[Infection] par Adware

Résolu
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   -  
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   -
Bonsoir

J'ai fait un scan avec symantec et il me trouve infections : adware.Hotbar et Adware.Slagent.

Je ne sais pas exactement ce qu'ils font mais je sais que lorsque je navigue sur le web, j'ai de nouvelles pages qui s'affichent intempestives.

j'ai utilisé spybot deja

Merci de m'aider
A voir également:

34 réponses

Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Bonsoir,

télécharge HijackThis ici:
http://telechargement.zebulon.fr/138-hijackthis-1991.html

Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif

Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum

Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
merci de ton aide

Voici le log demandé :

Logfile of HijackThis v1.99.1
Scan saved at 23:39:55, on 31/03/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Adobe\Acrobat 7.0\Acrobat\Acrobat.exe
C:\DOCUME~1\Nicolas\LOCALS~1\Temp\Adobelm_Cleanup.0001
C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
C:\DOCUME~1\Nicolas\LOCALS~1\Temp\Adobelm_Cleanup.0001
C:\PROGRA~1\Internet\DAP\DAP.EXE
C:\Program Files\Internet\LimeWire\LimeWire.exe
C:\PROGRA~1\Wanadoo\WOOBRO~1\DownloadManager.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\uTorrent\utorrent.exe
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\Program Files\Hijack This\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\UTILIT~1\eoRezo\EoAdv\EOREZO~1.DLL
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Browster BrwIEConnector - {908A31E8-2A6E-4736-8E8A-AAF00C4AE38F} - C:\Program Files\Browster\Browster.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: LastClosedTab - {e05e75e9-a653-42a3-8d05-f2f7e309bdca} - mscoree.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Copernic Desktop Search - {C5F7A735-70F1-477F-8C36-6FF3C736017B} - C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearchIntegration974.dll
O3 - Toolbar: Browster - {2EF39867-654F-48b6-8F93-B4FC3E8C6844} - C:\Program Files\Browster\Browster.dll
O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [WinPatrol] C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [gndlxxms] C:\WINDOWS\system32\ucegxbpt.exe
O4 - HKLM\..\Run: [SpeedOptimizer] C:\PROGRA~1\SPEEDO~1\SPO.EXE -s
O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKCU\..\Run: [Copernic Desktop Search] "C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe" /tray
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\Internet\DAP\dapextie.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Browster Prefetch On/Off - res://C:\Program Files\Browster\Browster.dll/CustomPrefetchMenu.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\Internet\DAP\dapextie2.htm
O8 - Extra context menu item: Download with NetPumper - C:\Program Files\Internet\NetPumper\NetPumper\AddUrl.htm
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec &BitSpirit - C:\Program Files\Internet\BitSpirit\bsurl.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Xanadu - {5CC384BB-1326-11D5-F4AE-00C04923F885} - C:\Program Files\Utilitaires\Xanadu\XanaduLaunch.exe
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .csm: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .csml: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cub: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cube: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .dx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .emb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .embl: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .gau: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .jdx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mol: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mop: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .pdb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .rxn: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .scr: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .skc: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .spt: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .tgf: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .xyz: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - https://www.nordnet.com/securite
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15027/CTPID.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Securitoo AntiVirus Firewall (BackWeb Client - 1044199) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Authentication Agent (FSAA) - Unknown owner - C:\Program Files\Securitoo\av_fw\Common\FSAA.EXE (file missing)
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
O23 - Service: F-Secure Distributed Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\fswsclds.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Prends connaissance du contenu le lien suivant:

http://www.f-secure.com/products/license-terms/eult_fra.pdf

Tu as donc pris connaissance et accepté les conditions d'utilisations du programme blacklight qui est inclus dans le dossier compressé navilog1.zip que tu vas télécharger.

Maintenant fais un clic droit sur ce lien :

http://perso.orange.fr/il.mafioso/Navifix/navilog1.zip

Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.

Fais un clic droit sur navilog1.zip et choisis "tout extraire"

Ensuite double clique sur navilog1.bat

Laisses-toi guider.

Au menu principal, choisis 1 et valides.

(Ne fais pas le choix 2 sans notre avis/accord)

Patientes jusqu'au message :

*** Analyse Termine le ..... ***

Appuies sur une touche comme demandé, le bloc note va s'ouvrir.

Copies-colles l'intégralité dans une réponse.

Refermes le bloc note.

Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Voici le fichier :

Search Navipromo version 1.1.3 commencé le 01/04/2007 à 0:25:47,78

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Poster ce rapport sur le forum pour le faire analyser !!!
!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!

Fix lancé depuis C:\Documents and Settings\Nicolas\Bureau\navilog1
Mise a jour le 31.03.2007 a 08h00 by IL-MAFIOSO

Executé en mode normal

*** Recherche Programmes installes ***


MessengerSkinner


*** Recherche dossiers dans C:\WINDOWS ***




*** Recherche dossiers dans C:\Program Files ***


C:\Program Files\MessengerSkinner trouvé !


*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***




*** Recherche dossiers dans C:\Documents and Settings\Nicolas\Application Data ***


...\Application Data\MessengerSkinner trouvé !

*** Recherche avec BlackLight Engine/F-secure ***
BlackLight Engine est un produit de F-secure, pour + d'infos :
https://www.f-secure.com/en


F-SECURE BLACKLIGHT ROOTKIT ELIMINATOR
======================================

Copyright 2005-2006 F-Secure Corporation. All rights reserved.
This is a beta version. It will expire on 1st of April, 2007.
Version information: 2.2.1061.

