I worm bagle, trojan horse downloader generic

mimicaillou Messages postés 6 Statut Membre -  
g!rly Messages postés 18462 Statut Contributeur -
Bonjour,
j'ai un gros souci: mon pc est infecté par ces 2 virus I worm bagle, trojan horse downloader generic 7 FCN et rien n'y fait:
j'ai essayé un scan avec AVG: il me bloque les virus mais ils réapparaissent aussitôt, j'ai essayé plusieurs méthodes inscrites sur le forum (désactiver la restauration système puis faire un scan bitdefender et réactiver le scan; je ne peux pas télécharger hijackthis (les virus me les bloquent je suppose); je n'arrive pas non plus à télécharger antivir: bref, je suis complètement vérollé et je ne m'y connais pas trop... l'ordi rame complètement
svp, aidez moi!!

merci d'avance de vos réponses
A voir également:

12 réponses

jedetestelesvirus Messages postés 95 Statut Membre 3
 
Va chercher smitfraudfix ici: http://siri.urz.free.fr/Fix/ puis fait une analyse et poste. Si tu ne peux pas prends le sur un autre ordi
0
g!rly Messages postés 18462 Statut Contributeur 406
 
salut
smitfraudfix ne va rien arranger...
0
mimicaillou Messages postés 6 Statut Membre
 
SmitFraudFix v2.322

Rapport fait à 22:20:26,09, 25/05/2008
Executé à partir de C:\Documents and Settings\sz\Bureau\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal

»»»»»»»»»»»»»»»»»»»»»»»» Process

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\mHotkey.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\Dit.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\WINDOWS\DitExp.exe
C:\PROGRA~1\MI948F~1\GAMECO~1\Common\SWTrayV4.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\DvzCommon\DvzMsgr.exe
C:\Program Files\Palm\HOTSYNC.EXE
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\AVG\AVG8\avgui.exe
C:\Program Files\AVG\AVG8\avgscanx.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\cmd.exe

»»»»»»»»»»»»»»»»»»»»»»»» hosts


»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\sz


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\sz\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\sz\Favoris


»»»»»»»»»»»»»»»»»»»»»»»» Bureau


»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues


»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"


»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» VACFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="avgrsstx.dll"
"LoadAppInit_DLLs"=dword:00000001


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» Rustock



»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: VIA Rhine II Fast Ethernet Adapter
DNS Server Search Order: 212.27.54.252
DNS Server Search Order: 212.27.53.252

HKLM\SYSTEM\CCS\Services\Tcpip\..\{DB80232F-BA86-4CFD-AE8F-F808162F4F9E}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS1\Services\Tcpip\..\{DB80232F-BA86-4CFD-AE8F-F808162F4F9E}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS2\Services\Tcpip\..\{DB80232F-BA86-4CFD-AE8F-F808162F4F9E}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=212.27.54.252 212.27.53.252


»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll


»»»»»»»»»»»»»»»»»»»»»»»» Fin

moi j'y comprend rien mais si vous oui...!
0
g!rly Messages postés 18462 Statut Contributeur 406
 
salut,

tu es visiblement infecté par bagle

Télécharge ELIBAGLA en bas de cette page
http://www.zonavirus.com/datos/descargas/95/elibagla.asp (clique sur le bouton "Descargar Elibagla") sur ton bureau.

Lance-le, de préférence en mode sans échec si tu en as la possibilité, en mode normal dans le cas contraire. Patiente le temps du scan.
Lorsqu'il a terminé, poste le contenu du fichier infoSat.txt qui se trouve dans Poste de travail > Disque C:\
Et par la même occasion, précise si tu peux à nouveau démarrer en mode sans échec.

***Ne pas rebooter en passant par msconfig.

Comment redémarrer en mode sans echec?

Tu redemarre le pc et tapote la touche F8 des le début de l allumage sans t´arrêter.
Une fenêtre sur fond noir va s’ouvrir, tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau si il n y a pas toutes les couleurs et autres c´est normal!
Ps : si F8 ne marche pas utilise la touche F5.

@+
0
mimicaillou Messages postés 6 Statut Membre
 
quand je charge sur ton lien, cela me donne un fichier nommé "HLDRRR.EXE.Muestra EliBagle v11.41" mais je ne peux pas le lancer, je fais comment?
0
g!rly Messages postés 18462 Statut Contributeur 406
 
que se passe t-il quand t´essaie de le lancer ?
0
mimicaillou Messages postés 6 Statut Membre
 
ça y est j'ai fait ce que tu m'as dit mais en mode normal, l'ordi n'arrivait pas à redémarrer en mode sans échec. voilà ce que ça dit:
Sun May 25 22:12:12 2008
EliBagle v11.41 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 22 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle Acceso Denegado.

Sun May 25 22:13:01 2008
EliBagle v11.41 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 22 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle Acceso Denegado.

Sun May 25 22:13:40 2008
EliBagle v11.41 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 22 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle Acceso Denegado.

Sun May 25 22:14:37 2008
EliBagle v11.41 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 22 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle Acceso Denegado.

Sun May 25 22:32:25 2008
EliBagle v11.41 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 22 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle Acceso Denegado.
C:\WINDOWS\SYSTEM32\DRIVERS\HLDRRR.EXE --> Bagle Acceso Denegado.
C:\DOCUMENTS AND SETTINGS\SZ\APPLICATION DATA\M\FLEC006.EXE --> Bagle Acceso Denegado.
C:\DOCUMENTS AND SETTINGS\SZ\APPLICATION DATA\M\LIST.OCT --> Eliminado Bagle
Restaurada Clave: "SafeBoot\Minimal y Network"
Reinicie para Completar la Limpieza.

Sun May 25 22:33:27 2008
EliBagle v11.41 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 22 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\

Nº Total de Directorios: 6520
Nº Total de Ficheros: 80385
Nº de Ficheros Analizados: 15166
Nº de Ficheros Infectados: 0
Nº de Ficheros Limpiados: 0

Sun May 25 22:52:06 2008
EliBagle v11.41 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 22 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad D:\

Nº Total de Directorios: 914
Nº Total de Ficheros: 14660
Nº de Ficheros Analizados: 107
Nº de Ficheros Infectados: 0
Nº de Ficheros Limpiados: 0

Sun May 25 22:52:49 2008
EliBagle v11.41 (c)2008 S.G.H. / Satinfo S.L. (Modificado el 22 de Mayo del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad E:\

Nº Total de Directorios: 498
Nº Total de Ficheros: 4642
Nº de Ficheros Analizados: 2052
Nº de Ficheros Infectados: 0
Nº de Ficheros Limpiados: 0
0
g!rly Messages postés 18462 Statut Contributeur 406
 
ok cool
maintenant repasse le en mode sans echec, (la fonction a ete restauré)
post le rapport
@+
0
mimicaillou Messages postés 6 Statut Membre
 
alors le mode sans échec fonctionne mais le programme elibaglia ne se lance pas, et dès que je repasse en mode normal, il se lance automatiquement!!! grrrrrrrrrr!!
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
g!rly Messages postés 18462 Statut Contributeur 406
 
essaie comme ca

1) Merci Mérillym ;-)

2) Redémarre en mode sans échec ! aide ici : http://forum.telecharger.01net.com/forum/

3) Ouvre l'invite de commande : démarrage > programme > accessoire > invite de commande ou dans outils système > invite de commande
Tape les commandes suivantes successivement :

N.B : si tu as des messages d'erreur lors de la suppression de certains fichiers, ne pas s'inquiéter, cela signifie qu'ils ne sont pas présents sur ta machine. Attention de ne pas faire de faute de frappe !

