Pages explorer CID intempestif

kifkif Messages postés 20 Statut Membre -  
Darkkiller Messages postés 2336 Statut Contributeur -
Bonjour,

J ai des pages explorer qui s affichent aleatoirement avec des pubs et pour intituler CID au debut.
Je n arrive pas a stopper ca.
Voici mon rapport HijackThis :

Logfile of HijackThis v1.99.1
Scan saved at 15:46:43, on 05/08/2007
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\smax4.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\WINDOWS\System32\temp1.exe
C:\WINDOWS\System32\rmctrl.exe
C:\WINDOWS\TPPALDR.EXE
C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Belkin\F5D9050\Belkinwcui.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\Ati2evxx.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\emule\emule.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\Documents and Settings\xx\Bureau\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.guanahrqxadnlnoodjduap.com/OWPD0RfiVvkNQKi1Gd/K9Rbww_shRgShscjvSRfYNCvg8rtXbwiiXoLoXVyF9BRf.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.orange.com/en
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Orange UK
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
F3 - REG:win.ini: load=C:\WINDOWS\svchost.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Orange - {4E7BD74F-2B8D-469E-A1FB-F862B587B57D} - C:\PROGRA~1\orange3\orange3.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Orange - {4E7BD74F-2B8D-469E-A1FB-F862B587B57D} - C:\PROGRA~1\orange3\orange3.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\smax4.exe" /tray
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [TPP Auto Loader] C:\WINDOWS\TPPALDR.EXE
O4 - HKLM\..\Run: [5qdEGEER] C:\WINDOWS\anntxr.exe
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [TaskMon] C:\WINDOWS\System32\taskmon.exe
O4 - HKLM\..\Run: [bO²ùð!×y-¯Œ] C:\WINDOWS\anntxr.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [F5D9050] C:\Program Files\Belkin\F5D9050\Belkinwcui.exe
O4 - HKLM\..\Run: [up mp3 dart safe] C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe
O4 - HKLM\..\Run: [Ball Eq Fast Safe] C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [seekdownload] C:\DOCUME~1\xx\APPLIC~1\BEEPON~1\DashAxis.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
O8 - Extra context menu item: orange search - file://C:\Program Files\ORANGE3\Cache\SelectedContextSearch.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)
O14 - IERESET.INF: START_PAGE_URL=https://www.orange.com/en
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {45E83043-1F6F-4D22-A5E7-0138EA171B49} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/FileSharing/fr/filesharingctrl.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/3049de866c38ac6a7606/netzip/RdxIE601_fr.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
O17 - HKLM\System\CS1\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
O17 - HKLM\System\CS2\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
O20 - AppInit_DLLs: WIKI.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - McAfee, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

Quelqu un aurait une solution?

Merci
Configuration: Windows XP
Firefox 1.0.4

25 réponses

  • 1
  • 2
  1. rudyrital Messages postés 6233 Statut Membre 131
     
    Télécharge lopxp

    http://www.alt-shift-return.org/Info/Fichiers/lopxpMH2.zip

    dezippe le (clic droit dessus > extraire tout)
    et lance lopxpmh.bat en double-cliquant dessus
    quand il à terminé, un rapport s'ouvre , copie et colle le contenu dans ta réponse.

    A+
    0
  2. Darkkiller Messages postés 2336 Statut Contributeur 67
     
    Bonjour,

    Hé ben dis donc, il y a la guerre dans cet ordi :) As-tu un pare-feu ? Si oui, lequel ?

    Ouvre Hijackthis et clique sur "Do a system scan only" et coche ces lignes :

    F3 - REG:win.ini: load=C:\WINDOWS\svchost.exe

    O4 - HKLM\..\Run: [5qdEGEER] C:\WINDOWS\anntxr.exe

    O4 - HKLM\..\Run: [TaskMon] C:\WINDOWS\System32\taskmon.exe

    O4 - HKLM\..\Run: [bO²ùð!×y-¯Œ] C:\WINDOWS\anntxr.exe

    O4 - HKLM\..\Run: [up mp3 dart safe] C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe

    O4 - HKLM\..\Run: [Ball Eq Fast Safe] C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe

    O4 - HKCU\..\Run: [seekdownload] C:\DOCUME~1\xx\APPLIC~1\BEEPON~1\DashAxis.exe

    O8 - Extra context menu item: orange search - file://C:\Program Files\ORANGE3\Cache\SelectedContextSearch.htm

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)

    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)

    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/

    Puis quand tu as coché ces lignes, clique sur "Fix Checked"
    ==================================================================

    Prends connaissance du contenu le lien suivant:

    http://www.f-secure.com/products/license-terms/eult_fra.pdf

    Tu as donc pris connaissance et accepté les conditions d'utilisations du programme blacklight qui est inclus dans le dossier compressé navilog1.zip que tu vas télécharger.

    Fais un clic droit sur ce lien :
    http://perso.orange.fr/il.mafioso/Navifix/Navilog1.zip
    Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
    Fais un clic droit sur navilog1.zip et choisis "tout extraire"
    Ensuite double clique sur navilog1.exe pour lancer l'installation.
    Une fois l'installation terminée, le fix s'exécutera automatiquement.
    (Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).

    Laisse-toi guider. Au menu principal, choisis 1 et valides.
    (ne fais pas le choix 2,3 ou 4 sans notre avis/accord)

    Patiente jusqu'au message :
    *** Analyse Termine le ..... ***
    Appuie sur une touche comme demandé, le blocnote va s'ouvrir.
    Copie-colle l'intégralité dans une réponse. Referme le blocnote.
    Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)
    ==================================================================

    Télécharge OTMoveIt (d'OldTimer). Sauvegarde-le sur ton Bureau.
    http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe
    ~Double-clique sur OTMoveIt.exe afin de le lancer.
    ~Sélectionne TOUS les emplacements suivants :

    tu specifies le chemin exact de ton dossier dans le bloc note par exemple

    ---> Clique-droit sur ces fichiers et tu clique sur "Copier"

    C:\WINDOWS\System32\temp1.exe
    C:\WINDOWS\anntxr.exe

    Retourne sur OTMoveIt, fais un Clique-droit sur le cadre de gauche puis choisis Coller.
    ~Clique maintenant surMoveIt!

    !! Si un fichier ou dossier ne peut être supprimé immédiatement, le logiciel te demandera de redémarrer. Accepte en cliquant sur YES
    ==================================================================

    Rends toi sur ce site :
    http://www.virustotal.com/xhtml/virustotal_en.html

    Clique sur parcourir et cherche ce fichier :

    C:\WINDOWS\svchost.exe

    Clique sur send.

    Un rapport va s'élaborer ligne à ligne.

    Attends la fin. Il doit comprendre la taille du fichier envoyé.

    Sauvegarde le rapport avec le bloc-note.

    Copie le dans ta réponse.

