Publicites intempestives CID

Résolu
Bonjour,

bonjour tout le monde, je suis envahie par des publicites intempestives commençant par CID. Impossible de m'en debarrasser. Merci de bien vouloir m'aider!!
Configuration: Windows XP
Internet Explorer 7.0

23 réponses

Résumé de la discussion

Des publicités intempestives commençant par CID s'affichent sur Windows XP avec Internet Explorer 7, et l'utilisateur cherche des solutions efficaces pour s'en débarrasser et sécuriser le système. Plusieurs réponses recommandent des étapes de désinfection via des guides en ligne et des outils comme CCleaner ou des rapports HijackThis pour identifier les éléments indésirables et guider le nettoyage. D'autres échanges évoquent l'utilisation d'un rapport AVG Anti-Spyware et la consultation de tutoriels de désinfection, puis l'exécution de commandes spécifiques comme Lopxp.bat pour corriger les paramètres système. Pour mémoire, une réponse propose une procédure concrète avec Démarrer > Exécuter et Lopxp.bat /Fixme afin de corriger les paramètres et d'obtenir un rapport de diagnostic.

Bobot (l’IA à votre service)
  1. Modérateur
    Salut

    plus d'info ici : http://www.commentcamarche.net/faq/sujet 5996 comment bloquer les fenetres cid

    ++
    1. elles s'affichent pendant que tu va sur internet, il faut que tu bloque tes fenetres intempestives en allant dans outils, option internet, confidentialité et la tu selectionne ton niveau de bloquage et il faut que tu coche la case bloquer les fenetre publicitaire intempesive.
      1. Salut Djuka05,
        Elles s'affichent des que je suis sur internet. J'ai déjà activé le bloqueur de publicites, mais je sais pas pourquoi, celles là font de la résistance!!! C'est insupportable surtout que le contenu est plutot douteux parfois et j'ai deux enfants ..... J'ai lu plusieurs messages avec des procédures compliquées avec des lectures de compte rendu ou je ne sais quoi. En tout cas, merci pourton conseil, je vais continuer de chercher.
        1. Est ce que tu as le logiciel ccleaner?
          1. non , je connais meme pas. Mais pour tout te dire, j'ai lancé une recherche sur mon ordi de tous les dossiers ou fichiers contenant le terme CID et j'en ai supprimé deux..... heu....au hasard. Donc depuis un petit moment, pas de fenetre publicitaire....est ce que ça va durer?
          2. ayé, j'ai téléchargé le ccleaner. Le ménage est fait. Et les CID reviennent en force!!
        2. N'as tu pas un programme "Cid help" dans ajout et suppression de programme?Peux tu le desinstaller?
          1. salut Djuka05
            J'ai pas trouvé ce genre de programme. Il s'appelle forcément comme ça?
            1. Salut Green Day,
              Je te remercie de m'orienter mais je me sens pas capable d'analyser le rapport hisjackthis.... J'ai peur de faire une boulette. Allez courage, si d'ici ce soir j'ai pas d'info, j'essayerai toute seule.
              1. bonjour
                va dans ajout & supprimer ,et regarde si tu vois Sponsor CID! =pub MSN !
                si oui tu supprime !!
                1. Salut Tribun,
                  Vraiment j'ai rien trouvé. Tu veux que je te fasses la liste pour voir si tu en débusques un?
                  1. J'avais dejà cherché sur mon ordi tous les fichiers nommés CID. Il y en a bien mais je sais pas si je dois tous les supprimer.
                    1. ben , oui , tout ce qui est de CID,tu peut tous les supprimer ,( sponsor CID )
                      ce sont des pubs en rapport avec MSN !
                  2. Modérateur
                    Salut

                    poste le rapport hijackthis ;-)

                    ++
                    1. Ah j'ai réussi à le faire toute seule!!!
                      Un peu de lecture.....

                      Logfile of Trend Micro HijackThis v2.0.2
                      Scan saved at 19:56:43, on 02/21/2008
                      Platform: Windows XP SP2 (WinNT 5.01.2600)
                      MSIE: Internet Explorer v7.00 (7.00.6000.16608)
                      Boot mode: Normal

                      Running processes:
                      C:\WINDOWS\System32\smss.exe
                      C:\WINDOWS\system32\winlogon.exe
                      C:\WINDOWS\system32\services.exe
                      C:\WINDOWS\system32\lsass.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\WINDOWS\system32\spoolsv.exe
                      C:\WINDOWS\Explorer.EXE
                      C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                      C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\Program Files\QuickTime\qttask.exe
                      C:\Program Files\Real\RealPlayer\RealPlay.exe
                      C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
                      C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe
                      C:\Program Files\Logitech\Video\LogiTray.exe
                      C:\Program Files\Keyboard & Mouse Driver\KMConfig.exe
                      C:\WINDOWS\system32\ctfmon.exe
                      C:\Program Files\Google\Google Updater\GoogleUpdater.exe
                      C:\Program Files\Internet Explorer\IEXPLORE.EXE
                      C:\Program Files\Internet Explorer\IEXPLORE.EXE
                      C:\WINDOWS\system32\LVComS.exe
                      C:\Program Files\Keyboard & Mouse Driver\KMProcess.exe
                      C:\WINDOWS\system32\wscntfy.exe
                      C:\Program Files\Internet Explorer\IEXPLORE.EXE
                      C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
                      C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