del c:\windows\system32\mdelk.exe > entrer : le fichier va s'effacer
puis
del c:\windows\system32\drivers\srosa.sys > entrer : le fichier va s'effacer
puis
del c:\windows\system32\drivers\hldrrr.exe > entrer : le fichier va s'effacer
puis
del c:\windows\system32\wintems.exe > entrer : le fichier va s'effacer
puis
del C:\DOCUMENTS AND SETTINGS\SZ\APPLICATION DATA\M\FLEC006.EXE >entrer : le fichier va s'effacer
puis
del C:\DOCUMENTS AND SETTINGS\SZ\APPLICATION DATA\M\LIST.OCT > entrer : le fichier va s'effacer

puis repasse eliblaga en mode normal et post son rapport

@+
0
mimicaillou
 
bonjour,
tout d'abord merci de ton aide.
je n'arrive toujours pas à utiliser eliblaga: windows me demande avec quel programme je veux l'ouvrir; par contre, j'ai enfin pu charger hijackthis, voila ce qu'il me met:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:53:32, on 26/05/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\mHotkey.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\Dit.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\PROGRA~1\MI948F~1\GAMECO~1\Common\SWTrayV4.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\WINDOWS\DitExp.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\WINDOWS\DvzCommon\DvzMsgr.exe
C:\Program Files\Palm\HOTSYNC.EXE
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\AVG\AVG8\avgui.exe
C:\Program Files\AVG\AVG8\avgscanx.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.tele2.fr/redirect/welcome/adsl/fra
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\System32\PSDrvCheck.exe
O4 - HKLM\..\Run: [CHotkey] mHotkey.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Dit] Dit.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [SideWinderTrayV4] C:\PROGRA~1\MI948F~1\GAMECO~1\Common\SWTrayV4.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [itype] "C:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1036
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Flash Player2] C:\DOCUME~1\sz\LOCALS~1\Temp\services.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [Tiscali] C:\Kit Tiscali\Jumbo Tiscali.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: HotSync Manager.LNK = C:\Program Files\Palm\HOTSYNC.EXE
O4 - Startup: iGoogle.url
O4 - Startup: Registration-InstantCopy.lnk = C:\Program Files\Pinnacle\Shared Files\InstantCDDVD\Pixie\RegTool.exe
O4 - Global Startup: ColorVisionStartup.lnk = C:\Program Files\ColorVision\Utility\ColorVisionStartup.exe
O4 - Global Startup: DataViz Messenger.lnk = C:\WINDOWS\DvzCommon\DvzMsgr.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.carrefour.fr/
O16 - DPF: {1FF43AD5-2262-4C2F-81D4-26D710C3F305} (VB2S Mannequin Virtuel Control) - http://mannequin.redoute.fr/activex/Mannequin.cab
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - https://www.cult3d.com/
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by134w.bay134.mail.live.com/mail/resources/MsnPUpld.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/0112acfcaf3a0d92e206/netzip/RdxIE601_fr.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {5DDCC37F-7C6B-48B8-9664-97C537920CA0} (aecviz Class) - http://www.maisonfamiliale.com/AECVIZ/npaecviz.cab
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www4.photoservice.com/aurigma/ImageUploader4.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} - http://www.inoculer.com/antivirus/Msie/bitdefender.cab
O16 - DPF: {8731163E-77B9-4F91-9122-F112521C28AF} (MMSPlayerX Class) - http://mmt.bouyguestelecom.fr/mmawap/jsp/composer/player/mmsPlayer.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {8F48147B-78D9-40F9-ACC0-BDDE59B246F4} (AccountHelper Class) - http://www.tele2mail.com/static/apps/utils/AccountHelper.cab
O16 - DPF: {983AB2CC-3D50-11D9-ADFE-00062919A34C} (ActiveXUpload.UserCtrl) - http://www.photoservice.com/activeX/newUpload.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Client de licence CA (CA_LIC_CLNT) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmt.exe
O23 - Service: Serveur de licence CA (CA_LIC_SRVR) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\lic98rmtd.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: Event Log Watch (LogWatch) - Computer Associates - C:\Program Files\CA\SharedComponents\CA_LIC\LogWatNT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
0
g!rly Messages postés 18462 Statut Contributeur 406
 
salut,

tu as fais ca ?

1) Merci Mérillym ;-)

2) Redémarre en mode sans échec ! aide ici : http://forum.telecharger.01net.com/forum/

3) Ouvre l'invite de commande : démarrage > programme > accessoire > invite de commande ou dans outils système > invite de commande
Tape les commandes suivantes successivement :

N.B : si tu as des messages d'erreur lors de la suppression de certains fichiers, ne pas s'inquiéter, cela signifie qu'ils ne sont pas présents sur ta machine. Attention de ne pas faire de faute de frappe !

del c:\windows\system32\mdelk.exe > entrer : le fichier va s'effacer
puis
del c:\windows\system32\drivers\srosa.sys > entrer : le fichier va s'effacer
puis
del c:\windows\system32\drivers\hldrrr.exe > entrer : le fichier va s'effacer
puis
del c:\windows\system32\wintems.exe > entrer : le fichier va s'effacer
puis
del C:\DOCUMENTS AND SETTINGS\SZ\APPLICATION DATA\M\FLEC006.EXE >entrer : le fichier va s'effacer
puis
del C:\DOCUMENTS AND SETTINGS\SZ\APPLICATION DATA\M\LIST.OCT > entrer : le fichier va s'effacer

@+
0
mimicaillou
 
oui, mais en "bidouillant"...!
je n'arrivait pas comme tu me l'a indiqué, cela me marquait "commande de fichier inconnue" (ou qq chose comme ça, désolé j'en fait tellement depuis hier!!). donc j'ai un autre truc que j'ai vu sur le forum: je suis passé par le registre,executer, "regedit, HKEY CURRENT USER software microsoft windows current version run et là, miracle, je suis tombé sur
c:\windows\system 32\drivers\hldrrr.exe
c:\windows\system 32\wintems.exe
C:DOCUMENTS AND SETTINGS\SZ\APPLICATION DATA\M\FLEC 0006.EXE
et j'ai supprimé ça.

ensuite j'ai fait un scan sur bit defender en mode sans échec en désactivant la restauration,
il m'a trouvé et supprimé des fichiers vérolés par Bagle, puis j'ai fait la même chose en mode normal, là il ne m'a rien trouvé, et pour être sùr, j'ai refait un scan avec AVG et là... la cata, il me retrouve des fichiers infestés par Bagle!!!
0
g!rly Messages postés 18462 Statut Contributeur 406
 
ok

tu as le rapport d´avg a me montrer stp ?

@+
0
mimicaillou
 
il n'a pas encore fini!!
0
mimicaillou
 
dès que c'est fini, je te l'envoie
0
g!rly Messages postés 18462 Statut Contributeur 406
 
ok

tu sais ce que tu peux faire..

apres le scan tu redemarre en mode sans echec et supprime manuellement les fichiers :

c:\windows\system32\mdelk.exe > entrer : le fichier va s'effacer

c:\windows\system32\drivers\srosa.sys > entrer : le fichier va s'effacer

c:\windows\system32\drivers\hldrrr.exe > entrer : le fichier va s'effacer

c:\windows\system32\wintems.exe > entrer : le fichier va s'effacer

C:\DOCUMENTS AND SETTINGS\SZ\APPLICATION DATA\M\FLEC006.EXE >entrer : le fichier va s'effacer

C:\DOCUMENTS AND SETTINGS\SZ\APPLICATION DATA\M\LIST.OCT > entrer : le fichier va s'effacer

si tu ne les trouves pas

Affiche tous les fichiers et dossiers :
Pour cela :
Clique sur démarrer/panneau de configuration/option des dossiers/affichage

Cocher afficher les dossiers cacher

Décoche la case "Masquer les fichiers protégés du système d'exploitation (recommandé)"

Décocher masquer les extensions dont le type est connu

Puis fais «Ok» pour valider les changements.

