Publicites intempestives CID

Résolu
oxmo71 Messages postés 20 Statut Membre -  
oxmo71 Messages postés 20 Statut Membre -
Bonjour,

bonjour tout le monde, je suis envahie par des publicites intempestives commençant par CID. Impossible de m'en debarrasser. Merci de bien vouloir m'aider!!

23 réponses

green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
Salut

plus d'info ici : http://www.commentcamarche.net/faq/sujet 5996 comment bloquer les fenetres cid

++
1
djuka05 Messages postés 62 Statut Membre
 
elles s'affichent pendant que tu va sur internet, il faut que tu bloque tes fenetres intempestives en allant dans outils, option internet, confidentialité et la tu selectionne ton niveau de bloquage et il faut que tu coche la case bloquer les fenetre publicitaire intempesive.
0
oxmo71 Messages postés 20 Statut Membre
 
Salut Djuka05,
Elles s'affichent des que je suis sur internet. J'ai déjà activé le bloqueur de publicites, mais je sais pas pourquoi, celles là font de la résistance!!! C'est insupportable surtout que le contenu est plutot douteux parfois et j'ai deux enfants ..... J'ai lu plusieurs messages avec des procédures compliquées avec des lectures de compte rendu ou je ne sais quoi. En tout cas, merci pourton conseil, je vais continuer de chercher.
0
djuka05 Messages postés 62 Statut Membre
 
Est ce que tu as le logiciel ccleaner?
0
oxmo71 Messages postés 20 Statut Membre
 
non , je connais meme pas. Mais pour tout te dire, j'ai lancé une recherche sur mon ordi de tous les dossiers ou fichiers contenant le terme CID et j'en ai supprimé deux..... heu....au hasard. Donc depuis un petit moment, pas de fenetre publicitaire....est ce que ça va durer?
0
oxmo71 Messages postés 20 Statut Membre
 
ayé, j'ai téléchargé le ccleaner. Le ménage est fait. Et les CID reviennent en force!!
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
djuka05 Messages postés 62 Statut Membre
 
N'as tu pas un programme "Cid help" dans ajout et suppression de programme?Peux tu le desinstaller?
0
oxmo71 Messages postés 20 Statut Membre
 
salut Djuka05
J'ai pas trouvé ce genre de programme. Il s'appelle forcément comme ça?
0
oxmo71 Messages postés 20 Statut Membre
 
Salut Green Day,
Je te remercie de m'orienter mais je me sens pas capable d'analyser le rapport hisjackthis.... J'ai peur de faire une boulette. Allez courage, si d'ici ce soir j'ai pas d'info, j'essayerai toute seule.
0
tribun Messages postés 73052 Date d'inscription   Statut Membre Dernière intervention   12 551
 
bonjour
va dans ajout & supprimer ,et regarde si tu vois Sponsor CID! =pub MSN !
si oui tu supprime !!
0
oxmo71 Messages postés 20 Statut Membre
 
Salut Tribun,
Vraiment j'ai rien trouvé. Tu veux que je te fasses la liste pour voir si tu en débusques un?
0
oxmo71 Messages postés 20 Statut Membre
 
J'avais dejà cherché sur mon ordi tous les fichiers nommés CID. Il y en a bien mais je sais pas si je dois tous les supprimer.
0
tribun Messages postés 73052 Date d'inscription   Statut Membre Dernière intervention   12 551
 
ben , oui , tout ce qui est de CID,tu peut tous les supprimer ,( sponsor CID )
ce sont des pubs en rapport avec MSN !
0
oxmo71 Messages postés 20 Statut Membre
 
meme si c'est des fichiers CIDAEMON ?
0
tribun Messages postés 73052 Date d'inscription   Statut Membre Dernière intervention   12 551
 
fais un sdfix ! et vois le résultat ! ici le téléchargement !

http://mickael.barroux.free.fr/securite/sdfix.php
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
Salut

poste le rapport hijackthis ;-)

++
0
oxmo71 Messages postés 20 Statut Membre
 
Ah j'ai réussi à le faire toute seule!!!
Un peu de lecture.....

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:56:43, on 02/21/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Keyboard & Mouse Driver\KMConfig.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\LVComS.exe
C:\Program Files\Keyboard & Mouse Driver\KMProcess.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.mazxmzyjankhtaetkts.uk/h2gLNLwpy_zjxNtSBdm4I_iYYrmL9sxGPDTaF3je40YQPsLg8JCUgO3jHj0qrXpC.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: i-Nav IDN SearchHook - {CE000994-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
R3 - URLSearchHook: (no name) - _{CE000994-A58C-4441-8938-744CD72AB27F} - (no file)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {9F6E41FD-3E21-1839-BE52-EF663A319101} - C:\DOCUME~1\PROPRI~1\APPLIC~1\16MEAL~1\jump comp.exe (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: i-Nav IDN Resolver - {CE000992-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [LXCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCFtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [Mode Load Mpeg Less] C:\Documents and Settings\All Users\Application Data\two setup mode load\Dent Upload.exe
O4 - HKCU\..\Run: [Microsoft Works Update Detection] c:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [meta setup] C:\DOCUME~1\PROPRI~1\APPLIC~1\KEEPCI~1\body dog.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'Default user')
O4 - .DEFAULT User Startup: ddrive.js (User 'Default user')
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\AIM.EXE
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra button: (no name) - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O9 - Extra 'Tools' menuitem: Options i-Nav - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Interface Chat Wanadoo - http://chat4.x-echo.com/version6/Applet/wchatsign.cab
O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/archives/ie4n4/teleir_cert.cab
O16 - DPF: {0B79F48A-E8D6-11DB-9283-E25056D89593} (F-Secure Online Scanner 3.1) - https://www.f-secure.com/en/home/support
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.0.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4B2C2F72-DC82-4A6C-A214-C22AAA8326C9}: NameServer = 84.103.237.144 86.64.145.144
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
Salut

