[FENETRE]sous-systeme MS-DOS 16bits

Résolu
koma14 Messages postés 122 Statut Membre -  
 Utilisateur anonyme -
bonjour!
J'ai une fenêtre qui met apparue marquant ceci
Sous-système MS-DOS 16bits
C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~\DMARRA~1\MS_UPD~1.EXE
le processeur NTVDM a rencontré une instruction non autorisé.
CS:0743 IP:0104 OP:65 63 74 69 6f Choisissez `Fermer' pour metre fin à l'application aidez moi svp je ne sais pas si c'est grave ou aidez moi svp merci
A voir également:

13 réponses

Utilisateur anonyme
 
ce que tu décris ressemble à un trojan.(mais pas forcément)
MemScan:Trojan.Mailskinner.A
fais ceci:
https://leblogdeclaude.blogspot.com/2007/03/informatique-procdure-de-nettoyage.html
------------------------------------
ensuite tu feras ceci:
https://leblogdeclaude.blogspot.com/2006/10/informatique-section-hijackthis.html
1
koma14 Messages postés 122 Statut Membre 2
 
je te remercie je vais suivre tes instruction mais je ne pourais pas le faire avan samedi car je n'ai pa le temps se sori é sinn je susi en interna mais samedi je copie colleré le rapport d'hijackthis merci a bientot bonne soiré
0
Utilisateur anonyme
 
pas de soucis..
0
koma14 Messages postés 122 Statut Membre 2
 
sincèrement désoler de ne répondre que aujourdui alors que j'avais dit samedi mais bon :s donc voila je te donne mon scan :
Logfile of HijackThis v1.99.1
Scan saved at 14:34:15, on 09/05/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\Program Files\ASUS\Probe\AsusProb.exe
C:\PROGRA~1\Wanadoo\CnxMon.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\WINDOWS\System32\PDesk\PDesk.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\temp\svchost.exe
C:\WINDOWS\System32\ctfmon.exe
C:\WINDOWS\svchost.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\WINDOWS\System32\mgabg.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\PAStiSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\OpenOffice.org 2.1\program\soffice.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\OpenOffice.org 2.1\program\soffice.BIN
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Hijackthis Version Française\hijackthis vf.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:8182
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5B274A3F-1D9B-4956-8F3F-B4A53531CE1E} - c:\windows\system32\abpaabp.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
O4 - HKLM\..\Run: [ASUS Probe] C:\Program Files\ASUS\Probe\AsusProb.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [autoclk] autoclk.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [Matrox Powerdesk] C:\WINDOWS\System32\PDesk\PDesk.exe /Autolaunch
O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [MSConfigh] c:\temp\svchost.exe
O4 - HKLM\..\Run: [only23] C:\WINDOWS\SCVHOST.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [xrunwin] C:\WINDOWS\svchost.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: OpenOffice.org 2.1.lnk = C:\Program Files\OpenOffice.org 2.1\program\quickstart.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: MS_update_0704_KB74073.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?564e7f2093534f268fba5367d7778818
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?564e7f2093534f268fba5367d7778818
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{32892961-0540-42E2-8575-80DDDC66100E}: NameServer = 80.10.246.130 80.10.246.3
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: ukdreprl - C:\WINDOWS\SYSTEM32\abpaabp.dll
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InCD Helper (InCDsrv) - AHEAD Software - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: Indexing Helps (Indexingbox) - Unknown owner - %WINDIR%\system\svchest.exe (file missing)
O23 - Service: Indexing Helper (Indexingboxs) - Sydinar Software - c:\temp\svchost.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MGABGEXE - Matrox Graphics Inc. - C:\WINDOWS\System32\mgabg.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: STI Simulator - Unknown owner - C:\WINDOWS\System32\PAStiSvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
Utilisateur anonyme
 
