Impossible d'instalé un antivirus
Résolu
greging
-
greging -
greging -
Bonjour,
j'ai un gros soucis j'avais un antivirus d'evaluation et ya pas longtemps je n'arrivait plus a l'ouvrir donc je l'ai supprimé et je suis allé en chercher un autre et le in m'instale tout sauf a la fin il me marque une erreur c'est produite qui peu m'aider
g tous essayé les nettoyage divers antivirus... impossible
j'ai un gros soucis j'avais un antivirus d'evaluation et ya pas longtemps je n'arrivait plus a l'ouvrir donc je l'ai supprimé et je suis allé en chercher un autre et le in m'instale tout sauf a la fin il me marque une erreur c'est produite qui peu m'aider
g tous essayé les nettoyage divers antivirus... impossible
A voir également:
- Impossible d'instalé un antivirus
- Comodo antivirus - Télécharger - Sécurité
- Panda antivirus - Télécharger - Antivirus & Antimalwares
- Norton antivirus gratuit - Télécharger - Antivirus & Antimalwares
- Bitdefender antivirus free - Télécharger - Antivirus & Antimalwares
- Avg free antivirus - Télécharger - Antivirus & Antimalwares
55 réponses
ok dans ce vu qu'il n'est qu'a 12% on verra ça demain vers 18h15 si ça te convien et le rapport je le trouve où
sinon sur ce bonne soirée et encore bien merci si tu as des fillons a m'apprendre je suis tout ouï
sinon sur ce bonne soirée et encore bien merci si tu as des fillons a m'apprendre je suis tout ouï
Re,
Le rapport devra impérativement être enregistré en mode texte à la fin du scan. Il me le faut pour vérifier si des fichiers infectieux sont encore actifs.
FillPCA
Le rapport devra impérativement être enregistré en mode texte à la fin du scan. Il me le faut pour vérifier si des fichiers infectieux sont encore actifs.
FillPCA
Re,
Oui, mais par défaut, je crois que le format d'enregistrement du rapport est en html. Dans la fenêtre d'enregistrement, dans "type", choisis "fichier texte".
FillPCA
Oui, mais par défaut, je crois que le format d'enregistrement du rapport est en html. Dans la fenêtre d'enregistrement, dans "type", choisis "fichier texte".
FillPCA
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
-------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER REPORT
Wednesday, October 24, 2007 7:49:38 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 23/10/2007
Kaspersky Anti-Virus database records: 416277
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
F:\
G:\
H:\
I:\
Scan Statistics:
Total number of scanned objects: 106609
Number of viruses found: 9
Number of infected objects: 177
Number of suspicious objects: 0
Duration of the scan process: 14:50:06
Infected Object Name / Virus Name / Last Action
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP561\A0054280.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP565\A0054454.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP571\A0054679.exe Infected: Trojan-Downloader.Win32.Bagle.dw skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP588\A0056398.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP588\A0056403.sys Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP588\A0056437.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP588\A0056524.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056780.exe Infected: Trojan-Downloader.Win32.Bagle.dw skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056786.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056803.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056804.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056817.exe Infected: Trojan-Downloader.Win32.Bagle.er skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056841.exe Infected: Trojan-Downloader.Win32.Bagle.er skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056844.exe Infected: Trojan-Downloader.Win32.Bagle.er skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056846.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056850.exe Infected: Trojan-Downloader.Win32.Bagle.er skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056851.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056852.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056853.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP594\A0056870.exe Infected: Trojan-Downloader.Win32.Bagle.dw skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP594\A0056871.exe Infected: Trojan-Downloader.Win32.Bagle.dw skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP595\A0056918.exe Infected: Trojan-Clicker.Win32.Agent.iq skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP595\A0056919.exe/stream/data0002 Infected: Trojan-Clicker.Win32.Agent.iq skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP595\A0056919.exe/stream Infected: Trojan-Clicker.Win32.Agent.iq skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP595\A0056919.exe NSIS: infected - 2 skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP597\A0057063.exe Infected: Trojan-Spy.Win32.Delf.wh skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\Antiviru.evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
D:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
D:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Cookies\index.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\NTUSER.DAT Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\ntuser.dat.LOG Object is locked skipped
D:\Documents and Settings\NetworkService.AUTORITE NT.002\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
D:\Documents and Settings\NetworkService.AUTORITE NT.002\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
D:\Documents and Settings\NetworkService.AUTORITE NT.002\NTUSER.DAT Object is locked skipped
D:\Documents and Settings\NetworkService.AUTORITE NT.002\ntuser.dat.LOG Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Cricket Images and News 1.0.zip/Cricket Images and News 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Cricket Images and News 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\dbdesc 2.1 [Crack].zip/dbdesc 2.1 [Crack].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\dbdesc 2.1 [Crack].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Deskbar Builder 1.6.zip/Deskbar Builder 1.6.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Deskbar Builder 1.6.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Dirt Track Racing 1.02d patch.zip/Dirt Track Racing 1.02d patch.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Dirt Track Racing 1.02d patch.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\DiskCheckup 1.1 build 1002.zip/DiskCheckup 1.1 build 1002.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\DiskCheckup 1.1 build 1002.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Easy Measure Converter 1.zip/Easy Measure Converter 1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Easy Measure Converter 1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Email Reserve 1.4.zip/Email Reserve 1.4.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Email Reserve 1.4.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Engineer's Toolset 9.0 [With Crack].zip/Engineer's Toolset 9.0 [With Crack].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Engineer's Toolset 9.0 [With Crack].