* Télécharger Lopxp : (by Moe) : http://sosvirus.changelog.fr/Green_day/Lopxpsetup
* Double cliquer sur Lopxpsetup.exe pour lancer l'installation
* Au menu, choisir l'option 1
* Patienter jusqu'à que l'on demande d'appuyer sur une touche, appuyer !
* Le contenu du rapport est situé dans : C:\Programfiles\Lopxp\cid.txt

==> poste le stp

++
0
oxmo71 Messages postés 20 Statut Membre
 
Salut Green day
Voici le rapport:
# Rapport Lopxp fait le 02/23/2008 à 20:21:19
# Exécuté dans : C:\Program Files\Lopxp
# Version 3.08 - Maj du 15/02/2008

Killing 'iexplore.exe'
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" (236)
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" (264)
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" -Embedding (972)

========== Listing des dossiers Application Data

+- C:\Documents and Settings\All Users\Application Data

2007-07-12 à 08:57:21 - Adobe
2006-02-07 à 19:09:23 - Ahead
2007-08-24 à 12:35:37 - five each less two
2008-02-16 à 14:43:48 - Google
2008-02-22 à 21:43:48 - Google Updater
2008-02-23 à 18:53:14 - Messenger Plus!
2006-09-18 à 17:42:19 - Microsoft
2006-03-06 à 17:49:52 - MSN Search Toolbar
2003-01-07 à 15:48:22 - MSN6
2006-09-23 à 07:22:24 - QuickTime
2002-01-01 à 15:37:19 - Sbsi
2008-01-23 à 16:37:33 - Spybot - Search & Destroy
2002-01-01 à 21:24:55 - Symantec
2008-02-18 à 15:54:14 - third inside atom store
2006-05-24 à 05:47:52 - toolcopyintralicense
2008-02-18 à 15:54:15 - two setup mode load
2006-09-21 à 13:03:30 - Windows Genuine Advantage

+- C:\Documents and Settings\Propri‚taire\Application Data

2007-07-12 à 09:01:26 - Adobe
2006-03-26 à 09:21:37 - AdobeUM
2006-03-28 à 19:59:31 - Ahead
2003-01-11 à 17:25:25 - Aim
2008-02-01 à 16:36:39 - DivX
2003-01-07 à 15:18:27 - Dossier de téléchargement Share-to-Web
2005-01-27 à 17:07:49 - Dossier de téléchargement Share-to-Web
2007-11-25 à 16:56:08 - FotoWire
2008-02-18 à 07:37:42 - Google
2006-06-18 à 13:14:59 - Help
2007-11-08 à 17:45:43 - Identities
2003-01-07 à 17:12:36 - InterVideo
2008-02-18 à 15:54:35 - Keep City Wma
2005-09-15 à 19:06:28 - Lavasoft
2006-06-16 à 05:04:30 - Leadertech
2004-04-07 à 14:28:31 - Macromedia
2007-12-20 à 20:30:55 - Microsoft
2007-12-20 à 12:17:49 - MP-Manager
2008-02-21 à 11:59:23 - MSN6
2005-09-03 à 10:05:35 - Shareaza
2002-01-01 à 21:24:31 - Symantec
2003-01-08 à 20:15:30 - VERITAS
2007-03-15 à 19:37:43 - Weka
2008-01-31 à 14:41:37 - Yahoo!
2005-02-19 à 22:54:20 - Yahoo! Messenger

+- C:\Documents and Settings\Propri‚taire\Local Settings\Application Data

2007-07-12 à 09:01:22 - Adobe
2006-02-08 à 19:33:06 - Ahead
2008-02-16 à 14:43:59 - Google
2003-01-09 à 19:32:32 - Help
2007-11-08 à 17:45:43 - Identities
2004-02-02 à 19:45:35 - IM
2007-03-09 à 17:54:52 - Microsoft
2005-01-29 à 19:32:41 - Shareaza

