[Infection] par Adware
Résolu
nlbmoi
Messages postés
434
Date d'inscription
Statut
Membre
Dernière intervention
-
nlbmoi Messages postés 434 Date d'inscription Statut Membre Dernière intervention -
nlbmoi Messages postés 434 Date d'inscription Statut Membre Dernière intervention -
Bonsoir
J'ai fait un scan avec symantec et il me trouve infections : adware.Hotbar et Adware.Slagent.
Je ne sais pas exactement ce qu'ils font mais je sais que lorsque je navigue sur le web, j'ai de nouvelles pages qui s'affichent intempestives.
j'ai utilisé spybot deja
Merci de m'aider
J'ai fait un scan avec symantec et il me trouve infections : adware.Hotbar et Adware.Slagent.
Je ne sais pas exactement ce qu'ils font mais je sais que lorsque je navigue sur le web, j'ai de nouvelles pages qui s'affichent intempestives.
j'ai utilisé spybot deja
Merci de m'aider
A voir également:
- [Infection] par Adware
- Adware cleaner - Télécharger - Antivirus & Antimalwares
- Adware - Guide
- Adware xiaomi - Accueil - Virus
- Ad adware - Télécharger - Sécurité
- Adware pokki - Forum Virus
34 réponses
Bonsoir,
télécharge HijackThis ici:
http://telechargement.zebulon.fr/138-hijackthis-1991.html
Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif
Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm
télécharge HijackThis ici:
http://telechargement.zebulon.fr/138-hijackthis-1991.html
Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif
Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm
Re,
Prends connaissance du contenu le lien suivant:
http://www.f-secure.com/products/license-terms/eult_fra.pdf
Tu as donc pris connaissance et accepté les conditions d'utilisations du programme blacklight qui est inclus dans le dossier compressé navilog1.zip que tu vas télécharger.
Maintenant fais un clic droit sur ce lien :
http://perso.orange.fr/il.mafioso/Navifix/navilog1.zip
Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
Fais un clic droit sur navilog1.zip et choisis "tout extraire"
Ensuite double clique sur navilog1.bat
Laisses-toi guider.
Au menu principal, choisis 1 et valides.
(Ne fais pas le choix 2 sans notre avis/accord)
Patientes jusqu'au message :
*** Analyse Termine le ..... ***
Appuies sur une touche comme demandé, le bloc note va s'ouvrir.
Copies-colles l'intégralité dans une réponse.
Refermes le bloc note.
Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)
Prends connaissance du contenu le lien suivant:
http://www.f-secure.com/products/license-terms/eult_fra.pdf
Tu as donc pris connaissance et accepté les conditions d'utilisations du programme blacklight qui est inclus dans le dossier compressé navilog1.zip que tu vas télécharger.
Maintenant fais un clic droit sur ce lien :
http://perso.orange.fr/il.mafioso/Navifix/navilog1.zip
Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
Fais un clic droit sur navilog1.zip et choisis "tout extraire"
Ensuite double clique sur navilog1.bat
Laisses-toi guider.
Au menu principal, choisis 1 et valides.
(Ne fais pas le choix 2 sans notre avis/accord)
Patientes jusqu'au message :
*** Analyse Termine le ..... ***
Appuies sur une touche comme demandé, le bloc note va s'ouvrir.
Copies-colles l'intégralité dans une réponse.
Refermes le bloc note.
Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)
Voici le fichier :
Search Navipromo version 1.1.3 commencé le 01/04/2007 à 0:25:47,78
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Poster ce rapport sur le forum pour le faire analyser !!!
!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!
Fix lancé depuis C:\Documents and Settings\Nicolas\Bureau\navilog1
Mise a jour le 31.03.2007 a 08h00 by IL-MAFIOSO
Executé en mode normal
*** Recherche Programmes installes ***
MessengerSkinner
*** Recherche dossiers dans C:\WINDOWS ***
*** Recherche dossiers dans C:\Program Files ***
C:\Program Files\MessengerSkinner trouvé !
*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***
*** Recherche dossiers dans C:\Documents and Settings\Nicolas\Application Data ***
...\Application Data\MessengerSkinner trouvé !
*** Recherche avec BlackLight Engine/F-secure ***
BlackLight Engine est un produit de F-secure, pour + d'infos :
https://www.f-secure.com/en
F-SECURE BLACKLIGHT ROOTKIT ELIMINATOR
======================================
Copyright 2005-2006 F-Secure Corporation. All rights reserved.
This is a beta version. It will expire on 1st of April, 2007.
Version information: 2.2.1061.
[+] Started on 04/01/07 at 00:25:49.
[+] Initializing ...
[+] Starting scan, press Ctrl-C to abort.
[+] Scanning for hidden items .............................................................................................................
[+] Hidden process: C:\windows\system32\tiwdyftivk.exe (Action: none)
[+] Scanning for hidden items ....
[-] Scan aborted due to user logoff.
[+] Summary: 1 hidden item(s) found, 0 scheduled for renaming.
[+] Exited on 04/01/07 at 00:39:11 (return code = 1).
*** Recherche fichiers ***
C:\WINDOWS\pack.epk trouvé !
C:\WINDOWS\system32\nvs2.inf trouvé !
C:\WINDOWS\system32\HotTVPlayer.dll trouvé !
*** Recherche cles registre ***
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]
Recherche Clé Magic Control
HKEY_CURRENT_USER\Software\Lanconfig trouvé !
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche fichiers connus:
2)Recherche Heuristique :
*
C:\WINDOWS\system32\tiwdyftivk.dat trouvé !
**
C:\WINDOWS\system32\tiwdyftivk.dat trouvé !
***
****
C:\WINDOWS\system32\tiwdyftivk_navps.dat trouvé !
*****
******
*******
********
C:\WINDOWS\system32\tiwdyftivk.exe trouvé !
*** Analyse Terminé le 01/04/2007 à 0:41:24,53 ***
Search Navipromo version 1.1.3 commencé le 01/04/2007 à 0:25:47,78
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Poster ce rapport sur le forum pour le faire analyser !!!
!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!
Fix lancé depuis C:\Documents and Settings\Nicolas\Bureau\navilog1
Mise a jour le 31.03.2007 a 08h00 by IL-MAFIOSO
Executé en mode normal
*** Recherche Programmes installes ***
MessengerSkinner
*** Recherche dossiers dans C:\WINDOWS ***
*** Recherche dossiers dans C:\Program Files ***
C:\Program Files\MessengerSkinner trouvé !
*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***
*** Recherche dossiers dans C:\Documents and Settings\Nicolas\Application Data ***
...\Application Data\MessengerSkinner trouvé !
*** Recherche avec BlackLight Engine/F-secure ***
BlackLight Engine est un produit de F-secure, pour + d'infos :
https://www.f-secure.com/en
F-SECURE BLACKLIGHT ROOTKIT ELIMINATOR
======================================
Copyright 2005-2006 F-Secure Corporation. All rights reserved.
This is a beta version. It will expire on 1st of April, 2007.
Version information: 2.2.1061.
[+] Started on 04/01/07 at 00:25:49.
[+] Initializing ...
[+] Starting scan, press Ctrl-C to abort.
[+] Scanning for hidden items .............................................................................................................
[+] Hidden process: C:\windows\system32\tiwdyftivk.exe (Action: none)
[+] Scanning for hidden items ....
[-] Scan aborted due to user logoff.
[+] Summary: 1 hidden item(s) found, 0 scheduled for renaming.
[+] Exited on 04/01/07 at 00:39:11 (return code = 1).
*** Recherche fichiers ***
C:\WINDOWS\pack.epk trouvé !
C:\WINDOWS\system32\nvs2.inf trouvé !
C:\WINDOWS\system32\HotTVPlayer.dll trouvé !
*** Recherche cles registre ***
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]
Recherche Clé Magic Control
HKEY_CURRENT_USER\Software\Lanconfig trouvé !