[+] Started on 04/01/07 at 00:25:49.
[+] Initializing ...
[+] Starting scan, press Ctrl-C to abort.
[+] Scanning for hidden items .............................................................................................................
[+] Hidden process: C:\windows\system32\tiwdyftivk.exe (Action: none)
[+] Scanning for hidden items ....
[-] Scan aborted due to user logoff.
[+] Summary: 1 hidden item(s) found, 0 scheduled for renaming.
[+] Exited on 04/01/07 at 00:39:11 (return code = 1).


*** Recherche fichiers ***


C:\WINDOWS\pack.epk trouvé !
C:\WINDOWS\system32\nvs2.inf trouvé !
C:\WINDOWS\system32\HotTVPlayer.dll trouvé !


*** Recherche cles registre ***


Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]



Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]



Recherche Clé Magic Control

HKEY_CURRENT_USER\Software\Lanconfig trouvé !


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche fichiers connus:


2)Recherche Heuristique :
*
C:\WINDOWS\system32\tiwdyftivk.dat trouvé !
**
C:\WINDOWS\system32\tiwdyftivk.dat trouvé !
***
****
C:\WINDOWS\system32\tiwdyftivk_navps.dat trouvé !
*****
******
*******
********
C:\WINDOWS\system32\tiwdyftivk.exe trouvé !


*** Analyse Terminé le 01/04/2007 à 0:41:24,53 ***
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
RE,

Tout d'abord désinstalle "Messenger Skinner"grace a ajout/suppression de programmes, puis supprime ce chemin :

Redémarre en mode sans échec tuto : http://forum.telecharger.01net.com/forum/high-tech/SECURITE/Securite/redemarrer-mode-echec-sujet_1526_1.htm
Puis supprime ce chemin :

C:\Program Files\MessengerSkinner
Et supprime-le.

Ensuite double-clique sur Navilog1.bat et choisis l'option 2
Redémarre normalement et poste le log Navilog + un log Hijackthis.
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Voici le log hijack

Logfile of HijackThis v1.99.1
Scan saved at 01:21:01, on 01/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\WINDOWS\AGRSMMSG.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\system32\cmd.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Documents and Settings\Nicolas\Bureau\navilog1\fsblc.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hijack This\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\UTILIT~1\eoRezo\EoAdv\EOREZO~1.DLL
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Browster BrwIEConnector - {908A31E8-2A6E-4736-8E8A-AAF00C4AE38F} - C:\Program Files\Browster\Browster.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: LastClosedTab - {e05e75e9-a653-42a3-8d05-f2f7e309bdca} - mscoree.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Copernic Desktop Search - {C5F7A735-70F1-477F-8C36-6FF3C736017B} - C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearchIntegration974.dll
O3 - Toolbar: Browster - {2EF39867-654F-48b6-8F93-B4FC3E8C6844} - C:\Program Files\Browster\Browster.dll
O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [WinPatrol] C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [tiwdyftivk] c:\windows\system32\tiwdyftivk.exe tiwdyftivk
O4 - HKLM\..\Run: [SpeedOptimizer] C:\PROGRA~1\SPEEDO~1\SPO.EXE -s
O4 - HKCU\..\Run: [Copernic Desktop Search] "C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe" /tray
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\Internet\DAP\dapextie.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Browster Prefetch On/Off - res://C:\Program Files\Browster\Browster.dll/CustomPrefetchMenu.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\Internet\DAP\dapextie2.htm
O8 - Extra context menu item: Download with NetPumper - C:\Program Files\Internet\NetPumper\NetPumper\AddUrl.htm
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec &BitSpirit - C:\Program Files\Internet\BitSpirit\bsurl.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Xanadu - {5CC384BB-1326-11D5-F4AE-00C04923F885} - C:\Program Files\Utilitaires\Xanadu\XanaduLaunch.exe
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .csm: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .csml: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cub: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cube: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .dx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .emb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .embl: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .gau: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .jdx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mol: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mop: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .pdb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .rxn: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .scr: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .skc: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .spt: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .tgf: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .xyz: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - https://www.nordnet.com/securite
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15027/CTPID.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Securitoo AntiVirus Firewall (BackWeb Client - 1044199) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Authentication Agent (FSAA) - Unknown owner - C:\Program Files\Securitoo\av_fw\Common\FSAA.EXE (file missing)
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
O23 - Service: F-Secure Distributed Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\fswsclds.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Et voici le second

Search Navipromo version 1.1.3 commencé le 01/04/2007 à 1:16:09,98

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Poster ce rapport sur le forum pour le faire analyser !!!
!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!

Fix lancé depuis C:\Documents and Settings\Nicolas\Bureau\navilog1
Mise a jour le 31.03.2007 a 08h00 by IL-MAFIOSO

Executé en mode normal

*** Recherche Programmes installes ***




*** Recherche dossiers dans C:\WINDOWS ***




*** Recherche dossiers dans C:\Program Files ***




*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***




*** Recherche dossiers dans C:\Documents and Settings\Nicolas\Application Data ***



*** Recherche avec BlackLight Engine/F-secure ***
BlackLight Engine est un produit de F-secure, pour + d'infos :
https://www.f-secure.com/en


F-SECURE BLACKLIGHT ROOTKIT ELIMINATOR
======================================

Copyright 2005-2006 F-Secure Corporation. All rights reserved.
This is a beta version. It will expire on 1st of April, 2007.
Version information: 2.2.1061.

[+] Started on 04/01/07 at 01:16:13.
[+] Initializing ...
[+] Starting scan, press Ctrl-C to abort.
[+] Scanning for hidden items ................................................................................................................................
[+] Scan complete.
[+] Summary: 0 hidden item(s) found, 0 scheduled for renaming.
[+] Exited on 04/01/07 at 01:32:36 (return code = 0).