Et appliquer !

dis moi quoi

@+
0
mimicaillou
 
j'ai tout bien noté
faut désactiver avant la restauration?
j'attends la fin du scan d'avg ou non?
0
g!rly Messages postés 18462 Statut Contributeur 406
 
non desactive pas la restauration

oui att la fin d´avg et post son rapport

@+
0
mimicaillou
 
rapport d'avg:
bon courage!! je fais ce que tu m'as dit et je te donnes le résultat après @+

Scan "Scan whole computer" was finished.
Infections found:;"250"
Infected objects removed or healed;"250"
Not removed or healed.;"0"
Spyware found:;"0"
Spyware removed:;"0"
Not removed:;"0"
Warnings count:;"74"
Information count:;"0"
Scan started:;"lundi 26 mai 2008, 19:43:04"
Total object scanned:;"705681"
Time needed:;"1 hour(s) 42 minute(s) 5 second(s) "
Errors encountered:;"0"

Infections
File;"Infection";"Result"
C:\Documents and Settings\sz\Application Data\m\shared\3D_Dancing_Christmas_Teddy_Bears_1.0.zip:\3D_Dancing_Christmas_Teddy_Bears_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\3D_Dancing_Christmas_Teddy_Bears_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\4Movy_DVD_Audio_Ripper_3.5_[Key+Serial].zip:\4Movy_DVD_Audio_Ripper_3.5_[Key+Serial].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\4Movy_DVD_Audio_Ripper_3.5_[Key+Serial].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Account_Pro_Invoice_2.0.321.zip:\Account_Pro_Invoice_2.0.321.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Account_Pro_Invoice_2.0.321.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Acritum_Femitter_HTTP-FTP_Server_1.0.zip:\Acritum_Femitter_HTTP-FTP_Server_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Acritum_Femitter_HTTP-FTP_Server_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Acronis_Disk_Director_Suite_10.0_Build_2117_[Key].zip:\Acronis_Disk_Director_Suite_10.0_Build_2117_[Key].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Acronis_Disk_Director_Suite_10.0_Build_2117_[Key].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ActiveGrid.zip:\ActiveGrid.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ActiveGrid.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Adept XML to MDB Conversion Wizard 1.0.zip:\Adept XML to MDB Conversion Wizard 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Adept XML to MDB Conversion Wizard 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AdEvolver_1.01.zip:\AdEvolver_1.01.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AdEvolver_1.01.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Alpha_Blast.zip:\Alpha_Blast.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Alpha_Blast.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Altova_XMLSpy_Enterprise_Edition_2007.zip:\Altova_XMLSpy_Enterprise_Edition_2007.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Altova_XMLSpy_Enterprise_Edition_2007.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Amethyst Rain Screensaver 1.0.zip:\Amethyst Rain Screensaver 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Amethyst Rain Screensaver 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ArbsCalc_0.6.29.zip:\ArbsCalc_0.6.29.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ArbsCalc_0.6.29.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Artera_Turbo_3.40_Crack.zip:\Artera_Turbo_3.40_Crack.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Artera_Turbo_3.40_Crack.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Attachment_Auto_Saver_for_Outlook_1.zip:\Attachment_Auto_Saver_for_Outlook_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Attachment_Auto_Saver_for_Outlook_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AutoOrders 1.00.zip:\AutoOrders 1.00.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AutoOrders 1.00.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AVG.Complete.zip:\AVG.Complete.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AVG.Complete.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Boutell FastMenu 1.07.zip:\Boutell FastMenu 1.07.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Boutell FastMenu 1.07.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Box_Shot_3D_2.6_[KeyGen].zip:\Box_Shot_3D_2.6_[KeyGen].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Box_Shot_3D_2.6_[KeyGen].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Bus_Hound_5.04.zip:\Bus_Hound_5.04.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Bus_Hound_5.04.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Byte Code Viewer 1.1 (Key+Serial).zip:\Byte Code Viewer 1.1 (Key+Serial).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Byte Code Viewer 1.1 (Key+Serial).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Caddy 1.1.zip:\Caddy 1.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Caddy 1.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Cafe_Manila_Cyber_Cafe_Management_8.6.zip:\Cafe_Manila_Cyber_Cafe_Management_8.6.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Cafe_Manila_Cyber_Cafe_Management_8.6.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Catfood_CamSaver_1.10_[With_Crack].zip:\Catfood_CamSaver_1.10_[With_Crack].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Catfood_CamSaver_1.10_[With_Crack].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\CD Ripper Deluxe 2.6.zip:\CD Ripper Deluxe 2.6.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\CD Ripper Deluxe 2.6.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ChateX 1.09.zip:\ChateX 1.09.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ChateX 1.09.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ClickerAct 1.2.3.zip:\ClickerAct 1.2.3.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ClickerAct 1.2.3.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Clock_Domain_MZ_1.0.zip:\Clock_Domain_MZ_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Clock_Domain_MZ_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Data-Reports.NET 1.2.0.1.zip:\Data-Reports.NET 1.2.0.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Data-Reports.NET 1.2.0.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Desktopmetronome_Color_Picker_1.0.zip:\Desktopmetronome_Color_Picker_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Desktopmetronome_Color_Picker_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Detritus_Player_Pack_1.10.zip:\Detritus_Player_Pack_1.10.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Detritus_Player_Pack_1.10.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Dimac_CMS_XS_1.2.zip:\Dimac_CMS_XS_1.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Dimac_CMS_XS_1.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Double-V_1.zip:\Double-V_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Double-V_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\E.S.T Help Author Pro 1.65 [Key].zip:\E.S.T Help Author Pro 1.65 [Key].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\E.S.T Help Author Pro 1.65 [Key].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\EditTXT 0.0.1.zip:\EditTXT 0.0.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\EditTXT 0.0.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\eTopping Follow-Up 1.10.zip:\eTopping Follow-Up 1.10.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\eTopping Follow-Up 1.10.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Event Log Viewer Pro 2.0.zip:\Event Log Viewer Pro 2.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Event Log Viewer Pro 2.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Exposure_1.0_[Cracked].zip:\Exposure_1.0_[Cracked].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Exposure_1.0_[Cracked].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Find'n'Block_Personal_Firewall_2.2.zip:\Find'n'Block_Personal_Firewall_2.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Find'n'Block_Personal_Firewall_2.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\FireBall_FTP_2.0.0.0.zip:\FireBall_FTP_2.0.0.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\FireBall_FTP_2.0.0.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\FlashClock 1.0.zip:\FlashClock 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\FlashClock 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Freeverb3 2.1.4.zip:\Freeverb3 2.1.4.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Freeverb3 2.1.4.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GatherBird_Copy_Large_Files_2.3.zip:\GatherBird_Copy_Large_Files_2.3.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GatherBird_Copy_Large_Files_2.3.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GoGo_MP3_to_CD_Burner_1.0.zip:\GoGo_MP3_to_CD_Burner_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GoGo_MP3_to_CD_Burner_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Groupcal_2.0.zip:\Groupcal_2.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Groupcal_2.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GoogleTabs 2.3.zip:\GoogleTabs 2.3.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GoogleTabs 2.3.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Handicap_Manager_for_Excel_4.1a_Key.zip:\Handicap_Manager_for_Excel_4.1a_Key.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Handicap_Manager_for_Excel_4.1a_Key.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HandyImage_1.21.002.zip:\HandyImage_1.21.002.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HandyImage_1.21.002.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hardwood Spades 1.5 build 33.zip:\Hardwood Spades 1.5 build 33.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hardwood Spades 1.5 build 33.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HDD Low Level Format Tool 2.36.1181.zip:\HDD Low Level Format Tool 2.36.1181.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HDD Low Level Format Tool 2.36.1181.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hermetic_File_Search_2.25_Cracked.zip:\Hermetic_File_Search_2.25_Cracked.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hermetic_File_Search_2.25_Cracked.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hex_Editor_3.12.zip:\Hex_Editor_3.12.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hex_Editor_3.12.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HotcakesDB_1.zip:\HotcakesDB_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HotcakesDB_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HoursClocked-Basic 001-004-002.zip:\HoursClocked-Basic 001-004-002.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HoursClocked-Basic 001-004-002.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\How_To_Reduce_The_Winter_Heat_Bill_3.0.zip:\How_To_Reduce_The_Winter_Heat_Bill_3.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\How_To_Reduce_The_Winter_Heat_Bill_3.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IDAutomation ASP.NET Barcode Web Control 7.2.zip:\IDAutomation ASP.NET Barcode Web Control 7.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IDAutomation ASP.NET Barcode Web Control 7.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IIPImageServer_0.9.6.01.zip:\IIPImageServer_0.9.6.01.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IIPImageServer_0.9.6.01.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\InboxRULES_for_Rules_Wizard_2.11_(KeyGen).zip:\InboxRULES_for_Rules_Wizard_2.11_(KeyGen).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\InboxRULES_for_Rules_Wizard_2.11_(KeyGen).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Industrial_Audio_Editor_1.0.25.zip:\Industrial_Audio_Editor_1.0.25.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Industrial_Audio_Editor_1.0.25.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Investment Comparison 1.2.11.zip:\Investment Comparison 1.2.11.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Investment Comparison 1.2.11.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\invoiceSync 1.0.0.3.zip:\invoiceSync 1.0.0.3.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\invoiceSync 1.0.0.3.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IP2country_1.0.zip:\IP2country_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IP2country_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Kaspersky.internet.security.6.0.final.fr+crack.16-07-2007.zip:\Kaspersky.internet.security.6.0.final.fr+crack.16-07-2007.