Ton PC est infecté
-------------------------------------------------
fait un scan seul avec Hijackthis
coches les élèments en-dessous
fixer objets
---------------------------------------------------------------
O2 - BHO: (no name) - {5B274A3F-1D9B-4956-8F3F-B4A53531CE1E} - c:\windows\system32\abpaabp.dll
O4 - HKLM\..\Run: [MSConfigh] c:\temp\svchost.exe
O4 - HKLM\..\Run: [only23] C:\WINDOWS\SCVHOST.exe
O4 - HKCU\..\Run: [xrunwin] C:\WINDOWS\svchost.exe
O4 - Global Startup: MS_update_0704_KB74073.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU
Inconnu
O20 - Winlogon Notify: ukdreprl - C:\WINDOWS\SYSTEM32\abpaabp.dll
O23 - Service: Indexing Helps (Indexingbox) - Unknown owner - %WINDIR%\system\svchest.exe (file missing)
O23 - Service: Indexing Helper (Indexingboxs) - Sydinar Software - c:\temp\svchost.exe
--------------------------------------------------------
ensuite faits ceci:
https://leblogdeclaude.blogspot.com/2007/03/informatique-procdure-de-nettoyage.html


0
koma14 Messages postés 122 Statut Membre 2
 
ok daccord merci j'ai fais tout ce que tu ma dis de faire j'espère que je n'aurais plus de problème juste une dernier chose je ne sais pas si c'est a cause de cela mais mozilla ne veut plus se connecter et j'ai regardé je ne l'ai pas bloquer l'acces avec "zone labs" alors je ne comprend pas il dit que la connextion a été refusé par proxy ? donc je ne sais pas mercii :D
0
Utilisateur anonyme
 
la désinfection n'est pas finie... :-/
faits ceci:
https://leblogdeclaude.blogspot.com/2007/03/informatique-procdure-navifix.html

0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
koma14 Messages postés 122 Statut Membre 2
 
ok mais je daccord :p mais par rapport a mozilla tu ne sais pas ? mais le lien pour télécharger le logicile son ton blog est un lien mort :s
0
Utilisateur anonyme
 
Le lien est mort...j'ai trouvé une alternative (mais pas identique)
tous les liens sur le net pointent ici:
http://perso.orange.fr/il.mafioso/Navifix/navilog1.zip
faire ceci en remplacement:
https://leblogdeclaude.blogspot.com/2007/02/informatique-coller-un-rapport.html


*****Dans chaque église, il y a toujours quelque chose qui cloche******
Je n'ai pas la prétention de résoudre les problèmes, j'essaie simplement de rendre service ;-)
0
koma14 Messages postés 122 Statut Membre 2
 
