Help !!!!!!!!!!!!c la porte ouverte au virus
diyaxine
-
jacques.gache Messages postés 34829 Statut Contributeur sécurité -
jacques.gache Messages postés 34829 Statut Contributeur sécurité -
Bonjour,
G 2 gros bléms ....
pour commncer je ne peux plus installer ni antivirus pour cause de "erreure 1304" ni hijackthis pour "n'est pas une application win 32 valide"
je ne peut pas redémarrer en mode sans echec il se réinitialise en boucle
G pu lancer un scan avec bifender le rapport:
BitDefender Online Scanner
Scan report generated at: Sun, Jun 15, 2008 - 16:34:14
Scan path: A:\;C:\;D:\;E:\;F:\;
Statistics
Time
04:13:36
Files
915336
Folders
30113
Boot Sectors
3
Archives
5897
Packed Files
59067
Results
Identified Viruses
19
Infected Files
152
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
151
Engines Info
Virus Definitions
1260898
Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Scan plugins
16
Archive plugins
42
Unpack plugins
7
E-mail plugins
6
System plugins
5
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\!KillBox\amvo.exe
Infected with: Trojan.Dropper.Agent.TNQ
C:\!KillBox\amvo.exe
Deleted
C:\!KillBox\hldrrr.exe( 1)
Infected with: MemScan:Trojan.Downloader.Bagle.IR
C:\!KillBox\hldrrr.exe( 1)
Deleted
C:\Documents and Settings\gh\Application Data\Autodesk\AutoCAD 2004\R16.0\fra\Support\acadapp.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Application Data\Autodesk\AutoCAD 2004\R16.0\fra\Support\acadapp.lsp
Disinfection failed
C:\Documents and Settings\gh\Application Data\Autodesk\AutoCAD 2004\R16.0\fra\Support\acadapp.lsp
Deleted
C:\Documents and Settings\gh\Bureau\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\C E S\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\C E S\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\C E S\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\plate forme\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\plate forme\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\plate forme\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\B4\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\B4\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\B4\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\DCE2\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\DCE2\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\DCE2\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\envoie 19.03\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\envoie 19.03\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\envoie 19.03\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\Plans\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\Plans\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\Plans\acad.lsp
Deleted
C:\Documents and Settings\gh\Local Settings\Temp\7k7codj.dll
Infected with: Trojan.PWS.OnlineGames.WMQ
C:\Documents and Settings\gh\Local Settings\Temp\7k7codj.dll
Deleted
C:\Documents and Settings\gh\Local Settings\Temp\as8ffpas.dll
Infected with: Packer.Malware.NSAnti.AD
C:\Documents and Settings\gh\Local Settings\Temp\as8ffpas.dll
Disinfection failed
C:\Documents and Settings\gh\Local Settings\Temp\as8ffpas.dll
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[6].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[5].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64_1[6].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64_1[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64_1[4].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64_1[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64[6].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[5].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_1[7].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_1[7].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[5].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[6].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[7].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[7].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[8].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[8].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_1[2].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_1[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_1[4].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_1[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_3[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_3[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[6].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[6].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[7].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[7].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[8].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[8].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[6].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_3[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_3[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[5].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[6].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[7].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[7].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[8].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[8].jpg
