Aidez moi mon pc est infecté

Résolu/Fermé
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009 - 22 juin 2008 à 13:44
 Utilisateur anonyme - 22 juin 2008 à 21:23
Bonjour,
le pcque mon frère m'as donné est infecté veuillez m'aider car il est sans protection
bcp de fenetre s'ouvrent sur internet explorer et la connexion devient trop lente
j'ai fais un scan avec kaspersky voici le rapport

--------------------------------------------------------------------------------
KASPERSKY ONLINE SCANNER 7 REPORT
Friday, June 20, 2008
Operating System: Microsoft Windows XP Professional Service Pack 2 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Friday, June 20, 2008 14:47:05
Records in database: 879800
--------------------------------------------------------------------------------

Scan settings:
Scan using the following database: extended
Scan archives: yes
Scan mail databases: yes

Scan area - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\
H:\
I:\
J:\
K:\
L:\
M:\

Scan statistics:
Files scanned: 58775
Threat name: 43
Infected objects: 2303
Suspicious objects: 0
Duration of the scan: 01:55:49


File name / Threat name / Threats count
D:\WINDOWS\system32\dnsq.dll//PE_Patch.UPX//UPX/D:\WINDOWS\system32\dnsq.dll//PE_Patch.UPX//UPX Infected: Trojan-PSW.Win32.Agent.acp 19
C:\037589.log Infected: Virus.Win32.Xorer.fb 1
C:\3o.exe Infected: Packed.Win32.PolyCrypt.h 1
C:\b.com Infected: Trojan-PSW.Win32.OnLineGames.tne 1
C:\cb.bat Infected: Trojan-PSW.Win32.OnLineGames.wde 1
C:\cfdflx.com Infected: Trojan-PSW.Win32.OnLineGames.uhv 1
C:\Documents and Settings\Administrateur.24DA2C27B348481\Local Settings\Temp\Rar$EX01.692\UDA051_build01(Logo51.3_Standard)\Driver\WDM\CMIRMDRV.EXE Infected: Virus.Win32.Xorer.dr 1
C:\Documents and Settings\Administrateur.24DA2C27B348481\Local Settings\Temp\Rar$EX01.692\UDA051_build01(Logo51.3_Standard)\Driver\Win_98\CMIRMDRV.EXE Infected: Virus.Win32.Xorer.dr 1
C:\Documents and Settings\Administrateur.24DA2C27B348481\Local Settings\Temp\Rar$EX01.692\UDA051_build01(Logo51.3_Standard)\setup.exe Infected: Virus.Win32.Xorer.dr 1
C:\Documents and Settings\Administrateur.24DA2C27B348481\Local Settings\Temporary Internet Files\Content.IE5\234JYFMR\google[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.24DA2C27B348481\Local Settings\Temporary Internet Files\Content.IE5\234JYFMR\goto[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.24DA2C27B348481\Local Settings\Temporary Internet Files\Content.IE5\45W7WVW9\home[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.24DA2C27B348481\Local Settings\Temporary Internet Files\Content.IE5\45W7WVW9\index[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.24DA2C27B348481\Local Settings\Temporary Internet Files\Content.IE5\QFULENUL\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.24DA2C27B348481\Local Settings\Temporary Internet Files\Content.IE5\UX0NKRMF\flashmail.club-internet[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Application Data\Mozilla\Firefox\Profiles\7hvw6uyj.default\bookmarkbackups\bookmarks-2008-01-21.html Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Application Data\Mozilla\Firefox\Profiles\7hvw6uyj.default\bookmarkbackups\bookmarks-2008-01-22.html Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Application Data\Mozilla\Firefox\Profiles\7hvw6uyj.default\bookmarks.html Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\5O72MV22\ADSAdClient31[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\5O72MV22\default[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\5O72MV22\email[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\5O72MV22\r[1].htm Infected: Trojan-Downloader.JS.Agent.aqo 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\5O72MV22\url[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\5O72MV22\weather[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\FPQCSIGE\Generic[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\FPQCSIGE\goto[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\YKYJEC9K\maps[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\YKYJEC9K\phone[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.E53BB157ADC04C4\Local Settings\Temporary Internet Files\Content.IE5\YKYJEC9K\stocks[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Bureau\download\STBDBManager26_normal.rar Infected: Virus.Win32.Xorer.dr 1
C:\Documents and Settings\Administrateur.MCE2005\Bureau\download\STBDownload_1-9-5.rar Infected: Virus.Win32.Xorer.dr 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\2m9mdmy.dll Infected: Trojan-PSW.Win32.OnLineGames.urs 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\4keteh.dll Infected: Trojan-PSW.Win32.OnLineGames.urq 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\7eb4nf.dll Infected: Worm.Win32.AutoRun.cxk 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\9ht.dll Infected: Worm.Win32.AutoRun.dao 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\9szq7sq.dll Infected: Trojan-PSW.Win32.OnLineGames.ulz 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\cda4h.dll Infected: Worm.Win32.AutoRun.acg 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\cz8.dll Infected: Trojan-PSW.Win32.OnLineGames.ahwj 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\ee77xdv.dll Infected: Worm.Win32.AutoRun.cvy 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\f.dll Infected: Trojan-PSW.Win32.OnLineGames.ulc 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\f28.dll Infected: Trojan-PSW.Win32.OnLineGames.wgy 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\mgl.dll Infected: Trojan-PSW.Win32.OnLineGames.aceb 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\r894w8s.dll Infected: Trojan.Win32.Pakes.cip 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\TFRB.exe Infected: Virus.Win32.Xorer.ek 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\uf.dll Infected: Trojan-PSW.Win32.OnLineGames.urr 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temp\uh.dll Infected: Trojan-PSW.Win32.OnLineGames.was 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\14[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\17[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\23[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\3[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\5[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\7[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\8[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\button[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CAAQDKF9.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CACIIIRJ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CAF0QRVI.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CAHNH2KX.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CAKXS3GB.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CALH4X7V.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CAPY08CP.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CAWATW50.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CAY30TIZ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\CAYNK1Q7.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\entertainment[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\fafayass.centerblog[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\films6[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\images[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\InboxLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\portail.club-internet[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\read-8-2435083[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\ReadMessageLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\search[4].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\09AB0XUN\www2.bplc[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\02[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\1532458066_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\26[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\26[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\Aphanisis[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CA2LRT9O.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CA2V05YH.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CA8CWLPJ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CAAJ5Y9B.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CAI16V05.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CAIZSBI5.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CAK9APSZ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CAKQQGJR.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CANH1CQP.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CAUF4N0N.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\CAZ3SHUD.