                      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.mazxmzyjankhtaetkts.uk/h2gLNLwpy_zjxNtSBdm4I_iYYrmL9sxGPDTaF3je40YQPsLg8JCUgO3jHj0qrXpC.asp
                      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
                      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                      R3 - URLSearchHook: i-Nav IDN SearchHook - {CE000994-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
                      R3 - URLSearchHook: (no name) - _{CE000994-A58C-4441-8938-744CD72AB27F} - (no file)
                      O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
                      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                      O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
                      O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                      O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                      O2 - BHO: (no name) - {9F6E41FD-3E21-1839-BE52-EF663A319101} - C:\DOCUME~1\PROPRI~1\APPLIC~1\16MEAL~1\jump comp.exe (file missing)
                      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
                      O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
                      O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton AntiVirus\NavShExt.dll
                      O2 - BHO: i-Nav IDN Resolver - {CE000992-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
                      O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
                      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
                      O4 - HKLM\..\Run: [LXCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCFtime.dll,_RunDLLEntry@16
                      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                      O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
                      O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
                      O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                      O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exe
                      O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
                      O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
                      O4 - HKLM\..\Run: [Mode Load Mpeg Less] C:\Documents and Settings\All Users\Application Data\two setup mode load\Dent Upload.exe
                      O4 - HKCU\..\Run: [Microsoft Works Update Detection] c:\Program Files\Microsoft Works\WkDetect.exe
                      O4 - HKCU\..\Run: [meta setup] C:\DOCUME~1\PROPRI~1\APPLIC~1\KEEPCI~1\body dog.exe
                      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
                      O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
                      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                      O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                      O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
                      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
                      O4 - HKUS\S-1-5-18\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'SYSTEM')
                      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
                      O4 - HKUS\.DEFAULT\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'Default user')
                      O4 - .DEFAULT User Startup: ddrive.js (User 'Default user')
                      O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
                      O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\AIM.EXE
                      O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
                      O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
                      O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
                      O9 - Extra button: (no name) - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
                      O9 - Extra 'Tools' menuitem: Options i-Nav - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
                      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                      O16 - DPF: Interface Chat Wanadoo - http://chat4.x-echo.com/version6/Applet/wchatsign.cab
                      O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/archives/ie4n4/teleir_cert.cab
                      O16 - DPF: {0B79F48A-E8D6-11DB-9283-E25056D89593} (F-Secure Online Scanner 3.1) - https://www.f-secure.com/en/home/support
                      O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
                      O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
                      O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.0.cab
                      O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
                      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                      O17 - HKLM\System\CCS\Services\Tcpip\..\{4B2C2F72-DC82-4A6C-A214-C22AAA8326C9}: NameServer = 84.103.237.144 86.64.145.144
                      O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
                      O18 - Filter hijack: text/html - (no CLSID) - (no file)
                      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                      O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
                  3. Modérateur
                    Salut

                    * Télécharger Lopxp : (by Moe) : http://sosvirus.changelog.fr/Green_day/Lopxpsetup
                    * Double cliquer sur Lopxpsetup.exe pour lancer l'installation
                    * Au menu, choisir l'option 1
                    * Patienter jusqu'à que l'on demande d'appuyer sur une touche, appuyer !
                    * Le contenu du rapport est situé dans : C:\Programfiles\Lopxp\cid.txt

                    ==> poste le stp

                    ++
                    1. Salut Green day
                      Voici le rapport:
                      # Rapport Lopxp fait le 02/23/2008 à 20:21:19
                      # Exécuté dans : C:\Program Files\Lopxp
                      # Version 3.08 - Maj du 15/02/2008

                      Killing 'iexplore.exe'
                      "C:\Program Files\Internet Explorer\IEXPLORE.EXE" (236)
                      "C:\Program Files\Internet Explorer\IEXPLORE.EXE" (264)
                      "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -Embedding (972)

                      ========== Listing des dossiers Application Data

                      +- C:\Documents and Settings\All Users\Application Data

                      2007-07-12 à 08:57:21 - Adobe
                      2006-02-07 à 19:09:23 - Ahead
                      2007-08-24 à 12:35:37 - five each less two
                      2008-02-16 à 14:43:48 - Google
                      2008-02-22 à 21:43:48 - Google Updater
                      2008-02-23 à 18:53:14 - Messenger Plus!
                      2006-09-18 à 17:42:19 - Microsoft
                      2006-03-06 à 17:49:52 - MSN Search Toolbar
                      2003-01-07 à 15:48:22 - MSN6
                      2006-09-23 à 07:22:24 - QuickTime
                      2002-01-01 à 15:37:19 - Sbsi
                      2008-01-23 à 16:37:33 - Spybot - Search & Destroy
                      2002-01-01 à 21:24:55 - Symantec
                      2008-02-18 à 15:54:14 - third inside atom store
                      2006-05-24 à 05:47:52 - toolcopyintralicense
                      2008-02-18 à 15:54:15 - two setup mode load
                      2006-09-21 à 13:03:30 - Windows Genuine Advantage

                      +- C:\Documents and Settings\Propri‚taire\Application Data

                      2007-07-12 à 09:01:26 - Adobe
                      2006-03-26 à 09:21:37 - AdobeUM
                      2006-03-28 à 19:59:31 - Ahead
                      2003-01-11 à 17:25:25 - Aim
                      2008-02-01 à 16:36:39 - DivX
                      2003-01-07 à 15:18:27 - Dossier de téléchargement Share-to-Web
                      2005-01-27 à 17:07:49 - Dossier de téléchargement Share-to-Web
                      2007-11-25 à 16:56:08 - FotoWire
                      2008-02-18 à 07:37:42 - Google
                      2006-06-18 à 13:14:59 - Help
                      2007-11-08 à 17:45:43 - Identities
                      2003-01-07 à 17:12:36 - InterVideo
                      2008-02-18 à 15:54:35 - Keep City Wma
                      2005-09-15 à 19:06:28 - Lavasoft
                      2006-06-16 à 05:04:30 - Leadertech
                      2004-04-07 à 14:28:31 - Macromedia
                      2007-12-20 à 20:30:55 - Microsoft
                      2007-12-20 à 12:17:49 - MP-Manager
                      2008-02-21 à 11:59:23 - MSN6
                      2005-09-03 à 10:05:35 - Shareaza
                      2002-01-01 à 21:24:31 - Symantec
                      2003-01-08 à 20:15:30 - VERITAS
                      2007-03-15 à 19:37:43 - Weka
                      2008-01-31 à 14:41:37 - Yahoo!
                      2005-02-19 à 22:54:20 - Yahoo! Messenger