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Kaspersky.internet.security.6.0.final.fr+crack.16-07-2007.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Kirby_Icons_32_1.0.zip:\Kirby_Icons_32_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Kirby_Icons_32_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Linkman_Extreme_0.05.zip:\Linkman_Extreme_0.05.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Linkman_Extreme_0.05.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Maelstrom 1.1.zip:\Maelstrom 1.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Maelstrom 1.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mail Print 1.3.1104.zip:\Mail Print 1.3.1104.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mail Print 1.3.1104.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MapCreator Free Edition 1.0.zip:\MapCreator Free Edition 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MapCreator Free Edition 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mars_Wincleaner_1.8_beta_2_Serial.zip:\Mars_Wincleaner_1.8_beta_2_Serial.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mars_Wincleaner_1.8_beta_2_Serial.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MathAid_Precalculus_28.63_(With_Crack).zip:\MathAid_Precalculus_28.63_(With_Crack).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MathAid_Precalculus_28.63_(With_Crack).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Math_ActivityMaker_Primary_1.52a.zip:\Math_ActivityMaker_Primary_1.52a.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Math_ActivityMaker_Primary_1.52a.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MB6-288_Practice_Exam_Testing_Engine_Software_1.0.zip:\MB6-288_Practice_Exam_Testing_Engine_Software_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MB6-288_Practice_Exam_Testing_Engine_Software_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MB_Free_Numerology_Pro_Software_1.15_(KeyGen).zip:\MB_Free_Numerology_Pro_Software_1.15_(KeyGen).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MB_Free_Numerology_Pro_Software_1.15_(KeyGen).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Molecular Weight Solver 1.0.zip:\Molecular Weight Solver 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Molecular Weight Solver 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Montreal_1.zip:\Montreal_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Montreal_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Movie_Organizer_1.00_With_Crack.zip:\Movie_Organizer_1.00_With_Crack.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Movie_Organizer_1.00_With_Crack.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mp3 Duplicate Finder 1.0.zip:\Mp3 Duplicate Finder 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mp3 Duplicate Finder 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MSN_Homestar_Runner_Desktop_Buddy_1.0.zip:\MSN_Homestar_Runner_Desktop_Buddy_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MSN_Homestar_Runner_Desktop_Buddy_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MSN_Messenger_(Pocket_PC_2002)_1.zip:\MSN_Messenger_(Pocket_PC_2002)_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MSN_Messenger_(Pocket_PC_2002)_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\myBase_Networking_Edition_2.2.zip:\myBase_Networking_Edition_2.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\myBase_Networking_Edition_2.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MyNotes 1.0.0.zip:\MyNotes 1.0.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MyNotes 1.0.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MyWeb_6.5.zip:\MyWeb_6.5.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MyWeb_6.5.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\My_CPU_1.13g.zip:\My_CPU_1.13g.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\My_CPU_1.13g.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\NeDesMo 1.zip:\NeDesMo 1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\NeDesMo 1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\NexMander 0.6.2.zip:\NexMander 0.6.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\NexMander 0.6.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Nvidia_Forceware_checker_1.0.zip:\Nvidia_Forceware_checker_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Nvidia_Forceware_checker_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Operation_Flashpoint_Cold_War_Crisis_-_Retaliation_map.zip:\Operation_Flashpoint_Cold_War_Crisis_-_Retaliation_map.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Operation_Flashpoint_Cold_War_Crisis_-_Retaliation_map.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Pc Icon Extractor 3.9.zip:\Pc Icon Extractor 3.9.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Pc Icon Extractor 3.9.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Pivot_Pro_7.0_[Key].zip:\Pivot_Pro_7.0_[Key].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Pivot_Pro_7.0_[Key].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\PlezeCall_Outlook_Speed_Dialer_2.0.45.zip:\PlezeCall_Outlook_Speed_Dialer_2.0.45.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\PlezeCall_Outlook_Speed_Dialer_2.0.45.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\PowerPoint Slide Show Converter 3.1.1.5.zip:\PowerPoint Slide Show Converter 3.1.1.5.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\PowerPoint Slide Show Converter 3.1.1.5.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Power_MP3_Cutter_(MP3_Sound_Cutter)_2.5_(Patch).zip:\Power_MP3_Cutter_(MP3_Sound_Cutter)_2.5_(Patch).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Power_MP3_Cutter_(MP3_Sound_Cutter)_2.5_(Patch).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Practical_Software_SPC_2.5.2.zip:\Practical_Software_SPC_2.5.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Practical_Software_SPC_2.5.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Privacy Defender 7.0.3a (Patch).zip:\Privacy Defender 7.0.3a (Patch).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Privacy Defender 7.0.3a (Patch).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Quick_test_0.74_Revision_C2.zip:\Quick_test_0.74_Revision_C2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Quick_test_0.74_Revision_C2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Quindi_Meeting_Companion_1.5.0.1.zip:\Quindi_Meeting_Companion_1.5.0.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Quindi_Meeting_Companion_1.5.0.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ReaGif - Image Converter to Gif 2.0.zip:\ReaGif - Image Converter to Gif 2.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ReaGif - Image Converter to Gif 2.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\rebuilt.Grisoft.AVG.Anti-Spyware.7.5.0.50.serial.keygen.zip:\rebuilt.Grisoft.AVG.Anti-Spyware.7.5.0.50.serial.keygen.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\rebuilt.Grisoft.AVG.Anti-Spyware.7.5.0.50.serial.keygen.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Rising_Personal_Firewall_2006_18.45.zip:\Rising_Personal_Firewall_2006_18.45.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Rising_Personal_Firewall_2006_18.45.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SaleHoo Alert 1.2.1.zip:\SaleHoo Alert 1.2.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SaleHoo Alert 1.2.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ScanSpyware 3.8 (Crack).zip:\ScanSpyware 3.8 (Crack).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ScanSpyware 3.8 (Crack).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sci-Tek_Gallery_3D_Screensaver_1.0.8_(Key).zip:\Sci-Tek_Gallery_3D_Screensaver_1.0.8_(Key).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sci-Tek_Gallery_3D_Screensaver_1.0.8_(Key).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ServerWatch_1.0.zip:\ServerWatch_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ServerWatch_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Silent_Sword_2.zip:\Silent_Sword_2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Silent_Sword_2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SkypeAgent_1.zip:\SkypeAgent_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SkypeAgent_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SpeakMediaPro_1.00.68.zip:\SpeakMediaPro_1.00.68.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SpeakMediaPro_1.00.68.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\StickyNote_9.0.zip:\StickyNote_9.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\StickyNote_9.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Strideway Network Profile Manager 1.zip:\Strideway Network Profile Manager 1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Strideway Network Profile Manager 1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\StripShow_Screensaver_1.7.zip:\StripShow_Screensaver_1.7.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\StripShow_Screensaver_1.7.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sudoku_Latin_Squares_1.zip:\Sudoku_Latin_Squares_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sudoku_Latin_Squares_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SuperMailer 4.61.0.0781.zip:\SuperMailer 4.61.0.0781.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SuperMailer 4.61.0.0781.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Teach_Me_1.0.zip:\Teach_Me_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Teach_Me_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sympatico MSN Video Gadget 1.0.0.1.zip:\Sympatico MSN Video Gadget 1.0.0.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sympatico MSN Video Gadget 1.0.0.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\the_MacBar_1.0.zip:\the_MacBar_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\the_MacBar_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Time Zones Map in Flash 1.0.zip:\Time Zones Map in Flash 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Time Zones Map in Flash 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\TTS_Builder_1.2_(Key).zip:\TTS_Builder_1.2_(Key).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\TTS_Builder_1.2_(Key).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\TransApp_1.4.1.zip:\TransApp_1.4.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\TransApp_1.4.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Unused_Account_Ferret_2.11.zip:\Unused_Account_Ferret_2.11.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Unused_Account_Ferret_2.11.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\UserLock_3.52.zip:\UserLock_3.52.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\UserLock_3.52.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\WAV_to_MP3_Plus_1.0_Crack.zip:\WAV_to_MP3_Plus_1.0_Crack.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\WAV_to_MP3_Plus_1.0_Crack.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Visual_Gif_Animator_6.0.102.zip:\Visual_Gif_Animator_6.0.102.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Visual_Gif_Animator_6.0.102.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Wedding Tip of the Day 1.0.zip:\Wedding Tip of the Day 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Wedding Tip of the Day 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\WebUptime 1.7.zip:\WebUptime 1.7.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\WebUptime 1.7.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Wings_4.1.0_Key+Serial.zip:\Wings_4.1.0_Key+Serial.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Wings_4.1.0_Key+Serial.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ZoomMagic 2.02 (Patch).zip:\ZoomMagic 2.02 (Patch).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ZoomMagic 2.02 (Patch).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
E:\Pilotes (E)\Programmes\Runtime Getdataback Ntfs v2.31 Incl Keygen-Ror.rar:\Keygen.exe;"Trojan horse Generic10.ACVQ";"Moved to Virus Vault"
E:\Pilotes (E)\Programmes\Runtime Getdataback Ntfs v2.31 Incl Keygen-Ror.rar;"Trojan horse Generic10.ACVQ";"Moved to Virus Vault"