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\InboxLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\index[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\photo[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\proxy_bb_cm[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\qb5.vip-qqcongqq-woyaocongqq-duoduoqqyiqiqq-qbqq[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\read-8-2364203-page=2[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\read-8-2395389-page=2[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\ReadMessageLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\search[4].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\webhp[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\1C8ZXXS9\x473de_bnat-maroc-bnat-arabe-chouha-bnat_people[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\11[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\1577371430_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\15[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\1617838418_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\16[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\4[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\4[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\9[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\ADSAdClient31[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\CA2N8L2V.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\CA4LERQ1.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\CAIUODVO.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\CAK30NO7.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\CAQ7OT2V.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\CASXIT6W.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\CAUFOTIZ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\CAYPCRCN.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\cours_cmu[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\eveilsensuel[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\index[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\posting[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\read-8-2425908[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\read-8-2436653[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\ReadMessageLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\search[4].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\search[5].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\search[6].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\se_259_vagini[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\3T5JVS0K\tv_monde[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\12[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\1511987346_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\1572993652_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\27[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\2[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\Antivirus-Panda,0305-637[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\CA238J0B.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\CA4XMLSJ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\CABZYW9T.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\CAE4KC7P.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\CAFTXY6L.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\CAM74LEZ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\CAUAN953.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\CAWVCN4P.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\Fan-Club8-Of-The-Queen-Diaa-Taibi,167169,420[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\Fiches%20ENC[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\iframe_cours_bourse[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\images[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\Impuissance_sexuelle[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\proxy_bb_cm[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\read-8-2425658[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\room_main[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\search[4].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\search[5].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\4ZL72NES\ulpa.unblog[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\1525491250_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\1559284650_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\17[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\21[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\2m[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\31065[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\3[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\6[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\6[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CA014NAL.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CA2BSL2V.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CA2RGDAR.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CA6V8DEZ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CAA9A7TY.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CAF2QMB4.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CALPWP0G.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CAM9CF41.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CAQ64MP2.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CAUV4LUF.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CAXQ2V15.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CAYBEHWX.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\CAYJ892V.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\display[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\hachich[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\HTML[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\HUSSAIN-AL-JASSMI,999936852[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\images[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\index[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\list-8-page=2[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\proxy_bb_cm[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\6IV1M0CK\read-8-2410343[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\%2Bivre[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\10[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\12[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\1577390718_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\15[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\1604520176_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\21cnyl[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\22[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\2[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\81[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\CA0TSZ49.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\CA2IPZRD.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\CAIF5BIL.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\CAJS8BGF.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\CAKL6RK9.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\CAQF8HYV.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\CASLUF81.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\CATJT9QC.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\CAUJA527.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\dyspareunie-1552[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\films2[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\jeux_action[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\list-8-page=1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\list-8[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\montada-f1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\read-8-2436470[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\static[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\B10JAI42\TodayLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\14[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\CA0T8ZGH.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\CA2N0LEJ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\CA4NOEXE.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\CAAP3GWC.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\CADH2GJ6.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\CAIBYJAP.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\CAQFA5MV.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\CAVO166G.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\corps[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\programmes-tv[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\read-8-2316539[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\read-8-2427315[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\search[4].