Dsl j'ai zappé la copie de hijacthis
karazoumba
-
^^Marie^^ Messages postés 126523 Date d'inscription Statut Membre Dernière intervention -
^^Marie^^ Messages postés 126523 Date d'inscription Statut Membre Dernière intervention -
Bonjour,
J'ai un message d'erreur du type your computer was infected byunknown trojan. It's dangerous for your system!
pouvez m'aider svp.
je vous copie le rapport hijackthis.
merci d'avance.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:39:19, on 27/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Apoint\Apoint.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Apoint\Apntex.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Media Player Codec - {3084A75F-5350-4D8B-BC5F-6B378035C133} - C:\WINDOWS\dsaip32b.dll
O2 - BHO: (no name) - {D7515C61-A66C-4319-A0E0-D416CB8059E3} - C:\Program Files\Fichiers communs\Relive.dll (file missing)
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = satese37.local
O17 - HKLM\Software\..\Telephony: DomainName = satese37.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = satese37.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = satese37.local
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
J'ai un message d'erreur du type your computer was infected byunknown trojan. It's dangerous for your system!
pouvez m'aider svp.
je vous copie le rapport hijackthis.
merci d'avance.
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:39:19, on 27/03/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Apoint\Apoint.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Apoint\Apntex.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Media Player Codec - {3084A75F-5350-4D8B-BC5F-6B378035C133} - C:\WINDOWS\dsaip32b.dll
O2 - BHO: (no name) - {D7515C61-A66C-4319-A0E0-D416CB8059E3} - C:\Program Files\Fichiers communs\Relive.dll (file missing)
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = satese37.local
O17 - HKLM\Software\..\Telephony: DomainName = satese37.local
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = satese37.local
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = satese37.local
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
A voir également:
- Dsl j'ai zappé la copie de hijacthis
- Copie cachée - Guide
- Super copie - Télécharger - Gestion de fichiers
- Copie écran samsung - Guide
- Copie disque dur - Guide
- Copie rapide - Télécharger - Gestion de fichiers
4 réponses
c'est encore un "false positive", une fausse alerte sur dsaip32b.dll . Vous confirmez que c'est bien ce fichier et que voius utilsez Avaast 4? Décidément judqu'à présent à part les false positive, enfin bref...
Pour être sûr scannez en ligne avec les scanners gratuits de bit defender ou de nod32, spécifiez le dossier pour ne pas perdre de temps et dites-nous s'il s'agit bien d'un "Trojan.FakeAlert"
Pour être sûr scannez en ligne avec les scanners gratuits de bit defender ou de nod32, spécifiez le dossier pour ne pas perdre de temps et dites-nous s'il s'agit bien d'un "Trojan.FakeAlert"
2 pbm détecté, faire une recherche des liens sur ton pc et de la provenance sur le net; avant de supprimer la ligne ou mieux le programme d'origine :
O2 - BHO: Media Player Codec - {3084A75F-5350-4D8B-BC5F-6B378035C133} - C:\WINDOWS\dsaip32b.dll
Extremely nasty Programme inconnu.
O2 - BHO: (no name) - {D7515C61-A66C-4319-A0E0-D416CB8059E3} - C:\Program Files\Fichiers communs\Relive.dll (file missing)
Effacer à tout prix !
Inscription superflue (car sans effet) qui peut donc être effacée ! Relive.dll - Parasite of Chinese origin, detected by Kaspersky, https://www.kaspersky.fr/ antivirus as Trojan-Downloader.Win32.Agent.bmo - dropped by the W32.Drom, http://www.symantec.com/security_respons e/writeup.jsp?docid=2007-052305-2411-99& tabid
avast en antivirus et quel est ton parefeu?
O2 - BHO: Media Player Codec - {3084A75F-5350-4D8B-BC5F-6B378035C133} - C:\WINDOWS\dsaip32b.dll
Extremely nasty Programme inconnu.
O2 - BHO: (no name) - {D7515C61-A66C-4319-A0E0-D416CB8059E3} - C:\Program Files\Fichiers communs\Relive.dll (file missing)
Effacer à tout prix !
Inscription superflue (car sans effet) qui peut donc être effacée ! Relive.dll - Parasite of Chinese origin, detected by Kaspersky, https://www.kaspersky.fr/ antivirus as Trojan-Downloader.Win32.Agent.bmo - dropped by the W32.Drom, http://www.symantec.com/security_respons e/writeup.jsp?docid=2007-052305-2411-99& tabid
avast en antivirus et quel est ton parefeu?
ce message vient d'un éditeur de spyware, ne jamais cliquer sur l'image mais sur la croix pour supprimer la pub
Trojan-PWS.Delf.IGL
Type Malware
Type Description Malware ("malicious software") consists of software with clearly malicious, hostile, or harmful functionality or behavior and that is used to compromise and endanger individual PCs as well as entire networks.