    ENSUITE TU FERAS LA MEME MANIPULATION AVEC CE FICHIER :

    C:\WINDOWS\System32\taskmon.exe

    BONNE CHANCE !
    0
  3. kifkif Messages postés 20 Statut Membre
     
    Voici le resultat de lopxp

    Rapport lopxpMH2 version 2.0 fait à 16:14:39,15 le 05/08/2007
    C:\Documents and Settings\xx\Bureau

    ******************************************
    ## Répertoires Application Data

    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\Administrateur\Application Data

    07/07/2007 12:57 <REP> .
    07/07/2007 12:57 <REP> ..
    07/07/2007 12:57 <REP> Microsoft
    07/07/2007 12:57 62 desktop.ini
    1 fichier(s) 62 octets
    3 Rép(s) 6 266 482 688 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\Administrateur\Local Settings\Application Data

    07/07/2007 12:57 <REP> .
    07/07/2007 12:57 <REP> ..
    07/07/2007 12:57 <REP> Microsoft
    07/07/2007 12:59 4 240 656 IconCache.db
    1 fichier(s) 4 240 656 octets
    3 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\All Users\Application Data

    01/01/2003 00:05 <REP> .
    01/01/2003 00:05 <REP> ..
    03/08/2007 18:03 <REP> 32 Ref Up Mp3
    30/10/2004 16:40 <REP> Apple Computer
    01/01/2003 00:33 <REP> CyberLink
    11/11/2004 20:19 <REP> free body bleh five
    03/08/2007 20:36 <REP> Lavasoft
    29/04/2005 22:15 <REP> McAfee.com
    01/01/2003 00:05 <REP> Microsoft
    09/01/2004 00:28 <REP> QuickTime
    03/08/2007 23:39 <REP> Real
    27/04/2005 22:17 <REP> Spybot - Search & Destroy
    03/08/2007 18:03 <REP> Tray Seek Safe 32
    01/01/2003 00:05 62 desktop.ini
    1 fichier(s) 62 octets
    13 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\Default User\Application Data

    01/01/2003 00:05 <REP> .
    01/01/2003 00:05 <REP> ..
    01/01/2003 00:05 <REP> Microsoft
    01/01/2003 00:05 62 desktop.ini
    1 fichier(s) 62 octets
    3 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data

    01/01/2003 00:05 <REP> .
    01/01/2003 00:05 <REP> ..
    0 fichier(s) 0 octets
    2 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\LocalService\Application Data

    01/01/2003 00:17 <REP> .
    01/01/2003 00:17 <REP> ..
    20/05/2005 20:42 <REP> Beep One Setup
    20/05/2005 20:39 <REP> Macromedia
    01/01/2003 00:17 <REP> Microsoft
    0 fichier(s) 0 octets
    5 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data

    01/01/2003 00:17 <REP> .
    01/01/2003 00:17 <REP> ..
    01/01/2003 00:17 <REP> Microsoft
    0 fichier(s) 0 octets
    3 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\NetworkService\Application Data

    01/01/2003 00:17 <REP> .
    01/01/2003 00:17 <REP> ..
    01/01/2003 00:17 <REP> Microsoft
    0 fichier(s) 0 octets
    3 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data

    01/01/2003 00:17 <REP> .
    01/01/2003 00:17 <REP> ..
    01/01/2003 00:17 <REP> Microsoft
    0 fichier(s) 0 octets
    3 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\xx\Application Data

    01/01/2003 00:17 <REP> .
    01/01/2003 00:17 <REP> ..
    12/11/2003 20:51 <REP> Adobe
    30/12/2003 21:28 <REP> Ahead
    30/10/2004 16:41 <REP> Apple Computer
    11/11/2004 20:19 <REP> Beep One Setup
    23/06/2005 17:21 <REP> BitTorrent
    25/12/2003 22:59 <REP> CyberLink
    17/10/2005 21:05 <REP> dvdcss
    04/07/2007 19:55 <REP> eMule
    02/01/2003 09:55 <REP> Help
    01/01/2003 00:17 <REP> Identities
    12/11/2003 20:51 <REP> InterTrust
    09/05/2006 19:30 <REP> iShell
    14/11/2003 19:57 <REP> Kazaa Lite
    27/04/2005 21:54 <REP> Lavasoft
    11/11/2003 21:34 <REP> Macromedia
    23/01/2006 22:42 <REP> Media Player Classic
    01/01/2003 00:17 <REP> Microsoft
    13/03/2004 16:36 <REP> Mozilla
    24/08/2004 21:41 <REP> PC Sync
    24/11/2003 20:56 <REP> Real
    15/11/2003 21:46 <REP> Sun
    02/07/2004 23:18 <REP> Talkback
    06/05/2004 10:06 <REP> Visicom Media
    22/02/2005 02:17 <REP> vlc
    17/11/2003 23:22 <REP> Yahoo! Messenger
    01/01/2003 00:17 62 desktop.ini
    26/01/2004 23:56 17 144 GDIPFONTCACHEV1.DAT
    2 fichier(s) 17 206 octets
    27 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Documents and Settings\xx\Local Settings\Application Data

    01/01/2003 00:17 <REP> .
    01/01/2003 00:17 <REP> ..
    19/07/2005 19:04 <REP> {3248F0A6-6813-11D6-A77B-00B0D0150040}
    30/10/2004 16:41 <REP> Apple Computer
    02/01/2003 09:55 <REP> Help
    14/11/2003 19:21 <REP> Identities
    01/01/2003 00:17 <REP> Microsoft
    03/08/2004 22:50 <REP> Nokia
    10/11/2003 21:41 186 880 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    24/04/2004 22:18 63 664 GDIPFONTCACHEV1.DAT
    01/01/2003 00:21 4 281 112 IconCache.db
    3 fichier(s) 4 531 656 octets
    8 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data

    01/01/2003 00:16 <REP> .
    01/01/2003 00:16 <REP> ..
    01/01/2003 00:16 <REP> Microsoft
    01/01/2003 00:16 62 desktop.ini
    1 fichier(s) 62 octets
    3 Rép(s) 6 266 417 152 octets libres
    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data

    01/01/2003 00:16 <REP> .
    01/01/2003 00:16 <REP> ..
    0 fichier(s) 0 octets
    2 Rép(s) 6 266 417 152 octets libres

    ******************************************
    Recherche des taches planifiées dans C:\WINDOWS\tasks

    C:\WINDOWS\Tasks\A72E0F1891858800.job
    G ;zÓS8E¦Î‹±l…F À <
    s "€!×
    / c : \ d o c u m e ~ 1 \ x x \ a p p l i c ~ 1 \ b e e p o n ~ 1 \ b o l d 4 f o u r . e x e x x 0 Í

    ******************************************
    ## Répertoires de C:\Program Files

    Le volume dans le lecteur C n'a pas de nom.
    Le numéro de série du volume est E08A-0F80