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche fichiers connus:
2)Recherche Heuristique :
*
C:\WINDOWS\system32\tiwdyftivk.dat trouvé !
**
C:\WINDOWS\system32\tiwdyftivk.dat trouvé !
***
****
C:\WINDOWS\system32\tiwdyftivk_navps.dat trouvé !
*****
******
*******
********
C:\WINDOWS\system32\tiwdyftivk.exe trouvé !
*** Analyse Terminé le 01/04/2007 à 0:41:24,53 ***
RE,
Tout d'abord désinstalle "Messenger Skinner"grace a ajout/suppression de programmes, puis supprime ce chemin :
Redémarre en mode sans échec tuto : http://forum.telecharger.01net.com/forum/high-tech/SECURITE/Securite/redemarrer-mode-echec-sujet_1526_1.htm
Puis supprime ce chemin :
C:\Program Files\MessengerSkinner
Et supprime-le.
Ensuite double-clique sur Navilog1.bat et choisis l'option 2
Redémarre normalement et poste le log Navilog + un log Hijackthis.
Tout d'abord désinstalle "Messenger Skinner"grace a ajout/suppression de programmes, puis supprime ce chemin :
Redémarre en mode sans échec tuto : http://forum.telecharger.01net.com/forum/high-tech/SECURITE/Securite/redemarrer-mode-echec-sujet_1526_1.htm
Puis supprime ce chemin :
C:\Program Files\MessengerSkinner
Et supprime-le.
Ensuite double-clique sur Navilog1.bat et choisis l'option 2
Redémarre normalement et poste le log Navilog + un log Hijackthis.
Voici le log hijack
Logfile of HijackThis v1.99.1
Scan saved at 01:21:01, on 01/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\WINDOWS\AGRSMMSG.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\system32\cmd.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Documents and Settings\Nicolas\Bureau\navilog1\fsblc.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hijack This\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\UTILIT~1\eoRezo\EoAdv\EOREZO~1.DLL
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Browster BrwIEConnector - {908A31E8-2A6E-4736-8E8A-AAF00C4AE38F} - C:\Program Files\Browster\Browster.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: LastClosedTab - {e05e75e9-a653-42a3-8d05-f2f7e309bdca} - mscoree.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Copernic Desktop Search - {C5F7A735-70F1-477F-8C36-6FF3C736017B} - C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearchIntegration974.dll
O3 - Toolbar: Browster - {2EF39867-654F-48b6-8F93-B4FC3E8C6844} - C:\Program Files\Browster\Browster.dll
O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [WinPatrol] C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [tiwdyftivk] c:\windows\system32\tiwdyftivk.exe tiwdyftivk
O4 - HKLM\..\Run: [SpeedOptimizer] C:\PROGRA~1\SPEEDO~1\SPO.EXE -s
O4 - HKCU\..\Run: [Copernic Desktop Search] "C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe" /tray
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\Internet\DAP\dapextie.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Browster Prefetch On/Off - res://C:\Program Files\Browster\Browster.dll/CustomPrefetchMenu.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\Internet\DAP\dapextie2.htm
O8 - Extra context menu item: Download with NetPumper - C:\Program Files\Internet\NetPumper\NetPumper\AddUrl.htm
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec &BitSpirit - C:\Program Files\Internet\BitSpirit\bsurl.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Xanadu - {5CC384BB-1326-11D5-F4AE-00C04923F885} - C:\Program Files\Utilitaires\Xanadu\XanaduLaunch.exe
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .csm: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .csml: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cub: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cube: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .dx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .emb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .embl: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .gau: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .jdx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mol: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mop: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .pdb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .rxn: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .scr: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .skc: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .spt: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .tgf: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .xyz: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - https://www.nordnet.com/securite
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15027/CTPID.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Securitoo AntiVirus Firewall (BackWeb Client - 1044199) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Authentication Agent (FSAA) - Unknown owner - C:\Program Files\Securitoo\av_fw\Common\FSAA.EXE (file missing)
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
O23 - Service: F-Secure Distributed Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\fswsclds.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
Logfile of HijackThis v1.99.1
Scan saved at 01:21:01, on 01/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\WINDOWS\AGRSMMSG.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\system32\cmd.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Documents and Settings\Nicolas\Bureau\navilog1\fsblc.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hijack This\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\UTILIT~1\eoRezo\EoAdv\EOREZO~1.DLL
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Browster BrwIEConnector - {908A31E8-2A6E-4736-8E8A-AAF00C4AE38F} - C:\Program Files\Browster\Browster.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: LastClosedTab - {e05e75e9-a653-42a3-8d05-f2f7e309bdca} - mscoree.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Copernic Desktop Search - {C5F7A735-70F1-477F-8C36-6FF3C736017B} - C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearchIntegration974.dll
O3 - Toolbar: Browster - {2EF39867-654F-48b6-8F93-B4FC3E8C6844} - C:\Program Files\Browster\Browster.dll
O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [WinPatrol] C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [tiwdyftivk] c:\windows\system32\tiwdyftivk.exe tiwdyftivk
O4 - HKLM\..\Run: [SpeedOptimizer] C:\PROGRA~1\SPEEDO~1\SPO.EXE -s
O4 - HKCU\..\Run: [Copernic Desktop Search] "C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe" /tray
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\Internet\DAP\dapextie.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Browster Prefetch On/Off - res://C:\Program Files\Browster\Browster.dll/CustomPrefetchMenu.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\Internet\DAP\dapextie2.htm
O8 - Extra context menu item: Download with NetPumper - C:\Program Files\Internet\NetPumper\NetPumper\AddUrl.htm
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec &BitSpirit - C:\Program Files\Internet\BitSpirit\bsurl.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Xanadu - {5CC384BB-1326-11D5-F4AE-00C04923F885} - C:\Program Files\Utilitaires\Xanadu\XanaduLaunch.exe
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .csm: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .csml: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cub: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cube: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .dx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .emb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .embl: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .gau: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .jdx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mol: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mop: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .pdb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .rxn: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .scr: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .skc: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .spt: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .tgf: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .xyz: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - https://www.nordnet.com/securite
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15027/CTPID.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Securitoo AntiVirus Firewall (BackWeb Client - 1044199) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Authentication Agent (FSAA) - Unknown owner - C:\Program Files\Securitoo\av_fw\Common\FSAA.EXE (file missing)
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
O23 - Service: F-Secure Distributed Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\fswsclds.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
Et voici le second
Search Navipromo version 1.1.3 commencé le 01/04/2007 à 1:16:09,98
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Poster ce rapport sur le forum pour le faire analyser !!!
!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!
Fix lancé depuis C:\Documents and Settings\Nicolas\Bureau\navilog1
Mise a jour le 31.03.2007 a 08h00 by IL-MAFIOSO
Executé en mode normal
*** Recherche Programmes installes ***
*** Recherche dossiers dans C:\WINDOWS ***
*** Recherche dossiers dans C:\Program Files ***
*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***
*** Recherche dossiers dans C:\Documents and Settings\Nicolas\Application Data ***
*** Recherche avec BlackLight Engine/F-secure ***
BlackLight Engine est un produit de F-secure, pour + d'infos :
https://www.f-secure.com/en
F-SECURE BLACKLIGHT ROOTKIT ELIMINATOR
======================================
Copyright 2005-2006 F-Secure Corporation. All rights reserved.
This is a beta version. It will expire on 1st of April, 2007.
Version information: 2.2.1061.
[+] Started on 04/01/07 at 01:16:13.
[+] Initializing ...
[+] Starting scan, press Ctrl-C to abort.
[+] Scanning for hidden items ................................................................................................................................
[+] Scan complete.
[+] Summary: 0 hidden item(s) found, 0 scheduled for renaming.
[+] Exited on 04/01/07 at 01:32:36 (return code = 0).
