Publicites intempestives CID

Résolu
oxmo71 Messages postés 20 Date d'inscription   Statut Membre -  
oxmo71 Messages postés 20 Date d'inscription   Statut Membre -
Bonjour,

bonjour tout le monde, je suis envahie par des publicites intempestives commençant par CID. Impossible de m'en debarrasser. Merci de bien vouloir m'aider!!
Configuration: Windows XP
Internet Explorer 7.0

23 réponses

  • 1
  • 2
  1. green day Messages postés 26374 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   2 166
     
    Salut

    plus d'info ici : http://www.commentcamarche.net/faq/sujet 5996 comment bloquer les fenetres cid

    ++
    1
  2. djuka05 Messages postés 62 Statut Membre
     
    elles s'affichent pendant que tu va sur internet, il faut que tu bloque tes fenetres intempestives en allant dans outils, option internet, confidentialité et la tu selectionne ton niveau de bloquage et il faut que tu coche la case bloquer les fenetre publicitaire intempesive.
    0
  3. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
     
    Salut Djuka05,
    Elles s'affichent des que je suis sur internet. J'ai déjà activé le bloqueur de publicites, mais je sais pas pourquoi, celles là font de la résistance!!! C'est insupportable surtout que le contenu est plutot douteux parfois et j'ai deux enfants ..... J'ai lu plusieurs messages avec des procédures compliquées avec des lectures de compte rendu ou je ne sais quoi. En tout cas, merci pourton conseil, je vais continuer de chercher.
    0
  4. djuka05 Messages postés 62 Statut Membre
     
    Est ce que tu as le logiciel ccleaner?
    0
    1. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
       
      non , je connais meme pas. Mais pour tout te dire, j'ai lancé une recherche sur mon ordi de tous les dossiers ou fichiers contenant le terme CID et j'en ai supprimé deux..... heu....au hasard. Donc depuis un petit moment, pas de fenetre publicitaire....est ce que ça va durer?
      0
    2. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
       
      ayé, j'ai téléchargé le ccleaner. Le ménage est fait. Et les CID reviennent en force!!
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. djuka05 Messages postés 62 Statut Membre
     
    N'as tu pas un programme "Cid help" dans ajout et suppression de programme?Peux tu le desinstaller?
    0
  7. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
     
    salut Djuka05
    J'ai pas trouvé ce genre de programme. Il s'appelle forcément comme ça?
    0
  8. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
     
    Salut Green Day,
    Je te remercie de m'orienter mais je me sens pas capable d'analyser le rapport hisjackthis.... J'ai peur de faire une boulette. Allez courage, si d'ici ce soir j'ai pas d'info, j'essayerai toute seule.
    0
  9. tribun Messages postés 64900 Date d'inscription   Statut Membre Dernière intervention   12 685
     
    bonjour
    va dans ajout & supprimer ,et regarde si tu vois Sponsor CID! =pub MSN !
    si oui tu supprime !!
    0
  10. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
     
    Salut Tribun,
    Vraiment j'ai rien trouvé. Tu veux que je te fasses la liste pour voir si tu en débusques un?
    0
  11. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
     
    J'avais dejà cherché sur mon ordi tous les fichiers nommés CID. Il y en a bien mais je sais pas si je dois tous les supprimer.
    0
    1. tribun Messages postés 64900 Date d'inscription   Statut Membre Dernière intervention   12 685
       
      ben , oui , tout ce qui est de CID,tu peut tous les supprimer ,( sponsor CID )
      ce sont des pubs en rapport avec MSN !
      0
  12. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
     
    meme si c'est des fichiers CIDAEMON ?
    0
  13. green day Messages postés 26374 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   2 166
     
    Salut

    poste le rapport hijackthis ;-)

    ++
    0
    1. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
       
      Ah j'ai réussi à le faire toute seule!!!
      Un peu de lecture.....

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 19:56:43, on 02/21/2008
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v7.00 (7.00.6000.16608)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\WINDOWS\Explorer.EXE
      C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\QuickTime\qttask.exe
      C:\Program Files\Real\RealPlayer\RealPlay.exe
      C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
      C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe
      C:\Program Files\Logitech\Video\LogiTray.exe
      C:\Program Files\Keyboard & Mouse Driver\KMConfig.exe
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\Google\Google Updater\GoogleUpdater.exe
      C:\Program Files\Internet Explorer\IEXPLORE.EXE
      C:\Program Files\Internet Explorer\IEXPLORE.EXE
      C:\WINDOWS\system32\LVComS.exe
      C:\Program Files\Keyboard & Mouse Driver\KMProcess.exe
      C:\WINDOWS\system32\wscntfy.exe
      C:\Program Files\Internet Explorer\IEXPLORE.EXE
      C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
      C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.mazxmzyjankhtaetkts.uk/h2gLNLwpy_zjxNtSBdm4I_iYYrmL9sxGPDTaF3je40YQPsLg8JCUgO3jHj0qrXpC.asp
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      R3 - URLSearchHook: i-Nav IDN SearchHook - {CE000994-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
      R3 - URLSearchHook: (no name) - _{CE000994-A58C-4441-8938-744CD72AB27F} - (no file)
      O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
      O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
      O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
      O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
      O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O2 - BHO: (no name) - {9F6E41FD-3E21-1839-BE52-EF663A319101} - C:\DOCUME~1\PROPRI~1\APPLIC~1\16MEAL~1\jump comp.exe (file missing)
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
      O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
      O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton AntiVirus\NavShExt.dll
      O2 - BHO: i-Nav IDN Resolver - {CE000992-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
      O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
      O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
      O4 - HKLM\..\Run: [LXCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCFtime.dll,_RunDLLEntry@16
      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
      O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
      O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
      O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
      O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exe
      O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
      O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
      O4 - HKLM\..\Run: [Mode Load Mpeg Less] C:\Documents and Settings\All Users\Application Data\two setup mode load\Dent Upload.exe
      O4 - HKCU\..\Run: [Microsoft Works Update Detection] c:\Program Files\Microsoft Works\WkDetect.exe
      O4 - HKCU\..\Run: [meta setup] C:\DOCUME~1\PROPRI~1\APPLIC~1\KEEPCI~1\body dog.exe
      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
      O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
      O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
      O4 - HKUS\S-1-5-18\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'SYSTEM')
      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
      O4 - HKUS\.DEFAULT\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'Default user')
      O4 - .DEFAULT User Startup: ddrive.js (User 'Default user')
      O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
      O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\AIM.EXE
      O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
      O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
      O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
      O9 - Extra button: (no name) - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
      O9 - Extra 'Tools' menuitem: Options i-Nav - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O16 - DPF: Interface Chat Wanadoo - http://chat4.x-echo.com/version6/Applet/wchatsign.cab
      O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/archives/ie4n4/teleir_cert.cab
      O16 - DPF: {0B79F48A-E8D6-11DB-9283-E25056D89593} (F-Secure Online Scanner 3.1) - https://www.f-secure.com/en/home/support
      O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
      O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
      O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.0.cab
      O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
      O17 - HKLM\System\CCS\Services\Tcpip\..\{4B2C2F72-DC82-4A6C-A214-C22AAA8326C9}: NameServer = 84.103.237.144 86.64.145.144
      O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
      O18 - Filter hijack: text/html - (no CLSID) - (no file)
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
      0
  14. green day Messages postés 26374 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   2 166
     