*** Recherche fichiers ***




*** Recherche cles registre ***


Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]



Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]



Recherche Clé Magic Control



*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche fichiers connus:


2)Recherche Heuristique :
*
**
***
****
*****
******
*******
********


*** Analyse Terminé le 01/04/2007 à 1:33:44,42 ***
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Donc télécharge clean : http://www.malekal.com/download/clean.zip

Installe-le sur le bureau et dezippe-le.
Un dossier clean va être créer double-clique dessus
Puis double clique sur clean.cmd et choisit l'option 1.Patiente un peu.
Poste ce rapport dans ton prochain post
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Rapport clean par Malekal_morte - http://www.malekal.com
Option 1, executee le 01/04/2007 a 13:42:45,26

*** Recherche de fichiers sur C:
C:\StubInstaller.exe FOUND
C:\unwise.exe FOUND

*** Recherche des fichiers dans C:\WINDOWS\

*** Recherche des fichiers dans C:\WINDOWS\system32
C:\WINDOWS\system32\SpoonUninstall.exe FOUND
"C:\WINDOWS\Downloaded Program Files\CONFLICT.1" FOUND

"C:\Program Files\HbTools\" FOUND
"C:\Program Files\Internet\" FOUND
*** Fin du rapport !
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Redémarre en mode sans échec tuto : http://forum.telecharger.01net.com/forum/high-tech/SECURITE/Securite/redemarrer-mode-echec-sujet_1526_1.htm

Puis lance clean.cmd et choisis l'option 2.
Redémarre normalement et poste le log clean + un log Hijackthis
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Et celui de clean :

Script execute en mode sans echec
Rapport clean par Malekal_morte - http://www.malekal.com
Option 2, executee le 01/04/2007 a 14:58:10,73

Microsoft Windows XP [version 5.1.2600]

*** Suppression de fichiers sur C:
tentative de suppression de C:\StubInstaller.exe
tentative de suppression de C:\unwise.exe

*** Suppression des fichiers dans C:\WINDOWS\

*** Suppression des fichiers dans C:\WINDOWS\system32
tentative de suppression de C:\WINDOWS\system32\SpoonUninstall.exe
tentative de suppression de "C:\WINDOWS\Downloaded Program Files\CONFLICT.1"

tentative de suppression de "C:\Program Files\HbTools\"
tentative de suppression de "C:\Program Files\Internet\"

*** Suppression des clefs du registre effectuee..
*** Fin du rapport !
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Voici le log hijackthis :

Logfile of HijackThis v1.99.1
Scan saved at 15:10:42, on 01/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hijack This\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\UTILIT~1\eoRezo\EoAdv\EOREZO~1.DLL
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Browster BrwIEConnector - {908A31E8-2A6E-4736-8E8A-AAF00C4AE38F} - C:\Program Files\Browster\Browster.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: LastClosedTab - {e05e75e9-a653-42a3-8d05-f2f7e309bdca} - mscoree.dll (file missing)
O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: Copernic Desktop Search - {C5F7A735-70F1-477F-8C36-6FF3C736017B} - C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearchIntegration974.dll
O3 - Toolbar: Browster - {2EF39867-654F-48b6-8F93-B4FC3E8C6844} - C:\Program Files\Browster\Browster.dll
O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\av_fw\TNB\TNBUtil.exe" /CHECKALL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Tweak UI] RUNDLL32.EXE TWEAKUI.CPL,TweakMeUp
O4 - HKLM\..\Run: [WinPatrol] C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [tiwdyftivk] c:\windows\system32\tiwdyftivk.exe tiwdyftivk
O4 - HKCU\..\Run: [Copernic Desktop Search] "C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe" /tray
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\Internet\DAP\dapextie.htm
O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Browster Prefetch On/Off - res://C:\Program Files\Browster\Browster.dll/CustomPrefetchMenu.htm
O8 - Extra context menu item: Convertir en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\Internet\DAP\dapextie2.htm
O8 - Extra context menu item: Download with NetPumper - C:\Program Files\Internet\NetPumper\NetPumper\AddUrl.htm
O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Télécharger avec &BitSpirit - C:\Program Files\Internet\BitSpirit\bsurl.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Xanadu - {5CC384BB-1326-11D5-F4AE-00C04923F885} - C:\Program Files\Utilitaires\Xanadu\XanaduLaunch.exe
O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .csm: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .csml: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cub: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .cube: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .dx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .emb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .embl: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .gau: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .jdx: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mol: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .mop: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .pdb: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .rxn: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .scr: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .skc: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .spt: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .tgf: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O12 - Plugin for .xyz: C:\Program Files\Internet Explorer\Plugins\npchime.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15015/CTSUEng.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by105fd.bay105.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - https://www.nordnet.com/securite
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/PhotoSwap/PhtPkMSN.cab
O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab55762.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmessengersetupdownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (a-squared Scanner) - http://ax.emsisoft.com/asquared.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15027/CTPID.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Securitoo AntiVirus Firewall (BackWeb Client - 1044199) - Unknown owner - C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Authentication Agent (FSAA) - Unknown owner - C:\Program Files\Securitoo\av_fw\Common\FSAA.EXE (file missing)
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
O23 - Service: F-Secure Distributed Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\Securitoo\av_fw\fswsclds.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Lance ce scan en ligne : https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
Puis accepte ou installe tout ce qu'il te demandent.
Puis poste le rapport lors de ton prochain poste
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
KASPERSKY ON-LINE SCANNER REPORT
Tuesday, April 03, 2007 12:06:34 AM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 2/04/2007
Enregistrements dans la base antivirus Kaspersky : 273655
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
H:\
I:\
J:\
K:\
L:\
Statistiques de l'analyse
Total d'objets analysés 225934
Nombre de virus trouvés 10
Nombre d'objets infectés 523 / 0
Nombre d'objets suspects 14
Durée de l'analyse 05:49:03

Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\pctek.err L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\Updater\udlog.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Mozilla\Firefox\Profiles\em8c37uo.default\cookiesnew.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer . ... /[From ][Date Mon, 11 Jul 2005 18:39:49 +0100]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer ... /[From "Hellman"][Date Thu, 07 Jul 2005 15:01:37 +0100]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ]/text Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:19:03 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:17:25 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:14:51 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree ... /[From "Warez13.net" ][Date Mon, 27 Jun 2005 23:44:56 +0200]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:06:12 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ][Date Sun, 26 Jun 2005 13:22:30 +0400]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 06 Aug 2005 10:15:57 +0000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Tue, 09 Aug 2005 17:12:06 +0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sun, 07 Aug 2005 10:29:14 -0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date ÐÇÆÚÒ», 01 °ËÔÂ 2005 23:00:16 +0100]/html Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Fri, 29 Jul 2005 13:14:19 -0100]/text Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 30 Jul 2005 04:04:15 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Thu, 28 Jul 05 08:05:28 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 18:55:32 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 11:48:53 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[Fro ... /[From "gbouyrie" ][Date Wed, 02 Nov 2005 15:36:25 -0000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 +0600]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade ... /[From "Josianne SAUVAGE" ][Date Tue, 1 Nov 2005 18:16:21 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" ][Date Tue, 1 Nov 2005 08:24:39 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseud ... /[From "Erica Beard" ][Date Tue, 29 Nov 2005 08:27:15 -0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text ... /[From "Warez13.net Votre newsletter" ][Date Thu, 01 Dec 2005 05:52:41 +1000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Vot ... /details.txt .pif Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ... /[From jc.herriau@ffme.fr][Date Mon, 5 Dec 2005 09:20:58 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ][Date Mon, 05 Dec 2005 03:08:27 +1000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whitta ... /[From nlbmoi@yahoo.fr][Date Tue, 6 Dec 2005 09:24:40 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 - ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From Anne Le Madec ][Date Tue, 6 Dec 2005 11:42:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -050 ... /text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... /[From Abdelfattah mdaghri ][Date Mon, 5 Dec 2005 17:14:18 +0100 (CET)]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes ... /[From "Millet Jean-Michel" ][Date Thu, 8 Dec 2005 13:41:28 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From ... /[From Yves Cortial ][Date Thu, 08 Dec 2005 11:58:13 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From "Bleaches C. Hilario" ][Date Thu, 08 Dec 2005 05:55:38 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" ][Date Thu, 8 Dec 2005 07:08:33 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" ][Date Tue, 13 Dec 2005 23:19:04 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43: ... /uwhxstr.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Al ... /[From "Eirene" ][Date Sun, 05 Feb 2006 19:26:10 -0800]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Alexander" ][Date Sun, 05 Feb 2006 14:24:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[From "Millet Jean-Michel" ][Date Sun, 5 Feb 2006 14:34:10 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... /[From "Lucas Martinez" ][Date Thu, 02 Feb 2006 22:00:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley"
][Date Thu, 02 Feb 2006 22:41:00 +0800]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Thu, 02 Feb 2006 03:05:54 -0200]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Wed, 01 Feb 2006 11:24:52 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45 ... /zcqugapl.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45:47 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou . ... /[From "Millet Jean-Michel" ][Date Wed, 15 Feb 2006 11:14:41 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\In
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Dis donc faudrait faire gaffe avant l'ouverture des pièces jointes.

Donc telecharge ELIBAGLA
http://www.zonavirus.com/datos/descargas/95/elibagla.asp

suis ces procédures :

Clique sur le bouton Descargar Elibagla, cela va télécharger le fichier, place-le sur ton Bureau.
Double-clique dessus pour l'ouvrir.
Assure-toi que dans le menu déroulant Unidad, vous ayez bien C:\
Vérifie aussi aussi que l'option en bas de la fenêtre Eliminar Ficheros Automaticamente soit bien cochée.
Clique sur le bouton Explorar pour lancer l'analyse.
Poste le rapport généré en fin d'analyse.

Poste le rapport dans ton prochain post
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Tu les virus les plus répandus :s.

Télécharge le fix Netsky :

https://www.broadcom.com/support/security-center

Execute-le et laisse toi guider.
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Puis apres tout ca tu avs télécharger le Fix Matubu :

http://www.secuser.com/telechargement/desinfection/AntiMabutu-EN.exe

Tu l'execute et tu te laisse guider.

Ensuite tu désinstalle Thunderbird.
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Quand j'utilise FxNetsky.exe, le logiciel plante en cours d'execution : j'ai le message d'erreurs de windows me demandant si je veux envoyer le rapport d'erreurs ou pas.

Sinon voici le log demandé :

Wed Apr 04 09:55:00 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):

Wed Apr 04 09:55:18 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\

Wed Apr 04 11:00:19 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):

Wed Apr 04 11:00:35 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):

Wed Apr 04 11:00:37 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\

Wed Apr 04 11:27:27 2007
EliBagle v10.34 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Re-fait un scan kaspersky.
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Voici le log :
KASPERSKY ON-LINE SCANNER REPORT
Thursday, April 05, 2007 6:12:36 PM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 5/04/2007
Enregistrements dans la base antivirus Kaspersky : 275231
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
K:\
L:\
Statistiques de l'analyse
Total d'objets analysés 225978
Nombre de virus trouvés 10
Nombre d'objets infectés 523 / 0
Nombre d'objets suspects 14
Durée de l'analyse 06:33:25

Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\organizer70\files.MYD L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\organizer70\files.MYI L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\pctek.err L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Adobe\Acrobat\7.0\Updater\udlog.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Modèles\Normal.dot L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Word\DÉMARRAGE\ChLettresFRA.dot L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Word\DÉMARRAGE\Gdmath.dot L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Microsoft\Word\~WRA0003.wbk L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Mozilla\Firefox\Profiles\em8c37uo.default\cookiesnew.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer . ... /[From ][Date Mon, 11 Jul 2005 18:39:49 +0100]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jer ... /[From "Hellman"][Date Thu, 07 Jul 2005 15:01:37 +0100]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ]/text Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:19:03 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:17:25 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree .. ... /[From "Jerome COLIN" ][Date Wed, 29 Jun 2005 17:14:51 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice gree ... /[From "Warez13.net" ][Date Mon, 27 Jun 2005 23:44:56 +0200]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 17:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:17:05 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:06:12 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 + ... /UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ... /[From "Jerome COLIN" ][Date Tue, 28 Jun 2005 12:04:32 +0200]/UNNAMED Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "sharice greene" ][Date Sun, 26 Jun 2005 13:22:30 +0400]/html Infecté : Email-Worm.Win32.Mabutu.a ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 06 Aug 2005 10:15:57 +0000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Tue, 09 Aug 2005 17:12:06 +0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sun, 07 Aug 2005 10:29:14 -0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date ÐÇÆÚÒ», 01 °ËÔÂ 2005 23:00:16 +0100]/html Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Fri, 29 Jul 2005 13:14:19 -0100]/text Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Sat, 30 Jul 2005 04:04:15 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "" ][Date Thu, 28 Jul 05 08:05:28 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.j ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" Infecté : Email-Worm.Win32.Bagle.ef ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.c ... /[From ddpjj-rennes@justice.fr][Date Fri, 25 Nov 2005 19:24:59 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 18:55:32 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-l ... /[From otsi.stlunaire@worldonline.fr][Date Fri, 25 Nov 2005 14:17:09 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel ... /[From "anne-lucie.caous" ][Date Fri, 25 Nov 2005 11:48:53 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[Fro ... /[From "gbouyrie" ][Date Wed, 02 Nov 2005 15:36:25 -0000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 + ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel L ... /[From "Veronica Lott" ][Date Wed, 02 Nov 2005 20:07:04 +0600]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade ... /[From "Josianne SAUVAGE" ][Date Tue, 1 Nov 2005 18:16:21 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Michel Lestrade" ][Date Tue, 1 Nov 2005 08:24:39 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseud ... /[From "Erica Beard" ][Date Tue, 29 Nov 2005 08:27:15 -0200]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text ... /[From "Warez13.net Votre newsletter" ][Date Thu, 01 Dec 2005 05:52:41 +1000]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Vot ... /details.txt .pif Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ... /[From jc.herriau@ffme.fr][Date Mon, 5 Dec 2005 09:20:58 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[F ... /[From "Warez13.net Votre newsletter" ][Date Mon, 05 Dec 2005 03:08:27 +1000]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Kary Gallagher" ][Date Sun, 04 Dec 2005 01:54:00 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whitta ... /[From nlbmoi@yahoo.fr][Date Tue, 6 Dec 2005 09:24:40 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 - ... /UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Ma ... /[From Anne Le Madec ][Date Tue, 6 Dec 2005 11:42:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -050 ... /text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... ... /[From "Sana Whittaker" ][Date Mon, 05 Dec 2005 14:26:13 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ... /[From Abdelfattah mdaghri ][Date Mon, 5 Dec 2005 17:14:18 +0100 (CET)]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From Anne Le Madec ][Date Mon, 5 Dec 2005 11:29:34 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes ... /[From "Millet Jean-Michel" ][Date Thu, 8 Dec 2005 13:41:28 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From ... /[From Yves Cortial ][Date Thu, 08 Dec 2005 11:58:13 +0100]/html Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music ... /[From "Bleaches C. Hilario" ][Date Thu, 08 Dec 2005 05:55:38 -0800]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" ][Date Thu, 8 Dec 2005 07:08:33 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" ][Date Tue, 13 Dec 2005 23:19:04 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43: ... /uwhxstr.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Al ... /[From "Eirene" ][Date Sun, 05 Feb 2006 19:26:10 -0800]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Alexander" ][Date Sun, 05 Feb 2006 14:24:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[From "Millet Jean-Michel" ][Date Sun, 5 Feb 2006 14:34:10 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... /[From "Lucas Martinez" ][Date Thu, 02 Feb 2006 22:00:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley"
][Date Thu, 02 Feb 2006 22:41:00 +0800]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Thu, 02 Feb 2006 03:05:54 -0200]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Wed, 01 Feb 2006 11:24:52 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45 ... /zcqugapl.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45:47 +0100]/UNNAMED Infecté : Em
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Tu vas télécharger SmitFraudFix :
http://siri.urz.free.fr/Fix/SmitfraudFix.exe

Suis ces procédures:

Double-clique sur smitfraudfix.exe
Sélectionne 1 (MAIS SURTOUT PAS LE 2 JE TE DIRAIS QUAND TU POURRA LE FAIRE ) puis appuie "entrer" ensuite un rapport sera généré dans ce chemin :

C:\rapport.txt

Puis tu le colle dans ton prochain post

Remarque:

Process.exe est detecté par certains antivirus.
Ce n'est pas un virus, mais il peut arreter des logiciel de securité avec certaine manipulation.
C'est pour cela qu'il est detecté par les antivirus.
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Salut

voila le rapport :

SmitFraudFix v2.164

Rapport fait à 10:48:39,79, 06/04/2007
Executé à partir de C:\Documents and Settings\Nicolas\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal

»»»»»»»»»»»»»»»»»»»»»»»» Process

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\SECURI~1\av_fw\backweb\1044199\Program\SERVIC~1.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsgk32st.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\program\fsbwsys.exe
C:\Program Files\Securitoo\av_fw\Anti-Virus\FSGK32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fssm32.exe
C:\Program Files\Securitoo\av_fw\fswsclds.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Securitoo\av_fw\Common\FSMA32.EXE
C:\Program Files\Securitoo\av_fw\Common\FSMB32.EXE
C:\Program Files\Securitoo\av_fw\Common\FCH32.EXE
C:\Program Files\Securitoo\av_fw\Common\FAMEH32.EXE
C:\Program Files\Securitoo\av_fw\Anti-Virus\fsav32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Securitoo\av_fw\DFW\Program\fsdfwd.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Securitoo\av_fw\Common\FSM32.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\UTILIT~1\WINPAT~1\winpatrol.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Securitoo\av_fw\backweb\1044199\Program\BackWeb-1044199.exe
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Utilitaires\CopernicdesktopSearch\Copernic Desktop Search\CopernicDesktopSearch.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\PROGRA~1\Wanadoo\Watch.exe
C:\PROGRA~1\MOZILL~2\THUNDE~1.EXE
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\system32\cmd.exe

»»»»»»»»»»»»»»»»»»»»»»»» hosts


»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Nicolas


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Nicolas\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Nicolas\Favoris


»»»»»»»»»»»»»»»»»»»»»»»» Bureau


»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues


»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32-huy32



»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: VIA Rhine II Fast Ethernet Adapter - Miniport d'ordonnancement de paquets
DNS Server Search Order: 192.168.1.1

HKLM\SYSTEM\CCS\Services\Tcpip\..\{BC815D35-0C93-4374-953F-2CD713D0D576}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\..\{BC815D35-0C93-4374-953F-2CD713D0D576}: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1


»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll


»»»»»»»»»»»»»»»»»»»»»»»» Fin
0
bogali gabriella
 
je te répondrai pas parske les virus c chien pour les ordinateur et la personne qui a créyer sa ba si g le coonnaissai il allai montendre mais il a de la chance
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Rien.

Lance ce scan en ligne : http://www.bitdefender.fr/scan8/#

Et execute tout els controles actives ainsi que els installations demandées.
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Salut

j'ai essayé de faire le scan en ligne mais il ne se lance pas, je recois ce message :
This website is not authorized to host this Activex Control
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Re salut

je ne sais pas comment j'ai fait mais j'ai reussi a le faire le scanmais je le ferais demain parce qu'il risque d'être assez long
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Pas de prob en plus ca nous aideras nous 2 car le scan en ligne bitdefender supprime les virus.
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Salut

voici le rapport de bitdefender :


BitDefender Online Scanner







Scan report generated at: Tue, Apr 10, 2007 - 13:25:46









Scan path: C:\;D:\;E:\;F:\;G:\;H:\;I:\;J:\;K:\;L:\;















Statistics

Time


04:34:19

Files


967934

Folders


16864

Boot Sectors


5

Archives


50767

Packed Files


87904







Results

Identified Viruses


13

Infected Files


30

Suspect Files


0

Warnings


0

Disinfected


0

Deleted Files


30







Engines Info

Virus Definitions


484802

Engine build


AVCORE v1.0 (build 2397) (i386) (Feb 8 2007 14:24:08)

Scan plugins


14

Archive plugins


38

Unpack plugins


6

E-mail plugins


6

System plugins


1







Scan Settings

First Action


Disinfect

Second Action


Delete

Heuristics


Yes

Enable Warnings


Yes

Scanned Extensions


*;

Exclude Extensions




Scan Emails


Yes

Scan Archives


Yes

Scan Packed


Yes

Scan Files


Yes

Scan Boot


Yes








Scanned File


Status

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001


Infected with: Trojan.Hotbar.A

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001


Disinfection failed

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001


Deleted

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)


Update failed

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001


Infected with: Trojan.Hotbar.A

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001


Disinfection failed

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001


Deleted

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)


Update failed

C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009


Infected with: Backdoor.Skinymes.Agent.A

C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009


Disinfection failed

C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009


Deleted

C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)


Infected with: Generic.Trojan.Phish.F48AE1BC

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)


Disinfection failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk


Updated

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)


Infected with: Generic.Trojan.Phish.72844F51

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)


Disinfection failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk


Updated

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)


Infected with: Generic.Trojan.Phish.47F1A8D1

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)


Disinfection failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif


Infected with: Win32.Netsky.Y@MM.damaged

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 76)


Infected with: Generic.Trojan.Phish.AAE4F2A5

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 76)


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 76)


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif


Infected with: Win32.Netsky.Y@MM.damaged

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 605)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx


Infected with: Trojan.ASXLoad.A

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 807)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif


Infected with: Win32.Netsky.Y@MM.damaged

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 840)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif


Infected with: Win32.Netsky.Y@MM.damaged

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 933)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe


Infected with: Trojan.Peed.Gen

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1075)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Infected with: Trojan.Peed.Gen

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1228)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Infected with: Trojan.Peed.Gen

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1256)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Infected with: Trojan.Peed.Gen

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1257)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe


Infected with: Trojan.Peed.AO

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1326)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe


Infected with: Trojan.Peed.E

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1501)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe


Infected with: Trojan.Peed.A

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1516)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe


Infected with: Trojan.Peed.A

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1519)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)=>zlib_nsis0001


Infected with: Trojan.Hotbar.A

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)=>zlib_nsis0001


Disinfection failed

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)=>zlib_nsis0001


Deleted

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP727\A0382144.exe=>(NSIS o)


Update failed

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)=>zlib_nsis0001


Infected with: Trojan.Hotbar.A

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)=>zlib_nsis0001


Disinfection failed

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)=>zlib_nsis0001


Deleted

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385359.exe=>(NSIS o)