Warnings
File;"Infection";"Result"
HKLM\SOFTWARE\Classes\WR;"Found Adware.Generic";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt:\adbrite.com.d5e309c2;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt:\adbrite.com.71beeff9;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt:\adbrite.com.557c9f74;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt:\adbrite.com.e3b6fcdd;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.891542da;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.ffe11db7;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.fb764ef7;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.6d7740f7;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.17044b51;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.8b1bd7bc;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt:\advertising.com.203aa218;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt:\advertising.com.f62113d5;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt:\advertising.com.1820df7a;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt:\advertising.com.b624fa46;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adviva[2].txt:\adviva.net.39ec90c;"Found Tracking cookie.Adviva";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adviva[2].txt;"Found Tracking cookie.Adviva";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@atdmt[2].txt:\atdmt.com.b3e33b5f;"Found Tracking cookie.Atdmt";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@atdmt[2].txt;"Found Tracking cookie.Atdmt";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@bluestreak[2].txt:\bluestreak.com.bf396750;"Found Tracking cookie.Bluestreak";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@bluestreak[2].txt;"Found Tracking cookie.Bluestreak";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@bs.serving-sys[2].txt:\bs.serving-sys.com.5bf1f00f;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@bs.serving-sys[2].txt;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.48a2428c;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.7da0edca;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.f53eaefc;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.a164b0cd;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.2a6d70da;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@doubleclick[1].txt:\doubleclick.net.bf396750;"Found Tracking cookie.Doubleclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@doubleclick[1].txt;"Found Tracking cookie.Doubleclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@enhance[1].txt:\enhance.com.2ff9c31e;"Found Tracking cookie.Enhance";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@enhance[1].txt:\enhance.com.378d31e7;"Found Tracking cookie.Enhance";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@enhance[1].txt;"Found Tracking cookie.Enhance";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@estat[1].txt:\estat.com.efda7a5a;"Found Tracking cookie.Estat";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@estat[1].txt;"Found Tracking cookie.Estat";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@fortunecity[1].txt:\fortunecity.com.68087763;"Found Tracking cookie.Fortunecity";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@fortunecity[1].txt;"Found Tracking cookie.Fortunecity";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@m.webtrends[1].txt:\m.webtrends.com.b4ca7df0;"Found Tracking cookie.Webtrends";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@m.webtrends[1].txt;"Found Tracking cookie.Webtrends";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@mediaplex[1].txt:\mediaplex.com.f652b123;"Found Tracking cookie.Mediaplex";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@mediaplex[1].txt;"Found Tracking cookie.Mediaplex";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@searchportal.information[1].txt:\searchportal.information.com.44e78b2;"Found Tracking cookie.Information";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@searchportal.information[1].txt:\searchportal.information.com.3a8d7204;"Found Tracking cookie.Information";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@searchportal.information[1].txt:\searchportal.information.com.155dbc0d;"Found Tracking cookie.Information";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@searchportal.information[1].txt;"Found Tracking cookie.Information";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.c9034af6;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.606c3d3b;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.4b416ef8;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.255d6f2f;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.6a1cf9e8;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.400f83f;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt:\smartadserver.com.398ede2c;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt:\smartadserver.com.5550c4ed;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt:\smartadserver.com.3e749ab9;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt:\smartadserver.com.321a5cf8;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statcounter[1].txt:\statcounter.com.9cf456b;"Found Tracking cookie.Statcounter";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statcounter[1].txt:\statcounter.com.44b066b2;"Found Tracking cookie.Statcounter";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statcounter[1].txt;"Found Tracking cookie.Statcounter";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statse.webtrendslive[1].txt:\statse.webtrendslive.com.b4ca7df0;"Found Tracking cookie.Webtrendslive";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statse.webtrendslive[1].txt;"Found Tracking cookie.Webtrendslive";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@tradedoubler[1].txt:\tradedoubler.com.dc3c9994;"Found Tracking cookie.Tradedoubler";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@tradedoubler[1].txt:\tradedoubler.com.eab0972e;"Found Tracking cookie.Tradedoubler";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@tradedoubler[1].txt:\tradedoubler.com.ba12c0e9;"Found Tracking cookie.Tradedoubler";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@tradedoubler[1].txt;"Found Tracking cookie.Tradedoubler";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@weborama[1].txt:\weborama.fr.30104bcb;"Found Tracking cookie.Weborama";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@weborama[1].txt:\weborama.fr.f636611;"Found Tracking cookie.Weborama";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@weborama[1].txt:\weborama.fr.5f498b98;"Found Tracking cookie.Weborama";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@weborama[1].txt;"Found Tracking cookie.Weborama";"Potentially dangerous object"
0
mimicaillou
 
rapport d'avg:
bon courage!! je fais ce que tu m'as dit et je te donnes le résultat après @+

Scan "Scan whole computer" was finished.
Infections found:;"250"
Infected objects removed or healed;"250"
Not removed or healed.;"0"
Spyware found:;"0"
Spyware removed:;"0"
Not removed:;"0"
Warnings count:;"74"
Information count:;"0"
Scan started:;"lundi 26 mai 2008, 19:43:04"
Total object scanned:;"705681"
Time needed:;"1 hour(s) 42 minute(s) 5 second(s) "
Errors encountered:;"0"