    Salut

    * Télécharger Lopxp : (by Moe) : http://sosvirus.changelog.fr/Green_day/Lopxpsetup
    * Double cliquer sur Lopxpsetup.exe pour lancer l'installation
    * Au menu, choisir l'option 1
    * Patienter jusqu'à que l'on demande d'appuyer sur une touche, appuyer !
    * Le contenu du rapport est situé dans : C:\Programfiles\Lopxp\cid.txt

    ==> poste le stp

    ++
    0
    1. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
       
      Salut Green day
      Voici le rapport:
      # Rapport Lopxp fait le 02/23/2008 à 20:21:19
      # Exécuté dans : C:\Program Files\Lopxp
      # Version 3.08 - Maj du 15/02/2008

      Killing 'iexplore.exe'
      "C:\Program Files\Internet Explorer\IEXPLORE.EXE" (236)
      "C:\Program Files\Internet Explorer\IEXPLORE.EXE" (264)
      "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -Embedding (972)

      ========== Listing des dossiers Application Data

      +- C:\Documents and Settings\All Users\Application Data

      2007-07-12 à 08:57:21 - Adobe
      2006-02-07 à 19:09:23 - Ahead
      2007-08-24 à 12:35:37 - five each less two
      2008-02-16 à 14:43:48 - Google
      2008-02-22 à 21:43:48 - Google Updater
      2008-02-23 à 18:53:14 - Messenger Plus!
      2006-09-18 à 17:42:19 - Microsoft
      2006-03-06 à 17:49:52 - MSN Search Toolbar
      2003-01-07 à 15:48:22 - MSN6
      2006-09-23 à 07:22:24 - QuickTime
      2002-01-01 à 15:37:19 - Sbsi
      2008-01-23 à 16:37:33 - Spybot - Search & Destroy
      2002-01-01 à 21:24:55 - Symantec
      2008-02-18 à 15:54:14 - third inside atom store
      2006-05-24 à 05:47:52 - toolcopyintralicense
      2008-02-18 à 15:54:15 - two setup mode load
      2006-09-21 à 13:03:30 - Windows Genuine Advantage

      +- C:\Documents and Settings\Propri‚taire\Application Data

      2007-07-12 à 09:01:26 - Adobe
      2006-03-26 à 09:21:37 - AdobeUM
      2006-03-28 à 19:59:31 - Ahead
      2003-01-11 à 17:25:25 - Aim
      2008-02-01 à 16:36:39 - DivX
      2003-01-07 à 15:18:27 - Dossier de téléchargement Share-to-Web
      2005-01-27 à 17:07:49 - Dossier de téléchargement Share-to-Web
      2007-11-25 à 16:56:08 - FotoWire
      2008-02-18 à 07:37:42 - Google
      2006-06-18 à 13:14:59 - Help
      2007-11-08 à 17:45:43 - Identities
      2003-01-07 à 17:12:36 - InterVideo
      2008-02-18 à 15:54:35 - Keep City Wma
      2005-09-15 à 19:06:28 - Lavasoft
      2006-06-16 à 05:04:30 - Leadertech
      2004-04-07 à 14:28:31 - Macromedia
      2007-12-20 à 20:30:55 - Microsoft
      2007-12-20 à 12:17:49 - MP-Manager
      2008-02-21 à 11:59:23 - MSN6
      2005-09-03 à 10:05:35 - Shareaza
      2002-01-01 à 21:24:31 - Symantec
      2003-01-08 à 20:15:30 - VERITAS
      2007-03-15 à 19:37:43 - Weka
      2008-01-31 à 14:41:37 - Yahoo!
      2005-02-19 à 22:54:20 - Yahoo! Messenger

      +- C:\Documents and Settings\Propri‚taire\Local Settings\Application Data

      2007-07-12 à 09:01:22 - Adobe
      2006-02-08 à 19:33:06 - Ahead
      2008-02-16 à 14:43:59 - Google
      2003-01-09 à 19:32:32 - Help
      2007-11-08 à 17:45:43 - Identities
      2004-02-02 à 19:45:35 - IM
      2007-03-09 à 17:54:52 - Microsoft
      2005-01-29 à 19:32:41 - Shareaza