Deleted
C:\Documents and Settings\gh\Mes documents\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Mes documents\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Mes documents\acad.lsp
Deleted
C:\tio8x6.cmd
Infected with: Trojan.Dropper.Agent.TNQ
C:\tio8x6.cmd
Deleted
C:\WINDOWS\system32\amvo0.dll
Infected with: Trojan.PWS.OnlineGames.WMQ
C:\WINDOWS\system32\amvo0.dll
Deleted
C:\WINDOWS\system32\amvo1.dll
Infected with: Trojan.PWS.OnlineGames.WMQ
C:\WINDOWS\system32\amvo1.dll
Deleted
C:\WINDOWS\system32\SkyTel.EXE
Infected with: MemScan:Trojan.Downloader.Bagle.IR
C:\WINDOWS\system32\SkyTel.EXE
Deleted
C:\WINDOWS\system32\wintems.exe
Infected with: Win32.Bagle.SUQ@mm
C:\WINDOWS\system32\wintems.exe
Disinfection failed
C:\WINDOWS\system32\wintems.exe
Delete failed
D:\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\acad.lsp
Disinfection failed
D:\acad.lsp
Deleted
D:\autorun.inf
Infected with: Worm.Autorun.VCE
D:\autorun.inf
Disinfection failed
D:\autorun.inf
Deleted
D:\CABINET D'ARCHI\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\CABINET D'ARCHI\acad.lsp
Disinfection failed
D:\CABINET D'ARCHI\acad.lsp
Deleted
D:\CABINET D'ARCHI\ferrah\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\CABINET D'ARCHI\ferrah\acad.lsp
Disinfection failed
D:\CABINET D'ARCHI\ferrah\acad.lsp
Deleted
D:\CABINET D'ARCHI\MESSAI\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\CABINET D'ARCHI\MESSAI\acad.lsp
Disinfection failed
D:\CABINET D'ARCHI\MESSAI\acad.lsp
Deleted
D:\CABINET D'ARCHI\salle OMS oued noumer\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\CABINET D'ARCHI\salle OMS oued noumer\acad.lsp
Disinfection failed
D:\CABINET D'ARCHI\salle OMS oued noumer\acad.lsp
Deleted
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial)\Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME\ac-gsk61.exe
Infected with: Packer.PESpin.A
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial)\Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME\ac-gsk61.exe
Disinfection failed
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial)\Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME\ac-gsk61.exe
Deleted
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial).zip=>Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME/ac-gsk61.exe
Infected with: Packer.PESpin.A
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial).zip=>Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME/ac-gsk61.exe
Disinfection failed
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial).zip=>Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME/ac-gsk61.exe
Deleted
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial).zip
Updated
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen\Google.SketchUp.Pro.v6.0.515KeyGen.exe
Infected with: Packer.PESpin.A
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen\Google.SketchUp.Pro.v6.0.515KeyGen.exe
Disinfection failed
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen\Google.SketchUp.Pro.v6.0.515KeyGen.exe
Deleted
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen.zip=>Google.SketchUp.Pro.v6.0.515KeyGen.exe
Infected with: Packer.PESpin.A
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen.zip=>Google.SketchUp.Pro.v6.0.515KeyGen.exe
Disinfection failed
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen.zip=>Google.SketchUp.Pro.v6.0.515KeyGen.exe
Deleted
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen.zip
Updated
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaS0001.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaS0001.exe
Deleted
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaS0002.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaS0002.exe
Deleted
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0001.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0001.exe
Deleted
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0002.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0002.exe
Deleted
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0003.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0003.exe
Deleted
D:\emule\archicad\Archicad 10 Interactive Training Guide Ger\Archicad 10 Interactive Training Guide Ger.exe