                      +- C:\Documents and Settings\Propri‚taire\Local Settings\Application Data

                      2007-07-12 à 09:01:22 - Adobe
                      2006-02-08 à 19:33:06 - Ahead
                      2008-02-16 à 14:43:59 - Google
                      2003-01-09 à 19:32:32 - Help
                      2007-11-08 à 17:45:43 - Identities
                      2004-02-02 à 19:45:35 - IM
                      2007-03-09 à 17:54:52 - Microsoft
                      2005-01-29 à 19:32:41 - Shareaza

                      ========== Listing du dossier Program Files

                      +- C:\Program Files

                      2008-02-03 à 09:52:31 - AC3Filter
                      2007-07-12 à 08:55:25 - Adobe
                      2006-04-05 à 18:34:44 - Ahead
                      2005-07-12 à 19:41:54 - AIM95
                      2003-01-28 à 13:13:12 - aolwc
                      2008-02-19 à 14:30:35 - AVPersonal
                      2008-02-20 à 07:46:50 - CCleaner
                      2006-07-20 à 16:37:14 - Cegetel
                      2004-02-02 à 19:30:54 - Common Files
                      2008-02-21 à 12:21:43 - directx
                      2008-02-21 à 12:21:44 - DivX(2)
                      2002-01-01 à 15:46:53 - DLA
                      2007-09-15 à 14:15:30 - Empire Interactive
                      2007-07-22 à 14:38:14 - eMule
                      2007-11-25 à 16:56:07 - Fichiers communs
                      2004-03-29 à 18:01:20 - Gabest
                      2008-02-16 à 14:43:48 - Google
                      2006-11-26 à 09:01:45 - Hewlett-Packard
                      2002-01-01 à 15:55:46 - Home Media Networks Limited
                      2002-01-01 à 16:23:04 - hp center
                      2005-11-30 à 07:47:28 - Httper
                      2008-02-03 à 09:52:33 - InstallShield Installation Information
                      2005-05-06 à 14:36:20 - Intel
                      2008-02-14 à 05:46:21 - Internet Explorer
                      2002-01-01 à 15:43:57 - InterVideo
                      2007-11-06 à 10:09:42 - Jasc Software Inc
                      2007-06-20 à 15:55:51 - Kazaa
                      2008-02-18 à 15:53:10 - Keep City Wma
                      2007-09-01 à 16:33:20 - Keyboard & Mouse Driver
                      2005-09-15 à 19:05:56 - Lavasoft
                      2006-09-07 à 18:44:28 - Lexmark 730 Series
                      2007-11-25 à 16:56:07 - Logitech
                      2008-02-23 à 19:21:27 - Lopxp
                      2008-02-20 à 15:36:09 - Lx_cats
                      2006-09-21 à 13:02:04 - Messenger
                      2008-02-23 à 18:42:31 - MessengerPlus! 3
                      2003-02-26 à 07:46:16 - Micro Application
                      2007-09-15 à 14:01:21 - Microsoft AutoRoute
                      2002-01-01 à 16:16:59 - Microsoft Encarta
                      2002-01-02 à 01:43:34 - microsoft frontpage
                      2007-09-15 à 14:12:52 - Microsoft Office
                      2003-01-12 à 20:20:58 - Microsoft Picture It! 2002
                      2007-09-15 à 14:13:54 - Microsoft Works
                      2003-01-07 à 15:39:23 - Microsoft Works Suite 2002
                      2004-05-02 à 08:31:49 - Morgan
                      2006-09-18 à 17:40:25 - Movie Maker
                      2007-12-20 à 20:30:12 - MPMAN
                      2002-01-02 à 01:39:18 - MSN Gaming Zone
                      2008-02-21 à 12:06:35 - MSN Messenger
                      2005-02-20 à 02:01:33 - MSXML 4.0
                      2007-06-20 à 13:53:04 - Need2Find
                      2006-09-18 à 17:36:27 - NetMeeting
                      2004-05-02 à 08:33:24 - Norton AntiVirus
                      2008-02-22 à 08:11:48 - NRJ
                      2003-08-26 à 16:09:43 - Nullsoft
                      2008-02-21 à 12:24:54 - Outlook Express
                      2003-01-07 à 15:11:43 - Pinnacle
                      2004-02-15 à 17:55:22 - PIXELA
                      2006-09-23 à 07:22:22 - QuickTime
                      2003-01-07 à 15:28:27 - Real
                      2004-06-29 à 03:48:07 - RecordNow
                      2006-07-20 à 16:17:18 - SAGEM
                      2002-01-01 à 16:19:59 - Services en ligne
                      2005-12-08 à 18:04:21 - Shareaza
                      2002-01-01 à 16:05:11 - Sonic
                      2004-02-20 à 18:58:07 - Sony Corporation
                      2008-01-23 à 16:37:05 - Spybot - Search & Destroy
                      2007-04-18 à 13:15:11 - Strategy First
                      2003-05-08 à 13:35:51 - Symantec
                      2008-02-19 à 10:54:26 - Trend Micro
                      2004-02-28 à 07:24:03 - Ubi Soft
                      2004-07-18 à 01:05:57 - Uninstall Information
                      2007-12-20 à 20:23:17 - USBDisk
                      2005-09-24 à 10:03:13 - VeriSign
                      2002-01-01 à 15:46:12 - VERITAS Software
                      2003-04-05 à 14:41:07 - Viewpoint
                      2005-08-31 à 16:12:45 - Wanadoo
                      2004-03-11 à 19:03:14 - WinASPI
                      2006-09-21 à 13:00:39 - Windows Media Player
                      2008-02-21 à 11:53:11 - Windows NT
                      2004-08-11 à 02:13:36 - WindowsUpdate
                      2002-01-02 à 01:43:35 - xerox

                      ========== Tâches planifiées

                      AE34F1AB906B63D7.job: c:\docume~1\propri~1\applic~1\keepci~1\internet sect pure.exe
                      FRU Task #Hewlett-Packard#Deskjet#3420.job: C:\Program Files\Hewlett-Packard\upapp\hpqfruv.exe -I "#Hewlett-Packard#Deskjet#3420"
                      Norton AntiVirus - Analyser mon ordinateur.job: c:\PROGRA~1\NORTON~1\NAVW32.exe /task:C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec\NORTON~1\Tasks\mycomp.sca
                      Symantec NetDetect.job: C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE

                      ========== Clés registre

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                      "Mode Load Mpeg Less"="C:\Documents and Settings\All Users\Application Data\two setup mode load\Dent Upload.exe"

                      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                      "meta setup"="C:\DOCUME~1\PROPRI~1\APPLIC~1\KEEPCI~1\body dog.exe"

                      ========== Bloqueur popups Internet Explorer

                      www.searchweb2.com
                      www.coraya.com
                      www.chapatiz.com
                      host-domain-lookup.com
                      www.host-domain-lookup.com

                      ========== Suggestion ( /!\ Nécessite une interprétation.) ==========

                      C:\Documents and Settings\All Users\Application Data\five each less two
                      C:\Documents and Settings\All Users\Application Data\third inside atom store
                      C:\Documents and Settings\All Users\Application Data\toolcopyintralicense
                      C:\Documents and Settings\All Users\Application Data\two setup mode load
                      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma
                      C:\Program Files\Keep City Wma
                      C:\WINDOWS\tasks\AE34F1AB906B63D7.job

                      +- Registre:

                      REGEDIT4

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                      "Mode Load Mpeg Less"=-

                      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                      "meta setup"=-

                      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow]
                      "searchweb2.com"=-
                      "www.searchweb2.com"=-
                      "host-domain-lookup.com"=-
                      "www.host-domain-lookup.com"=-

                      - Fin du rapport -

                      Mais dis moi Green Day, on est samedi soir et t'es là à aider les pauves internautes.... c'est une vocation?
                  4. Modérateur
                    Salut

                    c'est une passion-passe temps ! ;-)

                    Aller dans : Démarrer > Exécuter puis copie/colle la ligne suivante en gras :

                    "%programfiles%\Lopxp\Lopxp.bat" /Fixme puis valide,

                    et poste le rapport obtenu stp

                    @+
                    1. Heu.... ça me propose pas vraiment un rapport mais plutot de supprimer des lignes. Aucun autre choix possible.
                      1. Voilà la phrase exacte:

                        Confirmation de suppression
                        Voulez vous vraiment supprimer
                        C/documents and settings/All users/Application Data/Five each less two
                        Appuyer sur y ou n
                        1. Modérateur
                          oups ! oui, j'ai oublié de préciser qu'il faut accepter toutes les demandes de suppression !

                          ++
                          1. # Rapport Lopxp fait le 02/25/2008 à 11:05:43
                            # Exécuté dans : C:\Program Files\Lopxp
                            # Version 3.08 - Maj du 15/02/2008

                            ========== FixLog ==========

                            +- C:\Documents and Settings\All Users\Application Data\five each less two
                            Choix utilisateur : Suppression acceptée.
                            Déplacé avec succès.

                            +- C:\Documents and Settings\All Users\Application Data\five each less two
                            Choix utilisateur : Suppression acceptée.
                            /!\ Opération annulée, le fichier ou dossier selectionné n'exite pas.

                            +- C:\Documents and Settings\All Users\Application Data\third inside atom store
                            Choix utilisateur : Suppression acceptée.
                            Déplacé avec succès.

                            +- C:\Documents and Settings\All Users\Application Data\toolcopyintralicense
                            Choix utilisateur : Suppression acceptée.
                            Déplacé avec succès.

                            +- C:\Documents and Settings\All Users\Application Data\two setup mode load
                            Choix utilisateur : Suppression acceptée.
                            Déplacé avec succès.

                            +- C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma
                            Choix utilisateur : Suppression acceptée.
                            /!\ Opération annulée, le fichier ou dossier selectionné n'exite pas.

                            +- C:\Program Files\Keep City Wma
                            Choix utilisateur : Suppression acceptée.
                            Déplacé avec succès.

                            +- C:\WINDOWS\tasks\AE34F1AB906B63D7.job
                            Choix utilisateur : Suppression acceptée.
                            Déplacé avec succès.

                            +- Registre :
                            Nettoyage effectué.

                            +- Fichiers temporaires :
                            Nettoyage effectué.

                            ========== Listing des dossiers Application Data

                            +- C:\Documents and Settings\All Users\Application Data

                            2007-07-12 à 08:57:21 - Adobe
                            2006-02-07 à 19:09:23 - Ahead
                            2008-02-16 à 14:43:48 - Google
                            2008-02-24 à 08:03:13 - Google Updater
                            2006-09-18 à 17:42:19 - Microsoft
                            2006-03-06 à 17:49:52 - MSN Search Toolbar
                            2003-01-07 à 15:48:22 - MSN6
                            2006-09-23 à 07:22:24 - QuickTime
                            2002-01-01 à 15:37:19 - Sbsi
                            2008-01-23 à 16:37:33 - Spybot - Search & Destroy
                            2002-01-01 à 21:24:55 - Symantec
                            2006-09-21 à 13:03:30 - Windows Genuine Advantage

                            +- C:\Documents and Settings\Propri‚taire\Application Data

                            2007-07-12 à 09:01:26 - Adobe
                            2006-03-26 à 09:21:37 - AdobeUM
                            2006-03-28 à 19:59:31 - Ahead
                            2003-01-11 à 17:25:25 - Aim
                            2008-02-01 à 16:36:39 - DivX
                            2003-01-07 à 15:18:27 - Dossier de téléchargement Share-to-Web
                            2005-01-27 à 17:07:49 - Dossier de téléchargement Share-to-Web
                            2007-11-25 à 16:56:08 - FotoWire
                            2008-02-18 à 07:37:42 - Google
                            2006-06-18 à 13:14:59 - Help
                            2007-11-08 à 17:45:43 - Identities
                            2003-01-07 à 17:12:36 - InterVideo
                            2008-02-18 à 15:54:35 - Keep City Wma
                            2005-09-15 à 19:06:28 - Lavasoft
                            2006-06-16 à 05:04:30 - Leadertech
                            2004-04-07 à 14:28:31 - Macromedia
                            2007-12-20 à 20:30:55 - Microsoft
                            2007-12-20 à 12:17:49 - MP-Manager
                            2008-02-21 à 11:59:23 - MSN6
                            2005-09-03 à 10:05:35 - Shareaza
                            2002-01-01 à 21:24:31 - Symantec
                            2003-01-08 à 20:15:30 - VERITAS
                            2007-03-15 à 19:37:43 - Weka
                            2008-01-31 à 14:41:37 - Yahoo!
                            2005-02-19 à 22:54:20 - Yahoo! Messenger