Infections
File;"Infection";"Result"
C:\Documents and Settings\sz\Application Data\m\shared\3D_Dancing_Christmas_Teddy_Bears_1.0.zip:\3D_Dancing_Christmas_Teddy_Bears_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\3D_Dancing_Christmas_Teddy_Bears_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\4Movy_DVD_Audio_Ripper_3.5_[Key+Serial].zip:\4Movy_DVD_Audio_Ripper_3.5_[Key+Serial].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\4Movy_DVD_Audio_Ripper_3.5_[Key+Serial].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Account_Pro_Invoice_2.0.321.zip:\Account_Pro_Invoice_2.0.321.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Account_Pro_Invoice_2.0.321.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Acritum_Femitter_HTTP-FTP_Server_1.0.zip:\Acritum_Femitter_HTTP-FTP_Server_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Acritum_Femitter_HTTP-FTP_Server_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Acronis_Disk_Director_Suite_10.0_Build_2117_[Key].zip:\Acronis_Disk_Director_Suite_10.0_Build_2117_[Key].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Acronis_Disk_Director_Suite_10.0_Build_2117_[Key].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ActiveGrid.zip:\ActiveGrid.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ActiveGrid.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Adept XML to MDB Conversion Wizard 1.0.zip:\Adept XML to MDB Conversion Wizard 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Adept XML to MDB Conversion Wizard 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AdEvolver_1.01.zip:\AdEvolver_1.01.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AdEvolver_1.01.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Alpha_Blast.zip:\Alpha_Blast.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Alpha_Blast.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Altova_XMLSpy_Enterprise_Edition_2007.zip:\Altova_XMLSpy_Enterprise_Edition_2007.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Altova_XMLSpy_Enterprise_Edition_2007.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Amethyst Rain Screensaver 1.0.zip:\Amethyst Rain Screensaver 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Amethyst Rain Screensaver 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ArbsCalc_0.6.29.zip:\ArbsCalc_0.6.29.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ArbsCalc_0.6.29.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Artera_Turbo_3.40_Crack.zip:\Artera_Turbo_3.40_Crack.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Artera_Turbo_3.40_Crack.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Attachment_Auto_Saver_for_Outlook_1.zip:\Attachment_Auto_Saver_for_Outlook_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Attachment_Auto_Saver_for_Outlook_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AutoOrders 1.00.zip:\AutoOrders 1.00.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AutoOrders 1.00.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AVG.Complete.zip:\AVG.Complete.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\AVG.Complete.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Boutell FastMenu 1.07.zip:\Boutell FastMenu 1.07.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Boutell FastMenu 1.07.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Box_Shot_3D_2.6_[KeyGen].zip:\Box_Shot_3D_2.6_[KeyGen].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Box_Shot_3D_2.6_[KeyGen].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Bus_Hound_5.04.zip:\Bus_Hound_5.04.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Bus_Hound_5.04.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Byte Code Viewer 1.1 (Key+Serial).zip:\Byte Code Viewer 1.1 (Key+Serial).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Byte Code Viewer 1.1 (Key+Serial).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Caddy 1.1.zip:\Caddy 1.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Caddy 1.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Cafe_Manila_Cyber_Cafe_Management_8.6.zip:\Cafe_Manila_Cyber_Cafe_Management_8.6.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Cafe_Manila_Cyber_Cafe_Management_8.6.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Catfood_CamSaver_1.10_[With_Crack].zip:\Catfood_CamSaver_1.10_[With_Crack].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Catfood_CamSaver_1.10_[With_Crack].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\CD Ripper Deluxe 2.6.zip:\CD Ripper Deluxe 2.6.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\CD Ripper Deluxe 2.6.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ChateX 1.09.zip:\ChateX 1.09.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ChateX 1.09.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ClickerAct 1.2.3.zip:\ClickerAct 1.2.3.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ClickerAct 1.2.3.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Clock_Domain_MZ_1.0.zip:\Clock_Domain_MZ_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Clock_Domain_MZ_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Data-Reports.NET 1.2.0.1.zip:\Data-Reports.NET 1.2.0.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Data-Reports.NET 1.2.0.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Desktopmetronome_Color_Picker_1.0.zip:\Desktopmetronome_Color_Picker_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Desktopmetronome_Color_Picker_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Detritus_Player_Pack_1.10.zip:\Detritus_Player_Pack_1.10.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Detritus_Player_Pack_1.10.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Dimac_CMS_XS_1.2.zip:\Dimac_CMS_XS_1.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Dimac_CMS_XS_1.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Double-V_1.zip:\Double-V_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Double-V_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\E.S.T Help Author Pro 1.65 [Key].zip:\E.S.T Help Author Pro 1.65 [Key].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\E.S.T Help Author Pro 1.65 [Key].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\EditTXT 0.0.1.zip:\EditTXT 0.0.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\EditTXT 0.0.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\eTopping Follow-Up 1.10.zip:\eTopping Follow-Up 1.10.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\eTopping Follow-Up 1.10.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Event Log Viewer Pro 2.0.zip:\Event Log Viewer Pro 2.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Event Log Viewer Pro 2.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Exposure_1.0_[Cracked].zip:\Exposure_1.0_[Cracked].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Exposure_1.0_[Cracked].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Find'n'Block_Personal_Firewall_2.2.zip:\Find'n'Block_Personal_Firewall_2.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Find'n'Block_Personal_Firewall_2.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\FireBall_FTP_2.0.0.0.zip:\FireBall_FTP_2.0.0.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\FireBall_FTP_2.0.0.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\FlashClock 1.0.zip:\FlashClock 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\FlashClock 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Freeverb3 2.1.4.zip:\Freeverb3 2.1.4.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Freeverb3 2.1.4.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GatherBird_Copy_Large_Files_2.3.zip:\GatherBird_Copy_Large_Files_2.3.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GatherBird_Copy_Large_Files_2.3.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GoGo_MP3_to_CD_Burner_1.0.zip:\GoGo_MP3_to_CD_Burner_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GoGo_MP3_to_CD_Burner_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Groupcal_2.0.zip:\Groupcal_2.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Groupcal_2.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GoogleTabs 2.3.zip:\GoogleTabs 2.3.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\GoogleTabs 2.3.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Handicap_Manager_for_Excel_4.1a_Key.zip:\Handicap_Manager_for_Excel_4.1a_Key.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Handicap_Manager_for_Excel_4.1a_Key.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HandyImage_1.21.002.zip:\HandyImage_1.21.002.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HandyImage_1.21.002.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hardwood Spades 1.5 build 33.zip:\Hardwood Spades 1.5 build 33.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hardwood Spades 1.5 build 33.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HDD Low Level Format Tool 2.36.1181.zip:\HDD Low Level Format Tool 2.36.1181.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HDD Low Level Format Tool 2.36.1181.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hermetic_File_Search_2.25_Cracked.zip:\Hermetic_File_Search_2.25_Cracked.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hermetic_File_Search_2.25_Cracked.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hex_Editor_3.12.zip:\Hex_Editor_3.12.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Hex_Editor_3.12.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HotcakesDB_1.zip:\HotcakesDB_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HotcakesDB_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HoursClocked-Basic 001-004-002.zip:\HoursClocked-Basic 001-004-002.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\HoursClocked-Basic 001-004-002.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\How_To_Reduce_The_Winter_Heat_Bill_3.0.zip:\How_To_Reduce_The_Winter_Heat_Bill_3.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\How_To_Reduce_The_Winter_Heat_Bill_3.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IDAutomation ASP.NET Barcode Web Control 7.2.zip:\IDAutomation ASP.NET Barcode Web Control 7.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IDAutomation ASP.NET Barcode Web Control 7.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IIPImageServer_0.9.6.01.zip:\IIPImageServer_0.9.6.01.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IIPImageServer_0.9.6.01.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\InboxRULES_for_Rules_Wizard_2.11_(KeyGen).zip:\InboxRULES_for_Rules_Wizard_2.11_(KeyGen).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\InboxRULES_for_Rules_Wizard_2.11_(KeyGen).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Industrial_Audio_Editor_1.0.25.zip:\Industrial_Audio_Editor_1.0.25.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Industrial_Audio_Editor_1.0.25.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Investment Comparison 1.2.11.zip:\Investment Comparison 1.2.11.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Investment Comparison 1.2.11.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\invoiceSync 1.0.0.3.zip:\invoiceSync 1.0.0.3.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\invoiceSync 1.0.0.3.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IP2country_1.0.zip:\IP2country_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\IP2country_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Kaspersky.internet.security.6.0.final.fr+crack.16-07-2007.zip:\Kaspersky.internet.security.6.0.final.fr+crack.16-07-2007.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Kaspersky.internet.security.6.0.final.fr+crack.16-07-2007.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Kirby_Icons_32_1.0.zip:\Kirby_Icons_32_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Kirby_Icons_32_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Linkman_Extreme_0.05.zip:\Linkman_Extreme_0.05.