    Répertoire de C:\Program Files

    03/08/2007 23:39 <REP> .
    03/08/2007 23:39 <REP> ..
    10/11/2003 23:31 <REP> ACE Mega CoDecS Pack
    30/12/2003 16:23 <REP> Ad-aware
    27/04/2004 23:13 <REP> Adobe
    03/12/2004 19:28 <REP> Ahead
    29/12/2003 22:45 <REP> AIDA32 - Personal System Information
    01/01/2003 00:20 <REP> Analog Devices
    02/01/2003 09:52 <REP> ATI Technologies
    29/04/2005 23:36 <REP> Audacity
    03/08/2007 18:03 <REP> Beep One Setup
    27/06/2007 17:42 <REP> Belkin
    07/07/2007 15:25 <REP> BitTorrent
    28/04/2004 18:03 <REP> Boson Router Simulator
    17/01/2004 19:24 <REP> Boson Software
    23/06/2005 20:43 <REP> C2Media
    11/11/2003 20:48 <REP> Cisco
    05/12/2003 21:21 <REP> Common Files
    01/01/2003 00:10 <REP> ComPlus Applications
    18/04/2004 16:34 <REP> CyberLink
    15/11/2005 19:41 <REP> directx
    10/11/2003 21:50 <REP> DivX
    19/07/2005 20:36 <REP> D-Tools
    20/08/2005 15:59 <REP> Easy CD-DA Extractor 8
    04/07/2007 19:56 <REP> emule
    07/07/2007 13:28 <REP> ESET
    03/08/2007 23:23 <REP> Fichiers communs
    12/10/2004 12:24 <REP> FileFlow
    14/07/2007 19:57 <REP> FileZilla
    26/12/2003 01:04 <REP> FusionSoft DVD Player XP
    29/12/2003 22:28 <REP> Grisoft
    10/11/2003 21:38 806 INSTALL.LOG
    04/08/2007 12:50 <REP> Internet Explorer
    29/06/2007 20:26 <REP> Inventel
    07/07/2005 23:06 <REP> iPod
    07/07/2005 23:06 <REP> iTunes
    19/07/2005 19:05 <REP> Java
    29/04/2005 23:37 <REP> Kazaa Lite K++
    03/08/2007 20:36 <REP> Lavasoft
    29/04/2005 23:37 <REP> LeechFTP
    10/10/2005 20:30 <REP> LG
    02/11/2006 22:22 <REP> Matroska Pack
    29/04/2005 22:15 <REP> McAfee.com
    03/08/2007 23:39 <REP> Media Player Classic
    29/12/2003 22:45 <REP> Messenger
    23/06/2005 20:43 <REP> Messenger Plus! 3
    01/01/2003 00:14 <REP> microsoft frontpage
    04/10/2005 17:50 <REP> Microsoft IntelliPoint
    04/10/2005 17:50 <REP> Microsoft IntelliType Pro
    07/04/2004 15:00 <REP> Microsoft Office
    07/04/2004 14:59 <REP> Microsoft Visual Studio
    07/04/2004 15:00 <REP> Microsoft Works
    07/04/2004 15:01 <REP> Microsoft.NET
    01/01/2003 00:12 <REP> Movie Maker
    31/05/2005 18:37 <REP> Mozilla Firefox
    13/03/2004 16:35 <REP> mozilla.org
    01/01/2003 00:10 <REP> MSN
    01/01/2003 00:10 <REP> MSN Gaming Zone
    20/06/2005 22:01 <REP> MSN Messenger
    07/05/2005 19:20 <REP> MSXML 4.0
    07/05/2005 19:24 <REP> NetMeeting
    03/08/2004 23:17 <REP> Nokia
    29/06/2007 20:27 <REP> Orange
    29/06/2007 20:27 <REP> orange3
    05/12/2003 21:22 <REP> Outlook Express
    23/12/2004 14:33 <REP> PowerQuest
    07/07/2005 23:06 <REP> QuickTime
    09/01/2004 00:28 <REP> QuickTime Alternative
    24/11/2003 20:56 <REP> Real
    03/08/2007 23:43 <REP> Real Alternative
    12/07/2005 22:16 <REP> Samsung
    05/11/2006 14:29 <REP> Satsuki Decoder Pack
    01/01/2003 00:12 <REP> Services en ligne
    07/07/2007 13:02 <REP> Spybot - Search & Destroy
    22/02/2005 17:18 <REP> VideoLAN
    25/01/2004 22:41 <REP> Webteh
    24/08/2004 21:23 <REP> WIDCOMM
    03/08/2007 23:19 <REP> Winamp
    29/04/2005 23:37 <REP> Windows Media Player
    29/12/2003 22:45 <REP> Windows NT
    22/04/2004 15:06 <REP> WinRAR
    29/04/2005 22:13 <REP> WinZip
    01/01/2003 00:14 <REP> xerox
    1 fichier(s) 806 octets
    82 Rép(s) 6 266 408 960 octets libres

    ******************************************
    ## Popups autorisées

    * Internet Explorer

    * Mozilla Firefox (1 autorisé 2 interdit)

    ---------- C:\DOCUMENTS AND SETTINGS\XX\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\DEFAULT.42B\HOSTPERM.1

    ******************************************
    ## Registre

    * [HKEY_CURRENT_USER\\Software\Microsoft\Internet Explorer\Main]
    Search Bar REG_SZ http://www.guanahrqxadnlnoodjduap.com/OWPD0RfiVvkNQKi1Gd/K9Rbww_shRgShscjvSRfYNCvg8rtXbwiiXoLoXVyF9BRf.html

    * [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    up mp3 dart safe REG_SZ C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe
    Ball Eq Fast Safe REG_SZ C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe

    * [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    seekdownload REG_SZ C:\DOCUME~1\xx\APPLIC~1\BEEPON~1\DashAxis.exe

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\blehfivebooklogo]
    command REG_SZ C:\Documents and Settings\All Users\Application Data\free body bleh five\Find start.exe

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Nokia Tray Application]
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\Nokia Tray Application

    ******************************************
    ## Zones de sécurité

    * HKCU Domains (4)

    * P3P History (5)

    ******************************************
    ## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"

    *************** Fin du rapport ****************

    Merci pour l aide!
    0
  4. rudyrital Messages postés 6233 Statut Membre 131
     
    suit les conseils de darkiller
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. kifkif Messages postés 20 Statut Membre
     
    Le rapport du Navilog1.exe est le suivant :

    Search Navipromo version 2.0.5 commencé le 05/08/2007 à 16:41:49,48

    !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
    !!! Poster ce rapport sur le forum pour le faire analyser !!!
    !!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!

    Fix lancé depuis C:\Program Files\navilog1
    Mise a jour le 01.07.2007 a 12h00 by IL-MAFIOSO

    Executé en mode normal

    *** Recherche Programmes installes ***

    *** Recherche dossiers dans C:\WINDOWS ***

    *** Recherche dossiers dans C:\Program Files ***

    *** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***

    *** Recherche dossiers dans C:\Documents and Settings\xx\Application Data ***

    *** Recherche avec BlackLight Engine/F-secure ***
    BlackLight Engine est un produit de F-secure, pour + d'infos :
    https://www.f-secure.com/en

    F-SECURE BLACKLIGHT ROOTKIT ELIMINATOR
    ======================================

    Copyright 2005-2006 F-Secure Corporation. All rights reserved.
    This is a beta version. It will expire on 1st of October, 2007.
    Version information: 2.2.1064.

    [+] Started on 08/05/07 at 16:41:50.
    [+] Initializing ...
    [+] Starting scan, press Ctrl-C to abort.
    [+] Scanning for hidden items ...........................................................
    [+] Scan complete.
    [+] Summary: 0 hidden item(s) found, 0 scheduled for renaming.
    [+] Exited on 08/05/07 at 16:48:15 (return code = 0).