========== Listing du dossier Program Files

+- C:\Program Files

2008-02-03 à 09:52:31 - AC3Filter
2007-07-12 à 08:55:25 - Adobe
2006-04-05 à 18:34:44 - Ahead
2005-07-12 à 19:41:54 - AIM95
2003-01-28 à 13:13:12 - aolwc
2008-02-19 à 14:30:35 - AVPersonal
2008-02-20 à 07:46:50 - CCleaner
2006-07-20 à 16:37:14 - Cegetel
2004-02-02 à 19:30:54 - Common Files
2008-02-21 à 12:21:43 - directx
2008-02-21 à 12:21:44 - DivX(2)
2002-01-01 à 15:46:53 - DLA
2007-09-15 à 14:15:30 - Empire Interactive
2007-07-22 à 14:38:14 - eMule
2007-11-25 à 16:56:07 - Fichiers communs
2004-03-29 à 18:01:20 - Gabest
2008-02-16 à 14:43:48 - Google
2006-11-26 à 09:01:45 - Hewlett-Packard
2002-01-01 à 15:55:46 - Home Media Networks Limited
2002-01-01 à 16:23:04 - hp center
2005-11-30 à 07:47:28 - Httper
2008-02-03 à 09:52:33 - InstallShield Installation Information
2005-05-06 à 14:36:20 - Intel
2008-02-14 à 05:46:21 - Internet Explorer
2002-01-01 à 15:43:57 - InterVideo
2007-11-06 à 10:09:42 - Jasc Software Inc
2007-06-20 à 15:55:51 - Kazaa
2008-02-18 à 15:53:10 - Keep City Wma
2007-09-01 à 16:33:20 - Keyboard & Mouse Driver
2005-09-15 à 19:05:56 - Lavasoft
2006-09-07 à 18:44:28 - Lexmark 730 Series
2007-11-25 à 16:56:07 - Logitech
2008-02-23 à 19:21:27 - Lopxp
2008-02-20 à 15:36:09 - Lx_cats
2006-09-21 à 13:02:04 - Messenger
2008-02-23 à 18:42:31 - MessengerPlus! 3
2003-02-26 à 07:46:16 - Micro Application
2007-09-15 à 14:01:21 - Microsoft AutoRoute
2002-01-01 à 16:16:59 - Microsoft Encarta
2002-01-02 à 01:43:34 - microsoft frontpage
2007-09-15 à 14:12:52 - Microsoft Office
2003-01-12 à 20:20:58 - Microsoft Picture It! 2002
2007-09-15 à 14:13:54 - Microsoft Works
2003-01-07 à 15:39:23 - Microsoft Works Suite 2002
2004-05-02 à 08:31:49 - Morgan
2006-09-18 à 17:40:25 - Movie Maker
2007-12-20 à 20:30:12 - MPMAN
2002-01-02 à 01:39:18 - MSN Gaming Zone
2008-02-21 à 12:06:35 - MSN Messenger
2005-02-20 à 02:01:33 - MSXML 4.0
2007-06-20 à 13:53:04 - Need2Find
2006-09-18 à 17:36:27 - NetMeeting
2004-05-02 à 08:33:24 - Norton AntiVirus
2008-02-22 à 08:11:48 - NRJ
2003-08-26 à 16:09:43 - Nullsoft
2008-02-21 à 12:24:54 - Outlook Express
2003-01-07 à 15:11:43 - Pinnacle
2004-02-15 à 17:55:22 - PIXELA
2006-09-23 à 07:22:22 - QuickTime
2003-01-07 à 15:28:27 - Real
2004-06-29 à 03:48:07 - RecordNow
2006-07-20 à 16:17:18 - SAGEM
2002-01-01 à 16:19:59 - Services en ligne
2005-12-08 à 18:04:21 - Shareaza
2002-01-01 à 16:05:11 - Sonic
2004-02-20 à 18:58:07 - Sony Corporation
2008-01-23 à 16:37:05 - Spybot - Search & Destroy
2007-04-18 à 13:15:11 - Strategy First
2003-05-08 à 13:35:51 - Symantec
2008-02-19 à 10:54:26 - Trend Micro
2004-02-28 à 07:24:03 - Ubi Soft
2004-07-18 à 01:05:57 - Uninstall Information
2007-12-20 à 20:23:17 - USBDisk
2005-09-24 à 10:03:13 - VeriSign
2002-01-01 à 15:46:12 - VERITAS Software
2003-04-05 à 14:41:07 - Viewpoint
2005-08-31 à 16:12:45 - Wanadoo
2004-03-11 à 19:03:14 - WinASPI
2006-09-21 à 13:00:39 - Windows Media Player
2008-02-21 à 11:53:11 - Windows NT
2004-08-11 à 02:13:36 - WindowsUpdate
2002-01-02 à 01:43:35 - xerox

========== Tâches planifiées

AE34F1AB906B63D7.job: c:\docume~1\propri~1\applic~1\keepci~1\internet sect pure.exe
FRU Task #Hewlett-Packard#Deskjet#3420.job: C:\Program Files\Hewlett-Packard\upapp\hpqfruv.exe -I "#Hewlett-Packard#Deskjet#3420"
Norton AntiVirus - Analyser mon ordinateur.job: c:\PROGRA~1\NORTON~1\NAVW32.exe /task:C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec\NORTON~1\Tasks\mycomp.sca
Symantec NetDetect.job: C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE

========== Clés registre

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Mode Load Mpeg Less"="C:\Documents and Settings\All Users\Application Data\two setup mode load\Dent Upload.exe"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"meta setup"="C:\DOCUME~1\PROPRI~1\APPLIC~1\KEEPCI~1\body dog.exe"


========== Bloqueur popups Internet Explorer

www.searchweb2.com
www.coraya.com
www.chapatiz.com
host-domain-lookup.com
www.host-domain-lookup.com