      ========== Listing du dossier Program Files

      +- C:\Program Files

      2008-02-03 à 09:52:31 - AC3Filter
      2007-07-12 à 08:55:25 - Adobe
      2006-04-05 à 18:34:44 - Ahead
      2005-07-12 à 19:41:54 - AIM95
      2003-01-28 à 13:13:12 - aolwc
      2008-02-19 à 14:30:35 - AVPersonal
      2008-02-20 à 07:46:50 - CCleaner
      2006-07-20 à 16:37:14 - Cegetel
      2004-02-02 à 19:30:54 - Common Files
      2008-02-21 à 12:21:43 - directx
      2008-02-21 à 12:21:44 - DivX(2)
      2002-01-01 à 15:46:53 - DLA
      2007-09-15 à 14:15:30 - Empire Interactive
      2007-07-22 à 14:38:14 - eMule
      2007-11-25 à 16:56:07 - Fichiers communs
      2004-03-29 à 18:01:20 - Gabest
      2008-02-16 à 14:43:48 - Google
      2006-11-26 à 09:01:45 - Hewlett-Packard
      2002-01-01 à 15:55:46 - Home Media Networks Limited
      2002-01-01 à 16:23:04 - hp center
      2005-11-30 à 07:47:28 - Httper
      2008-02-03 à 09:52:33 - InstallShield Installation Information
      2005-05-06 à 14:36:20 - Intel
      2008-02-14 à 05:46:21 - Internet Explorer
      2002-01-01 à 15:43:57 - InterVideo
      2007-11-06 à 10:09:42 - Jasc Software Inc
      2007-06-20 à 15:55:51 - Kazaa
      2008-02-18 à 15:53:10 - Keep City Wma
      2007-09-01 à 16:33:20 - Keyboard & Mouse Driver
      2005-09-15 à 19:05:56 - Lavasoft
      2006-09-07 à 18:44:28 - Lexmark 730 Series
      2007-11-25 à 16:56:07 - Logitech
      2008-02-23 à 19:21:27 - Lopxp
      2008-02-20 à 15:36:09 - Lx_cats
      2006-09-21 à 13:02:04 - Messenger
      2008-02-23 à 18:42:31 - MessengerPlus! 3
      2003-02-26 à 07:46:16 - Micro Application
      2007-09-15 à 14:01:21 - Microsoft AutoRoute
      2002-01-01 à 16:16:59 - Microsoft Encarta
      2002-01-02 à 01:43:34 - microsoft frontpage
      2007-09-15 à 14:12:52 - Microsoft Office
      2003-01-12 à 20:20:58 - Microsoft Picture It! 2002
      2007-09-15 à 14:13:54 - Microsoft Works
      2003-01-07 à 15:39:23 - Microsoft Works Suite 2002
      2004-05-02 à 08:31:49 - Morgan
      2006-09-18 à 17:40:25 - Movie Maker
      2007-12-20 à 20:30:12 - MPMAN
      2002-01-02 à 01:39:18 - MSN Gaming Zone
      2008-02-21 à 12:06:35 - MSN Messenger
      2005-02-20 à 02:01:33 - MSXML 4.0
      2007-06-20 à 13:53:04 - Need2Find
      2006-09-18 à 17:36:27 - NetMeeting
      2004-05-02 à 08:33:24 - Norton AntiVirus
      2008-02-22 à 08:11:48 - NRJ
      2003-08-26 à 16:09:43 - Nullsoft
      2008-02-21 à 12:24:54 - Outlook Express
      2003-01-07 à 15:11:43 - Pinnacle
      2004-02-15 à 17:55:22 - PIXELA
      2006-09-23 à 07:22:22 - QuickTime
      2003-01-07 à 15:28:27 - Real
      2004-06-29 à 03:48:07 - RecordNow
      2006-07-20 à 16:17:18 - SAGEM
      2002-01-01 à 16:19:59 - Services en ligne
      2005-12-08 à 18:04:21 - Shareaza
      2002-01-01 à 16:05:11 - Sonic
      2004-02-20 à 18:58:07 - Sony Corporation
      2008-01-23 à 16:37:05 - Spybot - Search & Destroy
      2007-04-18 à 13:15:11 - Strategy First
      2003-05-08 à 13:35:51 - Symantec
      2008-02-19 à 10:54:26 - Trend Micro
      2004-02-28 à 07:24:03 - Ubi Soft
      2004-07-18 à 01:05:57 - Uninstall Information
      2007-12-20 à 20:23:17 - USBDisk
      2005-09-24 à 10:03:13 - VeriSign
      2002-01-01 à 15:46:12 - VERITAS Software
      2003-04-05 à 14:41:07 - Viewpoint
      2005-08-31 à 16:12:45 - Wanadoo
      2004-03-11 à 19:03:14 - WinASPI
      2006-09-21 à 13:00:39 - Windows Media Player
      2008-02-21 à 11:53:11 - Windows NT
      2004-08-11 à 02:13:36 - WindowsUpdate
      2002-01-02 à 01:43:35 - xerox

      ========== Tâches planifiées

      AE34F1AB906B63D7.job: c:\docume~1\propri~1\applic~1\keepci~1\internet sect pure.exe
      FRU Task #Hewlett-Packard#Deskjet#3420.job: C:\Program Files\Hewlett-Packard\upapp\hpqfruv.exe -I "#Hewlett-Packard#Deskjet#3420"
      Norton AntiVirus - Analyser mon ordinateur.job: c:\PROGRA~1\NORTON~1\NAVW32.exe /task:C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec\NORTON~1\Tasks\mycomp.sca
      Symantec NetDetect.job: C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE

      ========== Clés registre

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "Mode Load Mpeg Less"="C:\Documents and Settings\All Users\Application Data\two setup mode load\Dent Upload.exe"

      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "meta setup"="C:\DOCUME~1\PROPRI~1\APPLIC~1\KEEPCI~1\body dog.exe"