*** Recherche fichiers ***
*** Recherche cles registre ***
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]
Recherche Clé Magic Control
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche fichiers connus:
2)Recherche Heuristique :
*
**
***
****
*****
******
*******
********
*** Analyse Terminé le 01/04/2007 à 1:33:44,42 ***
Search Navipromo version 1.1.3 commencé le 01/04/2007 à 1:16:09,98
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Poster ce rapport sur le forum pour le faire analyser !!!
!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!
Fix lancé depuis C:\Documents and Settings\Nicolas\Bureau\navilog1
Mise a jour le 31.03.2007 a 08h00 by IL-MAFIOSO
Executé en mode normal
*** Recherche Programmes installes ***
*** Recherche dossiers dans C:\WINDOWS ***
*** Recherche dossiers dans C:\Program Files ***
*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***
*** Recherche dossiers dans C:\Documents and Settings\Nicolas\Application Data ***
*** Recherche avec BlackLight Engine/F-secure ***
BlackLight Engine est un produit de F-secure, pour + d'infos :
https://www.f-secure.com/en
F-SECURE BLACKLIGHT ROOTKIT ELIMINATOR
======================================
Copyright 2005-2006 F-Secure Corporation. All rights reserved.
This is a beta version. It will expire on 1st of April, 2007.
Version information: 2.2.1061.
[+] Started on 04/01/07 at 01:16:13.
[+] Initializing ...
[+] Starting scan, press Ctrl-C to abort.
[+] Scanning for hidden items ................................................................................................................................
[+] Scan complete.
[+] Summary: 0 hidden item(s) found, 0 scheduled for renaming.
[+] Exited on 04/01/07 at 01:32:36 (return code = 0).
*** Recherche fichiers ***
*** Recherche cles registre ***
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]
Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]
Recherche Clé Magic Control
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche fichiers connus:
2)Recherche Heuristique :
*
**
***
****
*****
******
*******
********
*** Analyse Terminé le 01/04/2007 à 1:33:44,42 ***
Re,
Donc télécharge clean : http://www.malekal.com/download/clean.zip
Installe-le sur le bureau et dezippe-le.
Un dossier clean va être créer double-clique dessus
Puis double clique sur clean.cmd et choisit l'option 1.Patiente un peu.
Poste ce rapport dans ton prochain post
Donc télécharge clean : http://www.malekal.com/download/clean.zip
Installe-le sur le bureau et dezippe-le.
Un dossier clean va être créer double-clique dessus
Puis double clique sur clean.cmd et choisit l'option 1.Patiente un peu.
Poste ce rapport dans ton prochain post
Rapport clean par Malekal_morte - http://www.malekal.com
Option 1, executee le 01/04/2007 a 13:42:45,26
*** Recherche de fichiers sur C:
C:\StubInstaller.exe FOUND
C:\unwise.exe FOUND
*** Recherche des fichiers dans C:\WINDOWS\
*** Recherche des fichiers dans C:\WINDOWS\system32
C:\WINDOWS\system32\SpoonUninstall.exe FOUND
"C:\WINDOWS\Downloaded Program Files\CONFLICT.1" FOUND
"C:\Program Files\HbTools\" FOUND
"C:\Program Files\Internet\" FOUND
*** Fin du rapport !
Option 1, executee le 01/04/2007 a 13:42:45,26
*** Recherche de fichiers sur C:
C:\StubInstaller.exe FOUND
C:\unwise.exe FOUND
*** Recherche des fichiers dans C:\WINDOWS\
*** Recherche des fichiers dans C:\WINDOWS\system32
C:\WINDOWS\system32\SpoonUninstall.exe FOUND
"C:\WINDOWS\Downloaded Program Files\CONFLICT.1" FOUND
"C:\Program Files\HbTools\" FOUND
"C:\Program Files\Internet\" FOUND
*** Fin du rapport !
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Re,
Redémarre en mode sans échec tuto : http://forum.telecharger.01net.com/forum/high-tech/SECURITE/Securite/redemarrer-mode-echec-sujet_1526_1.htm
Puis lance clean.cmd et choisis l'option 2.
Redémarre normalement et poste le log clean + un log Hijackthis
Redémarre en mode sans échec tuto : http://forum.telecharger.01net.com/forum/high-tech/SECURITE/Securite/redemarrer-mode-echec-sujet_1526_1.htm
Puis lance clean.cmd et choisis l'option 2.
Redémarre normalement et poste le log clean + un log Hijackthis
Et celui de clean :
Script execute en mode sans echec
Rapport clean par Malekal_morte - http://www.malekal.com
Option 2, executee le 01/04/2007 a 14:58:10,73
Microsoft Windows XP [version 5.1.2600]
*** Suppression de fichiers sur C:
tentative de suppression de C:\StubInstaller.exe
tentative de suppression de C:\unwise.exe
*** Suppression des fichiers dans C:\WINDOWS\
*** Suppression des fichiers dans C:\WINDOWS\system32
tentative de suppression de C:\WINDOWS\system32\SpoonUninstall.exe
tentative de suppression de "C:\WINDOWS\Downloaded Program Files\CONFLICT.1"
tentative de suppression de "C:\Program Files\HbTools\"
tentative de suppression de "C:\Program Files\Internet\"
*** Suppression des clefs du registre effectuee..
*** Fin du rapport !
Script execute en mode sans echec
Rapport clean par Malekal_morte - http://www.malekal.com
Option 2, executee le 01/04/2007 a 14:58:10,73
Microsoft Windows XP [version 5.1.2600]
*** Suppression de fichiers sur C:
tentative de suppression de C:\StubInstaller.exe
tentative de suppression de C:\unwise.exe
*** Suppression des fichiers dans C:\WINDOWS\
*** Suppression des fichiers dans C:\WINDOWS\system32
tentative de suppression de C:\WINDOWS\system32\SpoonUninstall.exe
tentative de suppression de "C:\WINDOWS\Downloaded Program Files\CONFLICT.1"
tentative de suppression de "C:\Program Files\HbTools\"
tentative de suppression de "C:\Program Files\Internet\"