========== Suggestion ( /!\ Nécessite une interprétation.) ==========

C:\Documents and Settings\All Users\Application Data\five each less two
C:\Documents and Settings\All Users\Application Data\third inside atom store
C:\Documents and Settings\All Users\Application Data\toolcopyintralicense
C:\Documents and Settings\All Users\Application Data\two setup mode load
C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma
C:\Program Files\Keep City Wma
C:\WINDOWS\tasks\AE34F1AB906B63D7.job

+- Registre:

REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Mode Load Mpeg Less"=-

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"meta setup"=-

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow]
"searchweb2.com"=-
"www.searchweb2.com"=-
"host-domain-lookup.com"=-
"www.host-domain-lookup.com"=-



- Fin du rapport -



Mais dis moi Green Day, on est samedi soir et t'es là à aider les pauves internautes.... c'est une vocation?
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
Salut

c'est une passion-passe temps ! ;-)

Aller dans : Démarrer > Exécuter puis copie/colle la ligne suivante en gras :

"%programfiles%\Lopxp\Lopxp.bat" /Fixme puis valide,

et poste le rapport obtenu stp

@+
0
oxmo71 Messages postés 20 Statut Membre
 
Heu.... ça me propose pas vraiment un rapport mais plutot de supprimer des lignes. Aucun autre choix possible.
0
oxmo71 Messages postés 20 Statut Membre
 
Voilà la phrase exacte:

Confirmation de suppression
Voulez vous vraiment supprimer
C/documents and settings/All users/Application Data/Five each less two
Appuyer sur y ou n
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
oups ! oui, j'ai oublié de préciser qu'il faut accepter toutes les demandes de suppression !

++
0
oxmo71 Messages postés 20 Statut Membre
 
# Rapport Lopxp fait le 02/25/2008 à 11:05:43
# Exécuté dans : C:\Program Files\Lopxp
# Version 3.08 - Maj du 15/02/2008


========== FixLog ==========


+- C:\Documents and Settings\All Users\Application Data\five each less two
Choix utilisateur : Suppression acceptée.
Déplacé avec succès.

+- C:\Documents and Settings\All Users\Application Data\five each less two
Choix utilisateur : Suppression acceptée.
/!\ Opération annulée, le fichier ou dossier selectionné n'exite pas.

+- C:\Documents and Settings\All Users\Application Data\third inside atom store
Choix utilisateur : Suppression acceptée.
Déplacé avec succès.

+- C:\Documents and Settings\All Users\Application Data\toolcopyintralicense
Choix utilisateur : Suppression acceptée.
Déplacé avec succès.

+- C:\Documents and Settings\All Users\Application Data\two setup mode load
Choix utilisateur : Suppression acceptée.
Déplacé avec succès.

+- C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma
Choix utilisateur : Suppression acceptée.
/!\ Opération annulée, le fichier ou dossier selectionné n'exite pas.

+- C:\Program Files\Keep City Wma
Choix utilisateur : Suppression acceptée.
Déplacé avec succès.

+- C:\WINDOWS\tasks\AE34F1AB906B63D7.job
Choix utilisateur : Suppression acceptée.
Déplacé avec succès.

+- Registre :
Nettoyage effectué.

+- Fichiers temporaires :
Nettoyage effectué.


========== Listing des dossiers Application Data

+- C:\Documents and Settings\All Users\Application Data

2007-07-12 à 08:57:21 - Adobe
2006-02-07 à 19:09:23 - Ahead
2008-02-16 à 14:43:48 - Google
2008-02-24 à 08:03:13 - Google Updater
2006-09-18 à 17:42:19 - Microsoft
2006-03-06 à 17:49:52 - MSN Search Toolbar
2003-01-07 à 15:48:22 - MSN6
2006-09-23 à 07:22:24 - QuickTime
2002-01-01 à 15:37:19 - Sbsi
2008-01-23 à 16:37:33 - Spybot - Search & Destroy
2002-01-01 à 21:24:55 - Symantec
2006-09-21 à 13:03:30 - Windows Genuine Advantage

+- C:\Documents and Settings\Propri‚taire\Application Data

2007-07-12 à 09:01:26 - Adobe
2006-03-26 à 09:21:37 - AdobeUM
2006-03-28 à 19:59:31 - Ahead
2003-01-11 à 17:25:25 - Aim
2008-02-01 à 16:36:39 - DivX
2003-01-07 à 15:18:27 - Dossier de téléchargement Share-to-Web
2005-01-27 à 17:07:49 - Dossier de téléchargement Share-to-Web
2007-11-25 à 16:56:08 - FotoWire
2008-02-18 à 07:37:42 - Google
2006-06-18 à 13:14:59 - Help
2007-11-08 à 17:45:43 - Identities
2003-01-07 à 17:12:36 - InterVideo
2008-02-18 à 15:54:35 - Keep City Wma
2005-09-15 à 19:06:28 - Lavasoft
2006-06-16 à 05:04:30 - Leadertech
2004-04-07 à 14:28:31 - Macromedia
2007-12-20 à 20:30:55 - Microsoft
2007-12-20 à 12:17:49 - MP-Manager
2008-02-21 à 11:59:23 - MSN6
2005-09-03 à 10:05:35 - Shareaza
2002-01-01 à 21:24:31 - Symantec
2003-01-08 à 20:15:30 - VERITAS
2007-03-15 à 19:37:43 - Weka
2008-01-31 à 14:41:37 - Yahoo!
2005-02-19 à 22:54:20 - Yahoo! Messenger