    *** Recherche fichiers ***

    *** Recherche cles registre ***

    Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]

    Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]

    Recherche Clé Magic Control

    *** Module de Recherche complémentaire ***
    (Recherche fichiers spécifiques)

    1)Recherche fichiers connus:

    2)Recherche Heuristique :
    *
    **
    ***
    ****
    *****
    ******
    *******
    ********

    3)Recherche Certificats :
    0
  7. rudyrital Messages postés 6233 Statut Membre 131
     
    tres bien , continue
    0
  8. kifkif Messages postés 20 Statut Membre
     
    Le rapport du "virustotal" pour le fichier:
    C:\WINDOWS\svchost.exe

    AhnLab-V3 2007.8.3.0 2007.08.03 Dropper/Downloader.70207
    AntiVir 7.4.0.57 2007.08.03 TR/Drop.Small.apl
    Authentium 4.93.8 2007.08.03 W32/Dropper.BMZ
    Avast 4.7.1029.0 2007.08.05 Win32:Agent-ILR
    AVG 7.5.0.476 2007.08.04 Generic.VDU
    BitDefender 7.2 2007.08.05 Trojan.Dropper.Small.APL
    CAT-QuickHeal 9.00 2007.08.04 TrojanDropper.Small.apl
    ClamAV 0.91 2007.08.05 Trojan.Dropper-829
    DrWeb 4.33 2007.08.05 Trojan.MulDrop.4181
    eSafe 7.0.15.0 2007.07.31 Win32.Small.apl
    eTrust-Vet 31.1.5032 2007.08.04 Win32/Perlovga.A
    Ewido 4.0 2007.08.03 Dropper.Small.apl
    FileAdvisor 1 2007.08.05 High threat detected
    Fortinet 2.91.0.0 2007.08.05 W32/Perlovga
    F-Prot 4.3.2.48 2007.08.03 W32/Dropper.BMZ
    F-Secure 6.70.13030.0 2007.08.03 Trojan-Dropper.Win32.Small.apl
    Ikarus T3.1.1.8 2007.08.05 Trojan-Dropper.Win32.Small.apl
    Kaspersky 4.0.2.24 2007.08.05 Trojan-Dropper.Win32.Small.apl
    McAfee 5090 2007.08.03 W32/Perlovga
    Microsoft 1.2704 2007.08.05 Backdoor:Win32/Small!175E
    NOD32v2 2438 2007.08.05 Win32/TrojanDropper.Small.APL
    Norman 5.80.02 2007.08.03 W32/Smalldrp.JHW
    Panda 9.0.0.4 2007.08.05 Trj/Dropper.UN
    Prevx1 V2 2007.08.05 Generic.Malware
    Rising 19.34.40.00 2007.08.03 Dropper.Tiny.g
    Sophos 4.19.0 2007.08.01 Troj/Dropper-LC
    Sunbelt 2.2.907.0 2007.08.04 Trojan-Dropper.Win32.Small.apl
    Symantec 10 2007.08.05 Backdoor.Formador
    TheHacker 6.1.7.162 2007.08.04 Trojan/Dropper.Small.apl
    VBA32 3.12.2.2 2007.08.04 Trojan-Dropper.Win32.Small.apl
    VirusBuster 4.3.26:9 2007.08.04 -
    Webwasher-Gateway 6.0.1 2007.08.03 Trojan.Drop.Small.apl
    Additional information
    File size: 70207 bytes
    MD5: 1d4c07370babee309401a73ebaa64f58
    SHA1: 42ac5ff66e21f7e3b7efb150ab931e3c56247253
    Bit9 info: http://fileadvisor.bit9.com/services/extinfo.aspx?md5=1d4c07370babee309401a73ebaa64f58
    Prevx info: http://fileinfo.prevx.com/fileinfo.asp?PX5=14A8E9663FC0E0751264012FA66FDA00FF69CBFE

    Le fichier suivant n existe pas donc pas pu lancer de scan
    C:\WINDOWS\System32\taskmon.exe

    Quel est la suite?

    Merci encore!
    0
  9. rudyrital Messages postés 6233 Statut Membre 131
     
    Télécharge OTMoveIt (d'OldTimer). Sauvegarde-le sur ton Bureau.
    http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe
    ~Double-clique sur OTMoveIt.exe afin de le lancer.
    ~Sélectionne TOUS les emplacements suivants :

    tu specifies le chemin exact de ton dossier dans le bloc note par exemple

    ---> Clique-droit sur ces fichiers et tu clique sur "Copier"

    C:\WINDOWS\System32\temp1.exe
    C:\WINDOWS\anntxr.exe
    C:\WINDOWS\svchost.exe

    Retourne sur OTMoveIt, fais un Clique-droit sur le cadre de gauche puis choisis Coller.
    ~Clique maintenant surMoveIt!

    !! Si un fichier ou dossier ne peut être supprimé immédiatement, le logiciel te demandera de redémarrer. Accepte en cliquant sur YES
    0
  10. kifkif Messages postés 20 Statut Membre
     
    Le fichier anntxr.exe je ne le trouve pas et le fichier svchost.exe se trouve dans le dossier
    system 32 et aussi C:\WINDOWS\SoftwareDistribution\Download\70ccc3de7e94865059fbcf2f809c03b1
    Est le meme? Dois je le supprimer aussi dans MoveIt?
    0
  11. rudyrital Messages postés 6233 Statut Membre 131
     
    non, juste celui dans windows : C:\WINDOWS\svchost.exe
    0
  12. kifkif Messages postés 20 Statut Membre
     
    Il n existe pas ce fichier dans C:\WINDOWS
    Je n ai donc supprimer que le fichier C:\WINDOWS\System32\temp1.exe et j ai reboote mon pc.
    0
  13. rudyrital Messages postés 6233 Statut Membre 131
     