                            +- C:\Documents and Settings\Propri‚taire\Local Settings\Application Data

                            2007-07-12 à 09:01:22 - Adobe
                            2006-02-08 à 19:33:06 - Ahead
                            2008-02-16 à 14:43:59 - Google
                            2003-01-09 à 19:32:32 - Help
                            2007-11-08 à 17:45:43 - Identities
                            2004-02-02 à 19:45:35 - IM
                            2007-03-09 à 17:54:52 - Microsoft
                            2005-01-29 à 19:32:41 - Shareaza

                            ========== Listing du dossier Program Files

                            +- C:\Program Files

                            2008-02-03 à 09:52:31 - AC3Filter
                            2007-07-12 à 08:55:25 - Adobe
                            2006-04-05 à 18:34:44 - Ahead
                            2008-02-19 à 14:30:35 - AVPersonal
                            2008-02-20 à 07:46:50 - CCleaner
                            2006-07-20 à 16:37:14 - Cegetel
                            2004-02-02 à 19:30:54 - Common Files
                            2008-02-21 à 12:21:43 - directx
                            2008-02-21 à 12:21:44 - DivX(2)
                            2002-01-01 à 15:46:53 - DLA
                            2007-09-15 à 14:15:30 - Empire Interactive
                            2007-07-22 à 14:38:14 - eMule
                            2007-11-25 à 16:56:07 - Fichiers communs
                            2004-03-29 à 18:01:20 - Gabest
                            2008-02-16 à 14:43:48 - Google
                            2006-11-26 à 09:01:45 - Hewlett-Packard
                            2002-01-01 à 15:55:46 - Home Media Networks Limited
                            2002-01-01 à 16:23:04 - hp center
                            2005-11-30 à 07:47:28 - Httper
                            2008-02-03 à 09:52:33 - InstallShield Installation Information
                            2005-05-06 à 14:36:20 - Intel
                            2008-02-14 à 05:46:21 - Internet Explorer
                            2002-01-01 à 15:43:57 - InterVideo
                            2007-11-06 à 10:09:42 - Jasc Software Inc
                            2007-09-01 à 16:33:20 - Keyboard & Mouse Driver
                            2005-09-15 à 19:05:56 - Lavasoft
                            2006-09-07 à 18:44:28 - Lexmark 730 Series
                            2007-11-25 à 16:56:07 - Logitech
                            2008-02-25 à 10:07:03 - Lopxp
                            2008-02-20 à 15:36:09 - Lx_cats
                            2006-09-21 à 13:02:04 - Messenger
                            2003-02-26 à 07:46:16 - Micro Application
                            2007-09-15 à 14:01:21 - Microsoft AutoRoute
                            2002-01-01 à 16:16:59 - Microsoft Encarta
                            2002-01-02 à 01:43:34 - microsoft frontpage
                            2007-09-15 à 14:12:52 - Microsoft Office
                            2003-01-12 à 20:20:58 - Microsoft Picture It! 2002
                            2007-09-15 à 14:13:54 - Microsoft Works
                            2003-01-07 à 15:39:23 - Microsoft Works Suite 2002
                            2004-05-02 à 08:31:49 - Morgan
                            2006-09-18 à 17:40:25 - Movie Maker
                            2007-12-20 à 20:30:12 - MPMAN
                            2002-01-02 à 01:39:18 - MSN Gaming Zone
                            2008-02-21 à 12:06:35 - MSN Messenger
                            2005-02-20 à 02:01:33 - MSXML 4.0
                            2007-06-20 à 13:53:04 - Need2Find
                            2006-09-18 à 17:36:27 - NetMeeting
                            2004-05-02 à 08:33:24 - Norton AntiVirus
                            2008-02-22 à 08:11:48 - NRJ
                            2003-08-26 à 16:09:43 - Nullsoft
                            2008-02-21 à 12:24:54 - Outlook Express
                            2003-01-07 à 15:11:43 - Pinnacle
                            2004-02-15 à 17:55:22 - PIXELA
                            2006-09-23 à 07:22:22 - QuickTime
                            2003-01-07 à 15:28:27 - Real
                            2004-06-29 à 03:48:07 - RecordNow
                            2006-07-20 à 16:17:18 - SAGEM
                            2002-01-01 à 16:19:59 - Services en ligne
                            2005-12-08 à 18:04:21 - Shareaza
                            2002-01-01 à 16:05:11 - Sonic
                            2004-02-20 à 18:58:07 - Sony Corporation
                            2008-01-23 à 16:37:05 - Spybot - Search & Destroy
                            2007-04-18 à 13:15:11 - Strategy First
                            2003-05-08 à 13:35:51 - Symantec
                            2008-02-19 à 10:54:26 - Trend Micro
                            2004-02-28 à 07:24:03 - Ubi Soft
                            2004-07-18 à 01:05:57 - Uninstall Information
                            2007-12-20 à 20:23:17 - USBDisk
                            2005-09-24 à 10:03:13 - VeriSign
                            2002-01-01 à 15:46:12 - VERITAS Software
                            2003-04-05 à 14:41:07 - Viewpoint
                            2005-08-31 à 16:12:45 - Wanadoo
                            2004-03-11 à 19:03:14 - WinASPI
                            2006-09-21 à 13:00:39 - Windows Media Player
                            2008-02-21 à 11:53:11 - Windows NT
                            2004-08-11 à 02:13:36 - WindowsUpdate
                            2002-01-02 à 01:43:35 - xerox

                            ========== Tâches planifiées

                            FRU Task #Hewlett-Packard#Deskjet#3420.job: C:\Program Files\Hewlett-Packard\upapp\hpqfruv.exe -I "#Hewlett-Packard#Deskjet#3420"
                            Norton AntiVirus - Analyser mon ordinateur.job: c:\PROGRA~1\NORTON~1\NAVW32.exe /task:C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec\NORTON~1\Tasks\mycomp.sca
                            Symantec NetDetect.job: C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE

                            ========== Clés registre

                            ========== Bloqueur popups Internet Explorer

                            www.chapatiz.com

                            ========== Suggestion ( /!\ Nécessite une interprétation.) ==========

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma

                            +- Registre : Aucune suggestion.