Category Trojan
Category Description Trojan is a general term for malicious software that is installed under false or deceptive pretenses or is installed without the user's full knowledge and consent. Most Trojans exhibit some form of malicious, hostile, or harmful functionality or behavior.
Level High
Level Description High risks are typically installed without user interaction through security exploits, and can severely compromise system security. Such risks may open illicit network connections, use polymorphic tactics to self-mutate, disable security software, modify system files, and install additional malware. These risks may also collect and transmit personally identifiable information (PII) without your consent and severely degrade the performance and stability of your computer.
Advice Type Remove
Release Date Nov 7 2007
Last updated on Mar 13 2008
File Traces
Type Malware
Type Description Malware ("malicious software") consists of software with clearly malicious, hostile, or harmful functionality or behavior and that is used to compromise and endanger individual PCs as well as entire networks.
Category Trojan
Category Description Trojan is a general term for malicious software that is installed under false or deceptive pretenses or is installed without the user's full knowledge and consent. Most Trojans exhibit some form of malicious, hostile, or harmful functionality or behavior.
Level High
Level Description High risks are typically installed without user interaction through security exploits, and can severely compromise system security. Such risks may open illicit network connections, use polymorphic tactics to self-mutate, disable security software, modify system files, and install additional malware. These risks may also collect and transmit personally identifiable information (PII) without your consent and severely degrade the performance and stability of your computer.
Advice Type Remove
Release Date Nov 7 2007
Last updated on Mar 13 2008
File Traces
Merci de bien vouloir me donner une marche à suivre simple pour la résolution de pb, je ne suis pas un géni de l'info.
Merci.
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: Chinese missile shot down USA satellite][From: Leo Navarro]=>Full Story.exe
Infected with: Trojan.Generic.20242
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: Chinese missile shot down USA satellite][From: Leo Navarro]=>Full Story.exe
Deleted
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst
Update failed
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: The commander of a U.S. nuclear submarine lunch the rocket by mistake.][From: Lucero]=>More Here.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: The commander of a U.S. nuclear submarine lunch the rocket by mistake.][From: Lucero]=>More Here.exe
Disinfection failed
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: The commander of a U.S. nuclear submarine lunch the rocket by mistake.][From: Lucero]=>More Here.exe
Deleted
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst
Update failed
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: [SPAM] The Valentines Angel][From: wiry]=>greeting postcard.exe
Infected with: Trojan.Peed.GA
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: [SPAM] The Valentines Angel][From: wiry]=>greeting postcard.exe
Deleted
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst
Update failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP117\A0028379.exe
Infected with: Trojan.DNSChanger.RP
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP117\A0028379.exe
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP117\A0028379.exe
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014047.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014047.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014047.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014048.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014048.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014048.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014059.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014059.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014059.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014060.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014060.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014060.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014110.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014110.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014110.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014111.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014111.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014111.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015121.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015121.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015121.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015122.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015122.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015122.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015134.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015134.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015134.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015135.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015135.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015135.dll
Deleted
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: Chinese missile shot down USA satellite][From: Leo Navarro]=>Full Story.exe
Infected with: Trojan.Generic.20242
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: Chinese missile shot down USA satellite][From: Leo Navarro]=>Full Story.exe
Deleted
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst
Update failed
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: The commander of a U.S. nuclear submarine lunch the rocket by mistake.][From: Lucero]=>More Here.exe
Infected with: Trojan.Peed.Gen
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: The commander of a U.S. nuclear submarine lunch the rocket by mistake.][From: Lucero]=>More Here.exe
Disinfection failed
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: The commander of a U.S. nuclear submarine lunch the rocket by mistake.][From: Lucero]=>More Here.exe
Deleted
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst
Update failed
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: [SPAM] The Valentines Angel][From: wiry]=>greeting postcard.exe
Infected with: Trojan.Peed.GA
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst=>[Subject: [SPAM] The Valentines Angel][From: wiry]=>greeting postcard.exe
Deleted
C:\Documents and Settings\thomas\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst
Update failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP117\A0028379.exe
Infected with: Trojan.DNSChanger.RP
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP117\A0028379.exe
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP117\A0028379.exe
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014047.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014047.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014047.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014048.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014048.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP77\A0014048.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014059.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014059.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014059.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014060.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014060.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014060.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014110.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014110.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014110.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014111.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014111.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP78\A0014111.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015121.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015121.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015121.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015122.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015122.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015122.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015134.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015134.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015134.dll
Deleted
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015135.dll
Infected with: Trojan.PWS.Delf.IGL
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015135.dll
Disinfection failed
C:\System Volume Information\_restore{7F59585C-8A84-4BF7-B546-1BC6177D39A7}\RP79\A0015135.dll
Deleted