      ========== Bloqueur popups Internet Explorer

      www.searchweb2.com
      www.coraya.com
      www.chapatiz.com
      host-domain-lookup.com
      www.host-domain-lookup.com

      ========== Suggestion ( /!\ Nécessite une interprétation.) ==========

      C:\Documents and Settings\All Users\Application Data\five each less two
      C:\Documents and Settings\All Users\Application Data\third inside atom store
      C:\Documents and Settings\All Users\Application Data\toolcopyintralicense
      C:\Documents and Settings\All Users\Application Data\two setup mode load
      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma
      C:\Program Files\Keep City Wma
      C:\WINDOWS\tasks\AE34F1AB906B63D7.job

      +- Registre:

      REGEDIT4

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "Mode Load Mpeg Less"=-

      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "meta setup"=-

      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow]
      "searchweb2.com"=-
      "www.searchweb2.com"=-
      "host-domain-lookup.com"=-
      "www.host-domain-lookup.com"=-



      - Fin du rapport -



      Mais dis moi Green Day, on est samedi soir et t'es là à aider les pauves internautes.... c'est une vocation?
      0
  15. green day Messages postés 26374 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   2 166
     
    Salut

    c'est une passion-passe temps ! ;-)

    Aller dans : Démarrer > Exécuter puis copie/colle la ligne suivante en gras :

    "%programfiles%\Lopxp\Lopxp.bat" /Fixme puis valide,

    et poste le rapport obtenu stp

    @+
    0
  16. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
     
    Heu.... ça me propose pas vraiment un rapport mais plutot de supprimer des lignes. Aucun autre choix possible.
    0
  17. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
     
    Voilà la phrase exacte:

    Confirmation de suppression
    Voulez vous vraiment supprimer
    C/documents and settings/All users/Application Data/Five each less two
    Appuyer sur y ou n
    0
  18. green day Messages postés 26374 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   2 166
     
    oups ! oui, j'ai oublié de préciser qu'il faut accepter toutes les demandes de suppression !

    ++
    0
    1. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
       
      # Rapport Lopxp fait le 02/25/2008 à 11:05:43
      # Exécuté dans : C:\Program Files\Lopxp
      # Version 3.08 - Maj du 15/02/2008


      ========== FixLog ==========


      +- C:\Documents and Settings\All Users\Application Data\five each less two
      Choix utilisateur : Suppression acceptée.
      Déplacé avec succès.

      +- C:\Documents and Settings\All Users\Application Data\five each less two
      Choix utilisateur : Suppression acceptée.
      /!\ Opération annulée, le fichier ou dossier selectionné n'exite pas.

      +- C:\Documents and Settings\All Users\Application Data\third inside atom store
      Choix utilisateur : Suppression acceptée.
      Déplacé avec succès.

      +- C:\Documents and Settings\All Users\Application Data\toolcopyintralicense
      Choix utilisateur : Suppression acceptée.
      Déplacé avec succès.

      +- C:\Documents and Settings\All Users\Application Data\two setup mode load
      Choix utilisateur : Suppression acceptée.
      Déplacé avec succès.

      +- C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma
      Choix utilisateur : Suppression acceptée.
      /!\ Opération annulée, le fichier ou dossier selectionné n'exite pas.

      +- C:\Program Files\Keep City Wma
      Choix utilisateur : Suppression acceptée.
      Déplacé avec succès.

      +- C:\WINDOWS\tasks\AE34F1AB906B63D7.job
      Choix utilisateur : Suppression acceptée.
      Déplacé avec succès.

      +- Registre :
      Nettoyage effectué.

      +- Fichiers temporaires :
      Nettoyage effectué.


      ========== Listing des dossiers Application Data

      +- C:\Documents and Settings\All Users\Application Data

      2007-07-12 à 08:57:21 - Adobe
      2006-02-07 à 19:09:23 - Ahead
      2008-02-16 à 14:43:48 - Google
      2008-02-24 à 08:03:13 - Google Updater
      2006-09-18 à 17:42:19 - Microsoft
      2006-03-06 à 17:49:52 - MSN Search Toolbar
      2003-01-07 à 15:48:22 - MSN6
      2006-09-23 à 07:22:24 - QuickTime
      2002-01-01 à 15:37:19 - Sbsi
      2008-01-23 à 16:37:33 - Spybot - Search & Destroy
      2002-01-01 à 21:24:55 - Symantec
      2006-09-21 à 13:03:30 - Windows Genuine Advantage

      +- C:\Documents and Settings\Propri‚taire\Application Data

      2007-07-12 à 09:01:26 - Adobe
      2006-03-26 à 09:21:37 - AdobeUM
      2006-03-28 à 19:59:31 - Ahead
      2003-01-11 à 17:25:25 - Aim
      2008-02-01 à 16:36:39 - DivX
      2003-01-07 à 15:18:27 - Dossier de téléchargement Share-to-Web
      2005-01-27 à 17:07:49 - Dossier de téléchargement Share-to-Web
      2007-11-25 à 16:56:08 - FotoWire
      2008-02-18 à 07:37:42 - Google
      2006-06-18 à 13:14:59 - Help
      2007-11-08 à 17:45:43 - Identities
      2003-01-07 à 17:12:36 - InterVideo
      2008-02-18 à 15:54:35 - Keep City Wma
      2005-09-15 à 19:06:28 - Lavasoft
      2006-06-16 à 05:04:30 - Leadertech
      2004-04-07 à 14:28:31 - Macromedia
      2007-12-20 à 20:30:55 - Microsoft
      2007-12-20 à 12:17:49 - MP-Manager
      2008-02-21 à 11:59:23 - MSN6
      2005-09-03 à 10:05:35 - Shareaza
      2002-01-01 à 21:24:31 - Symantec
      2003-01-08 à 20:15:30 - VERITAS
      2007-03-15 à 19:37:43 - Weka
      2008-01-31 à 14:41:37 - Yahoo!
      2005-02-19 à 22:54:20 - Yahoo! Messenger