                            - Fin du rapport -
                        2. Modérateur
                          très bien, fais ce qui est indiqué ici stp :

                          http://www.commentcamarche.net/faq/sujet 3174 virus methode preliminaire de desinfection version fr

                          ++
                          1. --------------------------------------------------------
                            AVG Anti-Spyware - Rapport d'analyse
                            ---------------------------------------------------------

                            + Créé à: 16:37:43 02/25/2008

                            + Résultat de l'analyse:

                            HKU\S-1-5-21-2505351160-3403473811-3433162778-1003\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser\\{74CC49F7-EB32-4A08-B204-948962A6E3DB} -> Adware.RogueSuspect : Nettoyé.
                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1485\A0693177.exe -> Dialer.Generic : Nettoyé.

                            Fin du rapport
                          2. Scan path: A:\;C:\;D:\;E:\;F:\;

                            Statistics

                            Time
                            01:03:43

                            Files
                            219180

                            Folders
                            4720

                            Boot Sectors
                            3

                            Archives
                            18607

                            Packed Files
                            11932

                            Results

                            Identified Viruses
                            19

                            Infected Files
                            178

                            Suspect Files
                            0

                            Warnings
                            0

                            Disinfected
                            0

                            Deleted Files
                            178

                            Engines Info

                            Virus Definitions
                            983517

                            Engine build
                            AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)

                            Scan plugins
                            16

                            Archive plugins
                            41

                            Unpack plugins
                            7

                            E-mail plugins
                            6

                            System plugins
                            5

                            Scan Settings

                            First Action
                            Disinfect

                            Second Action
                            Delete

                            Heuristics
                            Yes

                            Enable Warnings
                            Yes

                            Scanned Extensions
                            *;

                            Exclude Extensions

                            Scan Emails
                            Yes

                            Scan Archives
                            Yes

                            Scan Packed
                            Yes

                            Scan Files
                            Yes

                            Scan Boot
                            Yes

                            Scanned File
                            Status

                            C:\Documents and Settings\NetworkService\Application Data\Keep City Wma\body dog.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\Documents and Settings\NetworkService\Application Data\Keep City Wma\body dog.exe
                            Disinfection failed

                            C:\Documents and Settings\NetworkService\Application Data\Keep City Wma\body dog.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bbhbtbdh.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bbhbtbdh.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bhntrpee.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bhntrpee.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bhntrpee.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bxcpdays.exe
                            Infected with: Trojan.Swizzor.DH

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bxcpdays.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bxcpdays.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\chbprkis.exe
                            Infected with: Trojan.FatObfus.AG

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\chbprkis.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cmrzqygs.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cmrzqygs.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cmrzqygs.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cvzpwbgq.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cvzpwbgq.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cvzpwbgq.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cwwqmwii.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cwwqmwii.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\dwsfxwvq.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\dwsfxwvq.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\eyigijyx.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\eyigijyx.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\eyigijyx.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fgltqube.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fgltqube.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fnybczbi.exe
                            Infected with: Trojan.Downloader.Swizzor.DV

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fnybczbi.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fqokkldt.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fqokkldt.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fzzvhsdg.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fzzvhsdg.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fzzvhsdg.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\gogstgvi.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\gogstgvi.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\gogstgvi.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hgmosiis.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hgmosiis.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hthkdamo.exe
                            Infected with: Trojan.Swizzor.AX

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hthkdamo.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\htocnfqv.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\htocnfqv.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\htocnfqv.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hyzdqzhq.exe
                            Infected with: Trojan.Downloader.Swizzor.DF

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hyzdqzhq.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ihdjiult.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ihdjiult.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ihdjiult.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\jimtyjec.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\jimtyjec.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\jimtyjec.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\juttwubn.exe
                            Infected with: Trojan.FatObfus.AF

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\juttwubn.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kbmvvpxt.exe
                            Infected with: Trojan.Obfus.6.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kbmvvpxt.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kbmvvpxt.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kdrzjsti.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kdrzjsti.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kdrzjsti.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kiheeypg.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kiheeypg.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ljfrdkdj.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ljfrdkdj.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llpfokut.exe
                            Infected with: Trojan.Obfus.6.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llpfokut.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llpfokut.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llxnkvdp.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llxnkvdp.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llxnkvdp.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\lslibfbs.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\lslibfbs.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\mrzdjysh.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\mrzdjysh.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ngfluxjc.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ngfluxjc.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\odjofopr.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\odjofopr.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ogwqcqpg.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ogwqcqpg.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\opcwhgwj.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\opcwhgwj.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\pzgggjaj.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\pzgggjaj.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\rvdoetoh.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\rvdoetoh.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\rvdoetoh.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sbbgcnjm.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sbbgcnjm.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sbbgcnjm.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sescpxsc.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sescpxsc.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\skgvxcfq.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\skgvxcfq.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tewaxnzv.exe
                            Infected with: GenPack:Trojan.Downloader.Swizzor.DV

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tewaxnzv.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tfhfslvw.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tfhfslvw.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tsjvwgto.exe
                            Infected with: Trojan.Obfus.6.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tsjvwgto.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tsjvwgto.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uajrsfyc.exe
                            Infected with: GenPack:Trojan.Downloader.Swizzor.DV

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uajrsfyc.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uwdilvdt.exe
                            Infected with: Trojan.Downloader.Swizzor.DV