Infected with: Trojan.Agent.AGMI
D:\emule\archicad\Archicad 10 Interactive Training Guide Ger\Archicad 10 Interactive Training Guide Ger.exe
Deleted
D:\emule\archicad\Archicad 10 Interactive Training Guide International 1.2\Archicad 10 Interactive Training Guide International 1.2.exe
Infected with: Trojan.Agent.AGMI
D:\emule\archicad\Archicad 10 Interactive Training Guide International 1.2\Archicad 10 Interactive Training Guide International 1.2.exe
Deleted
D:\emule\architecture\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\acad.lsp
Disinfection failed
D:\emule\architecture\acad.lsp
Deleted
D:\emule\architecture\detalles de estructuras metalicas (cype) autocad DWG\eag\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\detalles de estructuras metalicas (cype) autocad DWG\eag\acad.lsp
Disinfection failed
D:\emule\architecture\detalles de estructuras metalicas (cype) autocad DWG\eag\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-sbalzo\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-sbalzo\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-sbalzo\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-Techint\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-Techint\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-Techint\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciate-vetro\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciate-vetro\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciate-vetro\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\tetto\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\tetto\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\tetto\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\torre\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\torre\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\torre\acad.lsp
Deleted
D:\emule\artlantis\artlantis\Artlantis.Studio.v1.2.0.0.Multilanguage.WinALL.Cracked-ENGiNE\Artlantis.Studio.v1.2.0.0.Multilanguage.WinALL.Cracked-ENGiNE\Crack\Artlantis.studio.v1.2.0.0_Crk.exe
Infected with: Virtool.7793
D:\emule\artlantis\artlantis\Artlantis.Studio.v1.2.0.0.Multilanguage.WinALL.Cracked-ENGiNE\Artlantis.Studio.v1.2.0.0.Multilanguage.WinALL.Cracked-ENGiNE\Crack\Artlantis.studio.v1.2.0.0_Crk.exe
Deleted
D:\emule\bibliothéque\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\bibliothéque\acad.lsp
Disinfection failed
D:\emule\bibliothéque\acad.lsp
Deleted
D:\emule\corel\Corel Painter Essentials 3\Corel Painter Essentials 3.exe
Infected with: Trojan.Downloader.Bagle.EU
D:\emule\corel\Corel Painter Essentials 3\Corel Painter Essentials 3.exe
Deleted
D:\emule\corel\Creative Painter 2006\Creative Painter 2006.exe
Infected with: Trojan.Downloader.Bagle.EU
D:\emule\corel\Creative Painter 2006\Creative Painter 2006.exe
Deleted
D:\emule\QuickTime Pro 7.1.3 serial + iTunes 7 freddy\[app ita & multilinguage]QuickTime Pro 7.1.3 serial + iTunes 7 freddy\keymaker.exe
Infected with: Backdoor.Pcclient.GV
D:\emule\QuickTime Pro 7.1.3 serial + iTunes 7 freddy\[app ita & multilinguage]QuickTime Pro 7.1.3 serial + iTunes 7 freddy\keymaker.exe
Deleted
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar=>Yu-Gi-Oh\Trainer\kaiba_trainer.exe
Infected with: Trojan.Keylogger.Hotkeyshook.A
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar=>Yu-Gi-Oh\Trainer\kaiba_trainer.exe
Deleted
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar
Update failed
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar=>Yu-Gi-Oh\Trainer\yugi_trainer.exe
Infected with: Trojan.Generic.75981
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar=>Yu-Gi-Oh\Trainer\yugi_trainer.exe
Deleted
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar
Update failed
D:\in design\kheyma\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\kheyma\acad.lsp
Disinfection failed
D:\in design\kheyma\acad.lsp
Deleted
D:\in design\messai\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\messai\acad.lsp
Disinfection failed
D:\in design\messai\acad.lsp
Deleted
D:\in design\messai\mr Messai\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\messai\mr Messai\acad.lsp
Disinfection failed
D:\in design\messai\mr Messai\acad.lsp
Deleted
D:\in design\messai\STUDIO\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\messai\STUDIO\acad.lsp
Disinfection failed
D:\in design\messai\STUDIO\acad.lsp
Deleted
D:\in design\messai\villa\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\messai\villa\acad.lsp
Disinfection failed
D:\in design\messai\villa\acad.lsp
Deleted
D:\tio8x6.cmd
Infected with: Trojan.Dropper.Agent.TNQ
D:\tio8x6.cmd
Deleted
et hijackthis en ligne a donner ça