      +- C:\Documents and Settings\Propri‚taire\Local Settings\Application Data

      2007-07-12 à 09:01:22 - Adobe
      2006-02-08 à 19:33:06 - Ahead
      2008-02-16 à 14:43:59 - Google
      2003-01-09 à 19:32:32 - Help
      2007-11-08 à 17:45:43 - Identities
      2004-02-02 à 19:45:35 - IM
      2007-03-09 à 17:54:52 - Microsoft
      2005-01-29 à 19:32:41 - Shareaza

      ========== Listing du dossier Program Files

      +- C:\Program Files

      2008-02-03 à 09:52:31 - AC3Filter
      2007-07-12 à 08:55:25 - Adobe
      2006-04-05 à 18:34:44 - Ahead
      2008-02-19 à 14:30:35 - AVPersonal
      2008-02-20 à 07:46:50 - CCleaner
      2006-07-20 à 16:37:14 - Cegetel
      2004-02-02 à 19:30:54 - Common Files
      2008-02-21 à 12:21:43 - directx
      2008-02-21 à 12:21:44 - DivX(2)
      2002-01-01 à 15:46:53 - DLA
      2007-09-15 à 14:15:30 - Empire Interactive
      2007-07-22 à 14:38:14 - eMule
      2007-11-25 à 16:56:07 - Fichiers communs
      2004-03-29 à 18:01:20 - Gabest
      2008-02-16 à 14:43:48 - Google
      2006-11-26 à 09:01:45 - Hewlett-Packard
      2002-01-01 à 15:55:46 - Home Media Networks Limited
      2002-01-01 à 16:23:04 - hp center
      2005-11-30 à 07:47:28 - Httper
      2008-02-03 à 09:52:33 - InstallShield Installation Information
      2005-05-06 à 14:36:20 - Intel
      2008-02-14 à 05:46:21 - Internet Explorer
      2002-01-01 à 15:43:57 - InterVideo
      2007-11-06 à 10:09:42 - Jasc Software Inc
      2007-09-01 à 16:33:20 - Keyboard & Mouse Driver
      2005-09-15 à 19:05:56 - Lavasoft
      2006-09-07 à 18:44:28 - Lexmark 730 Series
      2007-11-25 à 16:56:07 - Logitech
      2008-02-25 à 10:07:03 - Lopxp
      2008-02-20 à 15:36:09 - Lx_cats
      2006-09-21 à 13:02:04 - Messenger
      2003-02-26 à 07:46:16 - Micro Application
      2007-09-15 à 14:01:21 - Microsoft AutoRoute
      2002-01-01 à 16:16:59 - Microsoft Encarta
      2002-01-02 à 01:43:34 - microsoft frontpage
      2007-09-15 à 14:12:52 - Microsoft Office
      2003-01-12 à 20:20:58 - Microsoft Picture It! 2002
      2007-09-15 à 14:13:54 - Microsoft Works
      2003-01-07 à 15:39:23 - Microsoft Works Suite 2002
      2004-05-02 à 08:31:49 - Morgan
      2006-09-18 à 17:40:25 - Movie Maker
      2007-12-20 à 20:30:12 - MPMAN
      2002-01-02 à 01:39:18 - MSN Gaming Zone
      2008-02-21 à 12:06:35 - MSN Messenger
      2005-02-20 à 02:01:33 - MSXML 4.0
      2007-06-20 à 13:53:04 - Need2Find
      2006-09-18 à 17:36:27 - NetMeeting
      2004-05-02 à 08:33:24 - Norton AntiVirus
      2008-02-22 à 08:11:48 - NRJ
      2003-08-26 à 16:09:43 - Nullsoft
      2008-02-21 à 12:24:54 - Outlook Express
      2003-01-07 à 15:11:43 - Pinnacle
      2004-02-15 à 17:55:22 - PIXELA
      2006-09-23 à 07:22:22 - QuickTime
      2003-01-07 à 15:28:27 - Real
      2004-06-29 à 03:48:07 - RecordNow
      2006-07-20 à 16:17:18 - SAGEM
      2002-01-01 à 16:19:59 - Services en ligne
      2005-12-08 à 18:04:21 - Shareaza
      2002-01-01 à 16:05:11 - Sonic
      2004-02-20 à 18:58:07 - Sony Corporation
      2008-01-23 à 16:37:05 - Spybot - Search & Destroy
      2007-04-18 à 13:15:11 - Strategy First
      2003-05-08 à 13:35:51 - Symantec
      2008-02-19 à 10:54:26 - Trend Micro
      2004-02-28 à 07:24:03 - Ubi Soft
      2004-07-18 à 01:05:57 - Uninstall Information
      2007-12-20 à 20:23:17 - USBDisk
      2005-09-24 à 10:03:13 - VeriSign
      2002-01-01 à 15:46:12 - VERITAS Software
      2003-04-05 à 14:41:07 - Viewpoint
      2005-08-31 à 16:12:45 - Wanadoo
      2004-03-11 à 19:03:14 - WinASPI
      2006-09-21 à 13:00:39 - Windows Media Player
      2008-02-21 à 11:53:11 - Windows NT
      2004-08-11 à 02:13:36 - WindowsUpdate
      2002-01-02 à 01:43:35 - xerox

      ========== Tâches planifiées

      FRU Task #Hewlett-Packard#Deskjet#3420.job: C:\Program Files\Hewlett-Packard\upapp\hpqfruv.exe -I "#Hewlett-Packard#Deskjet#3420"
      Norton AntiVirus - Analyser mon ordinateur.job: c:\PROGRA~1\NORTON~1\NAVW32.exe /task:C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec\NORTON~1\Tasks\mycomp.sca
      Symantec NetDetect.job: C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE

      ========== Clés registre


      ========== Bloqueur popups Internet Explorer

      www.chapatiz.com

      ========== Suggestion ( /!\ Nécessite une interprétation.) ==========

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma

      +- Registre : Aucune suggestion.