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uwdilvdt.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\vmgywnrn.exe
                            Infected with: Trojan.Swizzor.AX

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\vmgywnrn.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wgujswvm.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wgujswvm.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wumxajdt.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wumxajdt.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ybpckjla.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ybpckjla.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ybpckjla.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ykhihirq.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ykhihirq.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\yvrgwtzp.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\yvrgwtzp.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zeyhqkwq.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zeyhqkwq.exe
                            Deleted

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zjbuijmo.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zjbuijmo.exe
                            Disinfection failed

                            C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zjbuijmo.exe
                            Deleted

                            C:\hp\bin\ProcessLogger.exe
                            Infected with: DeepScan:Generic.Malware.P!.5F1AEB08

                            C:\hp\bin\ProcessLogger.exe
                            Disinfection failed

                            C:\hp\bin\ProcessLogger.exe
                            Deleted

                            C:\hp\bin\Terminator.exe
                            Detected with: Application.Prockill.B

                            C:\hp\bin\Terminator.exe
                            Disinfection failed

                            C:\hp\bin\Terminator.exe
                            Deleted

                            C:\Program Files\AVPersonal\INFECTED\A0124841.EXE.VIR
                            Infected with: Trojan.Swizzor.X

                            C:\Program Files\AVPersonal\INFECTED\A0124841.EXE.VIR
                            Deleted

                            C:\Program Files\AVPersonal\INFECTED\A0124857.EXE.VIR
                            Infected with: Trojan.Downloader.Swizzor.CB

                            C:\Program Files\AVPersonal\INFECTED\A0124857.EXE.VIR
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Bashcity.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Bashcity.exe
                            Disinfection failed

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Bashcity.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\DEAD LINK.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\DEAD LINK.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Fork trans.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Fork trans.exe
                            Disinfection failed

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Fork trans.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Frag mp3.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Frag mp3.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Beep The.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Beep The.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Blehlicense.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Blehlicense.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\boob dent.exe
                            Infected with: Trojan.Swizzor.AX

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\boob dent.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Default Vga.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Default Vga.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\exit real.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\exit real.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Frag sixth.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Frag sixth.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\gpl burn.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\gpl burn.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Info pop.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Info pop.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\jumpthunk.exe
                            Infected with: Trojan.Downloader.Swizzor.DV

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\jumpthunk.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Less Part.exe
                            Infected with: Trojan.Downloader.Swizzor.DF

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Less Part.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\license barb.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\license barb.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\log burn.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\log burn.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Media software.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Media software.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\MemoDefault.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\MemoDefault.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Mixteam.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Mixteam.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\online bat.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\online bat.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\rule flap.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\rule flap.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Safe sign.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Safe sign.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Sign Flag.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Sign Flag.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\site mix.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\site mix.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Skipthunk.exe
                            Infected with: Trojan.Swizzor.AX

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Skipthunk.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\titlegrey.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\titlegrey.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\TransLies.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\TransLies.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WAIT MAPI.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WAIT MAPI.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WINBOOK.exe
                            Infected with: Trojan.Swizzor.X

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WINBOOK.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\wma title.exe
                            Infected with: Trojan.Downloader.Swizzor.DV

                            C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\wma title.exe
                            Deleted

                            C:\Program Files\Lopxp\Sauvegardes\two setup mode load\thunk manager.exe
                            Infected with: Trojan.FatObfus.AF

                            C:\Program Files\Lopxp\Sauvegardes\two setup mode load\thunk manager.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690579.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690579.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690579.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690580.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690580.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690581.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690581.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690581.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690582.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690582.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693284.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693284.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693284.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693285.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693285.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693286.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693286.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693286.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693287.exe
                            Infected with: Trojan.Swizzor.DH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693287.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693287.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693288.exe
                            Infected with: Trojan.FatObfus.AG

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693288.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693289.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693289.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693289.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693290.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693290.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693290.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693291.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693291.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693292.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693292.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693293.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693293.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693293.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693294.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693294.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693295.exe
                            Infected with: Trojan.Downloader.Swizzor.DV

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693295.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693296.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693296.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693297.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693297.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693297.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693298.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693298.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693298.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693299.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693299.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693300.exe
                            Infected with: Trojan.Swizzor.AX

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693300.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693301.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693301.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693301.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693302.exe
                            Infected with: Trojan.Downloader.Swizzor.DF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693302.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693303.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693303.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693303.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693304.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693304.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693304.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693305.exe
                            Infected with: Trojan.FatObfus.AF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693305.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693306.exe
                            Infected with: Trojan.Obfus.6.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693306.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693306.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693307.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693307.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693307.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693308.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693308.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693309.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693309.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693310.exe
                            Infected with: Trojan.Obfus.6.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693310.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693310.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693311.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693311.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693311.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693312.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693312.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693313.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693313.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693314.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693314.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693315.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693315.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693316.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693316.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693317.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693317.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693318.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693318.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693319.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693319.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693319.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693320.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693320.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693320.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693321.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693321.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693322.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693322.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693323.exe
                            Infected with: GenPack:Trojan.Downloader.Swizzor.DV

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693323.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693324.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693324.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693325.exe
                            Infected with: Trojan.Obfus.6.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693325.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693325.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693326.exe
                            Infected with: GenPack:Trojan.Downloader.Swizzor.DV

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693326.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693327.exe
                            Infected with: Trojan.Downloader.Swizzor.DV

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693327.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693328.exe
                            Infected with: Trojan.Swizzor.AX

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693328.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693329.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693329.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693330.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693330.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693331.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693331.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693331.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693332.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693332.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693333.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693333.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693334.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693334.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693335.exe
                            Infected with: Trojan.FatObfus.2.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693335.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693335.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693336.exe
                            Infected with: DeepScan:Generic.Malware.P!.5F1AEB08

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693336.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693336.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693337.exe
                            Detected with: Application.Prockill.B

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693337.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693337.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693338.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693338.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693338.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693339.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693339.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693340.exe
                            Infected with: Trojan.FatObfus.Gen

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693340.exe
                            Disinfection failed

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693340.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693341.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693341.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693342.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693342.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693343.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693343.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693344.exe
                            Infected with: Trojan.Swizzor.AX

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693344.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693345.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693345.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693346.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693346.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693347.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693347.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693348.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693348.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693349.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693349.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693350.exe
                            Infected with: Trojan.Downloader.Swizzor.DV

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693350.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693351.exe
                            Infected with: Trojan.Downloader.Swizzor.DF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693351.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693352.exe
                            Infected with: GenPack:Trojan.Swizzor.GI

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693352.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693353.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693353.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693354.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693354.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693355.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693355.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693356.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693356.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693357.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693357.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693358.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693358.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693359.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693359.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693360.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693360.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693361.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693361.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693362.exe
                            Infected with: Trojan.Swizzor.AX

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693362.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693363.exe
                            Infected with: GenPack:Trojan.Swizzor.HH

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693363.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693364.exe
                            Infected with: Trojan.Downloader.Swizzor.DE

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693364.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693365.exe
                            Infected with: GenPack:Trojan.Swizzor.BF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693365.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693366.exe
                            Infected with: Trojan.Swizzor.X

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693366.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693367.exe
                            Infected with: Trojan.Downloader.Swizzor.DV

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693367.exe
                            Deleted

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693368.exe
                            Infected with: Trojan.FatObfus.AF

                            C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693368.exe
                            Deleted

                            C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0006
                            Detected with: Adware.Navipromo.BYH

                            C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0006
                            Deleted

                            C:\WINDOWS\pack.epk=>(NSIS 2g)
                            Update failed

                            C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0014=>(NSIS g)=>lzma_solid_nsis0002
                            Detected with: Adware.Navipromo.BYH

                            C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0014=>(NSIS g)=>lzma_solid_nsis0002
                            Deleted

                            C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0014=>(NSIS g)
                            Update failed
                        3. Logfile of Trend Micro HijackThis v2.0.2
                          Scan saved at 17:56:23, on 02/25/2008
                          Platform: Windows XP SP2 (WinNT 5.01.2600)
                          MSIE: Internet Explorer v7.00 (7.00.6000.16608)
                          Boot mode: Normal

                          Running processes:
                          C:\WINDOWS\System32\smss.exe
                          C:\WINDOWS\system32\winlogon.exe
                          C:\WINDOWS\system32\services.exe
                          C:\WINDOWS\system32\lsass.exe
                          C:\WINDOWS\system32\svchost.exe
                          C:\WINDOWS\System32\svchost.exe
                          C:\WINDOWS\Explorer.EXE
                          C:\WINDOWS\system32\spoolsv.exe
                          C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                          C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
                          C:\WINDOWS\System32\svchost.exe
                          C:\Program Files\QuickTime\qttask.exe
                          C:\Program Files\Real\RealPlayer\RealPlay.exe
                          C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
                          C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe
                          C:\Program Files\Logitech\Video\LogiTray.exe
                          C:\Program Files\Keyboard & Mouse Driver\KMConfig.exe
                          C:\WINDOWS\system32\ctfmon.exe
                          C:\WINDOWS\system32\LVComS.exe
                          C:\Program Files\Google\Google Updater\GoogleUpdater.exe
                          C:\Program Files\Keyboard & Mouse Driver\KMProcess.exe
                          C:\WINDOWS\system32\wscntfy.exe
                          C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
                          C:\Program Files\Internet Explorer\IEXPLORE.EXE
                          C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
                          C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
                          C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

                          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.mazxmzyjankhtaetkts.uk/h2gLNLwpy_zjxNtSBdm4I_iYYrmL9sxGPDTaF3je40YQPsLg8JCUgO3jHj0qrXpC.asp
                          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
                          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                          R3 - URLSearchHook: i-Nav IDN SearchHook - {CE000994-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
                          R3 - URLSearchHook: (no name) - _{CE000994-A58C-4441-8938-744CD72AB27F} - (no file)
                          O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
                          O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                          O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
                          O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                          O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
                          O2 - BHO: (no name) - {9F6E41FD-3E21-1839-BE52-EF663A319101} - C:\DOCUME~1\PROPRI~1\APPLIC~1\16MEAL~1\jump comp.exe (file missing)
                          O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
                          O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
                          O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton AntiVirus\NavShExt.dll
                          O2 - BHO: i-Nav IDN Resolver - {CE000992-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
                          O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
                          O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
                          O4 - HKLM\..\Run: [LXCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCFtime.dll,_RunDLLEntry@16
                          O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                          O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
                          O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
                          O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                          O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exe
                          O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
                          O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
                          O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
                          O4 - HKCU\..\Run: [Microsoft Works Update Detection] c:\Program Files\Microsoft Works\WkDetect.exe
                          O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
                          O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
                          O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                          O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                          O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
                          O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                          O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
                          O4 - HKUS\S-1-5-18\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'SYSTEM')
                          O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
                          O4 - HKUS\.DEFAULT\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'Default user')
                          O4 - .DEFAULT User Startup: ddrive.js (User 'Default user')
                          O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
                          O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
                          O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
                          O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\AIM.EXE (file missing)
                          O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
                          O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
                          O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
                          O9 - Extra button: (no name) - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
                          O9 - Extra 'Tools' menuitem: Options i-Nav - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
                          O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                          O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                          O16 - DPF: Interface Chat Wanadoo - http://chat4.x-echo.com/version6/Applet/wchatsign.cab
                          O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/archives/ie4n4/teleir_cert.cab
                          O16 - DPF: {0B79F48A-E8D6-11DB-9283-E25056D89593} (F-Secure Online Scanner 3.1) - https://www.f-secure.com/en/home/support
                          O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
                          O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
                          O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
                          O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.0.cab
                          O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
                          O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                          O17 - HKLM\System\CCS\Services\Tcpip\..\{4B2C2F72-DC82-4A6C-A214-C22AAA8326C9}: NameServer = 86.64.145.148 84.103.237.148
                          O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
                          O18 - Filter hijack: text/html - (no CLSID) - (no file)
                          O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
                          O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                          O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
                          • 1
                          • 2