*** Suppression des clefs du registre effectuee..
*** Fin du rapport !
Voici le log hijackthis :
Logfile of HijackThis v1.99.1
Scan saved at 15:10:42, on 01/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hijack This\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\UTILIT~1\eoRezo\EoAdv\EOREZO~1.DLL
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Browster BrwIEConnector - {908A31E8-2A6E-4736-8E8A-AAF00C4AE38F} - C:\Program Files\Browster\Browster.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: LastClosedTab - {e05e75e9-a653-42a3-8d05-f2f7e309bdca} - mscoree.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Copernic Desktop Search - {C5F7A735-70F1-477F-8C36-6FF3C736017B} - C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearchIntegration974.dll
O3 - Toolbar: Browster - {2EF39867-654F-48b6-8F93-B4FC3E8C6844} - C:\Program Files\Browster\Browster.dll
O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [WinPatrol] C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [tiwdyftivk] c:\windows\system32\tiwdyftivk.exe tiwdyftivk
O4 - HKCU\..\Run: [Copernic Desktop Search] "C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe" /tray
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\Internet\DAP\dapextie.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Browster Prefetch On/Off - res://C:\Program Files\Browster\Browster.dll/CustomPrefetchMenu.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\Internet\DAP\dapextie2.htm
O8 - Extra context menu item: Download with NetPumper - C:\Program Files\Internet\NetPumper\NetPumper\AddUrl.htm
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec &BitSpirit - C:\Program Files\Internet\BitSpirit\bsurl.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Xanadu - {5CC384BB-1326-11D5-F4AE-00C04923F885} - C:\Program Files\Utilitaires\Xanadu\XanaduLaunch.exe
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .csm: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .csml: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cub: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cube: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .dx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .emb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .embl: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .gau: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .jdx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mol: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mop: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .pdb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .rxn: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .scr: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .skc: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .spt: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .tgf: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .xyz: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - https://www.nordnet.com/securite
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15027/CTPID.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Securitoo AntiVirus Firewall (BackWeb Client - 1044199) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Authentication Agent (FSAA) - Unknown owner - C:\Program Files\Securitoo\av_fw\Common\FSAA.EXE (file missing)
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
O23 - Service: F-Secure Distributed Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\fswsclds.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
Logfile of HijackThis v1.99.1
Scan saved at 15:10:42, on 01/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hijack This\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\UTILIT~1\eoRezo\EoAdv\EOREZO~1.DLL
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Browster BrwIEConnector - {908A31E8-2A6E-4736-8E8A-AAF00C4AE38F} - C:\Program Files\Browster\Browster.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: LastClosedTab - {e05e75e9-a653-42a3-8d05-f2f7e309bdca} - mscoree.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Copernic Desktop Search - {C5F7A735-70F1-477F-8C36-6FF3C736017B} - C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearchIntegration974.dll
O3 - Toolbar: Browster - {2EF39867-654F-48b6-8F93-B4FC3E8C6844} - C:\Program Files\Browster\Browster.dll
O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [WinPatrol] C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [tiwdyftivk] c:\windows\system32\tiwdyftivk.exe tiwdyftivk
O4 - HKCU\..\Run: [Copernic Desktop Search] "C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe" /tray
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\Internet\DAP\dapextie.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Browster Prefetch On/Off - res://C:\Program Files\Browster\Browster.dll/CustomPrefetchMenu.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\Internet\DAP\dapextie2.htm
O8 - Extra context menu item: Download with NetPumper - C:\Program Files\Internet\NetPumper\NetPumper\AddUrl.htm
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec &BitSpirit - C:\Program Files\Internet\BitSpirit\bsurl.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Xanadu - {5CC384BB-1326-11D5-F4AE-00C04923F885} - C:\Program Files\Utilitaires\Xanadu\XanaduLaunch.exe
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .csm: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .csml: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cub: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cube: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .dx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .emb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .embl: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .gau: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .jdx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mol: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mop: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .pdb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .rxn: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .scr: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .skc: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .spt: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .tgf: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .xyz: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - https://www.nordnet.com/securite
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15027/CTPID.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Securitoo AntiVirus Firewall (BackWeb Client - 1044199) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Authentication Agent (FSAA) - Unknown owner - C:\Program Files\Securitoo\av_fw\Common\FSAA.EXE (file missing)
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
O23 - Service: F-Secure Distributed Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\fswsclds.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
Re,
Lance ce scan en ligne : https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
Puis accepte ou installe tout ce qu'il te demandent.
Puis poste le rapport lors de ton prochain poste
Lance ce scan en ligne : https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
Puis accepte ou installe tout ce qu'il te demandent.
Puis poste le rapport lors de ton prochain poste
KASPERSKY ON-LINE SCANNER REPORT
Tuesday, April 03, 2007 12:06:34 AM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 2/04/2007
Enregistrements dans la base antivirus Kaspersky : 273655
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
H:\
I:\
J:\
K:\
L:\
Statistiques de l'analyse
Total d'objets analysés 225934
Nombre de virus trouvés 10
Nombre d'objets infectés 523 / 0
Nombre d'objets suspects 14
Durée de l'analyse 05:49:03
Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\pctek.err L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\Updater\udlog.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Mozilla\Firefox\Profiles\em8c37uo.default\cookiesnew.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer . ... /[From ][Date Mon, 11 Jul 2005 18:39:49 +0100]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer ... /[From "Hellman"][Date Thu, 07 Jul 2005 15:01:37 +0100]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ]/text Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:19:03 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:17:25 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:14:51 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree ... /[From "Warez13.net" ][Date Mon, 27 Jun 2005 23:44:56 +0200]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:06:12 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ][Date Sun, 26 Jun 2005 13:22:30 +0400]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 06 Aug 2005 10:15:57 +0000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Tue, 09 Aug 2005 17:12:06 +0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sun, 07 Aug 2005 10:29:14 -0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date ÐÇÆÚÒ», 01 °ËÔÂ 2005 23:00:16 +0100]/html Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Fri, 29 Jul 2005 13:14:19 -0100]/text Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 30 Jul 2005 04:04:15 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Thu, 28 Jul 05 08:05:28 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 18:55:32 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 11:48:53 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[Fro ... /[From "gbouyrie" ][Date Wed, 02 Nov 2005 15:36:25 -0000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 +0600]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade ... /[From "Josianne SAUVAGE" ][Date Tue, 1 Nov 2005 18:16:21 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" ][Date Tue, 1 Nov 2005 08:24:39 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseud ... /[From "Erica Beard" ][Date Tue, 29 Nov 2005 08:27:15 -0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text ... /[From "Warez13.net Votre newsletter" ][Date Thu, 01 Dec 2005 05:52:41 +1000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Vot ... /details.txt .pif Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ... /[From jc.herriau@ffme.fr][Date Mon, 5 Dec 2005 09:20:58 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ][Date Mon, 05 Dec 2005 03:08:27 +1000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whitta ... /[From nlbmoi@yahoo.fr][Date Tue, 6 Dec 2005 09:24:40 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 - ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From Anne Le Madec ][Date Tue, 6 Dec 2005 11:42:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -050 ... /text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... /[From Abdelfattah mdaghri ][Date Mon, 5 Dec 2005 17:14:18 +0100 (CET)]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes ... /[From "Millet Jean-Michel" ][Date Thu, 8 Dec 2005 13:41:28 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From ... /[From Yves Cortial ][Date Thu, 08 Dec 2005 11:58:13 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From "Bleaches C. Hilario" ][Date Thu, 08 Dec 2005 05:55:38 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" ][Date Thu, 8 Dec 2005 07:08:33 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" ][Date Tue, 13 Dec 2005 23:19:04 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43: ... /uwhxstr.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Al ... /[From "Eirene" ][Date Sun, 05 Feb 2006 19:26:10 -0800]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Alexander" ][Date Sun, 05 Feb 2006 14:24:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[From "Millet Jean-Michel" ][Date Sun, 5 Feb 2006 14:34:10 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... /[From "Lucas Martinez" ][Date Thu, 02 Feb 2006 22:00:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley"
][Date Thu, 02 Feb 2006 22:41:00 +0800]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Thu, 02 Feb 2006 03:05:54 -0200]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Wed, 01 Feb 2006 11:24:52 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45 ... /zcqugapl.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45:47 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou . ... /[From "Millet Jean-Michel" ][Date Wed, 15 Feb 2006 11:14:41 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\In
Tuesday, April 03, 2007 12:06:34 AM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 2/04/2007
Enregistrements dans la base antivirus Kaspersky : 273655
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
H:\
I:\
J:\
K:\
L:\
Statistiques de l'analyse
Total d'objets analysés 225934
Nombre de virus trouvés 10
Nombre d'objets infectés 523 / 0
Nombre d'objets suspects 14
Durée de l'analyse 05:49:03
Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\pctek.err L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\Updater\udlog.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Mozilla\Firefox\Profiles\em8c37uo.default\cookiesnew.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer . ... /[From ][Date Mon, 11 Jul 2005 18:39:49 +0100]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer ... /[From "Hellman"][Date Thu, 07 Jul 2005 15:01:37 +0100]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ]/text Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:19:03 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:17:25 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:14:51 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree ... /[From "Warez13.net" ][Date Mon, 27 Jun 2005 23:44:56 +0200]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:06:12 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ][Date Sun, 26 Jun 2005 13:22:30 +0400]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 06 Aug 2005 10:15:57 +0000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Tue, 09 Aug 2005 17:12:06 +0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sun, 07 Aug 2005 10:29:14 -0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date ÐÇÆÚÒ», 01 °ËÔÂ 2005 23:00:16 +0100]/html Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Fri, 29 Jul 2005 13:14:19 -0100]/text Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 30 Jul 2005 04:04:15 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Thu, 28 Jul 05 08:05:28 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 18:55:32 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 11:48:53 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[Fro ... /[From "gbouyrie" ][Date Wed, 02 Nov 2005 15:36:25 -0000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 +0600]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade ... /[From "Josianne SAUVAGE" ][Date Tue, 1 Nov 2005 18:16:21 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" ][Date Tue, 1 Nov 2005 08:24:39 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseud ... /[From "Erica Beard" ][Date Tue, 29 Nov 2005 08:27:15 -0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text ... /[From "Warez13.net Votre newsletter" ][Date Thu, 01 Dec 2005 05:52:41 +1000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Vot ... /details.txt .pif Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ... /[From jc.herriau@ffme.fr][Date Mon, 5 Dec 2005 09:20:58 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ][Date Mon, 05 Dec 2005 03:08:27 +1000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whitta ... /[From nlbmoi@yahoo.fr][Date Tue, 6 Dec 2005 09:24:40 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 - ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From Anne Le Madec ][Date Tue, 6 Dec 2005 11:42:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -050 ... /text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... /[From Abdelfattah mdaghri ][Date Mon, 5 Dec 2005 17:14:18 +0100 (CET)]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes ... /[From "Millet Jean-Michel" ][Date Thu, 8 Dec 2005 13:41:28 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From ... /[From Yves Cortial ][Date Thu, 08 Dec 2005 11:58:13 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From "Bleaches C. Hilario" ][Date Thu, 08 Dec 2005 05:55:38 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" ][Date Thu, 8 Dec 2005 07:08:33 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" ][Date Tue, 13 Dec 2005 23:19:04 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43: ... /uwhxstr.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Al ... /[From "Eirene" ][Date Sun, 05 Feb 2006 19:26:10 -0800]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Alexander" ][Date Sun, 05 Feb 2006 14:24:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[From "Millet Jean-Michel" ][Date Sun, 5 Feb 2006 14:34:10 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... /[From "Lucas Martinez" ][Date Thu, 02 Feb 2006 22:00:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley"
][Date Thu, 02 Feb 2006 22:41:00 +0800]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Thu, 02 Feb 2006 03:05:54 -0200]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Wed, 01 Feb 2006 11:24:52 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45 ... /zcqugapl.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45:47 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou . ... /[From "Millet Jean-Michel" ][Date Wed, 15 Feb 2006 11:14:41 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\In
Re,
Dis donc faudrait faire gaffe avant l'ouverture des pièces jointes.