      - Fin du rapport -
      0
  19. green day Messages postés 26374 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   2 166
     
    très bien, fais ce qui est indiqué ici stp :

    http://www.commentcamarche.net/faq/sujet 3174 virus methode preliminaire de desinfection version fr

    ++
    0
    1. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
       
      --------------------------------------------------------
      AVG Anti-Spyware - Rapport d'analyse
      ---------------------------------------------------------

      + Créé à: 16:37:43 02/25/2008

      + Résultat de l'analyse:



      HKU\S-1-5-21-2505351160-3403473811-3433162778-1003\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser\\{74CC49F7-EB32-4A08-B204-948962A6E3DB} -> Adware.RogueSuspect : Nettoyé.
      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1485\A0693177.exe -> Dialer.Generic : Nettoyé.


      Fin du rapport
      0
    2. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
       
      Scan path: A:\;C:\;D:\;E:\;F:\;







      Statistics

      Time
      01:03:43

      Files
      219180

      Folders
      4720

      Boot Sectors
      3

      Archives
      18607

      Packed Files
      11932




      Results

      Identified Viruses
      19

      Infected Files
      178

      Suspect Files
      0

      Warnings
      0

      Disinfected
      0

      Deleted Files
      178




      Engines Info

      Virus Definitions
      983517

      Engine build
      AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)

      Scan plugins
      16

      Archive plugins
      41

      Unpack plugins
      7

      E-mail plugins
      6

      System plugins
      5




      Scan Settings

      First Action
      Disinfect

      Second Action
      Delete

      Heuristics
      Yes

      Enable Warnings
      Yes

      Scanned Extensions
      *;

      Exclude Extensions


      Scan Emails
      Yes

      Scan Archives
      Yes

      Scan Packed
      Yes

      Scan Files
      Yes

      Scan Boot
      Yes




      Scanned File
      Status

      C:\Documents and Settings\NetworkService\Application Data\Keep City Wma\body dog.exe
      Infected with: Trojan.FatObfus.Gen

      C:\Documents and Settings\NetworkService\Application Data\Keep City Wma\body dog.exe
      Disinfection failed

      C:\Documents and Settings\NetworkService\Application Data\Keep City Wma\body dog.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bbhbtbdh.exe
      Infected with: Trojan.Swizzor.X

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bbhbtbdh.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bhntrpee.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bhntrpee.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bhntrpee.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bxcpdays.exe
      Infected with: Trojan.Swizzor.DH

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bxcpdays.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\bxcpdays.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\chbprkis.exe
      Infected with: Trojan.FatObfus.AG

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\chbprkis.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cmrzqygs.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cmrzqygs.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cmrzqygs.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cvzpwbgq.exe
      Infected with: Trojan.FatObfus.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cvzpwbgq.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cvzpwbgq.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cwwqmwii.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\cwwqmwii.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\dwsfxwvq.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\dwsfxwvq.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\eyigijyx.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\eyigijyx.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\eyigijyx.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fgltqube.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fgltqube.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fnybczbi.exe
      Infected with: Trojan.Downloader.Swizzor.DV

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fnybczbi.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fqokkldt.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fqokkldt.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fzzvhsdg.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fzzvhsdg.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\fzzvhsdg.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\gogstgvi.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\gogstgvi.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\gogstgvi.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hgmosiis.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hgmosiis.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hthkdamo.exe
      Infected with: Trojan.Swizzor.AX

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hthkdamo.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\htocnfqv.exe
      Infected with: Trojan.FatObfus.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\htocnfqv.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\htocnfqv.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hyzdqzhq.exe
      Infected with: Trojan.Downloader.Swizzor.DF

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\hyzdqzhq.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ihdjiult.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ihdjiult.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ihdjiult.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\jimtyjec.exe
      Infected with: Trojan.FatObfus.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\jimtyjec.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\jimtyjec.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\juttwubn.exe
      Infected with: Trojan.FatObfus.AF

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\juttwubn.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kbmvvpxt.exe
      Infected with: Trojan.Obfus.6.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kbmvvpxt.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kbmvvpxt.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kdrzjsti.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kdrzjsti.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kdrzjsti.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kiheeypg.exe
      Infected with: Trojan.Swizzor.X

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\kiheeypg.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ljfrdkdj.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ljfrdkdj.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llpfokut.exe
      Infected with: Trojan.Obfus.6.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llpfokut.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llpfokut.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llxnkvdp.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llxnkvdp.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\llxnkvdp.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\lslibfbs.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\lslibfbs.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\mrzdjysh.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\mrzdjysh.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ngfluxjc.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ngfluxjc.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\odjofopr.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\odjofopr.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ogwqcqpg.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ogwqcqpg.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\opcwhgwj.exe
      Infected with: Trojan.Swizzor.X

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\opcwhgwj.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\pzgggjaj.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\pzgggjaj.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\rvdoetoh.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\rvdoetoh.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\rvdoetoh.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sbbgcnjm.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sbbgcnjm.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sbbgcnjm.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sescpxsc.exe
      Infected with: Trojan.Swizzor.X

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\sescpxsc.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\skgvxcfq.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\skgvxcfq.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tewaxnzv.exe
      Infected with: GenPack:Trojan.Downloader.Swizzor.DV

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tewaxnzv.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tfhfslvw.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tfhfslvw.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tsjvwgto.exe
      Infected with: Trojan.Obfus.6.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tsjvwgto.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\tsjvwgto.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uajrsfyc.exe
      Infected with: GenPack:Trojan.Downloader.Swizzor.DV

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uajrsfyc.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uwdilvdt.exe
      Infected with: Trojan.Downloader.Swizzor.DV