    ok, remet un log hijackthis
    0
  14. kifkif Messages postés 20 Statut Membre
     
    Voila le nouveau log

    Logfile of HijackThis v1.99.1
    Scan saved at 18:10:21, on 05/08/2007
    Platform: Windows XP (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 (6.00.2600.0000)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    C:\Program Files\Analog Devices\SoundMAX\smax4.exe
    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
    C:\WINDOWS\System32\rmctrl.exe
    C:\WINDOWS\TPPALDR.EXE
    C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    C:\PROGRA~1\mcafee.com\agent\mcagent.exe
    c:\progra~1\mcafee.com\vso\mcvsescn.exe
    C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    C:\Program Files\D-Tools\daemon.exe
    C:\Program Files\Microsoft IntelliType Pro\type32.exe
    C:\Program Files\Microsoft IntelliPoint\point32.exe
    C:\Program Files\Winamp\winampa.exe
    C:\Program Files\Belkin\F5D9050\Belkinwcui.exe
    C:\WINDOWS\System32\ctfmon.exe
    C:\WINDOWS\System32\Ati2evxx.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\System32\imapi.exe
    c:\program files\mcafee.com\agent\mcdetect.exe
    c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\xx\Bureau\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.guanahrqxadnlnoodjduap.com/OWPD0RfiVvkNQKi1Gd/K9Rbww_shRgShscjvSRfYNCvg8rtXbwiiXoLoXVyF9BRf.html
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.orange.com/en
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Orange UK
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: Orange - {4E7BD74F-2B8D-469E-A1FB-F862B587B57D} - C:\PROGRA~1\orange3\orange3.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
    O3 - Toolbar: Orange - {4E7BD74F-2B8D-469E-A1FB-F862B587B57D} - C:\PROGRA~1\orange3\orange3.dll
    O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\smax4.exe" /tray
    O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
    O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
    O4 - HKLM\..\Run: [TPP Auto Loader] C:\WINDOWS\TPPALDR.EXE
    O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
    O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
    O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
    O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
    O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
    O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
    O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
    O4 - HKLM\..\Run: [F5D9050] C:\Program Files\Belkin\F5D9050\Belkinwcui.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
    O4 - HKCU\..\Run: [seekdownload] C:\DOCUME~1\xx\APPLIC~1\BEEPON~1\DashAxis.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
    O14 - IERESET.INF: START_PAGE_URL=https://www.orange.com/en
    O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {45E83043-1F6F-4D22-A5E7-0138EA171B49} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/FileSharing/fr/filesharingctrl.cab
    O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/3049de866c38ac6a7606/netzip/RdxIE601_fr.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab31267.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
    O17 - HKLM\System\CS1\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
    O17 - HKLM\System\CS2\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
    O20 - AppInit_DLLs: WIKI.DLL
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
    O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
    O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
    O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - McAfee, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    0
  15. rudyrital Messages postés 6233 Statut Membre 131
     
    Rends toi sur ce site :
    https://www.virustotal.com/gui/

    Clique sur parcourir et cherche ce fichier :

    C:\DOCUME~1\xx\APPLIC~1\BEEPON~1\DashAxis.exe

    Clique sur send.

    Un rapport va s'élaborer ligne à ligne.

    Attends la fin. Il doit comprendre la taille du fichier envoyé.

    Sauvegarde le rapport avec le bloc-note.

    Copie le dans ta réponse.
    0
  16. kifkif Messages postés 20 Statut Membre
     
    voila le resultat

    Antivirus Version Last Update Result
    AhnLab-V3 2007.8.3.0 2007.08.03 -
    AntiVir 7.4.0.57 2007.08.03 -
    Authentium 4.93.8 2007.08.03 -
    Avast 4.7.1029.0 2007.08.05 Win32:Obfuscated-BPS
    AVG 7.5.0.476 2007.08.05 -
    BitDefender 7.2 2007.08.05 Trojan.FatObfus.AK
    CAT-QuickHeal 9.00 2007.08.04 -
    ClamAV 0.91 2007.08.05 -
    DrWeb 4.33 2007.08.05 Trojan.Packed.149
    eSafe 7.0.15.0 2007.07.31 -
    eTrust-Vet 31.1.5032 2007.08.04 -
    Ewido 4.0 2007.08.05 -
    FileAdvisor 1 2007.08.05 -
    Fortinet 2.91.0.0 2007.08.05 -
    F-Prot 4.3.2.48 2007.08.03 -
    F-Secure 6.70.13030.0 2007.08.03 Trojan.Win32.Obfuscated.en
    Ikarus T3.1.1.8 2007.08.05 -
    Kaspersky 4.0.2.24 2007.08.05 Trojan.Win32.Obfuscated.en
    McAfee 5090 2007.08.03 -
    Microsoft 1.2704 2007.08.05 -
    NOD32v2 2438 2007.08.05 -
    Norman 5.80.02 2007.08.03 -
    Panda 9.0.0.4 2007.08.05 -
    Rising 19.34.40.00 2007.08.03 Trojan.FatObfus.o
    Sophos 4.19.0 2007.08.01 -
    Sunbelt 2.2.907.0 2007.08.04 VIPRE.Suspicious
    Symantec 10 2007.08.05 -
    TheHacker 6.1.7.162 2007.08.04 -
    VBA32 3.12.2.2 2007.08.04 MalwareScope.Trojan-Downloader.Obfuscated.2
    VirusBuster 4.3.26:9 2007.08.05 -
    Webwasher-Gateway 6.0.1 2007.08.03 Win32.Malware.gen (suspicious)
    Additional information
    File size: 532992 bytes
    MD5: d71a535779c19d6640deca714a70854c
    SHA1: 0f5a2825bcd6c8b9b39fb6f07f902b58f65ae061
    Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.
    0
  17. rudyrital Messages postés 6233 Statut Membre 131
     
    fait un scan ici
    https://www.bitdefender.fr/

    * En bas, à gauche de la fenêtre, clique sur BitDefender SCAN ONLINE
    * Dans la nouvelle fenêtre, clique sur j‘accepte
    * Accepte le contrôle Active X et Installe le. Le scanner se charge
    * La fenêtre change encore, clique sur ’cliquez ici pour scanner’
    * Les signatures se chargent, etc.

    tuto en image :
    http://pageperso.aol.fr/rginformatique/mapage/defender.htm

    copie colle le résultat ici

    0
  18. kifkif Messages postés 20 Statut Membre
     
    J utilise Firefox comme navigateur et Bitdefender ne se lance qu a partie d IE que j ai donc du reinstaller
    a partir d ajout de composants.
    Quand j ai lance IE la page CID est de nouveau apparu. Malgres tout ce que j ai fait cela ne resoud pas ce probleme?
    Bitdefender est actuellement en plein scan est apparement ca va prendre un peu de temps.
    Je mettrais le resultat du scan des que c est fini.

    Merci encore!
    0
  19. rudyrital Messages postés 6233 Statut Membre 131
     
    tres bien, courage
    0
  20. Darkkiller Messages postés 2336 Statut Contributeur 67
     
    Re,

    Pour information,

    le fichier

    C:\WINDOWS\System32\temp1.exe
    C:\WINDOWS\svchost.exe

    Faisaient, je pense partis, de l'infection LOP.
    0
  21. kifkif Messages postés 20 Statut Membre
     
    Voici le resultat de Bitdefender:

    BitDefender Online Scanner
    Rapport d'analyse généré à: Sun, Aug 05, 2007 - 21:06:37
    Voie d'analyse: A:\;C:\;D:\;E:\;F:\;G:\;

    Statistiques
    Temps 02:24:12

    Fichiers 413404
    Directoires 7938
    Secteurs de boot 5
    Archives 1287
    Paquets programmes 34451
    Résultats
    Virus identifiés 43

    Fichiers infectés 258

    Fichiers suspects 0

    Avertissements 0

    Désinfectés 0

    Fichiers effacés 255

    Info sur les moteurs

    Définition virus 689076

    Version des moteurs
    AVCORE v1.0 (build 2410) (i386) (Jun 12 2007 21:08:27)

    Analyse des plugins 14
    Archive des plugins 38
    Unpack des plugins 6
    E-mail plugins 6
    Système plugins 1
    Paramètres d'analyse
    Première action
    Désinfecté
    Seconde Action
    Supprimé

    Heuristique
    Oui

    Acceptez les avertissements
    Oui
    Extensions analysées

    *;

    Excludez les extensions

    Analyse d'emails
    Oui

    Analyse des Archives Oui

    Analyser paquets programmes
    Oui
    Analyse des fichier
    Oui
    Analyse de boot
    Oui
    Fichier analysé