Update failed

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001


Infected with: Trojan.Hotbar.A

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001


Disinfection failed

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001


Deleted

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)


Update failed

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001


Infected with: Trojan.Hotbar.A

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001


Disinfection failed

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001


Deleted

C:\System Volume Information\_restore{203882C8-1096-4E3A-9389-B460BE012822}\RP736\A0385495.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)


Update failed
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Normalement Bitdefender a supprimer tout les virus. Refait un scan bitdefender pour vérification.
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
j'ai fait un scan bitfender et un autre de kaspersky. je t'envoie les rapports




BitDefender Online Scanner







Scan report generated at: Wed, Apr 11, 2007 - 19:06:11









Scan path: C:\;D:\;E:\;F:\;G:\;H:\;I:\;J:\;K:\;L:\;















Statistics

Time


09:21:26

Files


938688

Folders


16567

Boot Sectors


5

Archives


49604

Packed Files


87533







Results

Identified Viruses


13

Infected Files


26

Suspect Files


0

Warnings


0

Disinfected


0

Deleted Files


26







Engines Info

Virus Definitions


485064

Engine build


AVCORE v1.0 (build 2397) (i386) (Feb 8 2007 14:24:08)

Scan plugins


14

Archive plugins


38

Unpack plugins


6

E-mail plugins


6

System plugins


1







Scan Settings

First Action


Disinfect

Second Action


Delete

Heuristics


Yes

Enable Warnings


Yes

Scanned Extensions


*;

Exclude Extensions




Scan Emails


Yes

Scan Archives


Yes

Scan Packed


Yes

Scan Files


Yes

Scan Boot


Yes








Scanned File


Status

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001


Infected with: Trojan.Hotbar.A

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001


Disinfection failed

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0001


Deleted

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)


Update failed

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001


Infected with: Trojan.Hotbar.A

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001


Disinfection failed

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)=>zlib_nsis0001


Deleted

C:\Documents and Settings\Edouard\Mes documents\hbtools.exe=>(NSIS o)=>lzma_nsis0017=>(NSIS o)=>zlib_nsis0006=>(NSIS g)


Update failed

C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009


Infected with: Backdoor.Skinymes.Agent.A

C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009


Disinfection failed

C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)=>lzma_solid_nsis0009


Deleted

C:\Documents and Settings\Edouard\Mes documents\messengerskinner.exe=>(NSIS 2o)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:data.rtf .scr


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 984)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)=>archstored:details.txt .pif


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox=>(message 1049)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Thu, 8 Dec 2005 10:34:50 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 587)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Wed, 30 Nov 2005 09:54:58 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip=>archstored:data.rtf .scr


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 613)=>[Subject: Re: corrected][Date: Tue, 6 Dec 2005 14:13:54 +0100]=>(MIME part)=>application.zip


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Infected with: Win32.Netsky.P@mm

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)=>archstored:document.txt .exe


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 642)=>[Subject: Mail Delivery (failure nlbmoi@yahoo.fr][Date: Tue, 13 Dec 2005 09:22:54 +0100]=>(MIME part)=>(base64)


Update failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)


Infected with: Generic.Trojan.Phish.F48AE1BC

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)


Disinfection failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 5932)


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk


Updated

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)


Infected with: Generic.Trojan.Phish.72844F51

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)


Disinfection failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6289)


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk


Updated

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)


Infected with: Generic.Trojan.Phish.47F1A8D1

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)


Disinfection failed

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk=>(message 6326)


Deleted

C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Junk


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif


Infected with: Win32.Netsky.Y@MM.damaged

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)=>document.pif


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)=>[Subject: Fw: document][Date: Thu, 22 Feb 2007 15:54:57 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx=>(message 23)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments envoyés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 115)


Infected with: Generic.Trojan.Phish.AAE4F2A5

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 115)


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 115)


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif


Infected with: Win32.Netsky.Y@MM.damaged

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)=>document.pif


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)=>[Subject: Re: document][Date: Sat, 3 Mar 2007 09:19:05 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 644)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx


Infected with: Trojan.ASXLoad.A

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)=>Anniversaire.asx


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)=>[Subject: Anniversaire][Date: Fri, 23 Feb 2007 02:30:38 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 846)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif


Infected with: Win32.Netsky.Y@MM.damaged

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)=>document.pif


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)=>[Subject: Re: document][Date: Sat, 10 Feb 2007 08:34:05 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 879)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif


Infected with: Win32.Netsky.Y@MM.damaged

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)=>document.pif


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)=>[Subject: Re: document][Date: Thu, 8 Feb 2007 08:02:25 +0100]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 972)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe


Infected with: Trojan.Peed.Gen

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)=>Greeting Postcard.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)=>[Subject: Just You][Date: Thu, 8 Feb 2007 23:57:38 +0900]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1114)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Infected with: Trojan.Peed.Gen

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1267)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Infected with: Trojan.Peed.Gen

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1295)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Infected with: Trojan.Peed.Gen

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)=>flash postcard.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)=>[Subject: A Special Kiss][Date: Tue, 30 Jan 2007 16:43:56 -0500]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1296)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe


Infected with: Trojan.Peed.AO

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)=>Greeting Card.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)=>[Subject: In My Heart][Date: Sun, 28 Jan 2007 15:53:09 +0900]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1365)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe


Infected with: Trojan.Peed.E

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe


Disinfection failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)=>Read More.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)=>[Subject: Russian missle shot down Chinese aircr][Date: Tue, 23 Jan 2007 04:23:23 -0800]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1540)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe


Infected with: Trojan.Peed.A

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)=>Full Text.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)=>[Subject: Chinese missile shot down USA satellit][Date: Fri, 19 Jan 2007 22:42:11 -0500]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1555)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe


Infected with: Trojan.Peed.A

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)=>Full Story.exe


Deleted

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)=>[Subject: Chinese missile shot down USA satellit][Date: Sat, 20 Jan 2007 08:34:27 +0800]=>(MIME part)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx=>(message 1558)


Updated

C:\Documents and Settings\Nicolas\Local Settings\Application Data\Identities\{788563A6-45D7-44F0-85E8-F1E20431D8BB}\Microsoft\Outlook Express\Éléments supprimés.dbx


Update failed









KASPERSKY ON-LINE SCANNER REPORT
Wednesday, April 11, 2007 6:34:37 PM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 11/04/2007
Enregistrements dans la base antivirus Kaspersky : 277613
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
K:\
L:\
Statistiques de l'analyse
Total d'objets analysés 211279
Nombre de virus trouvés 8
Nombre d'objets infectés 366 / 0
Nombre d'objets suspects 3
Durée de l'analyse 09:15:51

Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Mozilla\Firefox\Profiles\em8c37uo.default\cookiesnew.txt L'objet est verrouillé ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ... /data.rtf .scr Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Pseudonym J. Sphere" ][Date Sun, 27 Nov 2005 14:33:41 -0800]/text Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "iTunes Music Store" ][Date Thu, 8 Dec 2005 07:08:33 GMT]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Jua ... /[From Philippe Brizemur ][Date Wed, 14 Dec 2005 11:44:13 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johns ... /[From "Wilma Clifton" ][Date Thu, 15 Dec 2005 07:29:34 -0400]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Suspect : Exploit.HTML.Iframe.FileDownload ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan J ... /[From Virginia DE LA MOTA ][Date Fri, 16 Dec 2005 15:17:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Juan Johnson" ][Date Tue, 13 Dec 2005 23:19:04 -0500]/UNNAMED Infecté : Email-Worm.Win32.NetSky.q ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43: ... /uwhxstr.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Mon, 06 Feb 2006 08:43:05 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Al ... /[From "Eirene" ][Date Sun, 05 Feb 2006 19:26:10 -0800]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[F ... /[From "Alexander" ][Date Sun, 05 Feb 2006 14:24:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... ... /[From "Millet Jean-Michel" ][Date Sun, 5 Feb 2006 14:34:10 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Brand ... /[From "Lucas Martinez" ][Date Thu, 02 Feb 2006 22:00:22 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley"
][Date Thu, 02 Feb 2006 22:41:00 +0800]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Thu, 02 Feb 2006 03:05:54 -0200]/text Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "BrandAlley" ][Date Wed, 01 Feb 2006 11:24:52 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45 ... /zcqugapl.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy B ... /[From "Dominique Allain" ][Date Wed, 15 Feb 2006 16:45:47 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou . ... /[From "Millet Jean-Michel" ][Date Wed, 15 Feb 2006 11:14:41 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou ... / ... ... /[From "Vincent Bell" ][Date Tue, 14 Feb 2006 20:19:14 -0500]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou ... / ... /[From Bichard Arnaud ][Date Tue, 14 Feb 2006 21:42:14 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bou ... /[From Nichols Harley ][Date Tue, 14 Feb 2006 19:03:24 -0000]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bouyri ... /[From "Amaleta Kinnaird" ][Date Tue, 14 Feb 2006 2:52:23 -0500]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bouyrie" ][Date Tue, 14 Feb 2006 10:04:47 -0000]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "Guy Bouyrie" ][Date Mon, 13 Feb 2006 21:54:20 -0000]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Tue, 21 Feb 2006 09:27:3 ... /uylycj.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Tue, 21 Feb 2006 09:27:30 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "philippe_brizemur" ][Date Wed, 22 Feb 2006 14:44:18 ... /udjqf.exe Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "philippe_brizemur" ][Date Wed, 22 Feb 2006 14:44:18 -0000]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From ... /[From Anne Le Madec ][Date Tue, 21 Feb 2006 15:51:46 +0100]/html Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yann ... /[From "toirowpa" ][Date Tue, 21 Feb 2006 09:48:47 -0000]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From " ... /[From "Yannick.charlot" ][Date Tue, 21 Feb 2006 09:27:30 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "p/.b ... /[From ... /[From "Jerome COLIN" ][Date Mon, 20 Feb 2006 15:24:35 + ... /UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Settings\Nicolas\Application Data\Thunderbird\Profiles\tw5yhf6e.default\Mail\Local Folders\Inbox/[From jejecoco@free.fr][Date Wed, 1 Jun 2005 12:25:26 +0200]/text/[From jejecoco@free.fr][Date Mon, 23 May 2005 09:13:45 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:25:29 +0200]/UNNAMED/[From jejecoco@free.fr][Date Tue, 17 May 2005 16:20:55 +0200]/UNNAMED/[From "Laurent Bourget" ][Date Tue, 17 May 2005 10:48:24 +0200]/text/[From "p/.b ... /[From ... /[From "Jerome COLIN" ][Date Mon, 20 Feb 2006 15:24:35 +0100]/UNNAMED Infecté : Email-Worm.Win32.Bagle.fj ignoré
C:\Documents and Sett
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

Supprime Outlook et Thunderbird.
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Salut

sur thunderbird et outlook j'ai des mail que je souhaiterais conserver : savez vous comment je peux le faire ??
Puis je les reinstaller après les avoir desinstaller ou pas?
0
Darkkiller Messages postés 2330 Date d'inscription   Statut Contributeur Dernière intervention   67
 
Re,

LEs mails que tu veux conserver sont de toutes facon infectés, donc supprime thunderbird et outlook.
0
nlbmoi Messages postés 434 Date d'inscription   Statut Membre Dernière intervention   24
 
Re,

tu crois que tous mes mails sont infectés ??
0