+- C:\Documents and Settings\Propri‚taire\Local Settings\Application Data

2007-07-12 à 09:01:22 - Adobe
2006-02-08 à 19:33:06 - Ahead
2008-02-16 à 14:43:59 - Google
2003-01-09 à 19:32:32 - Help
2007-11-08 à 17:45:43 - Identities
2004-02-02 à 19:45:35 - IM
2007-03-09 à 17:54:52 - Microsoft
2005-01-29 à 19:32:41 - Shareaza

========== Listing du dossier Program Files

+- C:\Program Files

2008-02-03 à 09:52:31 - AC3Filter
2007-07-12 à 08:55:25 - Adobe
2006-04-05 à 18:34:44 - Ahead
2008-02-19 à 14:30:35 - AVPersonal
2008-02-20 à 07:46:50 - CCleaner
2006-07-20 à 16:37:14 - Cegetel
2004-02-02 à 19:30:54 - Common Files
2008-02-21 à 12:21:43 - directx
2008-02-21 à 12:21:44 - DivX(2)
2002-01-01 à 15:46:53 - DLA
2007-09-15 à 14:15:30 - Empire Interactive
2007-07-22 à 14:38:14 - eMule
2007-11-25 à 16:56:07 - Fichiers communs
2004-03-29 à 18:01:20 - Gabest
2008-02-16 à 14:43:48 - Google
2006-11-26 à 09:01:45 - Hewlett-Packard
2002-01-01 à 15:55:46 - Home Media Networks Limited
2002-01-01 à 16:23:04 - hp center
2005-11-30 à 07:47:28 - Httper
2008-02-03 à 09:52:33 - InstallShield Installation Information
2005-05-06 à 14:36:20 - Intel
2008-02-14 à 05:46:21 - Internet Explorer
2002-01-01 à 15:43:57 - InterVideo
2007-11-06 à 10:09:42 - Jasc Software Inc
2007-09-01 à 16:33:20 - Keyboard & Mouse Driver
2005-09-15 à 19:05:56 - Lavasoft
2006-09-07 à 18:44:28 - Lexmark 730 Series
2007-11-25 à 16:56:07 - Logitech
2008-02-25 à 10:07:03 - Lopxp
2008-02-20 à 15:36:09 - Lx_cats
2006-09-21 à 13:02:04 - Messenger
2003-02-26 à 07:46:16 - Micro Application
2007-09-15 à 14:01:21 - Microsoft AutoRoute
2002-01-01 à 16:16:59 - Microsoft Encarta
2002-01-02 à 01:43:34 - microsoft frontpage
2007-09-15 à 14:12:52 - Microsoft Office
2003-01-12 à 20:20:58 - Microsoft Picture It! 2002
2007-09-15 à 14:13:54 - Microsoft Works
2003-01-07 à 15:39:23 - Microsoft Works Suite 2002
2004-05-02 à 08:31:49 - Morgan
2006-09-18 à 17:40:25 - Movie Maker
2007-12-20 à 20:30:12 - MPMAN
2002-01-02 à 01:39:18 - MSN Gaming Zone
2008-02-21 à 12:06:35 - MSN Messenger
2005-02-20 à 02:01:33 - MSXML 4.0
2007-06-20 à 13:53:04 - Need2Find
2006-09-18 à 17:36:27 - NetMeeting
2004-05-02 à 08:33:24 - Norton AntiVirus
2008-02-22 à 08:11:48 - NRJ
2003-08-26 à 16:09:43 - Nullsoft
2008-02-21 à 12:24:54 - Outlook Express
2003-01-07 à 15:11:43 - Pinnacle
2004-02-15 à 17:55:22 - PIXELA
2006-09-23 à 07:22:22 - QuickTime
2003-01-07 à 15:28:27 - Real
2004-06-29 à 03:48:07 - RecordNow
2006-07-20 à 16:17:18 - SAGEM
2002-01-01 à 16:19:59 - Services en ligne
2005-12-08 à 18:04:21 - Shareaza
2002-01-01 à 16:05:11 - Sonic
2004-02-20 à 18:58:07 - Sony Corporation
2008-01-23 à 16:37:05 - Spybot - Search & Destroy
2007-04-18 à 13:15:11 - Strategy First
2003-05-08 à 13:35:51 - Symantec
2008-02-19 à 10:54:26 - Trend Micro
2004-02-28 à 07:24:03 - Ubi Soft
2004-07-18 à 01:05:57 - Uninstall Information
2007-12-20 à 20:23:17 - USBDisk
2005-09-24 à 10:03:13 - VeriSign
2002-01-01 à 15:46:12 - VERITAS Software
2003-04-05 à 14:41:07 - Viewpoint
2005-08-31 à 16:12:45 - Wanadoo
2004-03-11 à 19:03:14 - WinASPI
2006-09-21 à 13:00:39 - Windows Media Player
2008-02-21 à 11:53:11 - Windows NT
2004-08-11 à 02:13:36 - WindowsUpdate
2002-01-02 à 01:43:35 - xerox

========== Tâches planifiées

FRU Task #Hewlett-Packard#Deskjet#3420.job: C:\Program Files\Hewlett-Packard\upapp\hpqfruv.exe -I "#Hewlett-Packard#Deskjet#3420"
Norton AntiVirus - Analyser mon ordinateur.job: c:\PROGRA~1\NORTON~1\NAVW32.exe /task:C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec\NORTON~1\Tasks\mycomp.sca
Symantec NetDetect.job: C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE

========== Clés registre


========== Bloqueur popups Internet Explorer

www.chapatiz.com

========== Suggestion ( /!\ Nécessite une interprétation.) ==========

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma

+- Registre : Aucune suggestion.