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Linkman_Extreme_0.05.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Maelstrom 1.1.zip:\Maelstrom 1.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Maelstrom 1.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mail Print 1.3.1104.zip:\Mail Print 1.3.1104.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mail Print 1.3.1104.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MapCreator Free Edition 1.0.zip:\MapCreator Free Edition 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MapCreator Free Edition 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mars_Wincleaner_1.8_beta_2_Serial.zip:\Mars_Wincleaner_1.8_beta_2_Serial.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mars_Wincleaner_1.8_beta_2_Serial.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MathAid_Precalculus_28.63_(With_Crack).zip:\MathAid_Precalculus_28.63_(With_Crack).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MathAid_Precalculus_28.63_(With_Crack).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Math_ActivityMaker_Primary_1.52a.zip:\Math_ActivityMaker_Primary_1.52a.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Math_ActivityMaker_Primary_1.52a.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MB6-288_Practice_Exam_Testing_Engine_Software_1.0.zip:\MB6-288_Practice_Exam_Testing_Engine_Software_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MB6-288_Practice_Exam_Testing_Engine_Software_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MB_Free_Numerology_Pro_Software_1.15_(KeyGen).zip:\MB_Free_Numerology_Pro_Software_1.15_(KeyGen).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MB_Free_Numerology_Pro_Software_1.15_(KeyGen).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Molecular Weight Solver 1.0.zip:\Molecular Weight Solver 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Molecular Weight Solver 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Montreal_1.zip:\Montreal_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Montreal_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Movie_Organizer_1.00_With_Crack.zip:\Movie_Organizer_1.00_With_Crack.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Movie_Organizer_1.00_With_Crack.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mp3 Duplicate Finder 1.0.zip:\Mp3 Duplicate Finder 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Mp3 Duplicate Finder 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MSN_Homestar_Runner_Desktop_Buddy_1.0.zip:\MSN_Homestar_Runner_Desktop_Buddy_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MSN_Homestar_Runner_Desktop_Buddy_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MSN_Messenger_(Pocket_PC_2002)_1.zip:\MSN_Messenger_(Pocket_PC_2002)_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MSN_Messenger_(Pocket_PC_2002)_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\myBase_Networking_Edition_2.2.zip:\myBase_Networking_Edition_2.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\myBase_Networking_Edition_2.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MyNotes 1.0.0.zip:\MyNotes 1.0.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MyNotes 1.0.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MyWeb_6.5.zip:\MyWeb_6.5.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\MyWeb_6.5.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\My_CPU_1.13g.zip:\My_CPU_1.13g.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\My_CPU_1.13g.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\NeDesMo 1.zip:\NeDesMo 1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\NeDesMo 1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\NexMander 0.6.2.zip:\NexMander 0.6.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\NexMander 0.6.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Nvidia_Forceware_checker_1.0.zip:\Nvidia_Forceware_checker_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Nvidia_Forceware_checker_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Operation_Flashpoint_Cold_War_Crisis_-_Retaliation_map.zip:\Operation_Flashpoint_Cold_War_Crisis_-_Retaliation_map.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Operation_Flashpoint_Cold_War_Crisis_-_Retaliation_map.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Pc Icon Extractor 3.9.zip:\Pc Icon Extractor 3.9.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Pc Icon Extractor 3.9.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Pivot_Pro_7.0_[Key].zip:\Pivot_Pro_7.0_[Key].exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Pivot_Pro_7.0_[Key].zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\PlezeCall_Outlook_Speed_Dialer_2.0.45.zip:\PlezeCall_Outlook_Speed_Dialer_2.0.45.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\PlezeCall_Outlook_Speed_Dialer_2.0.45.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\PowerPoint Slide Show Converter 3.1.1.5.zip:\PowerPoint Slide Show Converter 3.1.1.5.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\PowerPoint Slide Show Converter 3.1.1.5.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Power_MP3_Cutter_(MP3_Sound_Cutter)_2.5_(Patch).zip:\Power_MP3_Cutter_(MP3_Sound_Cutter)_2.5_(Patch).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Power_MP3_Cutter_(MP3_Sound_Cutter)_2.5_(Patch).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Practical_Software_SPC_2.5.2.zip:\Practical_Software_SPC_2.5.2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Practical_Software_SPC_2.5.2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Privacy Defender 7.0.3a (Patch).zip:\Privacy Defender 7.0.3a (Patch).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Privacy Defender 7.0.3a (Patch).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Quick_test_0.74_Revision_C2.zip:\Quick_test_0.74_Revision_C2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Quick_test_0.74_Revision_C2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Quindi_Meeting_Companion_1.5.0.1.zip:\Quindi_Meeting_Companion_1.5.0.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Quindi_Meeting_Companion_1.5.0.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ReaGif - Image Converter to Gif 2.0.zip:\ReaGif - Image Converter to Gif 2.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ReaGif - Image Converter to Gif 2.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\rebuilt.Grisoft.AVG.Anti-Spyware.7.5.0.50.serial.keygen.zip:\rebuilt.Grisoft.AVG.Anti-Spyware.7.5.0.50.serial.keygen.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\rebuilt.Grisoft.AVG.Anti-Spyware.7.5.0.50.serial.keygen.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Rising_Personal_Firewall_2006_18.45.zip:\Rising_Personal_Firewall_2006_18.45.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Rising_Personal_Firewall_2006_18.45.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SaleHoo Alert 1.2.1.zip:\SaleHoo Alert 1.2.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SaleHoo Alert 1.2.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ScanSpyware 3.8 (Crack).zip:\ScanSpyware 3.8 (Crack).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ScanSpyware 3.8 (Crack).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sci-Tek_Gallery_3D_Screensaver_1.0.8_(Key).zip:\Sci-Tek_Gallery_3D_Screensaver_1.0.8_(Key).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sci-Tek_Gallery_3D_Screensaver_1.0.8_(Key).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ServerWatch_1.0.zip:\ServerWatch_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ServerWatch_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Silent_Sword_2.zip:\Silent_Sword_2.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Silent_Sword_2.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SkypeAgent_1.zip:\SkypeAgent_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SkypeAgent_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SpeakMediaPro_1.00.68.zip:\SpeakMediaPro_1.00.68.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SpeakMediaPro_1.00.68.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\StickyNote_9.0.zip:\StickyNote_9.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\StickyNote_9.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Strideway Network Profile Manager 1.zip:\Strideway Network Profile Manager 1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Strideway Network Profile Manager 1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\StripShow_Screensaver_1.7.zip:\StripShow_Screensaver_1.7.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\StripShow_Screensaver_1.7.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sudoku_Latin_Squares_1.zip:\Sudoku_Latin_Squares_1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sudoku_Latin_Squares_1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SuperMailer 4.61.0.0781.zip:\SuperMailer 4.61.0.0781.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\SuperMailer 4.61.0.0781.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Teach_Me_1.0.zip:\Teach_Me_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Teach_Me_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sympatico MSN Video Gadget 1.0.0.1.zip:\Sympatico MSN Video Gadget 1.0.0.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Sympatico MSN Video Gadget 1.0.0.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\the_MacBar_1.0.zip:\the_MacBar_1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\the_MacBar_1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Time Zones Map in Flash 1.0.zip:\Time Zones Map in Flash 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Time Zones Map in Flash 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\TTS_Builder_1.2_(Key).zip:\TTS_Builder_1.2_(Key).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\TTS_Builder_1.2_(Key).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\TransApp_1.4.1.zip:\TransApp_1.4.1.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\TransApp_1.4.1.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Unused_Account_Ferret_2.11.zip:\Unused_Account_Ferret_2.11.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Unused_Account_Ferret_2.11.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\UserLock_3.52.zip:\UserLock_3.52.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\UserLock_3.52.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\WAV_to_MP3_Plus_1.0_Crack.zip:\WAV_to_MP3_Plus_1.0_Crack.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\WAV_to_MP3_Plus_1.0_Crack.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Visual_Gif_Animator_6.0.102.zip:\Visual_Gif_Animator_6.0.102.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Visual_Gif_Animator_6.0.102.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Wedding Tip of the Day 1.0.zip:\Wedding Tip of the Day 1.0.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Wedding Tip of the Day 1.0.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\WebUptime 1.7.zip:\WebUptime 1.7.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\WebUptime 1.7.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Wings_4.1.0_Key+Serial.zip:\Wings_4.1.0_Key+Serial.exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\Wings_4.1.0_Key+Serial.zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ZoomMagic 2.02 (Patch).zip:\ZoomMagic 2.02 (Patch).exe;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
C:\Documents and Settings\sz\Application Data\m\shared\ZoomMagic 2.02 (Patch).zip;"Virus identified I-Worm/Bagle";"Moved to Virus Vault"
E:\Pilotes (E)\Programmes\Runtime Getdataback Ntfs v2.31 Incl Keygen-Ror.rar:\Keygen.exe;"Trojan horse Generic10.ACVQ";"Moved to Virus Vault"
E:\Pilotes (E)\Programmes\Runtime Getdataback Ntfs v2.31 Incl Keygen-Ror.rar;"Trojan horse Generic10.ACVQ";"Moved to Virus Vault"