Donc telecharge ELIBAGLA
http://www.zonavirus.com/datos/descargas/95/elibagla.asp
suis ces procédures :
Clique sur le bouton Descargar Elibagla, cela va télécharger le fichier, place-le sur ton Bureau.
Double-clique dessus pour l'ouvrir.
Assure-toi que dans le menu déroulant Unidad, vous ayez bien C:\
Vérifie aussi aussi que l'option en bas de la fenêtre Eliminar Ficheros Automaticamente soit bien cochée.
Clique sur le bouton Explorar pour lancer l'analyse.
Poste le rapport généré en fin d'analyse.
Poste le rapport dans ton prochain post
Dis donc faudrait faire gaffe avant l'ouverture des pièces jointes.
Donc telecharge ELIBAGLA
http://www.zonavirus.com/datos/descargas/95/elibagla.asp
suis ces procédures :
Clique sur le bouton Descargar Elibagla, cela va télécharger le fichier, place-le sur ton Bureau.
Double-clique dessus pour l'ouvrir.
Assure-toi que dans le menu déroulant Unidad, vous ayez bien C:\
Vérifie aussi aussi que l'option en bas de la fenêtre Eliminar Ficheros Automaticamente soit bien cochée.
Clique sur le bouton Explorar pour lancer l'analyse.
Poste le rapport généré en fin d'analyse.
Poste le rapport dans ton prochain post
Re,
Tu les virus les plus répandus :s.
Télécharge le fix Netsky :
https://www.broadcom.com/support/security-center
Execute-le et laisse toi guider.
Tu les virus les plus répandus :s.
Télécharge le fix Netsky :
https://www.broadcom.com/support/security-center
Execute-le et laisse toi guider.
Re,
Puis apres tout ca tu avs télécharger le Fix Matubu :
http://www.secuser.com/telechargement/desinfection/AntiMabutu-EN.exe
Tu l'execute et tu te laisse guider.
Ensuite tu désinstalle Thunderbird.
Puis apres tout ca tu avs télécharger le Fix Matubu :
http://www.secuser.com/telechargement/desinfection/AntiMabutu-EN.exe
Tu l'execute et tu te laisse guider.
Ensuite tu désinstalle Thunderbird.
Quand j'utilise FxNetsky.exe, le logiciel plante en cours d'execution : j'ai le message d'erreurs de windows me demandant si je veux envoyer le rapport d'erreurs ou pas.
Sinon voici le log demandé :
Wed Apr 04 09:55:00 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
Wed Apr 04 09:55:18 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
Wed Apr 04 11:00:19 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
Wed Apr 04 11:00:35 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
Wed Apr 04 11:00:37 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
Wed Apr 04 11:27:27 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
Sinon voici le log demandé :
Wed Apr 04 09:55:00 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
Wed Apr 04 09:55:18 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
Wed Apr 04 11:00:19 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
Wed Apr 04 11:00:35 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
Wed Apr 04 11:00:37 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
Wed Apr 04 11:27:27 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
Re,
Re-fait un scan kaspersky.
Re-fait un scan kaspersky.
Voici le log :
KASPERSKY ON-LINE SCANNER REPORT
Thursday, April 05, 2007 6:12:36 PM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 5/04/2007
Enregistrements dans la base antivirus Kaspersky : 275231
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
K:\
L:\
Statistiques de l'analyse
Total d'objets analysés 225978
Nombre de virus trouvés 10
Nombre d'objets infectés 523 / 0
Nombre d'objets suspects 14
Durée de l'analyse 06:33:25
Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\organizer70\files.MYD L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\organizer70\files.MYI L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\pctek.err L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\Updater\udlog.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Modèles\Normal.dot L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Word\DÉMARRAGE\ChLettresFRA.dot L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Word\DÉMARRAGE\Gdmath.dot L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Word\~WRA0003.wbk L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Mozilla\Firefox\Profiles\em8c37uo.default\cookiesnew.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer . ... /[From ][Date Mon, 11 Jul 2005 18:39:49 +0100]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer ... /[From "Hellman"][Date Thu, 07 Jul 2005 15:01:37 +0100]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ]/text Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:19:03 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:17:25 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:14:51 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree ... /[From "Warez13.net" ][Date Mon, 27 Jun 2005 23:44:56 +0200]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:06:12 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ][Date Sun, 26 Jun 2005 13:22:30 +0400]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 06 Aug 2005 10:15:57 +0000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Tue, 09 Aug 2005 17:12:06 +0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sun, 07 Aug 2005 10:29:14 -0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date ÐÇÆÚÒ», 01 °ËÔÂ 2005 23:00:16 +0100]/html Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Fri, 29 Jul 2005 13:14:19 -0100]/text Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 30 Jul 2005 04:04:15 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Thu, 28 Jul 05 08:05:28 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 18:55:32 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 11:48:53 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[Fro ... /[From "gbouyrie" ][Date Wed, 02 Nov 2005 15:36:25 -0000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 +0600]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade ... /[From "Josianne SAUVAGE" ][Date Tue, 1 Nov 2005 18:16:21 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" ][Date Tue, 1 Nov 2005 08:24:39 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseud ... /[From "Erica Beard" ][Date Tue, 29 Nov 2005 08:27:15 -0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text ... /[From "Warez13.net Votre newsletter" ][Date Thu, 01 Dec 2005 05:52:41 +1000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Vot ... /details.txt .pif Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ... /[From jc.herriau@ffme.fr][Date Mon, 5 Dec 2005 09:20:58 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ][Date Mon, 05 Dec 2005 03:08:27 +1000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whitta ... /[From nlbmoi@yahoo.fr][Date Tue, 6 Dec 2005 09:24:40 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 - ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From Anne Le Madec ][Date Tue, 6 Dec 2005 11:42:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -050 ... /text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... /[From Abdelfattah mdaghri ][Date Mon, 5 Dec 2005 17:14:18 +0100 (CET)]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes ... /[From "Millet Jean-Michel" ][Date Thu, 8 Dec 2005 13:41:28 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From ... /[From Yves Cortial ][Date Thu, 08 Dec 2005 11:58:13 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From "Bleaches C. Hilario" ][Date Thu, 08 Dec 2005 05:55:38 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" ][Date Thu, 8 Dec 2005 07:08:33 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" ][Date Tue, 13 Dec 2005 23:19:04 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43: ... /uwhxstr.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Al ... /[From "Eirene" ][Date Sun, 05 Feb 2006 19:26:10 -0800]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Alexander" ][Date Sun, 05 Feb 2006 14:24:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[From "Millet Jean-Michel" ][Date Sun, 5 Feb 2006 14:34:10 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... /[From "Lucas Martinez" ][Date Thu, 02 Feb 2006 22:00:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley"
][Date Thu, 02 Feb 2006 22:41:00 +0800]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Thu, 02 Feb 2006 03:05:54 -0200]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Wed, 01 Feb 2006 11:24:52 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45 ... /zcqugapl.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45:47 +0100]/UNNAMED Infecté : Em
KASPERSKY ON-LINE SCANNER REPORT