- Fin du rapport -
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
très bien, fais ce qui est indiqué ici stp :

http://www.commentcamarche.net/faq/sujet 3174 virus methode preliminaire de desinfection version fr

++
0
oxmo71 Messages postés 20 Statut Membre
 
--------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------

+ Créé à: 16:37:43 02/25/2008

+ Résultat de l'analyse:



HKU\S-1-5-21-2505351160-3403473811-3433162778-1003\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser\\{74CC49F7-EB32-4A08-B204-948962A6E3DB} -> Adware.RogueSuspect : Nettoyé.
C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1485\A0693177.exe -> Dialer.Generic : Nettoyé.


Fin du rapport
0
oxmo71 Messages postés 20 Statut Membre
 
Scan path: A:\;C:\;D:\;E:\;F:\;







Statistics

Time
01:03:43

Files
219180

Folders
4720

Boot Sectors
3

Archives
18607

Packed Files
11932




Results

Identified Viruses
19

Infected Files
178

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
178




Engines Info

Virus Definitions
983517

Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)

Scan plugins
16

Archive plugins
41

Unpack plugins
7

E-mail plugins
6

System plugins
5




Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes




Scanned File
Status

C:\Documents and Settings\NetworkService\Application Data\Keep City Wma\body dog.exe
Infected with: Trojan.FatObfus.Gen

C:\Documents and Settings\NetworkService\Application Data\Keep City Wma\body dog.exe
Disinfection failed

C:\Documents and Settings\NetworkService\Application Data\Keep City Wma\body dog.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bbhbtbdh.exe
Infected with: Trojan.Swizzor.X

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bbhbtbdh.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bhntrpee.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bhntrpee.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bhntrpee.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bxcpdays.exe
Infected with: Trojan.Swizzor.DH

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bxcpdays.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bxcpdays.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\chbprkis.exe
Infected with: Trojan.FatObfus.AG

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\chbprkis.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cmrzqygs.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cmrzqygs.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cmrzqygs.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cvzpwbgq.exe
Infected with: Trojan.FatObfus.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cvzpwbgq.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cvzpwbgq.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cwwqmwii.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cwwqmwii.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\dwsfxwvq.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\dwsfxwvq.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\eyigijyx.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\eyigijyx.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\eyigijyx.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fgltqube.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fgltqube.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fnybczbi.exe
Infected with: Trojan.Downloader.Swizzor.DV

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fnybczbi.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fqokkldt.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fqokkldt.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fzzvhsdg.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fzzvhsdg.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fzzvhsdg.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\gogstgvi.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\gogstgvi.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\gogstgvi.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hgmosiis.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hgmosiis.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hthkdamo.exe
Infected with: Trojan.Swizzor.AX

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hthkdamo.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\htocnfqv.exe
Infected with: Trojan.FatObfus.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\htocnfqv.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\htocnfqv.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hyzdqzhq.exe
Infected with: Trojan.Downloader.Swizzor.DF

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hyzdqzhq.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ihdjiult.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ihdjiult.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ihdjiult.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\jimtyjec.exe
Infected with: Trojan.FatObfus.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\jimtyjec.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\jimtyjec.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\juttwubn.exe
Infected with: Trojan.FatObfus.AF

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\juttwubn.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kbmvvpxt.exe
Infected with: Trojan.Obfus.6.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kbmvvpxt.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kbmvvpxt.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kdrzjsti.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kdrzjsti.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kdrzjsti.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kiheeypg.exe
Infected with: Trojan.Swizzor.X

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kiheeypg.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ljfrdkdj.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ljfrdkdj.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llpfokut.exe
Infected with: Trojan.Obfus.6.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llpfokut.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llpfokut.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llxnkvdp.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llxnkvdp.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llxnkvdp.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\lslibfbs.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\lslibfbs.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\mrzdjysh.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\mrzdjysh.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ngfluxjc.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ngfluxjc.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\odjofopr.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\odjofopr.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ogwqcqpg.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ogwqcqpg.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\opcwhgwj.exe
Infected with: Trojan.Swizzor.X

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\opcwhgwj.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\pzgggjaj.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\pzgggjaj.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\rvdoetoh.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\rvdoetoh.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\rvdoetoh.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sbbgcnjm.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sbbgcnjm.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sbbgcnjm.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sescpxsc.exe
Infected with: Trojan.Swizzor.X

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sescpxsc.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\skgvxcfq.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\skgvxcfq.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tewaxnzv.exe
Infected with: GenPack:Trojan.Downloader.Swizzor.DV

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tewaxnzv.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tfhfslvw.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tfhfslvw.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tsjvwgto.exe
Infected with: Trojan.Obfus.6.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tsjvwgto.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tsjvwgto.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uajrsfyc.exe
Infected with: GenPack:Trojan.Downloader.Swizzor.DV

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uajrsfyc.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uwdilvdt.exe
Infected with: Trojan.Downloader.Swizzor.DV

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uwdilvdt.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\vmgywnrn.exe
Infected with: Trojan.Swizzor.AX

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\vmgywnrn.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wgujswvm.exe
Infected with: Trojan.Swizzor.X

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wgujswvm.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wumxajdt.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wumxajdt.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ybpckjla.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ybpckjla.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ybpckjla.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ykhihirq.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ykhihirq.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\yvrgwtzp.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\yvrgwtzp.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zeyhqkwq.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zeyhqkwq.exe
Deleted

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zjbuijmo.exe
Infected with: Trojan.FatObfus.2.Gen

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zjbuijmo.exe
Disinfection failed

C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zjbuijmo.exe
Deleted

C:\hp\bin\ProcessLogger.exe
Infected with: DeepScan:Generic.Malware.P!.5F1AEB08

C:\hp\bin\ProcessLogger.exe
Disinfection failed

C:\hp\bin\ProcessLogger.exe
Deleted

C:\hp\bin\Terminator.exe
Detected with: Application.Prockill.B

C:\hp\bin\Terminator.exe
Disinfection failed

C:\hp\bin\Terminator.exe
Deleted

C:\Program Files\AVPersonal\INFECTED\A0124841.EXE.VIR
Infected with: Trojan.Swizzor.X

C:\Program Files\AVPersonal\INFECTED\A0124841.EXE.VIR
Deleted

C:\Program Files\AVPersonal\INFECTED\A0124857.EXE.VIR
Infected with: Trojan.Downloader.Swizzor.CB

C:\Program Files\AVPersonal\INFECTED\A0124857.EXE.VIR
Deleted

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Bashcity.exe
Infected with: Trojan.FatObfus.Gen

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Bashcity.exe
Disinfection failed

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Bashcity.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\DEAD LINK.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\DEAD LINK.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Fork trans.exe
Infected with: Trojan.FatObfus.Gen

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Fork trans.exe
Disinfection failed

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Fork trans.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Frag mp3.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Frag mp3.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Beep The.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Beep The.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Blehlicense.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Blehlicense.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\boob dent.exe
Infected with: Trojan.Swizzor.AX

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\boob dent.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Default Vga.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Default Vga.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\exit real.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\exit real.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Frag sixth.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Frag sixth.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\gpl burn.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\gpl burn.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Info pop.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Info pop.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\jumpthunk.exe
Infected with: Trojan.Downloader.Swizzor.DV

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\jumpthunk.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Less Part.exe
Infected with: Trojan.Downloader.Swizzor.DF

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Less Part.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\license barb.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\license barb.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\log burn.exe
Infected with: Trojan.Swizzor.X

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\log burn.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Media software.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Media software.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\MemoDefault.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\MemoDefault.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Mixteam.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Mixteam.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\online bat.exe
Infected with: Trojan.Swizzor.X

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\online bat.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\rule flap.exe
Infected with: Trojan.Swizzor.X

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\rule flap.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Safe sign.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Safe sign.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Sign Flag.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Sign Flag.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\site mix.exe
Infected with: Trojan.Swizzor.X

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\site mix.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Skipthunk.exe
Infected with: Trojan.Swizzor.AX

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Skipthunk.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\titlegrey.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\titlegrey.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\TransLies.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\TransLies.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WAIT MAPI.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WAIT MAPI.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WINBOOK.exe
Infected with: Trojan.Swizzor.X

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WINBOOK.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\wma title.exe
Infected with: Trojan.Downloader.Swizzor.DV

C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\wma title.exe
Deleted

C:\Program Files\Lopxp\Sauvegardes\two setup mode load\thunk manager.exe
Infected with: Trojan.FatObfus.AF

C:\Program Files\Lopxp\Sauvegardes\two setup mode load\thunk manager.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690579.exe
Infected with: Trojan.FatObfus.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690579.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690579.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690580.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690580.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690581.exe
Infected with: Trojan.FatObfus.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690581.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690581.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690582.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690582.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693284.exe
Infected with: Trojan.FatObfus.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693284.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693284.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693285.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693285.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693286.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693286.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693286.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693287.exe
Infected with: Trojan.Swizzor.DH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693287.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693287.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693288.exe
Infected with: Trojan.FatObfus.AG

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693288.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693289.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693289.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693289.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693290.exe
Infected with: Trojan.FatObfus.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693290.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693290.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693291.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693291.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693292.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693292.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693293.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693293.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693293.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693294.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693294.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693295.exe
Infected with: Trojan.Downloader.Swizzor.DV

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693295.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693296.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693296.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693297.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693297.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693297.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693298.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693298.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693298.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693299.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693299.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693300.exe
Infected with: Trojan.Swizzor.AX