voila :D

05/10/07 17:54:15 [Info]: BlackLight Engine 1.0.61 initialized
05/10/07 17:54:15 [Info]: OS: 5.1 build 2600 (Service Pack 1)
05/10/07 17:54:15 [Note]: 7019 4
05/10/07 17:54:15 [Note]: 7005 0
05/10/07 17:54:25 [Note]: 7006 0
05/10/07 17:54:25 [Note]: 7011 1168
05/10/07 17:54:25 [Note]: 7026 0
05/10/07 17:54:25 [Note]: 7026 0
05/10/07 17:54:25 [Note]: 7024 3
05/10/07 17:54:25 [Info]: Hidden process: C:\Documents and Settings\DOUCIN\Local Settings\Application Data\Microsoft\Internet
05/10/07 17:54:25 [Note]: 7024 3
05/10/07 17:54:25 [Info]: Hidden process: C:\Program Files\Internet Explorer\iexplore.exe
05/10/07 17:54:31 [Note]: FSRAW library version 1.7.1021
05/10/07 17:54:34 [Info]: Hidden file: c:\Documents and Settings\DOUCIN\Local Settings\Application Data\Microsoft\Internet Ex
05/10/07 17:54:34 [Note]: 7002 0
05/10/07 17:54:34 [Note]: 7003 1
05/10/07 17:54:34 [Note]: 10002 3
05/10/07 17:54:34 [Info]: Hidden file: c:\Documents and Settings\DOUCIN\Local Settings\Application Data\Microsoft\Internet Ex
05/10/07 17:54:34 [Note]: 7002 0
05/10/07 17:54:34 [Note]: 7003 1
05/10/07 17:54:34 [Note]: 10002 3
05/10/07 17:54:34 [Info]: Hidden file: c:\Documents and Settings\DOUCIN\Local Settings\Application Data\Microsoft\Internet Ex
05/10/07 17:54:34 [Note]: 7002 0
05/10/07 17:54:34 [Note]: 7003 1
05/10/07 17:54:34 [Note]: 10002 3
05/10/07 17:54:34 [Info]: Hidden file: C:\Documents and Settings\DOUCIN\Local Settings\Application Data\Microsoft\Internet Ex
05/10/07 17:54:34 [Note]: 7002 0
05/10/07 17:54:34 [Note]: 7003 1
05/10/07 17:54:34 [Note]: 10002 3
05/10/07 17:54:34 [Info]: Hidden file: c:\Documents and Settings\DOUCIN\Local Settings\Application Data\Microsoft\Internet Ex
05/10/07 17:54:34 [Note]: 7002 0
05/10/07 17:54:34 [Note]: 7003 1
05/10/07 17:54:34 [Note]: 10002 3
05/10/07 17:54:34 [Info]: Hidden file: c:\Documents and Settings\DOUCIN\Local Settings\Application Data\Microsoft\Internet Ex
05/10/07 17:54:34 [Note]: 7002 0
05/10/07 17:54:34 [Note]: 7003 1
05/10/07 17:54:34 [Note]: 10002 3
05/10/07 17:54:34 [Info]: Hidden file: c:\Documents and Settings\DOUCIN\Local Settings\Application Data\Microsoft\Internet Ex
05/10/07 17:54:34 [Note]: 7002 0
05/10/07 17:54:34 [Note]: 7003 1
05/10/07 17:54:34 [Note]: 10002 3
05/10/07 17:54:35 [Note]: 10002 3
05/10/07 17:54:35 [Note]: 10002 3
05/10/07 17:54:35 [Note]: 10002 3
05/10/07 17:54:35 [Note]: 10002 3
05/10/07 17:54:35 [Note]: 10002 3
05/10/07 17:54:35 [Note]: 10002 3
05/10/07 17:54:35 [Note]: 10002 3
05/10/07 17:57:32 [Info]: Hidden file: c:\WINDOWS\system32\drivers\hd_dirs.cfg
05/10/07 17:57:32 [Note]: 7002 0
05/10/07 17:57:32 [Note]: 7003 1
05/10/07 17:57:32 [Note]: 10002 1
05/10/07 17:57:33 [Info]: Hidden file: c:\WINDOWS\system32\drivers\hd_files.cfg
05/10/07 17:57:33 [Note]: 7002 0
05/10/07 17:57:33 [Note]: 7003 1
05/10/07 17:57:33 [Note]: 10002 1
05/10/07 17:57:33 [Info]: Hidden file: c:\WINDOWS\system32\drivers\hd_proc.cfg
05/10/07 17:57:33 [Note]: 7002 0
05/10/07 17:57:33 [Note]: 7003 1
05/10/07 17:57:33 [Note]: 10002 1
05/10/07 17:57:34 [Info]: Hidden file: c:\WINDOWS\system32\drivers\hd_rkeys.cfg
05/10/07 17:57:34 [Note]: 7002 0
05/10/07 17:57:34 [Note]: 7003 1
05/10/07 17:57:34 [Note]: 10002 1
05/10/07 17:57:34 [Info]: Hidden file: c:\WINDOWS\system32\drivers\hd_rvals.cfg
05/10/07 17:57:34 [Note]: 7002 0
05/10/07 17:57:34 [Note]: 7003 1
05/10/07 17:57:34 [Note]: 10002 1
05/10/07 17:57:34 [Info]: Hidden file: c:\WINDOWS\system32\drivers\hd_self.cfg
05/10/07 17:57:34 [Note]: 7002 0
05/10/07 17:57:34 [Note]: 7003 1
05/10/07 17:57:34 [Note]: 10002 1
05/10/07 17:57:35 [Info]: Hidden file: c:\WINDOWS\system32\drivers\hflt_ipf.sys
05/10/07 17:57:35 [Note]: 7002 0
05/10/07 17:57:35 [Note]: 7003 1
05/10/07 17:57:35 [Note]: 10002 1
05/10/07 18:06:51 [Note]: 7007 0
0
Utilisateur anonyme
 
ok,
j'ai remis à jour la page de mon blog.
Fait ceci:
https://leblogdeclaude.blogspot.com/2007/03/informatique-procdure-navifix.html
0
koma14 Messages postés 122 Statut Membre 2
 
je suis vraiment désoler pour le temps que je met a tout te transmetre tien voici le raport j'eseper que ça ira en tout cas un grand merci a toi :D :

Search Navipromo version 2.0.2 commencé le 18/05/2007 à 11:57:20,89

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Poster ce rapport sur le forum pour le faire analyser !!!
!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!

Fix lancé depuis C:\Program Files\navilog1
Mise a jour le 17.05.2007 a 23h00 by IL-MAFIOSO

Executé en mode normal

*** Recherche Programmes installes ***




*** Recherche dossiers dans C:\WINDOWS ***




*** Recherche dossiers dans C:\Program Files ***




*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***




*** Recherche dossiers dans C:\Documents and Settings\DOUCIN\Application Data ***



*** Recherche avec BlackLight Engine/F-secure ***
BlackLight Engine est un produit de F-secure, pour + d'infos :
https://www.f-secure.com/en


F-SECURE BLACKLIGHT ROOTKIT ELIMINATOR
======================================

Copyright 2005-2006 F-Secure Corporation. All rights reserved.
This is a beta version. It will expire on 1st of April, 2007.
Version information: 2.2.1061.

[+] Started on 05/18/07 at 11:57:22.
[+] Initializing ...
[+] Starting scan, press Ctrl-C to abort.
[+] Scanning for hidden items ................................................
[+] Hidden process: C:\Program Files\Internet Explorer\iexplore.exe (Action: none)
[+] Scanning for hidden items ....
[+] Scan complete.
[+] Summary: 1 hidden item(s) found, 0 scheduled for renaming.
[+] Exited on 05/18/07 at 12:01:54 (return code = 1).


*** Recherche fichiers ***




*** Recherche cles registre ***


Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]



Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]



Recherche Clé Magic Control



*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche fichiers connus:


2)Recherche Heuristique :
*
**
***
****
*****
******
*******
********


*** Analyse Terminé le 18/05/2007 à 12:02:11,45 ***
0
koma14 Messages postés 122 Statut Membre 2
 
j'ai fais les procédure de nettoyage merci

05/19/07 13:09:42 [Info]: BlackLight Engine 1.0.61 initialized
05/19/07 13:09:42 [Info]: OS: 5.1 build 2600 (Service Pack 1)
05/19/07 13:09:43 [Note]: 7019 4
05/19/07 13:09:43 [Note]: 7005 0
05/19/07 13:09:53 [Note]: 7006 0
05/19/07 13:09:53 [Note]: 7011 1168
05/19/07 13:09:54 [Note]: 7026 0
05/19/07 13:09:54 [Note]: 7026 0
05/19/07 13:09:54 [Note]: 7024 3
05/19/07 13:09:54 [Info]: Hidden process: C:\Program Files\Internet Explorer\iexplore.exe
05/19/07 13:10:12 [Note]: FSRAW library version 1.7.1021
05/19/07 14:27:11 [Note]: 7007 0
0
Utilisateur anonyme
 
ok, regarde ce que trouve F-secure
http://support.f-secure.fr/fra/home/ols.shtml
0
koma14 Messages postés 122 Statut Membre 2
 
Scanning Report
Saturday, May 19, 2007 18:34:14 - 21:33:47
Computer name: ATM-E4D576J4STW
Scanning type: Scan system for viruses, rootkits, spyware
Target: C:\ F:\


--------------------------------------------------------------------------------

Result: 350 malware found
Alexa (spyware)
System (Disinfected)
Backdoor.Win32.Agobot.bz (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\01984576.EXE (Renamed & Submitted)
BargainBuddy.C.dropper (virus)
F:\PROGRAM FILES\BULLSEYE NETWORK\ADP8035.EXE
HTML/Dialer.B (virus)
F:\PROGRAM FILES\ISTBAR\XML_ADULTBAR.PHP
JS/Happy888@adw (virus)
C:\PROGRAM FILES\ADOBE\ACROBAT 7.0\READER\LISEZMOI.HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\OHQRW5Q7\MYMSN[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\CPQF4HUV\INDEX[2].PHP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\BUTTON[1].HTM (Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\INDEX[1].HTM (Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\INDEX[3].HTM (Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\LOADING[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\MANGAPLANETE[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\MENU[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\TOP[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\VIDEOSTATS[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\ADJS[1].PHP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\ADJS[2].PHP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\ADJS[3].PHP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\FLOTTEN2[1].HTM
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\IFRAME-BAS[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\IFRAME-HAUT[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\NAR3-HENTAI[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\SHOW3[1].ASP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\SPONSOR2[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\VIDEOSTATS[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\0152[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\01[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\BUTTON[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\FLOTTEN3[1].HTM
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\IFRAME-RADIO1[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\INDEX[1].HTM (Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\VIDEOSTATS[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\G8UT7HX0\GENERIC[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\01[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\1882344265[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\AFFICHBAN[2].PHP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\BOUTON[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\BUTTON[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\FLOTTEN1[1].HTM
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\FULLANIMES.FREE[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\IFRAME-CBOX[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\IFRAME-RADIO[1].HTM (Disinfected)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\LIVECOUNTER[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\SPONSOR-TEXTE[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\SPONSOR3[1].HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP002A0A63.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP0131B1A1.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP0131B8D4.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP0131C4BB.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP0131CF2B.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP0131FEE6.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP013205BC.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP01320F80.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP01321F10.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016BA988.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016BB04F.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016BB38B.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016BB5EC.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016BCD1E.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016BDB08.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016BE72E.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016BF576.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C0092.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C0BCD.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C1458.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C168B.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C30AA.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C34A2.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C3B97.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C4599.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C4EA2.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016C6825.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016CA444.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016CA751.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016CAFDD.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016CB319.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016CBBD3.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016CC0D4.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016E02AB.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP016E05D7.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP0175FE9D.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP017602C3.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP01765E32.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DRMTEMP017664E8.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\DUMMY.HTM (Submitted)
F:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\CYBERLINK\POWERDVD\HTML\START_TEMP.HTM (Disinfected & Submitted)
F:\DESDLL\SERVICEPACKFILES\I386\ACTIV.HTM (Disinfected & Submitted)
F:\DESDLL\SERVICEPACKFILES\I386\ACTIVSVC.HTM (Disinfected & Submitted)
F:\DESDLL\SERVICEPACKFILES\I386\ACTLAN.HTM (Disinfected & Submitted)
F:\DESDLL\SERVICEPACKFILES\I386\ADESKERR.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\ACTIV.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\ACTIVSVC.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\ACTLAN.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\ADESKERR.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\CONNECTED_DATA.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\CONNECTED_MULTIPLE.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\CONNECTED_NETWORKS.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\CONNECTED_WIZARD.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\DEFAULT.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\FOOTER.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\ICS.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0004.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0008.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0011.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0012.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0014.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\NETMEET.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\NEWEULA.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\RELATED.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\SAFE_BETTER.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\SAFE_EASIER.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\SAFE_FASTER.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\SAFE_FR.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\START_CONTROL.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\START_DESKTOP.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\START_ENDING.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\START_FILES.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\START_FR.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\START_ICONS.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\START_MENU.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\START_TASKBAR.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\START_WINDOWS.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\TIP.HTM (Disinfected)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\UNLOCK_BUILT.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\UNLOCK_OPTIMIZED.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\UNLOCK_PLAYING.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\WELCOME.HTM (Disinfected & Submitted)
F:\ADOBE\PHOTOSHOP 4.0 LE\PSHPLINK.HTM (Disinfected & Submitted)
F:\ADOBE\PHOTOSHOP 4.0 LE\MISC\PAGE1.HTM (Disinfected & Submitted)
F:\ADOBE\PHOTOSHOP 4.0 LE\MISC\PAGE2.HTM (Disinfected & Submitted)
F:\ADOBE\PHOTOSHOP 4.0 LE\MISC\PAGE3.HTM (Disinfected & Submitted)
F:\ADOBE\PHOTOSHOP 4.0 LE\MISC\PAGE4.HTM (Disinfected & Submitted)
F:\ADOBE\PHOTOSHOP 4.0 LE\MISC\PAGE5.HTM (Disinfected & Submitted)
F:\ADOBE\PHOTOSHOP 4.0 LE\MISC\PAGE6.HTM (Disinfected & Submitted)
F:\ADOBE\PHOTOSHOP 4.0 LE\MISC\PAGE7.HTM (Disinfected & Submitted)
Malware.PIA (virus)
C:\TEMPSH\GMALL.EXE (Submitted)
Malware.PZV (virus)
C:\TEMPSH\WZYYY.EXE (Submitted)
Malware.PZV.dropper (virus)
C:\DUP2.EXE (Submitted)
Net-Worm.Win32.Welchia.b (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\005B5CD2.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\7F1B4A32.EXE (Renamed & Submitted)
Stealth_process (hidden item)
C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE (Submitted)
Tracking Cookie (spyware)
System (Disinfected)
System
System
System
System
System
System
System
System
System
System
System
Trojan-Clicker.Win32.Delf.am (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07EF487C.EXE (Renamed & Submitted)
Trojan-Clicker.Win32.Delf.hi (virus)
C:\WINDOWS\SYSTEM32\ABPAABP.DLL (Renamed & Submitted)
C:\WINDOWS\SYSTEM32\VXFDAAAA.EXE (Renamed & Submitted)
C:\PROGRAM FILES\HIJACKTHIS VERSION FRANǁISE\BACKUPS\BACKUP-20070509-144944-205.DLL (Renamed & Submitted)
Trojan-Clicker.Win32.VB.ex (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\1EC35B5E.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Agent.ay (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\7971786E.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Donn.aa (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07EC1E7F.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Donn.ab (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\7CD942AE.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Dyfuca.da (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\08066E62.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Dyfuca.de (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07F94671.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\64221BF2.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Dyfuca.dk (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\0809185F.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\080C425B.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Dyfuca.gen (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07FF1A6A.DLL (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\08034466.DLL (Renamed & Submitted)
Trojan-Downloader.Win32.IstBar.fa (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\64221BF2.DLL (Renamed & Submitted)
Trojan-Downloader.Win32.IstBar.gen (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07F61C74.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07F94671.DLL (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\08236842.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\0827123F.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.IstBar.hx (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\2B2B60F1.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Small.il (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\06D34FEE.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Stubby.d (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\081A6A4D.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\582C69EC.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Swizzor.dv (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\24376E5D.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Swizzor.fg (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\2EFC190A.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\6FFC2EBA.EXE (Renamed & Submitted)
Trojan-Downloader.Win32.Swizzor.fi (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\24311A65.EXE (Renamed & Submitted)
Trojan-Dropper.Win32.Delf.cj (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07FF1A6A.EXE (Renamed & Submitted)
Trojan-Dropper.Win32.Delf.z (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\082A3C3B.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\74F11363.EXE (Renamed & Submitted)
Trojan-Dropper.Win32.Tibsis.a (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\58925FF4.EXE (Renamed & Submitted)
Trojan-PSW.Win32.Delf.eb (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\00E4403B.EXE (Renamed & Submitted)
Trojan-Proxy.Win32.Privoxy-based.a (virus)
C:\WINDOWS\SVCHOST.EXE (Renamed & Submitted)
Trojan-Spy.Win32.Briss.c (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07E97483.EXE (Renamed & Submitted)
Trojan-Spy.Win32.Briss.k (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\2D464CB1.DLL (Renamed & Submitted)
Trojan-Spy.Win32.Small.ez (virus)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\APPLICATION DATA\MICROSOFT\INTERNET EXPLORER\FILTERS\MSIEHELPER.DLL (Renamed & Submitted)
Trojan.Win32.Agent.fd (virus)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\APPLICATION DATA\MICROSOFT\INTERNET EXPLORER\FILTERS\IEFILTER.DLL (Renamed & Submitted)
Trojan.Win32.Dialer.pc (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\6B7611FD.DLL (Renamed & Submitted)
Trojan.Win32.Dialer.u (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07F27278.EXE (Renamed & Submitted)
Trojan.Win32.P2E.cl (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\0B0C4E0F.DLL (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\0B0F780B.DLL (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\39563C82.DLL (Renamed & Submitted)
Trojan.Win32.Scagent.c (virus)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\00FF101F.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\010C3810.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\01153605.DLL (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\079430E0.EXE (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07AB56C7.BIN (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\07AB56C7.DLL (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\769C0F8C.BIN (Renamed & Submitted)
F:\PROGRAM FILES\NORTON INTERNET SECURITY\NORTON ANTIVIRUS\QUARANTINE\7EE72A6C.EXE (Renamed & Submitted)
Virus.VBS.Small.g (virus)
C:\WINDOWS\SYSTEM\GM.VBE (Submitted)
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S92BWX2F\FRAISE-TAGADA-AND-CIE.SKYBLOG[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S92BWX2F\INDEX[1].PHP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\OHQRW5Q7\INDEX[1].PHP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\CPQF4HUV\INDEX[1].PHP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\CPQF4HUV\PROXY_BB_CM[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\496B8XY3\B2238514[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\LOCALSERVICE\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\496B8XY3\ORANGE[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\10[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\11[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\15[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\16[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\17[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\18[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\19[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\27[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\37[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\4[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\7[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\892849178_COMMENT_1[1].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\8[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\98[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\99[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ADS[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ADS[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ADS[3].HTM (Disinfected)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ADS[4].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ADS[5].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ADS[6].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ADS[7].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ADS[8].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ADS[9].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\ALL_COMMENTAIRE[2].PHP (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\FLOTTENVERSAND[1].HTM