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\uwdilvdt.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\vmgywnrn.exe
      Infected with: Trojan.Swizzor.AX

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\vmgywnrn.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wgujswvm.exe
      Infected with: Trojan.Swizzor.X

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wgujswvm.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wumxajdt.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\wumxajdt.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ybpckjla.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ybpckjla.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ybpckjla.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ykhihirq.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\ykhihirq.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\yvrgwtzp.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\yvrgwtzp.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zeyhqkwq.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zeyhqkwq.exe
      Deleted

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zjbuijmo.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zjbuijmo.exe
      Disinfection failed

      C:\Documents and Settings\Propriétaire\Application Data\Keep City Wma\zjbuijmo.exe
      Deleted

      C:\hp\bin\ProcessLogger.exe
      Infected with: DeepScan:Generic.Malware.P!.5F1AEB08

      C:\hp\bin\ProcessLogger.exe
      Disinfection failed

      C:\hp\bin\ProcessLogger.exe
      Deleted

      C:\hp\bin\Terminator.exe
      Detected with: Application.Prockill.B

      C:\hp\bin\Terminator.exe
      Disinfection failed

      C:\hp\bin\Terminator.exe
      Deleted

      C:\Program Files\AVPersonal\INFECTED\A0124841.EXE.VIR
      Infected with: Trojan.Swizzor.X

      C:\Program Files\AVPersonal\INFECTED\A0124841.EXE.VIR
      Deleted

      C:\Program Files\AVPersonal\INFECTED\A0124857.EXE.VIR
      Infected with: Trojan.Downloader.Swizzor.CB

      C:\Program Files\AVPersonal\INFECTED\A0124857.EXE.VIR
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Bashcity.exe
      Infected with: Trojan.FatObfus.Gen

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Bashcity.exe
      Disinfection failed

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Bashcity.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\DEAD LINK.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\DEAD LINK.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Fork trans.exe
      Infected with: Trojan.FatObfus.Gen

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Fork trans.exe
      Disinfection failed

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Fork trans.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Frag mp3.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Program Files\Lopxp\Sauvegardes\third inside atom store\Frag mp3.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Beep The.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Beep The.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Blehlicense.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Blehlicense.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\boob dent.exe
      Infected with: Trojan.Swizzor.AX

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\boob dent.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Default Vga.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Default Vga.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\exit real.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\exit real.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Frag sixth.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Frag sixth.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\gpl burn.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\gpl burn.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Info pop.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Info pop.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\jumpthunk.exe
      Infected with: Trojan.Downloader.Swizzor.DV

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\jumpthunk.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Less Part.exe
      Infected with: Trojan.Downloader.Swizzor.DF

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Less Part.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\license barb.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\license barb.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\log burn.exe
      Infected with: Trojan.Swizzor.X

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\log burn.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Media software.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Media software.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\MemoDefault.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\MemoDefault.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Mixteam.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Mixteam.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\online bat.exe
      Infected with: Trojan.Swizzor.X

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\online bat.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\rule flap.exe
      Infected with: Trojan.Swizzor.X

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\rule flap.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Safe sign.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Safe sign.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Sign Flag.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Sign Flag.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\site mix.exe
      Infected with: Trojan.Swizzor.X

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\site mix.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Skipthunk.exe
      Infected with: Trojan.Swizzor.AX

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\Skipthunk.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\titlegrey.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\titlegrey.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\TransLies.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\TransLies.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WAIT MAPI.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WAIT MAPI.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WINBOOK.exe
      Infected with: Trojan.Swizzor.X

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\WINBOOK.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\wma title.exe
      Infected with: Trojan.Downloader.Swizzor.DV

      C:\Program Files\Lopxp\Sauvegardes\toolcopyintralicense\wma title.exe
      Deleted

      C:\Program Files\Lopxp\Sauvegardes\two setup mode load\thunk manager.exe
      Infected with: Trojan.FatObfus.AF

      C:\Program Files\Lopxp\Sauvegardes\two setup mode load\thunk manager.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690579.exe
      Infected with: Trojan.FatObfus.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690579.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690579.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690580.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690580.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690581.exe
      Infected with: Trojan.FatObfus.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690581.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690581.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690582.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1478\A0690582.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693284.exe
      Infected with: Trojan.FatObfus.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693284.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693284.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693285.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693285.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693286.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693286.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693286.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693287.exe
      Infected with: Trojan.Swizzor.DH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693287.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693287.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693288.exe
      Infected with: Trojan.FatObfus.AG

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693288.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693289.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693289.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693289.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693290.exe
      Infected with: Trojan.FatObfus.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693290.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693290.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693291.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693291.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693292.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693292.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693293.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693293.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693293.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693294.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693294.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693295.exe
      Infected with: Trojan.Downloader.Swizzor.DV

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693295.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693296.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693296.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693297.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693297.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693297.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693298.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693298.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693298.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693299.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693299.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693300.exe
      Infected with: Trojan.Swizzor.AX

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693300.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693301.exe
      Infected with: Trojan.FatObfus.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693301.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693301.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693302.exe
      Infected with: Trojan.Downloader.Swizzor.DF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693302.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693303.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693303.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693303.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693304.exe
      Infected with: Trojan.FatObfus.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693304.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693304.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693305.exe
      Infected with: Trojan.FatObfus.AF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693305.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693306.exe
      Infected with: Trojan.Obfus.6.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693306.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693306.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693307.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693307.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693307.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693308.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693308.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693309.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693309.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693310.exe
      Infected with: Trojan.Obfus.6.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693310.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693310.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693311.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693311.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693311.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693312.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693312.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693313.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693313.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693314.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693314.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693315.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693315.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693316.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693316.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693317.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693317.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693318.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693318.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693319.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693319.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693319.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693320.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693320.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693320.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693321.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693321.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693322.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693322.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693323.exe
      Infected with: GenPack:Trojan.Downloader.Swizzor.DV