    Statut

    C:\autorun.inf

    Infecté par: Trojan.Autorun.EU

    C:\autorun.inf

    Echec de la désinfection

    C:\autorun.inf

    Supprimé

    C:\copy.exe

    Infecté par: Backdoor.Hupigon.ADI

    C:\copy.exe

    Echec de la désinfection

    C:\copy.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe

    Infecté par: Trojan.FatObfus.AF

    C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe

    Echec de la suppression

    C:\Documents and Settings\All Users\Application Data\free body bleh five\armyfive.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\All Users\Application Data\free body bleh five\armyfive.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\armyfive.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Beep Cake.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Beep Cake.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Beep Cake.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\bind tray.exe

    nfecté par: Trojan.Swizzor.CZ

    C:\Documents and Settings\All Users\Application Data\free body bleh five\bind tray.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\bind tray.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\bolt trust.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\All Users\Application Data\free body bleh five\bolt trust.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\bolt trust.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Build Ref.exe

    Infecté par: Trojan.Downloader.Swizzor.DE

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Build Ref.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Build Ref.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Find start.exe

    Infecté par: Trojan.Downloader.Swizzor.DV

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Find start.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Insidetray.exe

    Infecté par: Trojan.Swizzor.BR

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Insidetray.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Insidetray.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Inter bash.exe

    Infecté par: Trojan.Downloader.Swizzor.CA

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Inter bash.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Inter bash.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Lite wma.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Lite wma.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Lite wma.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\memosoftware.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\All Users\Application Data\free body bleh five\memosoftware.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\memosoftware.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\mfcdseek.exe

    Infecté par: Trojan.Downloader.Swizzor.CN

    C:\Documents and Settings\All Users\Application Data\free body bleh five\mfcdseek.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\mfcdseek.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\multimeal.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\All Users\Application Data\free body bleh five\multimeal.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\multimeal.exe

    Supprimé
    C:\Documents and Settings\All Users\Application Data\free body bleh five\Proxy Store.exe

    Infecté par: Trojan.Downloader.Swizzor.DE

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Proxy Store.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Proxy Store.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\TransBags.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\All Users\Application Data\free body bleh five\TransBags.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\TransBags.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Wavedeaf.exe

    Infecté par: Trojan.FatObfus.Gen

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Wavedeaf.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\Wavedeaf.exe
    Supprimé

    C:\Documents and Settings\All Users\Application Data\free body bleh five\WinCdrom.exe

    Infecté par: Trojan.Downloader.Swizzor.DE

    C:\Documents and Settings\All Users\Application Data\free body bleh five\WinCdrom.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\free body bleh five\WinCdrom.exe

    Supprimé

    C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe

    Infecté par: Trojan.Obfuscated.GZ

    C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe

    Echec de la désinfection

    C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe

    Supprimé

    C:\Documents and Settings\LocalService\Application Data\Beep One Setup\DashAxis.exe

    Infecté par: Trojan.Lopad.M

    C:\Documents and Settings\LocalService\Application Data\Beep One Setup\DashAxis.exe

    Echec de la désinfection

    C:\Documents and Settings\LocalService\Application Data\Beep One Setup\DashAxis.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\abeyqcoo.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\xx\Application Data\Beep One Setup\abeyqcoo.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\abeyqcoo.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\bcozufjz.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\xx\Application Data\Beep One Setup\bcozufjz.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\bcozufjz.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\boldcastelse.exe

    Infecté par: Trojan.Obfuscated.GZ

    C:\Documents and Settings\xx\Application Data\Beep One Setup\boldcastelse.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\boldcastelse.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\bupcwmle.exe

    Infecté par: Trojan.FatObfus.AF

    C:\Documents and Settings\xx\Application Data\Beep One Setup\bupcwmle.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\ceodtxru.exe

    Infecté par: Trojan.Downloader.Swizzor.DE

    C:\Documents and Settings\xx\Application Data\Beep One Setup\ceodtxru.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\ceodtxru.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\DashAxis.exe

    Infecté par: Trojan.FatObfus.AK

    C:\Documents and Settings\xx\Application Data\Beep One Setup\DashAxis.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\DashAxis.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\fsxbthkl.exe

    Infecté par: Trojan.FatObfus.Gen

    C:\Documents and Settings\xx\Application Data\Beep One Setup\fsxbthkl.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\fsxbthkl.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\gduzxjxb.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\xx\Application Data\Beep One Setup\gduzxjxb.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\gduzxjxb.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\iuuszdio.exe

    Infecté par: Trojan.Swizzor.CZ

    C:\Documents and Settings\xx\Application Data\Beep One Setup\iuuszdio.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\iuuszdio.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\jztgqitv.exe

    Infecté par: Trojan.Downloader.Swizzor.CC

    C:\Documents and Settings\xx\Application Data\Beep One Setup\jztgqitv.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\jztgqitv.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\kejkzito.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\xx\Application Data\Beep One Setup\kejkzito.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\kejkzito.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\kkgrdirh.exe

    Infecté par: Trojan.Downloader.Swizzor.DJ

    C:\Documents and Settings\xx\Application Data\Beep One Setup\kkgrdirh.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\kkgrdirh.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\owns else chin idol.exe

    Infecté par: Trojan.FatObfus.AG

    C:\Documents and Settings\xx\Application Data\Beep One Setup\owns else chin idol.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\parkleoc.exe

    Infecté par: Trojan.Downloader.Swizzor.DV

    C:\Documents and Settings\xx\Application Data\Beep One Setup\parkleoc.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\shwuctbj.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\xx\Application Data\Beep One Setup\shwuctbj.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\shwuctbj.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\ujbivhfj.exe

    Infecté par: Trojan.Swizzor.BR

    C:\Documents and Settings\xx\Application Data\Beep One Setup\ujbivhfj.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\ujbivhfj.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\venqeijh.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\xx\Application Data\Beep One Setup\venqeijh.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\venqeijh.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\vepsfviv.exe

    Infecté par: Trojan.Swizzor.X

    C:\Documents and Settings\xx\Application Data\Beep One Setup\vepsfviv.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\vepsfviv.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\vfcxiewu.exe

    Infecté par: Trojan.Downloader.Swizzor.DE

    C:\Documents and Settings\xx\Application Data\Beep One Setup\vfcxiewu.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\vfcxiewu.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\vshigjgp.exe

    Infecté par: Trojan.Downloader.Swizzor.DE

    C:\Documents and Settings\xx\Application Data\Beep One Setup\vshigjgp.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\vshigjgp.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\xledsphy.exe

    Infecté par: Trojan.Downloader.Swizzor.CN

    C:\Documents and Settings\xx\Application Data\Beep One Setup\xledsphy.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\xledsphy.exe

    Supprimé

    C:\Documents and Settings\xx\Application Data\Beep One Setup\ztdlwibq.exe

    Infecté par: Trojan.Downloader.Swizzor.CA

    C:\Documents and Settings\xx\Application Data\Beep One Setup\ztdlwibq.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Application Data\Beep One Setup\ztdlwibq.exe

    Supprimé

    C:\Documents and Settings\xx\Bureau\AdobeR.exe

    Infecté par: Worm.RJump.K

    C:\Documents and Settings\xx\Bureau\AdobeR.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Bureau\AdobeR.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\15e76a.exe