Thursday, April 05, 2007 6:12:36 PM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 5/04/2007
Enregistrements dans la base antivirus Kaspersky : 275231
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
K:\
L:\
Statistiques de l'analyse
Total d'objets analysés 225978
Nombre de virus trouvés 10
Nombre d'objets infectés 523 / 0
Nombre d'objets suspects 14
Durée de l'analyse 06:33:25
Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\organizer70\files.MYD L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\organizer70\files.MYI L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\pctek.err L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\Updater\udlog.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Modèles\Normal.dot L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Word\DÉMARRAGE\ChLettresFRA.dot L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Word\DÉMARRAGE\Gdmath.dot L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Word\~WRA0003.wbk L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Mozilla\Firefox\Profiles\em8c37uo.default\cookiesnew.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer . ... /[From ][Date Mon, 11 Jul 2005 18:39:49 +0100]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer ... /[From "Hellman"][Date Thu, 07 Jul 2005 15:01:37 +0100]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ]/text Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:19:03 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:17:25 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:14:51 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree ... /[From "Warez13.net" ][Date Mon, 27 Jun 2005 23:44:56 +0200]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:06:12 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ][Date Sun, 26 Jun 2005 13:22:30 +0400]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 06 Aug 2005 10:15:57 +0000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Tue, 09 Aug 2005 17:12:06 +0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sun, 07 Aug 2005 10:29:14 -0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date ÐÇÆÚÒ», 01 °ËÔÂ 2005 23:00:16 +0100]/html Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Fri, 29 Jul 2005 13:14:19 -0100]/text Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 30 Jul 2005 04:04:15 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Thu, 28 Jul 05 08:05:28 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 18:55:32 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 11:48:53 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[Fro ... /[From "gbouyrie" ][Date Wed, 02 Nov 2005 15:36:25 -0000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 +0600]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade ... /[From "Josianne SAUVAGE" ][Date Tue, 1 Nov 2005 18:16:21 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" ][Date Tue, 1 Nov 2005 08:24:39 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseud ... /[From "Erica Beard" ][Date Tue, 29 Nov 2005 08:27:15 -0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text ... /[From "Warez13.net Votre newsletter" ][Date Thu, 01 Dec 2005 05:52:41 +1000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Vot ... /details.txt .pif Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ... /[From jc.herriau@ffme.fr][Date Mon, 5 Dec 2005 09:20:58 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ][Date Mon, 05 Dec 2005 03:08:27 +1000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whitta ... /[From nlbmoi@yahoo.fr][Date Tue, 6 Dec 2005 09:24:40 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 - ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From Anne Le Madec ][Date Tue, 6 Dec 2005 11:42:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -050 ... /text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... /[From Abdelfattah mdaghri ][Date Mon, 5 Dec 2005 17:14:18 +0100 (CET)]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes ... /[From "Millet Jean-Michel" ][Date Thu, 8 Dec 2005 13:41:28 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From ... /[From Yves Cortial ][Date Thu, 08 Dec 2005 11:58:13 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From "Bleaches C. Hilario" ][Date Thu, 08 Dec 2005 05:55:38 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" ][Date Thu, 8 Dec 2005 07:08:33 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" ][Date Tue, 13 Dec 2005 23:19:04 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43: ... /uwhxstr.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Al ... /[From "Eirene" ][Date Sun, 05 Feb 2006 19:26:10 -0800]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Alexander" ][Date Sun, 05 Feb 2006 14:24:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[From "Millet Jean-Michel" ][Date Sun, 5 Feb 2006 14:34:10 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... /[From "Lucas Martinez" ][Date Thu, 02 Feb 2006 22:00:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley"
][Date Thu, 02 Feb 2006 22:41:00 +0800]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Thu, 02 Feb 2006 03:05:54 -0200]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Wed, 01 Feb 2006 11:24:52 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45 ... /zcqugapl.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45:47 +0100]/UNNAMED Infecté : Em
Re,
Tu vas télécharger SmitFraudFix :
http://siri.urz.free.fr/Fix/SmitfraudFix.exe
Suis ces procédures:
Double-clique sur smitfraudfix.exe
Sélectionne 1 (MAIS SURTOUT PAS LE 2 JE TE DIRAIS QUAND TU POURRA LE FAIRE ) puis appuie "entrer" ensuite un rapport sera généré dans ce chemin :
C:\rapport.txt
Puis tu le colle dans ton prochain post
Remarque:
Process.exe est detecté par certains antivirus.
Ce n'est pas un virus, mais il peut arreter des logiciel de securité avec certaine manipulation.
C'est pour cela qu'il est detecté par les antivirus.
Tu vas télécharger SmitFraudFix :
http://siri.urz.free.fr/Fix/SmitfraudFix.exe
Suis ces procédures:
Double-clique sur smitfraudfix.exe
Sélectionne 1 (MAIS SURTOUT PAS LE 2 JE TE DIRAIS QUAND TU POURRA LE FAIRE ) puis appuie "entrer" ensuite un rapport sera généré dans ce chemin :
C:\rapport.txt
Puis tu le colle dans ton prochain post
Remarque:
Process.exe est detecté par certains antivirus.
Ce n'est pas un virus, mais il peut arreter des logiciel de securité avec certaine manipulation.
C'est pour cela qu'il est detecté par les antivirus.
Salut
voila le rapport :
SmitFraudFix v2.164
Rapport fait à 10:48:39,79, 06/04/2007
Executé à partir de C:\Documents and Settings\Nicolas\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» Process
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\system32\cmd.exe
»»»»»»»»»»»»»»»»»»»»»»»» hosts
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Nicolas
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Nicolas\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Nicolas\Favoris
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32-huy32
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Description: VIA Rhine II Fast Ethernet Adapter - Miniport d'ordonnancement de paquets
DNS Server Search Order: 192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\..\{BC815D35-0C93-4374-953F-2CD713D0D576}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\..\{BC815D35-0C93-4374-953F-2CD713D0D576}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin
voila le rapport :
SmitFraudFix v2.164
Rapport fait à 10:48:39,79, 06/04/2007
Executé à partir de C:\Documents and Settings\Nicolas\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» Process
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\system32\cmd.exe
»»»»»»»»»»»»»»»»»»»»»»»» hosts
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Nicolas
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Nicolas\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Nicolas\Favoris
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32-huy32
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Description: VIA Rhine II Fast Ethernet Adapter - Miniport d'ordonnancement de paquets
DNS Server Search Order: 192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\..\{BC815D35-0C93-4374-953F-2CD713D0D576}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\..\{BC815D35-0C93-4374-953F-2CD713D0D576}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin
je te répondrai pas parske les virus c chien pour les ordinateur et la personne qui a créyer sa ba si g le coonnaissai il allai montendre mais il a de la chance
Re,
Rien.