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693323.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693324.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693324.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693325.exe
      Infected with: Trojan.Obfus.6.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693325.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693325.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693326.exe
      Infected with: GenPack:Trojan.Downloader.Swizzor.DV

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693326.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693327.exe
      Infected with: Trojan.Downloader.Swizzor.DV

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693327.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693328.exe
      Infected with: Trojan.Swizzor.AX

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693328.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693329.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693329.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693330.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693330.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693331.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693331.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693331.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693332.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693332.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693333.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693333.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693334.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693334.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693335.exe
      Infected with: Trojan.FatObfus.2.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693335.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693335.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693336.exe
      Infected with: DeepScan:Generic.Malware.P!.5F1AEB08

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693336.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693336.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693337.exe
      Detected with: Application.Prockill.B

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693337.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693337.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693338.exe
      Infected with: Trojan.FatObfus.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693338.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693338.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693339.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693339.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693340.exe
      Infected with: Trojan.FatObfus.Gen

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693340.exe
      Disinfection failed

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693340.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693341.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693341.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693342.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693342.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693343.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693343.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693344.exe
      Infected with: Trojan.Swizzor.AX

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693344.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693345.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693345.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693346.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693346.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693347.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693347.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693348.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693348.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693349.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693349.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693350.exe
      Infected with: Trojan.Downloader.Swizzor.DV

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693350.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693351.exe
      Infected with: Trojan.Downloader.Swizzor.DF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693351.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693352.exe
      Infected with: GenPack:Trojan.Swizzor.GI

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693352.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693353.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693353.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693354.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693354.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693355.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693355.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693356.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693356.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693357.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693357.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693358.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693358.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693359.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693359.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693360.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693360.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693361.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693361.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693362.exe
      Infected with: Trojan.Swizzor.AX

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693362.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693363.exe
      Infected with: GenPack:Trojan.Swizzor.HH

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693363.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693364.exe
      Infected with: Trojan.Downloader.Swizzor.DE

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693364.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693365.exe
      Infected with: GenPack:Trojan.Swizzor.BF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693365.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693366.exe
      Infected with: Trojan.Swizzor.X

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693366.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693367.exe
      Infected with: Trojan.Downloader.Swizzor.DV

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693367.exe
      Deleted

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693368.exe
      Infected with: Trojan.FatObfus.AF

      C:\System Volume Information\_restore{5C1DC89A-9FE9-48CF-90DE-1EAEB9DEE399}\RP1487\A0693368.exe
      Deleted

      C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0006
      Detected with: Adware.Navipromo.BYH

      C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0006
      Deleted

      C:\WINDOWS\pack.epk=>(NSIS 2g)
      Update failed

      C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0014=>(NSIS g)=>lzma_solid_nsis0002
      Detected with: Adware.Navipromo.BYH

      C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0014=>(NSIS g)=>lzma_solid_nsis0002
      Deleted

      C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0014=>(NSIS g)
      Update failed
      0
  20. oxmo71 Messages postés 20 Date d'inscription   Statut Membre
     
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 17:56:23, on 02/25/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16608)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Real\RealPlayer\RealPlay.exe
    C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
    C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\Keyboard & Mouse Driver\KMConfig.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\system32\LVComS.exe
    C:\Program Files\Google\Google Updater\GoogleUpdater.exe
    C:\Program Files\Keyboard & Mouse Driver\KMProcess.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.mazxmzyjankhtaetkts.uk/h2gLNLwpy_zjxNtSBdm4I_iYYrmL9sxGPDTaF3je40YQPsLg8JCUgO3jHj0qrXpC.asp
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://actus.sfr.fr
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - URLSearchHook: i-Nav IDN SearchHook - {CE000994-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
    R3 - URLSearchHook: (no name) - _{CE000994-A58C-4441-8938-744CD72AB27F} - (no file)
    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: (no name) - {9F6E41FD-3E21-1839-BE52-EF663A319101} - C:\DOCUME~1\PROPRI~1\APPLIC~1\16MEAL~1\jump comp.exe (file missing)
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton AntiVirus\NavShExt.dll
    O2 - BHO: i-Nav IDN Resolver - {CE000992-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [LXCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCFtime.dll,_RunDLLEntry@16
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [KMCONFIG] C:\Program Files\Keyboard & Mouse Driver\StartAutorun.exe KMConfig.exe
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKCU\..\Run: [Microsoft Works Update Detection] c:\Program Files\Microsoft Works\WkDetect.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\S-1-5-18\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - HKUS\.DEFAULT\..\RunOnce: [Suite] regedit -s c:\windows\temp\adj_hp.reg (User 'Default user')
    O4 - .DEFAULT User Startup: ddrive.js (User 'Default user')
    O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM95\AIM.EXE (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
    O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
    O9 - Extra button: (no name) - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
    O9 - Extra 'Tools' menuitem: Options i-Nav - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: Interface Chat Wanadoo - http://chat4.x-echo.com/version6/Applet/wchatsign.cab
    O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/archives/ie4n4/teleir_cert.cab
    O16 - DPF: {0B79F48A-E8D6-11DB-9283-E25056D89593} (F-Secure Online Scanner 3.1) - https://www.f-secure.com/en/home/support
    O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
    O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
    O16 - DPF: {88764F69-3831-4EC1-B40B-FF21D8381345} (AdVerifierADPCtrl Class) - https://static.impots.gouv.fr/tdir/static/adpform/AdSignerADP-1.0.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{4B2C2F72-DC82-4A6C-A214-C22AAA8326C9}: NameServer = 86.64.145.148 84.103.237.148
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O18 - Filter hijack: text/html - (no CLSID) - (no file)
    O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - C:\Program Files\Keyboard & Mouse Driver\KMWDSrv.exe
    0
  • 1
  • 2