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:44:10, on 15/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\OvisLink\OWF.exe
C:\Program Files\TuneUp Utilities 2006\Integrator.exe
C:\Program Files\TuneUp Utilities 2006\ProcessManager.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Documents and Settings\gh\Application Data\m\flec006.exe
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\HiJackThis[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - D:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - D:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dll
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [GBB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [OWF] "C:\Program Files\OvisLink\OWF.exe" -nogui
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "D:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKCU\..\Run: [amva] C:\WINDOWS\system32\amvo.exe
O4 - HKCU\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [BIBLauncher] C:\Program Files\Business-in-a-Box\BIBLauncher.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV02.EXE
O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Palo Alto Software Update Manager 8.0.lnk = C:\Program Files\Fichiers communs\Palo Alto Software\8.0\PAS8_Update.exe
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: Ajouter au fichier PDF existant - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir en Adobe PDF - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD40/JSCDL/jre/6u5-b19/jinstall-6u5-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD40/JSCDL/jre/6u5-b19/jinstall-6u5-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u5-windows-i586-jc.cab&AuthParam=1580944752_ad714b48b0d186f5adbe4ba05260ecbd&ext=.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{C7B8849F-34F8-4AA4-A23C-4A0674077D30}: NameServer = 192.168.30.1
O23 - Service: OvisLink Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Version Cue CS3 {fr_FR} (Adobe Version Cue CS3) - Adobe Systems Incorporated - C:\Program Files\Fichiers communs\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: mental ray 3.5 Satellite (32-bit) (mi-raysat_3dsmax9_32) - Unknown owner - D:\Program Files\Autodesk\3ds Max 9\mentalray\satellite\raysat_3dsmax9_32server.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2006\WinStylerThemeSvc.exe
G 2 gros bléms ....
pour commncer je ne peux plus installer ni antivirus pour cause de "erreure 1304" ni hijackthis pour "n'est pas une application win 32 valide"
je ne peut pas redémarrer en mode sans echec il se réinitialise en boucle
G pu lancer un scan avec bifender le rapport:
BitDefender Online Scanner
Scan report generated at: Sun, Jun 15, 2008 - 16:34:14
Scan path: A:\;C:\;D:\;E:\;F:\;
Statistics
Time
04:13:36
Files
915336
Folders
30113
Boot Sectors
3
Archives
5897
Packed Files
59067
Results
Identified Viruses
19
Infected Files
152
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
151
Engines Info
Virus Definitions
1260898
Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Scan plugins
16
Archive plugins
42
Unpack plugins
7
E-mail plugins
6
System plugins
5
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\!KillBox\amvo.exe
Infected with: Trojan.Dropper.Agent.TNQ
C:\!KillBox\amvo.exe
Deleted
C:\!KillBox\hldrrr.exe( 1)
Infected with: MemScan:Trojan.Downloader.Bagle.IR
C:\!KillBox\hldrrr.exe( 1)
Deleted
C:\Documents and Settings\gh\Application Data\Autodesk\AutoCAD 2004\R16.0\fra\Support\acadapp.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Application Data\Autodesk\AutoCAD 2004\R16.0\fra\Support\acadapp.lsp
Disinfection failed
C:\Documents and Settings\gh\Application Data\Autodesk\AutoCAD 2004\R16.0\fra\Support\acadapp.lsp
Deleted
C:\Documents and Settings\gh\Bureau\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\C E S\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\C E S\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\dossierAPPEL D'OFFRES CES GERANIUMS\C E S\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\plate forme\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\plate forme\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\plate forme\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\B4\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\B4\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\B4\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\DCE2\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\DCE2\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\DCE2\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\envoie 19.03\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\envoie 19.03\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\envoie 19.03\acad.lsp
Deleted
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\Plans\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\Plans\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Bureau\rahmouni\RAHMOUNI\Plans\acad.lsp
Deleted
C:\Documents and Settings\gh\Local Settings\Temp\7k7codj.dll
Infected with: Trojan.PWS.OnlineGames.WMQ
C:\Documents and Settings\gh\Local Settings\Temp\7k7codj.dll
Deleted
C:\Documents and Settings\gh\Local Settings\Temp\as8ffpas.dll
Infected with: Packer.Malware.NSAnti.AD
C:\Documents and Settings\gh\Local Settings\Temp\as8ffpas.dll
Disinfection failed
C:\Documents and Settings\gh\Local Settings\Temp\as8ffpas.dll
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[6].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[5].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\3BL5XP52\b64_2[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64_1[6].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64_1[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\4XQNWTMN\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64_1[4].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\85EBK1IJ\b64_1[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64[6].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[5].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\b64_2[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\8DAFWHMJ\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_1[7].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_1[7].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CHINWL63\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[5].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[6].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[7].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[7].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[8].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CT6FK1UJ\b64_2[8].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\CXYB81A7\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_1[2].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_1[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_1[4].jpg
Infected with: Trojan.Downloader.Bagle.IE
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_1[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_3[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\K9IFG1UB\b64_3[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[5].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[6].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\PO51JXDV\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[6].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[7].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[7].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[8].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64[8].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[1].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[6].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_2[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_3[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QN4RT2Z2\b64_3[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[1].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[1].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[2].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[3].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[4].jpg
Infected with: Win32.Bagle.SUQ@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[2].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[2].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[3].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[3].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[4].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[4].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[5].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[5].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[6].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[6].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[7].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[7].jpg
Deleted
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[8].jpg
Infected with: Win32.Bagle.SVL@mm
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\QQQLHD8U\b64_2[8].jpg
Deleted
C:\Documents and Settings\gh\Mes documents\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
C:\Documents and Settings\gh\Mes documents\acad.lsp
Disinfection failed
C:\Documents and Settings\gh\Mes documents\acad.lsp
Deleted
C:\tio8x6.cmd
Infected with: Trojan.Dropper.Agent.TNQ
C:\tio8x6.cmd
Deleted
C:\WINDOWS\system32\amvo0.dll
Infected with: Trojan.PWS.OnlineGames.WMQ
C:\WINDOWS\system32\amvo0.dll
Deleted
C:\WINDOWS\system32\amvo1.dll
Infected with: Trojan.PWS.OnlineGames.WMQ
C:\WINDOWS\system32\amvo1.dll
Deleted
C:\WINDOWS\system32\SkyTel.EXE
Infected with: MemScan:Trojan.Downloader.Bagle.IR
C:\WINDOWS\system32\SkyTel.EXE
Deleted
C:\WINDOWS\system32\wintems.exe
Infected with: Win32.Bagle.SUQ@mm
C:\WINDOWS\system32\wintems.exe
Disinfection failed
C:\WINDOWS\system32\wintems.exe
Delete failed
D:\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\acad.lsp
Disinfection failed
D:\acad.lsp
Deleted
D:\autorun.inf
Infected with: Worm.Autorun.VCE
D:\autorun.inf
Disinfection failed
D:\autorun.inf
Deleted
D:\CABINET D'ARCHI\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\CABINET D'ARCHI\acad.lsp
Disinfection failed
D:\CABINET D'ARCHI\acad.lsp
Deleted
D:\CABINET D'ARCHI\ferrah\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\CABINET D'ARCHI\ferrah\acad.lsp
Disinfection failed
D:\CABINET D'ARCHI\ferrah\acad.lsp
Deleted
D:\CABINET D'ARCHI\MESSAI\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\CABINET D'ARCHI\MESSAI\acad.lsp
Disinfection failed
D:\CABINET D'ARCHI\MESSAI\acad.lsp
Deleted
D:\CABINET D'ARCHI\salle OMS oued noumer\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\CABINET D'ARCHI\salle OMS oued noumer\acad.lsp
Disinfection failed
D:\CABINET D'ARCHI\salle OMS oued noumer\acad.lsp
Deleted
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial)\Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME\ac-gsk61.exe
Infected with: Packer.PESpin.A
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial)\Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME\ac-gsk61.exe
Disinfection failed
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial)\Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME\ac-gsk61.exe
Deleted
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial).zip=>Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME/ac-gsk61.exe
Infected with: Packer.PESpin.A
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial).zip=>Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME/ac-gsk61.exe
Disinfection failed
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial).zip=>Google.SketchUp.Pro.v6.0.312.Incl.Keymaker-ACME/ac-gsk61.exe
Deleted
D:\emule\3D\GoogleSketchUp\SketchUp Pro v6.0.312 (serial).zip
Updated
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen\Google.SketchUp.Pro.v6.0.515KeyGen.exe
Infected with: Packer.PESpin.A
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen\Google.SketchUp.Pro.v6.0.515KeyGen.exe
Disinfection failed
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen\Google.SketchUp.Pro.v6.0.515KeyGen.exe
Deleted
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen.zip=>Google.SketchUp.Pro.v6.0.515KeyGen.exe
Infected with: Packer.PESpin.A
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen.zip=>Google.SketchUp.Pro.v6.0.515KeyGen.exe
Disinfection failed
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen.zip=>Google.SketchUp.Pro.v6.0.515KeyGen.exe
Deleted
D:\emule\3D\GoogleSketchUp\Sketchup Pro v6.0.515Keygen.zip
Updated
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaS0001.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaS0001.exe
Deleted
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaS0002.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaS0002.exe
Deleted
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0001.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0001.exe
Deleted
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0002.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0002.exe
Deleted
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0003.exe
Infected with: Trojan.Generic.137382
D:\emule\3D\people\[Content] AXYZ Design 3D People - Casual S1&S2 & T1&T2&T3 (Max, Lw, Obj)\MeCaT0003.exe
Deleted
D:\emule\archicad\Archicad 10 Interactive Training Guide Ger\Archicad 10 Interactive Training Guide Ger.exe
Infected with: Trojan.Agent.AGMI
D:\emule\archicad\Archicad 10 Interactive Training Guide Ger\Archicad 10 Interactive Training Guide Ger.exe
Deleted
D:\emule\archicad\Archicad 10 Interactive Training Guide International 1.2\Archicad 10 Interactive Training Guide International 1.2.exe
Infected with: Trojan.Agent.AGMI
D:\emule\archicad\Archicad 10 Interactive Training Guide International 1.2\Archicad 10 Interactive Training Guide International 1.2.exe
Deleted
D:\emule\architecture\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\acad.lsp
Disinfection failed
D:\emule\architecture\acad.lsp
Deleted
D:\emule\architecture\detalles de estructuras metalicas (cype) autocad DWG\eag\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\detalles de estructuras metalicas (cype) autocad DWG\eag\acad.lsp
Disinfection failed