Lance ce scan en ligne : http://www.bitdefender.fr/scan8/#
Et execute tout els controles actives ainsi que els installations demandées.
Rien.
Lance ce scan en ligne : http://www.bitdefender.fr/scan8/#
Et execute tout els controles actives ainsi que els installations demandées.
Salut
j'ai essayé de faire le scan en ligne mais il ne se lance pas, je recois ce message :
This website is not authorized to host this Activex Control
j'ai essayé de faire le scan en ligne mais il ne se lance pas, je recois ce message :
This website is not authorized to host this Activex Control
Re salut
je ne sais pas comment j'ai fait mais j'ai reussi a le faire le scanmais je le ferais demain parce qu'il risque d'être assez long
je ne sais pas comment j'ai fait mais j'ai reussi a le faire le scanmais je le ferais demain parce qu'il risque d'être assez long
Re,
Pas de prob en plus ca nous aideras nous 2 car le scan en ligne bitdefender supprime les virus.
Pas de prob en plus ca nous aideras nous 2 car le scan en ligne bitdefender supprime les virus.
Salut
voici le rapport de bitdefender :
BitDefender Online Scanner
Scan report generated at: Tue, Apr 10, 2007 - 13:25:46
Scan path: C:\;D:\;E:\;F:\;G:\;H:\;I:\;J:\;K:\;L:\;
Statistics
Time
04:34:19
Files
967934
Folders
16864
Boot Sectors
5
Archives
50767
Packed Files
87904
Results
Identified Viruses
13
Infected Files
30
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
30
Engines Info
Virus Definitions
484802
Engine build
AVCORE v1.0 (build 2397) (i386) (Feb 8 2007 14:24:08)
Scan plugins
14
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Deleted
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)
Update failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Deleted
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)
Update failed
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Infected with: Backdoor.Skinymes.Agent.A
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Deleted
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Infected with: Generic.Trojan.Phish.F48AE1BC
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Infected with: Generic.Trojan.Phish.72844F51
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Infected with: Generic.Trojan.Phish.47F1A8D1
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 76)
Infected with: Generic.Trojan.Phish.AAE4F2A5
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 76)
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 76)
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Infected with: Trojan.ASXLoad.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Infected with: Trojan.Peed.AO
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Infected with: Trojan.Peed.E
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe
Infected with: Trojan.Peed.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe
Infected with: Trojan.Peed.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)=>zlib_nsis0001
Deleted
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)
Update failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)=>zlib_nsis0001
Deleted
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)
Update failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Deleted
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)
Update failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Disinfection failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Deleted
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)
Update failed
voici le rapport de bitdefender :
BitDefender Online Scanner
Scan report generated at: Tue, Apr 10, 2007 - 13:25:46
Scan path: C:\;D:\;E:\;F:\;G:\;H:\;I:\;J:\;K:\;L:\;
Statistics
Time
04:34:19
Files
967934
Folders
16864
Boot Sectors
5
Archives
50767
Packed Files
87904
Results
Identified Viruses
13
Infected Files
30
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
30
Engines Info
Virus Definitions
484802
Engine build
AVCORE v1.0 (build 2397) (i386) (Feb 8 2007 14:24:08)
Scan plugins
14
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Deleted
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)
Update failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Deleted
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)
Update failed
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Infected with: Backdoor.Skinymes.Agent.A
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Deleted
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Infected with: Generic.Trojan.Phish.F48AE1BC
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Infected with: Generic.Trojan.Phish.72844F51
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Infected with: Generic.Trojan.Phish.47F1A8D1
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 76)
Infected with: Generic.Trojan.Phish.AAE4F2A5
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 76)
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 76)
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Infected with: Trojan.ASXLoad.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Infected with: Trojan.Peed.AO
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Infected with: Trojan.Peed.E
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe
Infected with: Trojan.Peed.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe
Infected with: Trojan.Peed.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)=>zlib_nsis0001
Deleted
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)
Update failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)=>zlib_nsis0001
Deleted
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)
Update failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Deleted
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)
Update failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Disinfection failed
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Deleted
C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)
Update failed
Re,
Normalement Bitdefender a supprimer tout les virus. Refait un scan bitdefender pour vérification.
Normalement Bitdefender a supprimer tout les virus. Refait un scan bitdefender pour vérification.
j'ai fait un scan bitfender et un autre de kaspersky. je t'envoie les rapports
BitDefender Online Scanner
Scan report generated at: Wed, Apr 11, 2007 - 19:06:11
Scan path: C:\;D:\;E:\;F:\;G:\;H:\;I:\;J:\;K:\;L:\;
Statistics
Time
09:21:26
Files
938688
Folders
16567
Boot Sectors
5
Archives
49604
Packed Files
87533
Results
Identified Viruses
13
Infected Files
26
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
26
Engines Info
Virus Definitions
485064
Engine build
AVCORE v1.0 (build 2397) (i386) (Feb 8 2007 14:24:08)
Scan plugins
14
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Deleted
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)
Update failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Deleted
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)
Update failed
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Infected with: Backdoor.Skinymes.Agent.A
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Deleted
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Infected with: Generic.Trojan.Phish.F48AE1BC
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Infected with: Generic.Trojan.Phish.72844F51
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Infected with: Generic.Trojan.Phish.47F1A8D1
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 115)
Infected with: Generic.Trojan.Phish.AAE4F2A5
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 115)
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 115)
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Infected with: Trojan.ASXLoad.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Infected with: Trojan.Peed.AO
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Infected with: Trojan.Peed.E
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe
Infected with: Trojan.Peed.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe
Infected with: Trojan.Peed.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
KASPERSKY ON-LINE SCANNER REPORT
Wednesday, April 11, 2007 6:34:37 PM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 11/04/2007
Enregistrements dans la base antivirus Kaspersky : 277613
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
K:\
L:\
Statistiques de l'analyse
Total d'objets analysés 211279
Nombre de virus trouvés 8
Nombre d'objets infectés 366 / 0
Nombre d'objets suspects 3
Durée de l'analyse 09:15:51
Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Mozilla\Firefox\Profiles\em8c37uo.default\cookiesnew.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" ][Date Thu, 8 Dec 2005 07:08:33 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" ][Date Tue, 13 Dec 2005 23:19:04 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43: ... /uwhxstr.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Al ... /[From "Eirene" ][Date Sun, 05 Feb 2006 19:26:10 -0800]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Alexander" ][Date Sun, 05 Feb 2006 14:24:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[From "Millet Jean-Michel" ][Date Sun, 5 Feb 2006 14:34:10 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... /[From "Lucas Martinez" ][Date Thu, 02 Feb 2006 22:00:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley"
][Date Thu, 02 Feb 2006 22:41:00 +0800]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Thu, 02 Feb 2006 03:05:54 -0200]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Wed, 01 Feb 2006 11:24:52 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45 ... /zcqugapl.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45:47 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou . ... /[From "Millet Jean-Michel" ][Date Wed, 15 Feb 2006 11:14:41 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou ... / ... ... /[From "Vincent Bell" ][Date Tue, 14 Feb 2006 20:19:14 -0500]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou ... / ... /[From Bichard Arnaud ][Date Tue, 14 Feb 2006 21:42:14 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou ... /[From Nichols Harley ][Date Tue, 14 Feb 2006 19:03:24 -0000]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bouyri ... /[From "Amaleta Kinnaird" ][Date Tue, 14 Feb 2006 2:52:23 -0500]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bouyrie" ][Date Tue, 14 Feb 2006 10:04:47 -0000]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bouyrie" ][Date Mon, 13 Feb 2006 21:54:20 -0000]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Tue, 21 Feb 2006 09:27:3 ... /uylycj.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Tue, 21 Feb 2006 09:27:30 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "philippe_brizemur" ][Date Wed, 22 Feb 2006 14:44:18 ... /udjqf.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "philippe_brizemur" ][Date Wed, 22 Feb 2006 14:44:18 -0000]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From ... /[From Anne Le Madec ][Date Tue, 21 Feb 2006 15:51:46 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yann ... /[From "toirowpa" ][Date Tue, 21 Feb 2006 09:48:47 -0000]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Tue, 21 Feb 2006 09:27:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "p/.b ... /[From ... /[From "Jerome COLIN" ][Date Mon, 20 Feb 2006 15:24:35 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "p/.b ... /[From ... /[From "Jerome COLIN" ][Date Mon, 20 Feb 2006 15:24:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Sett