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693300.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693301.exe
Infected with: Trojan.FatObfus.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693301.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693301.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693302.exe
Infected with: Trojan.Downloader.Swizzor.DF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693302.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693303.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693303.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693303.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693304.exe
Infected with: Trojan.FatObfus.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693304.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693304.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693305.exe
Infected with: Trojan.FatObfus.AF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693305.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693306.exe
Infected with: Trojan.Obfus.6.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693306.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693306.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693307.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693307.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693307.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693308.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693308.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693309.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693309.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693310.exe
Infected with: Trojan.Obfus.6.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693310.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693310.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693311.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693311.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693311.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693312.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693312.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693313.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693313.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693314.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693314.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693315.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693315.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693316.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693316.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693317.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693317.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693318.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693318.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693319.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693319.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693319.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693320.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693320.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693320.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693321.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693321.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693322.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693322.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693323.exe
Infected with: GenPack:Trojan.Downloader.Swizzor.DV

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693323.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693324.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693324.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693325.exe
Infected with: Trojan.Obfus.6.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693325.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693325.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693326.exe
Infected with: GenPack:Trojan.Downloader.Swizzor.DV

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693326.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693327.exe
Infected with: Trojan.Downloader.Swizzor.DV

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693327.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693328.exe
Infected with: Trojan.Swizzor.AX

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693328.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693329.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693329.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693330.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693330.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693331.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693331.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693331.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693332.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693332.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693333.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693333.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693334.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693334.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693335.exe
Infected with: Trojan.FatObfus.2.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693335.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693335.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693336.exe
Infected with: DeepScan:Generic.Malware.P!.5F1AEB08

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693336.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693336.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693337.exe
Detected with: Application.Prockill.B

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693337.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693337.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693338.exe
Infected with: Trojan.FatObfus.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693338.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693338.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693339.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693339.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693340.exe
Infected with: Trojan.FatObfus.Gen

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693340.exe
Disinfection failed

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693340.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693341.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693341.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693342.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693342.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693343.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693343.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693344.exe
Infected with: Trojan.Swizzor.AX

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693344.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693345.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693345.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693346.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693346.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693347.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693347.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693348.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693348.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693349.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693349.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693350.exe
Infected with: Trojan.Downloader.Swizzor.DV

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693350.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693351.exe
Infected with: Trojan.Downloader.Swizzor.DF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693351.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693352.exe
Infected with: GenPack:Trojan.Swizzor.GI

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693352.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693353.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693353.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693354.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693354.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693355.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693355.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693356.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693356.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693357.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693357.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693358.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693358.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693359.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693359.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693360.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693360.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693361.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693361.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693362.exe
Infected with: Trojan.Swizzor.AX

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693362.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693363.exe
Infected with: GenPack:Trojan.Swizzor.HH

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693363.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693364.exe
Infected with: Trojan.Downloader.Swizzor.DE

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693364.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693365.exe
Infected with: GenPack:Trojan.Swizzor.BF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693365.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693366.exe
Infected with: Trojan.Swizzor.X

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693366.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693367.exe
Infected with: Trojan.Downloader.Swizzor.DV

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693367.exe
Deleted

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693368.exe
Infected with: Trojan.FatObfus.AF

C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693368.exe
Deleted

C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0006
Detected with: Adware.Navipromo.BYH

C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0006
Deleted

C:\WINDOWS\pack.epk=>(NSIS 2g)
Update failed

C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0014=>(NSIS g)=>lzma_solid_nsis0002
Detected with: Adware.Navipromo.BYH

C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0014=>(NSIS g)=>lzma_solid_nsis0002
Deleted

C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0014=>(NSIS g)
Update failed
0
oxmo71 Messages postés 20 Statut Membre
 
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:56:23, on 02/25/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Keyboard & Mouse Driver\KMConfig.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\LVComS.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\Keyboard & Mouse Driver\KMProcess.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.mazxmzyjankhtaetkts.uk/h2gLNLwpy_zjxNtSBdm4I_iYYrmL9sxGPDTaF3je40YQPsLg8JCUgO3jHj0qrXpC.asp
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: i-Nav IDN SearchHook - {CE000994-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
R3 - URLSearchHook: (no name) - _{CE000994-A58C-4441-8938-744CD72AB27F} - (no file)
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {9F6E41FD-3E21-1839-BE52-EF663A319101} - C:\DOCUME~1\PROPRI~1\APPLIC~1\16MEAL~1\jump comp.exe (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: i-Nav IDN Resolver - {CE000992-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [LXCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCFtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Microsoft Works Update Detection] c:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'Default user')
O4 - .DEFAULT User Startup: ddrive.js (User 'Default user')
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\AIM.EXE (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra button: (no name) - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O9 - Extra 'Tools' menuitem: Options i-Nav - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: Interface Chat Wanadoo - http://chat4.x-echo.com/version6/Applet/wchatsign.cab
O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/archives/ie4n4/teleir_cert.cab
O16 - DPF: {0B79F48A-E8D6-11DB-9283-E25056D89593} (F-Secure Online Scanner 3.1) - https://www.f-secure.com/en/home/support
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.0.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4B2C2F72-DC82-4A6C-A214-C22AAA8326C9}: NameServer = 86.64.145.148 84.103.237.148
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Filter hijack: text/html - (no CLSID) - (no file)
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
0