Warnings
File;"Infection";"Result"
HKLM\SOFTWARE\Classes\WR;"Found Adware.Generic";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt:\adbrite.com.d5e309c2;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt:\adbrite.com.71beeff9;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt:\adbrite.com.557c9f74;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt:\adbrite.com.e3b6fcdd;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adbrite[2].txt;"Found Tracking cookie.Adbrite";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.891542da;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.ffe11db7;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.fb764ef7;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.6d7740f7;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.17044b51;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt:\adopt.euroclick.com.8b1bd7bc;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adopt.euroclick[2].txt;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt:\advertising.com.203aa218;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt:\advertising.com.f62113d5;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt:\advertising.com.1820df7a;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt:\advertising.com.b624fa46;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@advertising[1].txt;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adviva[2].txt:\adviva.net.39ec90c;"Found Tracking cookie.Adviva";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@adviva[2].txt;"Found Tracking cookie.Adviva";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@atdmt[2].txt:\atdmt.com.b3e33b5f;"Found Tracking cookie.Atdmt";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@atdmt[2].txt;"Found Tracking cookie.Atdmt";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@bluestreak[2].txt:\bluestreak.com.bf396750;"Found Tracking cookie.Bluestreak";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@bluestreak[2].txt;"Found Tracking cookie.Bluestreak";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@bs.serving-sys[2].txt:\bs.serving-sys.com.5bf1f00f;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@bs.serving-sys[2].txt;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.48a2428c;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.7da0edca;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.f53eaefc;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.a164b0cd;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt:\dealtime.com.2a6d70da;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@dealtime[1].txt;"Found Tracking cookie.Dealtime";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@doubleclick[1].txt:\doubleclick.net.bf396750;"Found Tracking cookie.Doubleclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@doubleclick[1].txt;"Found Tracking cookie.Doubleclick";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@enhance[1].txt:\enhance.com.2ff9c31e;"Found Tracking cookie.Enhance";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@enhance[1].txt:\enhance.com.378d31e7;"Found Tracking cookie.Enhance";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@enhance[1].txt;"Found Tracking cookie.Enhance";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@estat[1].txt:\estat.com.efda7a5a;"Found Tracking cookie.Estat";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@estat[1].txt;"Found Tracking cookie.Estat";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@fortunecity[1].txt:\fortunecity.com.68087763;"Found Tracking cookie.Fortunecity";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@fortunecity[1].txt;"Found Tracking cookie.Fortunecity";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@m.webtrends[1].txt:\m.webtrends.com.b4ca7df0;"Found Tracking cookie.Webtrends";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@m.webtrends[1].txt;"Found Tracking cookie.Webtrends";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@mediaplex[1].txt:\mediaplex.com.f652b123;"Found Tracking cookie.Mediaplex";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@mediaplex[1].txt;"Found Tracking cookie.Mediaplex";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@searchportal.information[1].txt:\searchportal.information.com.44e78b2;"Found Tracking cookie.Information";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@searchportal.information[1].txt:\searchportal.information.com.3a8d7204;"Found Tracking cookie.Information";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@searchportal.information[1].txt:\searchportal.information.com.155dbc0d;"Found Tracking cookie.Information";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@searchportal.information[1].txt;"Found Tracking cookie.Information";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.c9034af6;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.606c3d3b;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.4b416ef8;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.255d6f2f;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.6a1cf9e8;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt:\serving-sys.com.400f83f;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@serving-sys[2].txt;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt:\smartadserver.com.398ede2c;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt:\smartadserver.com.5550c4ed;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt:\smartadserver.com.3e749ab9;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt:\smartadserver.com.321a5cf8;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@smartadserver[2].txt;"Found Tracking cookie.Smartadserver";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statcounter[1].txt:\statcounter.com.9cf456b;"Found Tracking cookie.Statcounter";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statcounter[1].txt:\statcounter.com.44b066b2;"Found Tracking cookie.Statcounter";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statcounter[1].txt;"Found Tracking cookie.Statcounter";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statse.webtrendslive[1].txt:\statse.webtrendslive.com.b4ca7df0;"Found Tracking cookie.Webtrendslive";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@statse.webtrendslive[1].txt;"Found Tracking cookie.Webtrendslive";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@tradedoubler[1].txt:\tradedoubler.com.dc3c9994;"Found Tracking cookie.Tradedoubler";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@tradedoubler[1].txt:\tradedoubler.com.eab0972e;"Found Tracking cookie.Tradedoubler";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@tradedoubler[1].txt:\tradedoubler.com.ba12c0e9;"Found Tracking cookie.Tradedoubler";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@tradedoubler[1].txt;"Found Tracking cookie.Tradedoubler";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@weborama[1].txt:\weborama.fr.30104bcb;"Found Tracking cookie.Weborama";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@weborama[1].txt:\weborama.fr.f636611;"Found Tracking cookie.Weborama";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@weborama[1].txt:\weborama.fr.5f498b98;"Found Tracking cookie.Weborama";"Potentially dangerous object"
C:\Documents and Settings\sz\Cookies\sz@weborama[1].txt;"Found Tracking cookie.Weborama";"Potentially dangerous object"
0
g!rly Messages postés 18462 Statut Contributeur 406
 
ok

tout a ete supprimé ?!

oui fais ce que je t´ai dit

@+
0
mimicaillou
 
je ne vois aucun des fichiers que tu m'a noté
j'ai changé les parametres d'affichage et dejà là, "afficher les dossiers cachés" ça n'y était pas!!
c'est un cas désespéré mon pc!!
0
mimicaillou
 
dans avg, je selectionne tout et je clique sur "remove selected infections" pour supprimer les infections?
0
mimicaillou Messages postés 6 Statut Membre > mimicaillou
 
mon pc vient de planter.. hard boot failure, j envoie un post avec mon tel! merci encore de ton aide mais les virus ont eu raison de ta patience! il ne me reste plus que formater! a bientot!
0
g!rly Messages postés 18462 Statut Contributeur 406
 
oui tu clique sur "remove selected infections"

essaie encore de passer eliblaga, au pire tu le retelecharge

post son rapport

@+
0
g!rly Messages postés 18462 Statut Contributeur 406
 
mimicaillou,

Mince...

Ca me coupe la langue ;(
0