BitDefender Online Scanner
Scan report generated at: Wed, Apr 11, 2007 - 19:06:11
Scan path: C:\;D:\;E:\;F:\;G:\;H:\;I:\;J:\;K:\;L:\;
Statistics
Time
09:21:26
Files
938688
Folders
16567
Boot Sectors
5
Archives
49604
Packed Files
87533
Results
Identified Viruses
13
Infected Files
26
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
26
Engines Info
Virus Definitions
485064
Engine build
AVCORE v1.0 (build 2397) (i386) (Feb 8 2007 14:24:08)
Scan plugins
14
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001
Deleted
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)
Update failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Infected with: Trojan.Hotbar.A
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001
Deleted
C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)
Update failed
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Infected with: Backdoor.Skinymes.Agent.A
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Disinfection failed
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009
Deleted
C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Infected with: Win32.Netsky.P@mm
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)
Update failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Infected with: Generic.Trojan.Phish.F48AE1BC
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Infected with: Generic.Trojan.Phish.72844F51
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Infected with: Generic.Trojan.Phish.47F1A8D1
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Disinfection failed
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)
Deleted
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 115)
Infected with: Generic.Trojan.Phish.AAE4F2A5
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 115)
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 115)
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Infected with: Trojan.ASXLoad.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Infected with: Win32.Netsky.Y@MM.damaged
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Infected with: Trojan.Peed.AO
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Infected with: Trojan.Peed.E
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Disinfection failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe
Infected with: Trojan.Peed.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe
Infected with: Trojan.Peed.A
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe
Deleted
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)
Updated
C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx
Update failed
KASPERSKY ON-LINE SCANNER REPORT
Wednesday, April 11, 2007 6:34:37 PM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 11/04/2007
Enregistrements dans la base antivirus Kaspersky : 277613
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
K:\
L:\
Statistiques de l'analyse
Total d'objets analysés 211279
Nombre de virus trouvés 8
Nombre d'objets infectés 366 / 0
Nombre d'objets suspects 3
Durée de l'analyse 09:15:51
Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Mozilla\Firefox\Profiles\em8c37uo.default\cookiesnew.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" ][Date Thu, 8 Dec 2005 07:08:33 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" ][Date Tue, 13 Dec 2005 23:19:04 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43: ... /uwhxstr.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Al ... /[From "Eirene" ][Date Sun, 05 Feb 2006 19:26:10 -0800]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Alexander" ][Date Sun, 05 Feb 2006 14:24:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[From "Millet Jean-Michel" ][Date Sun, 5 Feb 2006 14:34:10 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... /[From "Lucas Martinez" ][Date Thu, 02 Feb 2006 22:00:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley"
][Date Thu, 02 Feb 2006 22:41:00 +0800]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Thu, 02 Feb 2006 03:05:54 -0200]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Wed, 01 Feb 2006 11:24:52 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45 ... /zcqugapl.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45:47 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou . ... /[From "Millet Jean-Michel" ][Date Wed, 15 Feb 2006 11:14:41 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou ... / ... ... /[From "Vincent Bell" ][Date Tue, 14 Feb 2006 20:19:14 -0500]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou ... / ... /[From Bichard Arnaud ][Date Tue, 14 Feb 2006 21:42:14 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou ... /[From Nichols Harley ][Date Tue, 14 Feb 2006 19:03:24 -0000]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bouyri ... /[From "Amaleta Kinnaird" ][Date Tue, 14 Feb 2006 2:52:23 -0500]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bouyrie" ][Date Tue, 14 Feb 2006 10:04:47 -0000]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bouyrie" ][Date Mon, 13 Feb 2006 21:54:20 -0000]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Tue, 21 Feb 2006 09:27:3 ... /uylycj.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Tue, 21 Feb 2006 09:27:30 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "philippe_brizemur" ][Date Wed, 22 Feb 2006 14:44:18 ... /udjqf.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "philippe_brizemur" ][Date Wed, 22 Feb 2006 14:44:18 -0000]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From ... /[From Anne Le Madec ][Date Tue, 21 Feb 2006 15:51:46 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yann ... /[From "toirowpa" ][Date Tue, 21 Feb 2006 09:48:47 -0000]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Tue, 21 Feb 2006 09:27:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "p/.b ... /[From ... /[From "Jerome COLIN" ][Date Mon, 20 Feb 2006 15:24:35 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "p/.b ... /[From ... /[From "Jerome COLIN" ][Date Mon, 20 Feb 2006 15:24:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Sett
Voici le log demandé :
Logfile of HijackThis v1.99.1
Scan saved at 23:39:55, on 31/03/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Adobe\Acrobat 7.0\Acrobat\Acrobat.exe
C:\DOCUME~1\Nicolas\LOCALS~1\Temp\Adobelm_Cleanup.0001
C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
C:\DOCUME~1\Nicolas\LOCALS~1\Temp\Adobelm_Cleanup.0001
C:\PROGRA~1\Internet\DAP\DAP.EXE
C:\Program Files\Internet\LimeWire\LimeWire.exe
C:\PROGRA~1\Wanadoo\WOOBRO~1\DownloadManager.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\uTorrent\utorrent.exe
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\Program Files\Hijack This\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\UTILIT~1\eoRezo\EoAdv\EOREZO~1.DLL
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Browster BrwIEConnector - {908A31E8-2A6E-4736-8E8A-AAF00C4AE38F} - C:\Program Files\Browster\Browster.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: LastClosedTab - {e05e75e9-a653-42a3-8d05-f2f7e309bdca} - mscoree.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Copernic Desktop Search - {C5F7A735-70F1-477F-8C36-6FF3C736017B} - C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearchIntegration974.dll
O3 - Toolbar: Browster - {2EF39867-654F-48b6-8F93-B4FC3E8C6844} - C:\Program Files\Browster\Browster.dll
O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [WinPatrol] C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [gndlxxms] C:\WINDOWS\system32\ucegxbpt.exe
O4 - HKLM\..\Run: [SpeedOptimizer] C:\PROGRA~1\SPEEDO~1\SPO.EXE -s
O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKCU\..\Run: [Copernic Desktop Search] "C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe" /tray
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\Internet\DAP\dapextie.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Browster Prefetch On/Off - res://C:\Program Files\Browster\Browster.dll/CustomPrefetchMenu.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\Internet\DAP\dapextie2.htm
O8 - Extra context menu item: Download with NetPumper - C:\Program Files\Internet\NetPumper\NetPumper\AddUrl.htm
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec &BitSpirit - C:\Program Files\Internet\BitSpirit\bsurl.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Xanadu - {5CC384BB-1326-11D5-F4AE-00C04923F885} - C:\Program Files\Utilitaires\Xanadu\XanaduLaunch.exe
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .csm: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .csml: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cub: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cube: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .dx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .emb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .embl: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .gau: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .jdx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mol: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mop: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .pdb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .rxn: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .scr: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .skc: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .spt: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .tgf: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .xyz: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - https://www.nordnet.com/securite
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15027/CTPID.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Securitoo AntiVirus Firewall (BackWeb Client - 1044199) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Authentication Agent (FSAA) - Unknown owner - C:\Program Files\Securitoo\av_fw\Common\FSAA.EXE (file missing)
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
O23 - Service: F-Secure Distributed Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\fswsclds.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe