67:C:\Documents and Settings\Client\Application Data\Mozilla\Firefox\Profiles\qnvhsnav.default\cookies.txt -> TrackingCookie.Webtrendslive : Nettoyé.


Fin du rapport
0
kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011
20 mars 2007 à 20:09
salut est ce que c normal que quand jessaye daller sur certaine page web ca me dise que elle vont saffiche mal vue que mon active X est cocher ds mon antispyware???
0
Utilisateur anonyme
20 mars 2007 à 20:12
Euh ! sais-tu de quel anti-spyware il s'agit ? ça me semble louche quand même pour le moment ne fait rien.
Puis renvoi moi un rapport silentrunners en entier ;-)
0
kina26 Messages postés 143 Date d'inscription dimanche 18 mars 2007 Statut Membre Dernière intervention 6 mai 2011
20 mars 2007 à 20:20
c lanti spyware que tu ma fait installer depuis que jai desativer les chose que tu ma dit ca me bug sur des page web !!


"Silent Runners.vbs", revision R50, https://www.silentrunners.org/
Operating System: Windows 2000
Output limited to non-default values, except where indicated by "{++}"


Startup items buried in registry:
---------------------------------

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++}
"eMuleAutoStart" = "C:\Program Files\eMule\emule.exe -AutoStart" [file not found]
"msnmsgr" = ""C:\Program Files\MSN Messenger\msnmsgr.exe" /background" [MS]

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ {++}
"Synchronization Manager" = "mobsync.exe /logon" [MS]
"DrvLsnr" = "C:\Program Files\Analog Devices\SoundMAX\DrvLsnr.exe" ["adi"]
"IgfxTray" = "C:\WINNT\System32\igfxtray.exe" ["Intel Corporation"]
"HotKeysCmds" = "C:\WINNT\System32\hkcmd.exe" ["Intel Corporation"]
"NWEReboot" = "(empty string)" [file not found]
"NvCplDaemon" = "RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup" [MS]
"avast!" = "C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [null data]
"!AVG Anti-Spyware" = ""C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized" ["Anti-Malware Development a.s."]

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\(Default) = (no title provided)
-> {HKLM...CLSID} = "Adobe PDF Reader Link Helper"
\InProcServer32\(Default) = "C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll" ["Adobe Systems Incorporated"]
{53707962-6F74-2D53-2644-206D7942484F}\(Default) = (no title provided)
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\PROGRA~1\SPYBOT~1\SDHelper.dll" ["Safer Networking Limited"]

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
"{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Extension Affichage Panorama du Panneau de configuration"
-> {HKLM...CLSID} = "Extension Affichage Panorama du Panneau de configuration"
\InProcServer32\(Default) = "deskpan.dll" [file not found]
"{88895560-9AA2-1069-930E-00AA0030EBC8}" = "HyperTerminal Icon Ext"
-> {HKLM...CLSID} = "HyperTerminal Icon Ext"
\InProcServer32\(Default) = "C:\WINNT\System32\hticons.dll" ["Hilgraeve, Inc."]
"{1CDB2949-8F65-4355-8456-263E7C208A5D}" = "Desktop Explorer"
-> {HKLM...CLSID} = "Desktop Explorer"
\InProcServer32\(Default) = "C:\WINNT\system32\nvshell.dll" ["NVIDIA Corporation"]
"{1E9B04FB-F9E5-4718-997B-B8DA88302A47}" = "Desktop Explorer Menu"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\WINNT\system32\nvshell.dll" ["NVIDIA Corporation"]
"{1E9B04FB-F9E5-4718-997B-B8DA88302A48}" = "nView Desktop Context Menu"
-> {HKLM...CLSID} = "nView Desktop Context Menu"
\InProcServer32\(Default) = "C:\WINNT\system32\nvshell.dll" ["NVIDIA Corporation"]
"{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}" = "OpenOffice.org Column Handler"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = ""C:\Program Files\OpenOffice.org 2.0\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
"{087B3AE3-E237-4467-B8DB-5A38AB959AC9}" = "OpenOffice.org Infotip Handler"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = ""C:\Program Files\OpenOffice.org 2.0\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
"{63542C48-9552-494A-84F7-73AA6A7C99C1}" = "OpenOffice.org Property Sheet Handler"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = ""C:\Program Files\OpenOffice.org 2.0\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
"{3B092F0C-7696-40E3-A80F-68D74DA84210}" = "OpenOffice.org Thumbnail Viewer"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = ""C:\Program Files\OpenOffice.org 2.0\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
"{472083B0-C522-11CF-8763-00608CC02F24}" = "avast"
-> {HKLM...CLSID} = "avast"
\InProcServer32\(Default) = "C:\Program Files\Alwil Software\Avast4\ashShell.dll" ["ALWIL Software"]
"{acb4a560-3606-11d3-aef4-00104bd0f92d}" = "KodakShellExtension"
-> {HKLM...CLSID} = "KodakShellExtension"
\InProcServer32\(Default) = "C:\Program Files\Fichiers communs\Kodak\ifscore\KodakShX.dll" ["Eastman Kodak Company"]
"{9999A076-A9E2-4C99-8A2B-632FC9429223}" = "Bonjour"
-> {HKLM...CLSID} = "Bonjour"
\InProcServer32\(Default) = "C:\Program Files\Bonjour\ExplorerPlugin.dll" ["Apple Computer, Inc."]

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\
<<!>> "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}" = "AVG Anti-Spyware 7.5"
-> {HKLM...CLSID} = "CShellExecuteHookImpl Object"
\InProcServer32\(Default) = "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll" ["Anti-Malware Development a.s."]

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Windows\
<<!>> "AppInit_DLLs" = "MsgPlusLoader.dll" ["Patchou"]

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\
<<!>> igfxcui\DLLName = "igfxsrvc.dll" ["Intel Corporation"]

HKLM\Software\Classes\Folder\shellex\ColumnHandlers\
{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\(Default) = "OpenOffice.org Column Handler"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = ""C:\Program Files\OpenOffice.org 2.0\program\shlxthdl.dll"" ["Sun Microsystems, Inc."]
{F9DB5320-233E-11D1-9F84-707F02C10627}\(Default) = "PDF Column Info"
-> {HKLM...CLSID} = "PDF Shell Extension"
\InProcServer32\(Default) = "C:\Program Files\Adobe\Acrobat 7.0\ActiveX\PDFShell.dll" ["Adobe Systems, Inc."]

HKLM\Software\Classes\*\shellex\ContextMenuHandlers\
avast\(Default) = "{472083B0-C522-11CF-8763-00608CC02F24}"
-> {HKLM...CLSID} = "avast"
\InProcServer32\(Default) = "C:\Program Files\Alwil Software\Avast4\ashShell.dll" ["ALWIL Software"]
AVG Anti-Spyware\(Default) = "{8934FCEF-F5B8-468f-951F-78A921CD3920}"
-> {HKLM...CLSID} = "CContextScan Object"
\InProcServer32\(Default) = "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\context.dll" ["Anti-Malware Development a.s."]
PowerArchiver\(Default) = "{d03d3e68-0c44-3d45-b15f-bcfd8a8b4c7e}"
-> {HKLM...CLSID} = "PowerArchiver Shell Extensions"
\InProcServer32\(Default) = "C:\Program Files\PowerArchiver\PASHLEXT.DLL" ["eFront Media, Inc."]

HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\
AVG Anti-Spyware\(Default) = "{8934FCEF-F5B8-468f-951F-78A921CD3920}"
-> {HKLM...CLSID} = "CContextScan Object"
\InProcServer32\(Default) = "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\context.dll" ["Anti-Malware Development a.s."]

HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\
avast\(Default) = "{472083B0-C522-11CF-8763-00608CC02F24}"
-> {HKLM...CLSID} = "avast"
\InProcServer32\(Default) = "C:\Program Files\Alwil Software\Avast4\ashShell.dll" ["ALWIL Software"]
PowerArchiver\(Default) = "{d03d3e68-0c44-3d45-b15f-bcfd8a8b4c7e}"
-> {HKLM...CLSID} = "PowerArchiver Shell Extensions"
\InProcServer32\(Default) = "C:\Program Files\PowerArchiver\PASHLEXT.DLL" ["eFront Media, Inc."]


Default executables:
--------------------

<<!>> HKLM\Software\Classes\htafile\shell\open\command\(Default) = "C:\WINDOWS\system32\mshta.exe "%1" %*" [file not found]


Group Policies {GPedit.msc branch and setting}:
-----------------------------------------------

Note: detected settings may not have any effect.

HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\

"CDRAutoRun" = (REG_DWORD) hex:0x00000000
{unrecognized setting}

HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\

"DisableRegistryTools" = (REG_DWORD) hex:0x00000000
{User Configuration|Administrative Templates|System|
Disable registry editing tools}

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\

"shutdownwithoutlogon" = (REG_DWORD) hex:0x00000001
{Computer Configuration|Windows Settings|Security Settings|Local Policies|Security Options|
Shutdown: Allow system to be shut down without having to log on}


Active Desktop and Wallpaper:
-----------------------------

Active Desktop may be enabled at this entry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState

Displayed if Active Desktop enabled and wallpaper not set by Group Policy:
HKCU\Software\Microsoft\Internet Explorer\Desktop\General\
"Wallpaper" = "C:\Documents and Settings\Default User\Mes documents\Mes images\second26.jpg"

Displayed if Active Desktop disabled and wallpaper not set by Group Policy:
HKCU\Control Panel\Desktop\
"Wallpaper" = "C:\WINNT\Web\Wallpaper\Mégavague.bmp"


Startup items in "Client" & "All Users" startup folders:
--------------------------------------------------------

C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
"Démarrage rapide du logiciel HP Image Zone" -> shortcut to: "C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe -s" [null data]
"HP Digital Imaging Monitor" -> shortcut to: "C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe" ["Hewlett-Packard Co."]
"Lancement rapide d'Adobe Reader" -> shortcut to: "C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe" ["Adobe Systems Incorporated"]
"Logiciel Kodak EasyShare" -> shortcut to: "C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe -hx" [null data]


Winsock2 Service Provider DLLs:
-------------------------------

Namespace Service Providers

HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}
000000000001\LibraryPath = "%SystemRoot%\System32\rnr20.dll" [MS]
000000000002\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS]
000000000003\LibraryPath = "C:\Program Files\Bonjour\mdnsNSP.dll" ["Apple Computer, Inc."]

Transport Service Providers

HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}
0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:
%SystemRoot%\system32\msafd.dll [MS], 01 - 03, 06 - 17
%SystemRoot%\system32\rsvpsp.dll [MS], 04 - 05


Toolbars, Explorer Bars, Extensions:
------------------------------------

Explorer Bars

HKLM\Software\Microsoft\Internet Explorer\Explorer Bars\

HKLM\Software\Classes\CLSID\{9999A076-A9E2-4C99-8A2B-632FC9429223}\(Default) = "Bonjour"
Implemented Categories\{00021493-0000-0000-C000-000000000046}\ [vertical bar]
InProcServer32\(Default) = "C:\Program Files\Bonjour\ExplorerPlugin.dll" ["Apple Computer, Inc."]

Extensions (Tools menu items, main toolbar menu buttons)

HKLM\Software\Microsoft\Internet Explorer\Extensions\
{7F9DB11C-E358-4CA6-A83D-ACC663939424}\
"ButtonText" = "Bonjour"


Miscellaneous IE Hijack Points
------------------------------

C:\WINNT\INF\IERESET.INF (used to "Reset Web Settings")

Added lines (compared with English-language version):
[Strings]: SAFESITE_VALUE="https://www.msn.com/fr-fr/?redirfallthru=http%3a%2f%2fhome.microsoft.com%2fintl%2ffr%2f%3f"

Missing lines (compared with English-language version):
[Strings]: 1 line


Running Services (Display Name, Service Name, Path {Service DLL}):
------------------------------------------------------------------

avast! Antivirus, avast! Antivirus, ""C:\Program Files\Alwil Software\Avast4\ashServ.exe"" [null data]
avast! iAVS4 Control Service, aswUpdSv, ""C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"" [null data]
avast! Mail Scanner, avast! Mail Scanner, ""C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service" ["ALWIL Software"]
avast! Web Scanner, avast! Web Scanner, ""C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service" ["ALWIL Software"]
AVG Anti-Spyware Guard, AVG Anti-Spyware Guard, "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe" ["Anti-Malware Development a.s."]
LightScribeService Direct Disc Labeling Service, LightScribeService, ""C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe"" ["Hewlett-Packard Company"]
NVIDIA Display Driver Service, NVSvc, "C:\WINNT\system32\nvsvc32.exe" ["NVIDIA Corporation"]
Pml Driver HPZ12, Pml Driver HPZ12, "C:\WINNT\system32\HPZipm12.exe" ["HP"]
Service Bonjour, Bonjour Service, ""C:\Program Files\Bonjour\mDNSResponder.exe"" ["Apple Computer, Inc."]
SoundMAX Agent Service, SoundMAX Agent Service (default), "C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe" ["Analog Devices, Inc."]
Sunbelt Kerio Personal Firewall 4, KPF4, ""C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe"" ["Sunbelt Software"]
Système d'événements de COM+, EventSystem, "C:\WINNT\System32\svchost.exe -k netsvcs" {"C:\WINNT\System32\es.dll" [null data]}


Print Monitors:
---------------

HKLM\System\CurrentControlSet\Control\Print\Monitors\
hpzlnt12\Driver = "hpzlnt12.dll" ["HP"]


----------
<<!>>: Suspicious data at a malware launch point.

+ This report excludes default entries except where indicated.
+ To see *everywhere* the script checks and *everything* it finds,
launch it from a command prompt or a shortcut with the -all parameter.
+ To search all directories of local fixed drives for DESKTOP.INI
DLL launch points, use the -supp parameter or answer "No" at the
first message box and "Yes" at the second message box.
---------- (total run time: 61 seconds, including 3 seconds for message boxes)
0