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\IMAGE[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\INDEX[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\IO_LOGIN[2].PHP
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\NARUTOMX.FREE[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\TECHTREE[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPQ3SXYR\WRITEMESSAGES[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\100[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\101[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\10[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\12[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\20[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\21[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\23[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\24[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\25[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\26[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\28[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\2[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\31[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\3[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\3[3].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\4[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\6[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\6[3].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\7[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\ADS[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\ADS[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\ADS[3].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\ADS[4].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\ADS[5].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\ADS[6].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\NARUTOMX.FREE[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPA7K9IF\NARUTOMX.FREE[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\11[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\11[3].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\13[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\22[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\5[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\6[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\7[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\892914598_COMMENT_1[1].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\96[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\97[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\9[3].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\ADD_COMMENT[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\ADS[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\ADS[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\ADS[3].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\ADS[4].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\ADS[5].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\ADS[6].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\ALLIANZEN[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\S563GHQV\POPUP[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\12[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\12[4].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\1477069488[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\14[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\1[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\1[3].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\29[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\2[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\2[3].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\39[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\3[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\4[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\5[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\5[3].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\6[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\797953323_COMMENT_1[1].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\892304002_COMMENT_1[1].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\9[2].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\ACCUEIL[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\ADS[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\ADS[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\ADS[3].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\ADS[4].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\ADS[5].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\ADS[6].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\ADS[7].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\ADS[8].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\FRIENDS[1].HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\GALAXY[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\NARUTOMX.FREE[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\SUCHE[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\S[1].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\49AVOXQF\VIDEOEXTERNE[2].HTM (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\XQF0JHG4.DEFAULT\EXTENSIONS\{E4A8A97B-F2ED-450B-B12D-EE082BA24781}\CHROME\CHROMEFILES\CONTENT\TEST.HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\XQF0JHG4.DEFAULT\BOOKMARKBACKUPS\BOOKMARKS-2007-05-13.HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\XQF0JHG4.DEFAULT\BOOKMARKBACKUPS\BOOKMARKS-2007-05-15.HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\XQF0JHG4.DEFAULT\BOOKMARKBACKUPS\BOOKMARKS-2007-05-16.HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\XQF0JHG4.DEFAULT\BOOKMARKBACKUPS\BOOKMARKS-2007-05-18.HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\DOUCIN\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\XQF0JHG4.DEFAULT\BOOKMARKBACKUPS\BOOKMARKS-2007-05-19.HTML (Disinfected & Submitted)
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\WINDOWS LIVE TOOLBAR\FR-FR\NEWEXT.HTM (Disinfected & Submitted)
C:\ATM_SERRURERIE\ATM.HTML (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\PREPICT.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\DOUCIN\LOCAL SETTINGS\TEMP\WAHTMLTMP00.HTM (Disinfected & Submitted)
F:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\CYBERLINK\POWERDVD\HTML\START.HTM (Disinfected & Submitted)
F:\DESDLL\SERVICEPACKFILES\I386\ACTSHELL.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\ACTSHELL.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\CONNECTED_FR.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\DTSGNUP.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0002.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0005.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0006.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0007.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0009.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0010.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\IPP_0016.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\MSOBSHEL.HTM (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\PAGE1.ASP (Disinfected & Submitted)
F:\DESDLL\$NTSERVICEPACKUNINSTALL$\UNLOCK_FR.HTM (Disinfected & Submitted)
W32/Smalltroj.YZK (virus)
F:\PROGRAM FILES\MAILSKINNER\OESKINNER.DLL (Submitted)