D:\emule\architecture\detalles de estructuras metalicas (cype) autocad DWG\eag\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-sbalzo\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-sbalzo\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-sbalzo\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-Techint\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-Techint\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciata-Techint\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciate-vetro\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciate-vetro\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\facciate\facciate-vetro\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\tetto\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\tetto\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\tetto\acad.lsp
Deleted
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\torre\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\torre\acad.lsp
Disinfection failed
D:\emule\architecture\Renzo Piano - Il Sole 24 Ore Building - Details Cad - Dwg\rpbw211201\dettagli\torre\acad.lsp
Deleted
D:\emule\artlantis\artlantis\Artlantis.Studio.v1.2.0.0.Multilanguage.WinALL.Cracked-ENGiNE\Artlantis.Studio.v1.2.0.0.Multilanguage.WinALL.Cracked-ENGiNE\Crack\Artlantis.studio.v1.2.0.0_Crk.exe
Infected with: Virtool.7793
D:\emule\artlantis\artlantis\Artlantis.Studio.v1.2.0.0.Multilanguage.WinALL.Cracked-ENGiNE\Artlantis.Studio.v1.2.0.0.Multilanguage.WinALL.Cracked-ENGiNE\Crack\Artlantis.studio.v1.2.0.0_Crk.exe
Deleted
D:\emule\bibliothéque\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\emule\bibliothéque\acad.lsp
Disinfection failed
D:\emule\bibliothéque\acad.lsp
Deleted
D:\emule\corel\Corel Painter Essentials 3\Corel Painter Essentials 3.exe
Infected with: Trojan.Downloader.Bagle.EU
D:\emule\corel\Corel Painter Essentials 3\Corel Painter Essentials 3.exe
Deleted
D:\emule\corel\Creative Painter 2006\Creative Painter 2006.exe
Infected with: Trojan.Downloader.Bagle.EU
D:\emule\corel\Creative Painter 2006\Creative Painter 2006.exe
Deleted
D:\emule\QuickTime Pro 7.1.3 serial + iTunes 7 freddy\[app ita & multilinguage]QuickTime Pro 7.1.3 serial + iTunes 7 freddy\keymaker.exe
Infected with: Backdoor.Pcclient.GV
D:\emule\QuickTime Pro 7.1.3 serial + iTunes 7 freddy\[app ita & multilinguage]QuickTime Pro 7.1.3 serial + iTunes 7 freddy\keymaker.exe
Deleted
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar=>Yu-Gi-Oh\Trainer\kaiba_trainer.exe
Infected with: Trojan.Keylogger.Hotkeyshook.A
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar=>Yu-Gi-Oh\Trainer\kaiba_trainer.exe
Deleted
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar
Update failed
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar=>Yu-Gi-Oh\Trainer\yugi_trainer.exe
Infected with: Trojan.Generic.75981
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar=>Yu-Gi-Oh\Trainer\yugi_trainer.exe
Deleted
D:\emule\[PC - GAME]Yu-Gi-Oh - Joey Kaiba Yugi (ITA FRA GER SPA ENG) YZA_K version+trainers piuMB.rar
Update failed
D:\in design\kheyma\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\kheyma\acad.lsp
Disinfection failed
D:\in design\kheyma\acad.lsp
Deleted
D:\in design\messai\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\messai\acad.lsp
Disinfection failed
D:\in design\messai\acad.lsp
Deleted
D:\in design\messai\mr Messai\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\messai\mr Messai\acad.lsp
Disinfection failed
D:\in design\messai\mr Messai\acad.lsp
Deleted
D:\in design\messai\STUDIO\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\messai\STUDIO\acad.lsp
Disinfection failed
D:\in design\messai\STUDIO\acad.lsp
Deleted
D:\in design\messai\villa\acad.lsp
Infected with: Trojan.Lisp.Bursted.A
D:\in design\messai\villa\acad.lsp
Disinfection failed
D:\in design\messai\villa\acad.lsp
Deleted
D:\tio8x6.cmd
Infected with: Trojan.Dropper.Agent.TNQ
D:\tio8x6.cmd
Deleted
et hijackthis en ligne a donner ça
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:44:10, on 15/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\OvisLink\OWF.exe
C:\Program Files\TuneUp Utilities 2006\Integrator.exe
C:\Program Files\TuneUp Utilities 2006\ProcessManager.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Documents and Settings\gh\Application Data\m\flec006.exe
C:\Documents and Settings\gh\Local Settings\Temporary Internet Files\Content.IE5\89YJ4PM3\HiJackThis[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - D:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_6_0_1.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - D:\Program Files\Adobe\/Adobe Contribute CS3/contributeieplugin.dll
O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE
O4 - HKLM\..\Run: [GBB36X Configure] C:\WINDOWS\system32\JMRaidTool.exe boot
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [OWF] "C:\Program Files\OvisLink\OWF.exe" -nogui
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "D:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKCU\..\Run: [amva] C:\WINDOWS\system32\amvo.exe
O4 - HKCU\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [BIBLauncher] C:\Program Files\Business-in-a-Box\BIBLauncher.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV02.EXE
O4 - Global Startup: Lancement rapide d'Adobe Acrobat.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Palo Alto Software Update Manager 8.0.lnk = C:\Program Files\Fichiers communs\Palo Alto Software\8.0\PAS8_Update.exe
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: Ajouter au fichier PDF existant - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir en Adobe PDF - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en Adobe PDF - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la cible du lien en un fichier PDF existant - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir la sélection en Adobe PDF - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convertir la sélection en un fichier PDF existant - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convertir les liens sélectionnés en un fichier PDF existant - res://D:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD40/JSCDL/jre/6u5-b19/jinstall-6u5-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD40/JSCDL/jre/6u5-b19/jinstall-6u5-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u5-windows-i586-jc.cab&AuthParam=1580944752_ad714b48b0d186f5adbe4ba05260ecbd&ext=.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{C7B8849F-34F8-4AA4-A23C-4A0674077D30}: NameServer = 192.168.30.1
O23 - Service: OvisLink Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Version Cue CS3 {fr_FR} (Adobe Version Cue CS3) - Adobe Systems Incorporated - C:\Program Files\Fichiers communs\Adobe\Adobe Version Cue CS3\Server\bin\VersionCueCS3.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: mental ray 3.5 Satellite (32-bit) (mi-raysat_3dsmax9_32) - Unknown owner - D:\Program Files\Autodesk\3ds Max 9\mentalray\satellite\raysat_3dsmax9_32server.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2006\WinStylerThemeSvc.exe
A voir également:
- Help !!!!!!!!!!!!c la porte ouverte au virus
- Virus mcafee - Accueil - Piratage
- Porte monnaie vinted - Guide
- Virus informatique - Guide
- Panda anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Undisclosed-recipients virus - Guide
1 réponse
bonjour, essais de passer malwarebytes http://site-naheulbeuk.com/ et tu postes le rapport; et après tu passes Ccleaner dans ses deux modes nettoyeur et registre et si il te demande de sauvegarder fais le, et passes le plusieurs fois jusqu'a ce qu'il ne trouve plus rien, https://www.malekal.com/tutoriel-ccleaner/ sur la quatrième images du tutoriel pour l'installation tu ne conserves que la première case"ajouter un raccourci sur le bureau" et la cinquième cases"contrôler automatiquement les mises à jour de ccleaner" et avant de le lancer tu vas dans options puis avancé et tu décoches "effacer uniquement les fichiers, du dossier temp de windows plus vieux que 48 heures" et puis quand tu es sur nettoyeur cliques sur windows et dans la colonne avancé tu coches la première ( vieilles données du perfetch ) que celle la et tu refais un hijackthis
mettre un rapport hijackthis
le télécharger et l'enregistrer sur le bureau: https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/29061.html
pour le rapport et fixer les lignes: http://pageperso.aol.fr/balltrap34/demohijack.htm
mais avant de le lancer pour analyse rends toi sur ton bureau et cliques droit sur hijackthis et renommer et la tu mets montruc et tu valides avec entrée
!!Déconnectes toi et fermes toute tes applications en cours !!
Double clik sur le raccourci du bureau,
Fais un scan montruc (ou HijackThis renommé) et postes le rapport générer pour analyse ...
car certaine infection se planque d'hijackthis
mettre un rapport hijackthis
le télécharger et l'enregistrer sur le bureau: https://www.01net.com/telecharger/windows/Securite/anti-spyware/fiches/29061.html
pour le rapport et fixer les lignes: http://pageperso.aol.fr/balltrap34/demohijack.htm
mais avant de le lancer pour analyse rends toi sur ton bureau et cliques droit sur hijackthis et renommer et la tu mets montruc et tu valides avec entrée
!!Déconnectes toi et fermes toute tes applications en cours !!
Double clik sur le raccourci du bureau,
Fais un scan montruc (ou HijackThis renommé) et postes le rapport générer pour analyse ...
car certaine infection se planque d'hijackthis