    Infecté par: Trojan.Downloader.Swizzor.CA

    C:\Documents and Settings\xx\Local Settings\Temp\15e76a.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\15e76a.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\agfhlfpx.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\agfhlfpx.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\agfhlfpx.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\ahxzuxwj.exe

    Infecté par: Trojan.Swizzor.L

    C:\Documents and Settings\xx\Local Settings\Temp\ahxzuxwj.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\ahxzuxwj.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\apyqmhfh.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\apyqmhfh.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\apyqmhfh.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\bdspgegf.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\bdspgegf.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\bdspgegf.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\cgunqxrs.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\cgunqxrs.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\cgunqxrs.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\ckjjcibl.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\ckjjcibl.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\ckjjcibl.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\cxaigtkj.exe

    Infecté par: Trojan.Downloader.Swizzor.CP

    C:\Documents and Settings\xx\Local Settings\Temp\cxaigtkj.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\cxaigtkj.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\czcbfoiw.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\czcbfoiw.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\czcbfoiw.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\dmklemsk.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\dmklemsk.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\dmklemsk.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\dplezshx.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\dplezshx.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\dplezshx.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\dqqpeidb.exe

    Infecté par: Trojan.Downloader.Swizzor.DG

    C:\Documents and Settings\xx\Local Settings\Temp\dqqpeidb.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\dqqpeidb.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\drmqlecg.exe

    Infecté par: Trojan.Downloader.Swizzor.DG

    C:\Documents and Settings\xx\Local Settings\Temp\drmqlecg.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\drmqlecg.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\eeowexuv.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\eeowexuv.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\eeowexuv.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\eyzilust.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\eyzilust.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\eyzilust.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\f5205da5.exe

    Infecté par: Trojan.Downloader.Swizzor.DI

    C:\Documents and Settings\xx\Local Settings\Temp\f5205da5.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\f5205da5.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\f52614c8.exe

    Infecté par: Trojan.Downloader.Swizzor.DJ

    C:\Documents and Settings\xx\Local Settings\Temp\f52614c8.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\f52614c8.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\f527120e.exe

    Infecté par: Trojan.Downloader.Swizzor.CA

    C:\Documents and Settings\xx\Local Settings\Temp\f527120e.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\f527120e.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\f52739fb.exe

    Infecté par: Trojan.Downloader.Swizzor.CA

    C:\Documents and Settings\xx\Local Settings\Temp\f52739fb.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\f52739fb.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\f52b1c94.exe

    Infecté par: Trojan.Downloader.Swizzor.CA

    C:\Documents and Settings\xx\Local Settings\Temp\f52b1c94.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\f52b1c94.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\f561ff15.exe

    Infecté par: Trojan.FatObfus.Gen

    C:\Documents and Settings\xx\Local Settings\Temp\f561ff15.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\f561ff15.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\fen0eGA.exe

    Infecté par: Trojan.Downloader.Istbar.FL

    C:\Documents and Settings\xx\Local Settings\Temp\fen0eGA.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\fen0eGA.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\fgxxkkwi.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\fgxxkkwi.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\fgxxkkwi.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\gfoemasv.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\gfoemasv.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\gfoemasv.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\giykgzbp.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\giykgzbp.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\giykgzbp.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\gmtzlsin.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\gmtzlsin.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\gmtzlsin.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\hfhvfgqq.exe

    Infecté par: Trojan.RhmTox.A

    C:\Documents and Settings\xx\Local Settings\Temp\hfhvfgqq.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\Inside Program.exe

    Infecté par: Trojan.Swizzor.DH

    C:\Documents and Settings\xx\Local Settings\Temp\Inside Program.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\Inside Program.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\jnqhgijx.exe

    Infecté par: Trojan.RhmTox.A

    C:\Documents and Settings\xx\Local Settings\Temp\jnqhgijx.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\mayajzxf.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\mayajzxf.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\mayajzxf.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\moevmupe.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\moevmupe.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\moevmupe.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\nsxltqgi.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\nsxltqgi.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\nsxltqgi.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\nwqvebcg.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\nwqvebcg.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\nwqvebcg.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\ovuabrds.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\ovuabrds.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\ovuabrds.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\plfepare.exe

    Infecté par: Trojan.Downloader.Swizzor.DC

    C:\Documents and Settings\xx\Local Settings\Temp\plfepare.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\plfepare.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\pqboxrse.exe

    Infecté par: Trojan.RhmTox.A

    C:\Documents and Settings\xx\Local Settings\Temp\pqboxrse.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\qvywnpdu.exe

    Infecté par: Trojan.Swizzor.L

    C:\Documents and Settings\xx\Local Settings\Temp\qvywnpdu.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\qvywnpdu.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\qxhqbrsm.exe

    Infecté par: Trojan.Swizzor.L

    C:\Documents and Settings\xx\Local Settings\Temp\qxhqbrsm.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\qxhqbrsm.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\rggdsncn.exe

    Infecté par: Trojan.Lopad.M

    C:\Documents and Settings\xx\Local Settings\Temp\rggdsncn.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\rggdsncn.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\ritqeknc.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\ritqeknc.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\ritqeknc.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\rjnlcvxc.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\rjnlcvxc.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\rjnlcvxc.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\rrvzanri.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\rrvzanri.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\rrvzanri.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\rwnccuvf.exe

    Infecté par: Trojan.RhmTox.A

    C:\Documents and Settings\xx\Local Settings\Temp\rwnccuvf.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\rxpotqga.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\rxpotqga.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\rxpotqga.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\sctreykm.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\sctreykm.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\sctreykm.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\senusiai.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\senusiai.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\senusiai.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\sta6B.exe

    Infecté par: Trojan.FatObfus.AK

    C:\Documents and Settings\xx\Local Settings\Temp\sta6B.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\sta6B.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\sta88.exe

    Infecté par: Trojan.FatObfus.Gen

    C:\Documents and Settings\xx\Local Settings\Temp\sta88.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\sta88.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\thlcwsni.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\thlcwsni.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\thlcwsni.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\toagvxmy.exe

    Infecté par: Trojan.Downloader.Swizzor.CP

    C:\Documents and Settings\xx\Local Settings\Temp\toagvxmy.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\toagvxmy.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\tygynsow.exe

    Infecté par: Trojan.Swizzor.L

    C:\Documents and Settings\xx\Local Settings\Temp\tygynsow.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\tygynsow.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\udppxfrf.exe

    Infecté par: Trojan.Downloader.Swizzor.DG

    C:\Documents and Settings\xx\Local Settings\Temp\udppxfrf.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\udppxfrf.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\vblmkqrw.exe

    Infecté par: Trojan.Downloader.Swizzor.CP

    C:\Documents and Settings\xx\Local Settings\Temp\vblmkqrw.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\vblmkqrw.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\vrbdfhbs.exe

    Infecté par: Trojan.Swizzor.L

    C:\Documents and Settings\xx\Local Settings\Temp\vrbdfhbs.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\vrbdfhbs.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\wazypicq.exe

    Détecté avec: Adware.Swizzor.ML

    C:\Documents and Settings\xx\Local Settings\Temp\wazypicq.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\wazypicq.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\xzhujenc.exe

    Infecté par: Trojan.Downloader.Swizzor.DG

    C:\Documents and Settings\xx\Local Settings\Temp\xzhujenc.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\xzhujenc.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\ybrwouju.exe

    Infecté par: Trojan.RhmTox.A

    C:\Documents and Settings\xx\Local Settings\Temp\ybrwouju.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\yjmzzoit.exe

    Infecté par: Trojan.Swizzor.L

    C:\Documents and Settings\xx\Local Settings\Temp\yjmzzoit.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\yjmzzoit.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temp\zknpxhav.exe

    Infecté par: Trojan.Lopad.G

    C:\Documents and Settings\xx\Local Settings\Temp\zknpxhav.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temp\zknpxhav.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\6V2TGJ4X\default[1].cab=>games.exe

    Infecté par: Trojan.Dropper.Agent.XB

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\6V2TGJ4X\default[1].cab=>games.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\6V2TGJ4X\default[1].cab=>games.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\6V2TGJ4X\default[1].cab

    Echec de la mise à jour

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ANURMDMJ\upAYB[1].int

    Infecté par: Trojan.Swizzor.DH

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ANURMDMJ\upAYB[1].int

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ANURMDMJ\upAYB[1].int

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ATWFY565\games4[1].cab=>games.exe

    Infecté par: Trojan.Dialer.FY

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ATWFY565\games4[1].cab=>games.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ATWFY565\games4[1].cab=>games.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ATWFY565\games4[1].cab

    Echec de la mise à jour

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\C50NKZOV\default[1].cab=>games.exe

    Infecté par: Generic.Malware.FYd!.55D81982

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\C50NKZOV\default[1].cab=>games.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\C50NKZOV\default[1].cab=>games.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\C50NKZOV\default[1].cab

    Echec de la mise à jour

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\GZED636H\default[1].cab=>games.exe

    Infecté par: Generic.Malware.FYd!.36208ACC

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\GZED636H\default[1].cab=>games.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\GZED636H\default[1].cab=>games.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\GZED636H\default[1].cab

    Echec de la mise à jour

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\JEXVBJAW\send_car_int[1].htm

    Infecté par: Trojan.Exploit.Html.Codebaseexec.DA

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\JEXVBJAW\send_car_int[1].htm

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\JEXVBJAW\send_car_int[1].htm

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\KXUJ09I7\upAYB[1].int

    Infecté par: Trojan.Downloader.Swizzor.DI

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\KXUJ09I7\upAYB[1].int

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\KXUJ09I7\upAYB[1].int

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\UV03M9MB\default[1].cab=>games.exe

    Infecté par: Generic.Malware.FYd!.EFD5D1DA

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\UV03M9MB\default[1].cab=>games.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\UV03M9MB\default[1].cab=>games.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\UV03M9MB\default[1].cab

    Echec de la mise à jour

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\Y9WFE9M5\default[1].cab=>games.exe

    Infecté par: Generic.Malware.FYd!.9E163E19

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\Y9WFE9M5\default[1].cab=>games.exe

    Echec de la désinfection

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\Y9WFE9M5\default[1].cab=>games.exe

    Supprimé

    C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\Y9WFE9M5\default[1].cab

    Echec de la mise à jour

    C:\host.exe

    Infecté par: Trojan.Dropper.Small.APL

    C:\host.exe

    Echec de la désinfection

    C:\host.exe

    Supprimé

    C:\Program Files\C2Media\Setup.exe

    Infecté par: Trojan.Downloader.Swizzor.DO

    C:\Program Files\C2Media\Setup.exe

    Echec de la désinfection

    C:\Program Files\C2Media\Setup.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235755.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235755.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235755.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235756.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235756.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235756.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235802.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235802.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235802.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235803.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235803.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235803.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235822.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235822.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235822.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235823.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235823.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235823.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235846.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235846.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235846.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235847.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235847.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235847.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235881.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235881.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235881.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235882.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235882.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235882.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235908.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235908.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235908.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235909.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235909.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235909.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235950.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235950.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235950.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235951.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235951.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235951.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235973.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235973.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235973.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235974.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235974.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235974.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235988.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235988.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235988.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235989.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235989.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235989.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236011.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236011.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236011.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236012.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236012.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236012.exe

    Supprimé
    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237011.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237011.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237011.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237012.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237012.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237012.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237035.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237035.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237035.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237036.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237036.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237036.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237049.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237049.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237049.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237050.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237050.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237050.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237060.exe

    Infecté par: Trojan.FatObfus.Gen

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237060.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237060.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237061.exe

    Infecté par: Trojan.Swizzor.X

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237061.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237061.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237062.exe

    Infecté par: Trojan.Swizzor.X

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237062.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237062.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237063.exe

    Infecté par: Trojan.Swizzor.CZ

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237063.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237063.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237064.exe

    Infecté par: Trojan.Swizzor.X

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237064.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237064.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237065.exe

    Infecté par: Trojan.Downloader.Swizzor.DE

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237065.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237065.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237066.exe

    Infecté par: Trojan.Downloader.Swizzor.DV

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237066.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237067.exe

    Infecté par: Trojan.Swizzor.BR

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237067.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237067.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237068.exe

    Infecté par: Trojan.Downloader.Swizzor.CA

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237068.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237068.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237069.exe

    Infecté par: Trojan.Swizzor.X

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237069.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237069.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237070.exe

    Infecté par: Trojan.Swizzor.X

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237070.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237070.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237071.exe

    Infecté par: Trojan.Downloader.Swizzor.CN

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237071.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237071.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237072.exe

    Infecté par: Trojan.Swizzor.X

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237072.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237072.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237073.exe

    Infecté par: Trojan.Downloader.Swizzor.DE

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237073.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237073.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237074.exe

    Infecté par: Trojan.Swizzor.X

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237074.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237074.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237075.exe

    Infecté par: Trojan.Downloader.Swizzor.DE

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237075.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237075.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237079.exe

    Infecté par: Trojan.FatObfus.Gen

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237079.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237079.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237080.exe

    Infecté par: Trojan.FatObfus.Gen

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237080.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237080.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP415\A0237090.exe

    Infecté par: Trojan.FatObfus.AF

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP415\A0237090.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP416\A0237108.exe

    Infecté par: Trojan.FatObfus.AF

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP416\A0237108.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237125.exe

    Infecté par: Trojan.FatObfus.AF

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237125.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237128.exe

    Infecté par: Trojan.Downloader.Swizzor.R

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237128.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237128.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251465.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251465.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251465.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251466.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251466.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251466.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251472.exe

    Infecté par: Trojan.FatObfus.AF

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251472.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252465.exe

    Infecté par: Trojan.Perlovga.B

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252465.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252465.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252466.exe

    Infecté par: Backdoor.Small.LO

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252466.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252466.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252474.exe

    Infecté par: Trojan.FatObfus.AF

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252474.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252513.exe

    Infecté par: Trojan.Obfuscated.GZ

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252513.exe

    Echec de la désinfection

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252513.exe

    Supprimé

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP419\A0252525.exe

    Infecté par: Trojan.FatObfus.AF

    C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP419\A0252525.exe

    Supprimé

    C:\System Volume Information\_restore{2
    0
  • 1
  • 2