--------------------------------------------------------------------------------

Statistics
Scanned:
Files: 48797
System: 4485
Not scanned: 6
Actions:
Disinfected: 267
Renamed: 54
Deleted: 0
None: 29
Submitted: 327
Files not scanned:
C:\PAGEFILE.SYS
C:\WINDOWS\SYSTEM32\DRIVERS\AEAQKBEE.SYS
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
F:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\CRYPTO\RSA\MACHINEKEYS\001F8AC495E890B0665F3A4683AB0908_846D6119-BC29-4829-B843-5E528E19BE59
F:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\CRYPTO\RSA\MACHINEKEYS\A0DE38225EC7948BF76D92F9693ADDF6_846D6119-BC29-4829-B843-5E528E19BE59
F:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\CRYPTO\DSS\MACHINEKEYS\D84938D8BC40255BE5C711A4D164204D_846D6119-BC29-4829-B843-5E528E19BE59

--------------------------------------------------------------------------------

Options
Scanning engines:
F-Secure Libra: 2.4.2, 2007-05-16
F-Secure AVP: 7.0.171, 2007-05-18
F-Secure Orion: 1.2.37, 2007-05-18
F-Secure Blacklight: 1.0.53
F-Secure Draco: 1.0.35, 2007-05-07
F-Secure Pegasus: 1.19.0, 2007-04-14
Scanning options:
Scan defined files: COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB BAT LNK ANI AVB CEO CMD LSP MAP MHT MIF PDF PHP POT WMF NWS TAR TGZ WSF ZL? {* ZIP JAR ARJ LZH TAR TGZ GZ CAB RAR BZ2 HQX
Use Advanced heuristics

--------------------------------------------------------------------------------

Copyright © 1998-2006 Product support |Send virus sample to F-Secure
F-Secure assumes no responsibility for material created or published by third parties that F-Secure World Wide Web pages have a link to. Unless you have clearly stated otherwise, by submitting material to any of our servers, for example by E-mail or via our F-Secure's CGI E-mail, you agree that the material you make available may be published in the F-Secure World Wide Pages or hard-copy publications. You will reach F-Secure public web site by clicking on underlined links. While doing this, your access will be logged to our private access statistics with your domain name.This information will not be given to any third party. You agree not to take action against us in relation to material that you submit. Unless you have clearly stated otherwise, by submitting material you warrant that F-Secure may incorporate any concepts described in it in the F-Secure products/publications without liability.
0
Utilisateur anonyme
 
Result: 350 malware found
pas mal comme désinfection ...!
--------------------------------------------
ok, fais ceci:
https://leblogdeclaude.blogspot.com/2006/10/informatique-procdure-de-nettoyage.html
0
koma14 Messages postés 122 Statut Membre 2
 
bon et bien j'ai fais tous ce que tu m'avais demandé j'espère que maintenan sa ira jte dis un grand merci :D et les logiciel de nettoyage je doit en refaire souvent ?
0
Utilisateur anonyme
 
En attente.
0