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Engineering Power Tools PLUS EDITION 2.0.4.zip/Engineering Power Tools PLUS EDITION 2.0.4.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Engineering Power Tools PLUS EDITION 2.0.4.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ES Image Printer Driver (64 Bit) 1.1.8.zip/ES Image Printer Driver (64 Bit) 1.1.8.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ES Image Printer Driver (64 Bit) 1.1.8.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\EventHorizon 1.1.1.zip/EventHorizon 1.1.1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\EventHorizon 1.1.1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\eventSherpa 2.1 Build 1397.zip/eventSherpa 2.1 Build 1397.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\eventSherpa 2.1 Build 1397.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ExButton 1.0.1.4.2734 Serial.zip/ExButton 1.0.1.4.2734 Serial.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ExButton 1.0.1.4.2734 Serial.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Ezimerchant Professional 3.59.zip/Ezimerchant Professional 3.59.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Ezimerchant Professional 3.59.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\F-16 Falcon Screen Saver 1.0 KeyGen.zip/F-16 Falcon Screen Saver 1.0 KeyGen.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\F-16 Falcon Screen Saver 1.0 KeyGen.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\File Lock 1.0 (Serial).zip/File Lock 1.0 (Serial).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\File Lock 1.0 (Serial).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FileSpice 1.0.zip/FileSpice 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FileSpice 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FlatStyle 0.9.2.5.zip/FlatStyle 0.9.2.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FlatStyle 0.9.2.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FlyTreeView for ASP.NET 2.0 4.1.zip/FlyTreeView for ASP.NET 2.0 4.1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FlyTreeView for ASP.NET 2.0 4.1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Focus Photoeditor 4.4.0.17.zip/Focus Photoeditor 4.4.0.17.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Focus Photoeditor 4.4.0.17.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Frankie Muniz - Agent Cody Banks 2 Screen Saver 1.0.zip/Frankie Muniz - Agent Cody Banks 2 Screen Saver 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Frankie Muniz - Agent Cody Banks 2 Screen Saver 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Freemoticons Valentine 69 1.0.zip/Freemoticons Valentine 69 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Freemoticons Valentine 69 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FunView 1.1.zip/FunView 1.1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FunView 1.1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\GIFConverter 2.4.4.zip/GIFConverter 2.4.4.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\GIFConverter 2.4.4.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Gnews Snatch 1.0.zip/Gnews Snatch 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Gnews Snatch 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Happy Calendar 1.5.zip/Happy Calendar 1.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Happy Calendar 1.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Hotline Connect Client (OS X) 1.8.5.zip/Hotline Connect Client (OS X) 1.8.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Hotline Connect Client (OS X) 1.8.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\IBM zSeries Sales V1 Practice Test Questions 1.0.zip/IBM zSeries Sales V1 Practice Test Questions 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\IBM zSeries Sales V1 Practice Test Questions 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ImageSite Pro 1.1 (Cracked).zip/ImageSite Pro 1.1 (Cracked).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ImageSite Pro 1.1 (Cracked).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Interest Rate Futures Tick Calculator 1.0.zip/Interest Rate Futures Tick Calculator 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Interest Rate Futures Tick Calculator 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\JumpStart 1.5.zip/JumpStart 1.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\JumpStart 1.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Keep Track 3.5.5.zip/Keep Track 3.5.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Keep Track 3.5.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Lenogo DVD to iPhone Converter 6.5.zip/Lenogo DVD to iPhone Converter 6.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Lenogo DVD to iPhone Converter 6.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\LingvoSoft Learning PhraseBook 2007 English - Polish 2.2.76 KeyGen.zip/LingvoSoft Learning PhraseBook 2007 English - Polish 2.2.76 KeyGen.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\LingvoSoft Learning PhraseBook 2007 English - Polish 2.2.76 KeyGen.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\LingvoSoft Picture Dictionary 2007 Russian - Persian (Farsi) 1.1.19 (Serial).zip/LingvoSoft Picture Dictionary 2007 Russian - Persian (Farsi) 1.1.19 (Serial).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\LingvoSoft Picture Dictionary 2007 Russian - Persian (Farsi) 1.1.19 (Serial).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Live Billiards Deluxe 1.5.zip/Live Billiards Deluxe 1.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Live Billiards Deluxe 1.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Mars 2.7.zip/Mars 2.7.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Mars 2.7.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\MarsEdit 1.0.zip/MarsEdit 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\MarsEdit 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\MAX Image Converter 1.0.zip/MAX Image Converter 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\MAX Image Converter 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\New York Times Reader 1.0.1.0.zip/New York Times Reader 1.0.1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\New York Times Reader 1.0.1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\NOD32.2.12.4-Patcher.cht.zip/NOD32.2.12.4-Patcher.cht.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\NOD32.2.12.4-Patcher.cht.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Objectreferenceanalyser 1.01.zip/Objectreferenceanalyser 1.01.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Objectreferenceanalyser 1.01.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PAL Popup Eliminator 1.01.zip/PAL Popup Eliminator 1.01.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PAL Popup Eliminator 1.01.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PDF Vista Server Edition 6.0.0.6200.zip/PDF Vista Server Edition 6.0.0.6200.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PDF Vista Server Edition 6.0.0.6200.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Perfect Screens Lite 4.1 (With Crack).zip/Perfect Screens Lite 4.1 (With Crack).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Perfect Screens Lite 4.1 (With Crack).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PowerDNS 2.9.15.zip/PowerDNS 2.9.15.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PowerDNS 2.9.15.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PrecisionID EAN UPC Barcode Fonts 3.0.zip/PrecisionID EAN UPC Barcode Fonts 3.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PrecisionID EAN UPC Barcode Fonts 3.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RelayTest Pro 1.9.zip/RelayTest Pro 1.9.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RelayTest Pro 1.9.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RM Promoter 1.4.zip/RM Promoter 1.4.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RM Promoter 1.4.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RSTools 2.1 build 2.zip/RSTools 2.1 build 2.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RSTools 2.1 build 2.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Scandy 1.0.zip/Scandy 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Scandy 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SearchView 1.0.8.zip/SearchView 1.0.8.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SearchView 1.0.8.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SLC Security Console 3.00.zip/SLC Security Console 3.00.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SLC Security Console 3.00.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Smart Keystroke Recorder 3.7 Serial.zip/Smart Keystroke Recorder 3.7 Serial.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Smart Keystroke Recorder 3.7 Serial.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SNK WebOffice 1.03.zip/SNK WebOffice 1.03.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SNK WebOffice 1.03.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Space Synthesizer 1.3.zip/Space Synthesizer 1.3.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Space Synthesizer 1.3.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Speak-to-Mail 1.00.22.zip/Speak-to-Mail 1.00.22.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Speak-to-Mail 1.00.22.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SpeakFreely 2.1.zip/SpeakFreely 2.1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SpeakFreely 2.1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Sprintbit File Manager 3.1.25 [Patch].zip/Sprintbit File Manager 3.1.25 [Patch].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Sprintbit File Manager 3.1.25 [Patch].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SSS Kidword 1.2.zip/SSS Kidword 1.2.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SSS Kidword 1.2.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\StartGuard Free Edition 2.0.487 (KeyGen).zip/StartGuard Free Edition 2.0.487 (KeyGen).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\StartGuard Free Edition 2.0.487 (KeyGen).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Text Reader 2.11.zip/Text Reader 2.11.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Text Reader 2.11.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\The Sims - Lieutenant Torres skin.zip/The Sims - Lieutenant Torres skin.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\The Sims - Lieutenant Torres skin.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\TX Text Control .NET Server 13.0 SP1.zip/TX Text Control .NET Server 13.0 SP1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\TX Text Control .NET Server 13.0 SP1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Unreal Tournament 2003 - ATI Replacement mod.zip/Unreal Tournament 2003 - ATI Replacement mod.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Unreal Tournament 2003 - ATI Replacement mod.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Unreal Tournament 2003 Checkmate Mod 3.0 beta.zip/Unreal Tournament 2003 Checkmate Mod 3.0 beta.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Unreal Tournament 2003 Checkmate Mod 3.0 beta.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Uplink Skype to SIP Adapter 1.30.zip/Uplink Skype to SIP Adapter 1.30.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Uplink Skype to SIP Adapter 1.30.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\VistaGlazz 1.0.zip/VistaGlazz 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\VistaGlazz 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Visual-ISO 1.1 beta 7.zip/Visual-ISO 1.1 beta 7.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Visual-ISO 1.1 beta 7.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Waterworld Deep Sea Screensaver 1.11.zip/Waterworld Deep Sea Screensaver 1.11.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Waterworld Deep Sea Screensaver 1.11.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\WebWerx 2.5 Beta 3.zip/WebWerx 2.5 Beta 3.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\WebWerx 2.5 Beta 3.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Win DVD Ripper 9.0.3 [Crack].zip/Win DVD Ripper 9.0.3 [Crack].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Win DVD Ripper 9.0.3 [Crack].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\WinX DVD Author 5.0.68 [Patch].zip/WinX DVD Author 5.0.68 [Patch].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\WinX DVD Author 5.0.68 [Patch].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Yapp the project calculator 2.0.0.6 (Key+Serial).zip/Yapp the project calculator 2.0.0.6 (Key+Serial).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Yapp the project calculator 2.0.0.6 (Key+Serial).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Your My Valentine 1.0.zip/Your My Valentine 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Your My Valentine 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Zero Spelling 5.0.zip/Zero Spelling 5.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Zero Spelling 5.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Zmei Mail Sender 1.15.zip/Zmei Mail Sender 1.15.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Zmei Mail Sender 1.15.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Cookies\index.dat Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\5CGKLP80\mxd[2].jpg Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\GXONOFKR\mxd[1].jpg Infected: Trojan-Downloader.Win32.Bagle.ek skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\O4TUJ8RV\mxd[2].jpg Infected: Trojan-Downloader.Win32.Bagle.eu skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\OVB3PBCA\mxd[3].jpg Infected: Trojan-Downloader.Win32.Bagle.es skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\NTUSER.DAT Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\ntuser.dat.LOG Object is locked skipped
D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
D:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP582\A0055314.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
D:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP583\A0055328.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
D:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP598\change.log Object is locked skipped
Scan process completed.
voila le resulta du scan kapersky
KASPERSKY ONLINE SCANNER REPORT
Wednesday, October 24, 2007 7:49:38 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 23/10/2007
Kaspersky Anti-Virus database records: 416277
-------------------------------------------------------------------------------
Scan Settings:
Scan using the following antivirus database: standard
Scan Archives: true
Scan Mail Bases: true
Scan Target - My Computer:
C:\
D:\
E:\
F:\
G:\
H:\
I:\
Scan Statistics:
Total number of scanned objects: 106609
Number of viruses found: 9
Number of infected objects: 177
Number of suspicious objects: 0
Duration of the scan process: 14:50:06
Infected Object Name / Virus Name / Last Action
C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP561\A0054280.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP565\A0054454.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP571\A0054679.exe Infected: Trojan-Downloader.Win32.Bagle.dw skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP588\A0056398.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP588\A0056403.sys Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP588\A0056437.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP588\A0056524.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056780.exe Infected: Trojan-Downloader.Win32.Bagle.dw skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056786.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056803.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056804.exe Object is locked skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056817.exe Infected: Trojan-Downloader.Win32.Bagle.er skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056841.exe Infected: Trojan-Downloader.Win32.Bagle.er skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056844.exe Infected: Trojan-Downloader.Win32.Bagle.er skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056846.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056850.exe Infected: Trojan-Downloader.Win32.Bagle.er skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056851.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056852.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP593\A0056853.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP594\A0056870.exe Infected: Trojan-Downloader.Win32.Bagle.dw skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP594\A0056871.exe Infected: Trojan-Downloader.Win32.Bagle.dw skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP595\A0056918.exe Infected: Trojan-Clicker.Win32.Agent.iq skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP595\A0056919.exe/stream/data0002 Infected: Trojan-Clicker.Win32.Agent.iq skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP595\A0056919.exe/stream Infected: Trojan-Clicker.Win32.Agent.iq skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP595\A0056919.exe NSIS: infected - 2 skipped
C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP597\A0057063.exe Infected: Trojan-Spy.Win32.Delf.wh skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\system32\config\Antiviru.evt Object is locked skipped
C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
C:\WINDOWS\system32\config\default.LOG Object is locked skipped
C:\WINDOWS\system32\config\Internet.evt Object is locked skipped
C:\WINDOWS\system32\config\SAM Object is locked skipped
C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SECURITY Object is locked skipped
C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
C:\WINDOWS\system32\config\software.LOG Object is locked skipped
C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
C:\WINDOWS\system32\config\system.LOG Object is locked skipped
C:\WINDOWS\system32\h323log.txt Object is locked skipped
C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\wiadebug.log Object is locked skipped
C:\WINDOWS\wiaservc.log Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
D:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
D:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Cookies\index.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\NTUSER.DAT Object is locked skipped
D:\Documents and Settings\LocalService.AUTORITE NT.002\ntuser.dat.LOG Object is locked skipped
D:\Documents and Settings\NetworkService.AUTORITE NT.002\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
D:\Documents and Settings\NetworkService.AUTORITE NT.002\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
D:\Documents and Settings\NetworkService.AUTORITE NT.002\NTUSER.DAT Object is locked skipped
D:\Documents and Settings\NetworkService.AUTORITE NT.002\ntuser.dat.LOG Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Cricket Images and News 1.0.zip/Cricket Images and News 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Cricket Images and News 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\dbdesc 2.1 [Crack].zip/dbdesc 2.1 [Crack].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\dbdesc 2.1 [Crack].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Deskbar Builder 1.6.zip/Deskbar Builder 1.6.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Deskbar Builder 1.6.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Dirt Track Racing 1.02d patch.zip/Dirt Track Racing 1.02d patch.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Dirt Track Racing 1.02d patch.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\DiskCheckup 1.1 build 1002.zip/DiskCheckup 1.1 build 1002.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\DiskCheckup 1.1 build 1002.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Easy Measure Converter 1.zip/Easy Measure Converter 1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Easy Measure Converter 1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Email Reserve 1.4.zip/Email Reserve 1.4.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Email Reserve 1.4.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Engineer's Toolset 9.0 [With Crack].zip/Engineer's Toolset 9.0 [With Crack].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Engineer's Toolset 9.0 [With Crack].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Engineering Power Tools PLUS EDITION 2.0.4.zip/Engineering Power Tools PLUS EDITION 2.0.4.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Engineering Power Tools PLUS EDITION 2.0.4.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ES Image Printer Driver (64 Bit) 1.1.8.zip/ES Image Printer Driver (64 Bit) 1.1.8.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ES Image Printer Driver (64 Bit) 1.1.8.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\EventHorizon 1.1.1.zip/EventHorizon 1.1.1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\EventHorizon 1.1.1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\eventSherpa 2.1 Build 1397.zip/eventSherpa 2.1 Build 1397.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\eventSherpa 2.1 Build 1397.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ExButton 1.0.1.4.2734 Serial.zip/ExButton 1.0.1.4.2734 Serial.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ExButton 1.0.1.4.2734 Serial.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Ezimerchant Professional 3.59.zip/Ezimerchant Professional 3.59.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Ezimerchant Professional 3.59.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\F-16 Falcon Screen Saver 1.0 KeyGen.zip/F-16 Falcon Screen Saver 1.0 KeyGen.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\F-16 Falcon Screen Saver 1.0 KeyGen.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\File Lock 1.0 (Serial).zip/File Lock 1.0 (Serial).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\File Lock 1.0 (Serial).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FileSpice 1.0.zip/FileSpice 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FileSpice 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FlatStyle 0.9.2.5.zip/FlatStyle 0.9.2.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FlatStyle 0.9.2.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FlyTreeView for ASP.NET 2.0 4.1.zip/FlyTreeView for ASP.NET 2.0 4.1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FlyTreeView for ASP.NET 2.0 4.1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Focus Photoeditor 4.4.0.17.zip/Focus Photoeditor 4.4.0.17.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Focus Photoeditor 4.4.0.17.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Frankie Muniz - Agent Cody Banks 2 Screen Saver 1.0.zip/Frankie Muniz - Agent Cody Banks 2 Screen Saver 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Frankie Muniz - Agent Cody Banks 2 Screen Saver 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Freemoticons Valentine 69 1.0.zip/Freemoticons Valentine 69 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Freemoticons Valentine 69 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FunView 1.1.zip/FunView 1.1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\FunView 1.1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\GIFConverter 2.4.4.zip/GIFConverter 2.4.4.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\GIFConverter 2.4.4.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Gnews Snatch 1.0.zip/Gnews Snatch 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Gnews Snatch 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Happy Calendar 1.5.zip/Happy Calendar 1.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Happy Calendar 1.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Hotline Connect Client (OS X) 1.8.5.zip/Hotline Connect Client (OS X) 1.8.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Hotline Connect Client (OS X) 1.8.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\IBM zSeries Sales V1 Practice Test Questions 1.0.zip/IBM zSeries Sales V1 Practice Test Questions 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\IBM zSeries Sales V1 Practice Test Questions 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ImageSite Pro 1.1 (Cracked).zip/ImageSite Pro 1.1 (Cracked).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\ImageSite Pro 1.1 (Cracked).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Interest Rate Futures Tick Calculator 1.0.zip/Interest Rate Futures Tick Calculator 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Interest Rate Futures Tick Calculator 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\JumpStart 1.5.zip/JumpStart 1.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\JumpStart 1.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Keep Track 3.5.5.zip/Keep Track 3.5.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Keep Track 3.5.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Lenogo DVD to iPhone Converter 6.5.zip/Lenogo DVD to iPhone Converter 6.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Lenogo DVD to iPhone Converter 6.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\LingvoSoft Learning PhraseBook 2007 English - Polish 2.2.76 KeyGen.zip/LingvoSoft Learning PhraseBook 2007 English - Polish 2.2.76 KeyGen.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\LingvoSoft Learning PhraseBook 2007 English - Polish 2.2.76 KeyGen.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\LingvoSoft Picture Dictionary 2007 Russian - Persian (Farsi) 1.1.19 (Serial).zip/LingvoSoft Picture Dictionary 2007 Russian - Persian (Farsi) 1.1.19 (Serial).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\LingvoSoft Picture Dictionary 2007 Russian - Persian (Farsi) 1.1.19 (Serial).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Live Billiards Deluxe 1.5.zip/Live Billiards Deluxe 1.5.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Live Billiards Deluxe 1.5.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Mars 2.7.zip/Mars 2.7.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Mars 2.7.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\MarsEdit 1.0.zip/MarsEdit 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\MarsEdit 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\MAX Image Converter 1.0.zip/MAX Image Converter 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\MAX Image Converter 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\New York Times Reader 1.0.1.0.zip/New York Times Reader 1.0.1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\New York Times Reader 1.0.1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\NOD32.2.12.4-Patcher.cht.zip/NOD32.2.12.4-Patcher.cht.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\NOD32.2.12.4-Patcher.cht.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Objectreferenceanalyser 1.01.zip/Objectreferenceanalyser 1.01.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Objectreferenceanalyser 1.01.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PAL Popup Eliminator 1.01.zip/PAL Popup Eliminator 1.01.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PAL Popup Eliminator 1.01.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PDF Vista Server Edition 6.0.0.6200.zip/PDF Vista Server Edition 6.0.0.6200.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PDF Vista Server Edition 6.0.0.6200.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Perfect Screens Lite 4.1 (With Crack).zip/Perfect Screens Lite 4.1 (With Crack).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Perfect Screens Lite 4.1 (With Crack).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PowerDNS 2.9.15.zip/PowerDNS 2.9.15.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PowerDNS 2.9.15.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PrecisionID EAN UPC Barcode Fonts 3.0.zip/PrecisionID EAN UPC Barcode Fonts 3.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\PrecisionID EAN UPC Barcode Fonts 3.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RelayTest Pro 1.9.zip/RelayTest Pro 1.9.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RelayTest Pro 1.9.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RM Promoter 1.4.zip/RM Promoter 1.4.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RM Promoter 1.4.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RSTools 2.1 build 2.zip/RSTools 2.1 build 2.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\RSTools 2.1 build 2.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Scandy 1.0.zip/Scandy 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Scandy 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SearchView 1.0.8.zip/SearchView 1.0.8.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SearchView 1.0.8.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SLC Security Console 3.00.zip/SLC Security Console 3.00.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SLC Security Console 3.00.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Smart Keystroke Recorder 3.7 Serial.zip/Smart Keystroke Recorder 3.7 Serial.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Smart Keystroke Recorder 3.7 Serial.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SNK WebOffice 1.03.zip/SNK WebOffice 1.03.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SNK WebOffice 1.03.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Space Synthesizer 1.3.zip/Space Synthesizer 1.3.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Space Synthesizer 1.3.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Speak-to-Mail 1.00.22.zip/Speak-to-Mail 1.00.22.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Speak-to-Mail 1.00.22.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SpeakFreely 2.1.zip/SpeakFreely 2.1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SpeakFreely 2.1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Sprintbit File Manager 3.1.25 [Patch].zip/Sprintbit File Manager 3.1.25 [Patch].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Sprintbit File Manager 3.1.25 [Patch].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SSS Kidword 1.2.zip/SSS Kidword 1.2.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\SSS Kidword 1.2.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\StartGuard Free Edition 2.0.487 (KeyGen).zip/StartGuard Free Edition 2.0.487 (KeyGen).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\StartGuard Free Edition 2.0.487 (KeyGen).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Text Reader 2.11.zip/Text Reader 2.11.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Text Reader 2.11.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\The Sims - Lieutenant Torres skin.zip/The Sims - Lieutenant Torres skin.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\The Sims - Lieutenant Torres skin.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\TX Text Control .NET Server 13.0 SP1.zip/TX Text Control .NET Server 13.0 SP1.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\TX Text Control .NET Server 13.0 SP1.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Unreal Tournament 2003 - ATI Replacement mod.zip/Unreal Tournament 2003 - ATI Replacement mod.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Unreal Tournament 2003 - ATI Replacement mod.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Unreal Tournament 2003 Checkmate Mod 3.0 beta.zip/Unreal Tournament 2003 Checkmate Mod 3.0 beta.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Unreal Tournament 2003 Checkmate Mod 3.0 beta.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Uplink Skype to SIP Adapter 1.30.zip/Uplink Skype to SIP Adapter 1.30.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Uplink Skype to SIP Adapter 1.30.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\VistaGlazz 1.0.zip/VistaGlazz 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\VistaGlazz 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Visual-ISO 1.1 beta 7.zip/Visual-ISO 1.1 beta 7.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Visual-ISO 1.1 beta 7.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Waterworld Deep Sea Screensaver 1.11.zip/Waterworld Deep Sea Screensaver 1.11.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Waterworld Deep Sea Screensaver 1.11.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\WebWerx 2.5 Beta 3.zip/WebWerx 2.5 Beta 3.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\WebWerx 2.5 Beta 3.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Win DVD Ripper 9.0.3 [Crack].zip/Win DVD Ripper 9.0.3 [Crack].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Win DVD Ripper 9.0.3 [Crack].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\WinX DVD Author 5.0.68 [Patch].zip/WinX DVD Author 5.0.68 [Patch].exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\WinX DVD Author 5.0.68 [Patch].zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Yapp the project calculator 2.0.0.6 (Key+Serial).zip/Yapp the project calculator 2.0.0.6 (Key+Serial).exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Yapp the project calculator 2.0.0.6 (Key+Serial).zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Your My Valentine 1.0.zip/Your My Valentine 1.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Your My Valentine 1.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Zero Spelling 5.0.zip/Zero Spelling 5.0.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Zero Spelling 5.0.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Zmei Mail Sender 1.15.zip/Zmei Mail Sender 1.15.exe Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m\shared\Zmei Mail Sender 1.15.zip ZIP: infected - 1 skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Cookies\index.dat Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\5CGKLP80\mxd[2].jpg Infected: Trojan-Downloader.Win32.Bagle.ew skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\GXONOFKR\mxd[1].jpg Infected: Trojan-Downloader.Win32.Bagle.ek skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\O4TUJ8RV\mxd[2].jpg Infected: Trojan-Downloader.Win32.Bagle.eu skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\OVB3PBCA\mxd[3].jpg Infected: Trojan-Downloader.Win32.Bagle.es skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\NTUSER.DAT Object is locked skipped
D:\Documents and Settings\rocq gregory.SN049142220192.000\ntuser.dat.LOG Object is locked skipped
D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
D:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP582\A0055314.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
D:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP583\A0055328.exe Infected: Trojan-Downloader.Win32.Bagle.ev skipped
D:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP598\change.log Object is locked skipped
Scan process completed.
voila le resulta du scan kapersky
Re,
1/ * Imprime ceci.
* Télécharge Brute Force Uninstaller (de Merijn) : http://www.merijn.org/files/bfu.zip
* Créé un nouveau dossier directement sur le C:\ et nomme-le BFU.
* Décompresse le fichier téléchargé dans ce nouveau dossier au moyen d'un clic droit (Extraire vers...C:\BFU).
* Ouvre le bloc-note de windows.
* Copie-colle ces lignes dans la fenêtre du bloc-note :
OptionUnloadShell
ServiceStop AOL ACS
ServiceDisable AOL ACS
ServiceDelete AOL ACS
ServiceStop FTRTSVC
ServiceDisable FTRTSVC
ServiceDelete FTRTSVC
FolderDelete %PROGRAMFILES%\Fichiers communs\AOL
FolderDelete D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m
SystemEmptyTempFolder
SystemEmptyInternetCache
SystemEmptyRecycleBin
* Enregistre le fichier sur le bureau en fix.txt
* Fais un clic droit sur ce fichier, choisis Renommer et dans la case, indique le nom fix.BFU.
* Déplace-le dans le même dossier que Brute Force Uninstaller soit dans c:\BFU
* Tu dois maintenant avoir deux fichiers dans le dossier C:\BFU : fix.bfu et BFU.exe (très important).
* Redémarre en mode Sans Échec : au redémarrage, tapote immédiatement la touche F8 (ou F5); tu verras un écran avec choix de démarrages apparaître. Utilisant les flèches du clavier, choisis "Mode Sans Échec" et valide avec "Entrée". Choisis ton compte usuel, et non Administrateur.
* Démarre le "Brute Force Uninstaller" en double-cliquant BFU.exe (du dossier C:\BFU).
* Clique sur le petit dossier jaune, à la droite de la boîte Scriptline to execute, et double-clique sur : fix.bfu.
* Dans la boîte "Scriptline to execute", tu devrais maintenant voir ceci : C:\BFU\fix.bfu
* Clique sur Execute et laisse-le faire son travail.
* Attendre que Complete script execution apparaîsse et clique sur OK.
* Clique Exit pour fermer le programme BFU.
* Redémarre normalement ton PC.
2/ Tu dois désactiver puis réactiver la restauration système. Pour cela, fais un clic droit sur « poste de travail ». Dans l’onglet « restauration du système », coche la case « désactiver la restauration système ». Clique sur appliquer>OK.
Décoche cette case, clique sur appliquer>OK et redémarre le PC.
3/ Edite un nouveau rapport Hijackthis.
Que possèdes-tu sinon sur la partition D ? As-tu déjà installé XP ?
FillPCA
1/ * Imprime ceci.
* Télécharge Brute Force Uninstaller (de Merijn) : http://www.merijn.org/files/bfu.zip
* Créé un nouveau dossier directement sur le C:\ et nomme-le BFU.
* Décompresse le fichier téléchargé dans ce nouveau dossier au moyen d'un clic droit (Extraire vers...C:\BFU).
* Ouvre le bloc-note de windows.
* Copie-colle ces lignes dans la fenêtre du bloc-note :
OptionUnloadShell
ServiceStop AOL ACS
ServiceDisable AOL ACS
ServiceDelete AOL ACS
ServiceStop FTRTSVC
ServiceDisable FTRTSVC
ServiceDelete FTRTSVC
FolderDelete %PROGRAMFILES%\Fichiers communs\AOL
FolderDelete D:\Documents and Settings\rocq gregory.SN049142220192.000\Application Data\m
SystemEmptyTempFolder
SystemEmptyInternetCache
SystemEmptyRecycleBin
* Enregistre le fichier sur le bureau en fix.txt
* Fais un clic droit sur ce fichier, choisis Renommer et dans la case, indique le nom fix.BFU.
* Déplace-le dans le même dossier que Brute Force Uninstaller soit dans c:\BFU
* Tu dois maintenant avoir deux fichiers dans le dossier C:\BFU : fix.bfu et BFU.exe (très important).
* Redémarre en mode Sans Échec : au redémarrage, tapote immédiatement la touche F8 (ou F5); tu verras un écran avec choix de démarrages apparaître. Utilisant les flèches du clavier, choisis "Mode Sans Échec" et valide avec "Entrée". Choisis ton compte usuel, et non Administrateur.
* Démarre le "Brute Force Uninstaller" en double-cliquant BFU.exe (du dossier C:\BFU).
* Clique sur le petit dossier jaune, à la droite de la boîte Scriptline to execute, et double-clique sur : fix.bfu.
* Dans la boîte "Scriptline to execute", tu devrais maintenant voir ceci : C:\BFU\fix.bfu
* Clique sur Execute et laisse-le faire son travail.
* Attendre que Complete script execution apparaîsse et clique sur OK.
* Clique Exit pour fermer le programme BFU.
* Redémarre normalement ton PC.
2/ Tu dois désactiver puis réactiver la restauration système. Pour cela, fais un clic droit sur « poste de travail ». Dans l’onglet « restauration du système », coche la case « désactiver la restauration système ». Clique sur appliquer>OK.
Décoche cette case, clique sur appliquer>OK et redémarre le PC.
3/ Edite un nouveau rapport Hijackthis.
Que possèdes-tu sinon sur la partition D ? As-tu déjà installé XP ?
FillPCA
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:13:11, on 24/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Wanadoo\GestionnaireInternet.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\OVB3PBCA\HiJackThis[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://r.orange.fr/r/WGlistemsg
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKUS\S-1-5-20\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'SERVICE RÉSEAU')
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/71365/kavwebscan_unicode.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
Scan saved at 22:13:11, on 24/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Wanadoo\GestionnaireInternet.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\Wanadoo\Watch.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\Documents and Settings\rocq gregory.SN049142220192.000\Local Settings\Temporary Internet Files\Content.IE5\OVB3PBCA\HiJackThis[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://r.orange.fr/r/WGlistemsg
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKUS\S-1-5-20\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'SERVICE RÉSEAU')
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/71365/kavwebscan_unicode.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
Re,
Pour moi, c'est réglé.
Télécharge OTMoveIt (de Old_Timer) sur ton bureau : http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe
* Lance OTmoveIT.
* Clique sur CleanUp! (le programme va télécharger un fichier texte qui servira a nettoyer les programmes que l'on a téléchargés).
NOTE : Normalement, ton firewall (parefeu) devrait te demander si OTmoveIT peut accéder à internet, Autorise le.
* Une liste apparaît dans la partie gauche d'OTmoveIT.
* Un message apparaît pour confirmer le nettoyage. Confirme.
* Les fichiers infectés qui se trouvent dans les quarantaines seront supprimés aussi.
Si tu n'as plus de soucis, tu peux renforcer ta protection : http://perso.orange.fr/Le-site-de-Fill/S%E9curit%E9/Logiciels%20de%20protection.html
Enfin, n'oublie pas de cliquer sur "résolu".
FillPCA
Pour moi, c'est réglé.
Télécharge OTMoveIt (de Old_Timer) sur ton bureau : http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe
* Lance OTmoveIT.
* Clique sur CleanUp! (le programme va télécharger un fichier texte qui servira a nettoyer les programmes que l'on a téléchargés).
NOTE : Normalement, ton firewall (parefeu) devrait te demander si OTmoveIT peut accéder à internet, Autorise le.
* Une liste apparaît dans la partie gauche d'OTmoveIT.
* Un message apparaît pour confirmer le nettoyage. Confirme.
* Les fichiers infectés qui se trouvent dans les quarantaines seront supprimés aussi.
Si tu n'as plus de soucis, tu peux renforcer ta protection : http://perso.orange.fr/Le-site-de-Fill/S%E9curit%E9/Logiciels%20de%20protection.html
Enfin, n'oublie pas de cliquer sur "résolu".
FillPCA
OK merci beaucoup donc la je n'ai plu de virus?
par contre si mon antivirus (Antivir) fait une alerte et qu'il revien a chaque fois que dois-je faire(ce n'est pas le cas)
sinon tu a assuré a fond merci encor
par contre si mon antivirus (Antivir) fait une alerte et qu'il revien a chaque fois que dois-je faire(ce n'est pas le cas)
sinon tu a assuré a fond merci encor
Re,
Non, plus de virus.
Si tu es prudent, ton antivirus ne dois pas agir : pas de cracks, pas de p2p...
C'est comme cela que tu as chopé Bagle et ses copains. Ton pc servait à héberger et à relayer des programmes illégaux.
Si ton antivirus réagit, mets le fichier en quarantaine ou supprime-le.
FillPCA
Non, plus de virus.
Si tu es prudent, ton antivirus ne dois pas agir : pas de cracks, pas de p2p...
C'est comme cela que tu as chopé Bagle et ses copains. Ton pc servait à héberger et à relayer des programmes illégaux.
Si ton antivirus réagit, mets le fichier en quarantaine ou supprime-le.
FillPCA