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\search[5].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\search[6].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\search[7].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\search[8].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\submit1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\WLLogin_JS[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\x29075_letat-marocain-et-la-drogue-mtvi_fun[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\C5WB8BSV\xo5u7_zodiac-remach_news[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\1577425510_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\18[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\19[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\3[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\blog[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\CA0DSV8V.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\CA2F45YB.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\CA65G0F1.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\CAN7CA59.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\CAQZP8OT.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\CARFJD4K.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\CAYL8PE5.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\drogue%2Bcasablanca%2B[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\fr[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\goto[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\HTML[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\images[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\InboxLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\qq[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\read-8-2423977[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\read-8-2435973[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\ReadMessageLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\superfighter[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\topic-t5687[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\urgencesmed[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\video_star_academy_lbc_1569[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\x3r6l1_velo-vodka_fun[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTU745YR\x4cumh_chouha_fun[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\10[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\114607[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\1617766216_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\20[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\24[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\Antivirus-Panda,0301-637[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\CA0R212H.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\CAENKT2R.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\CAL5AI63.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\CAOTAFWH.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\CAS9M7GX.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\CAUJCTYN.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\CAWHW70T.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\CAWMDQKE.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\CAYTEJMZ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\help[1].exe Infected: Trojan-PSW.Win32.OnLineGames.wgy 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\InboxLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\jeux[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\magazine[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\P%C3%A9nis[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\read-8-2419603-page=2[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\read-8-836252[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\search[4].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\CTUJKLUN\x3parz_dipsun-kootut-osa1-pyyhe-skandaali_fun[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\13[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\1558320130_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\1577276350_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\15[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\24[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\2[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\accueil[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\add_comment[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\article[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\CA4D49MF.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\CASURE2N.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\CATXQCJ4.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\CAZVFZGR.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\chouha[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\films5[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\films[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\isayous.skyrock[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\rarlab[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\read-8-2364203-page=2[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\read-8-2419603[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\read-8-2423252[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\ReadMessageLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\search[4].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\search[5].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\search[6].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\search[7].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\search[8].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\HDIZRKQ1\x3pas0_bnat-casa_creation[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\12[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\1577403418_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\1619037726_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\20[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\CAF19RR6.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\CAMC3CH2.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\CARYSW96.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\CAS12FK9.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\CAU564AW.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\CAURSPYJ.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\CAUZK96Z.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\CAVM6I2A.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\films3[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\flashmail.club-internet[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\google[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\images[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\messages[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\read-8-2436219[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\ReadMessageLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\search[4].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\JBIG8XAN\search[5].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\1559231956_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\1564923102_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\1577342162_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\1602831758_comment_1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\16[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\16[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\9[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\article_image[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\CA281JEC.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\CABA2G9O.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\CAIT9271.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\CAONBD50.htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\corps-beau.skyrock[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\films4[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\google.co[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\HTML[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\list-8-page=1[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\ReadMessageLight[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\scholar[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\search[1].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\search[2].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administrateur.MCE2005\Local Settings\Temporary Internet Files\Content.IE5\KDEBWLMR\search[3].htm Infected: Virus.Win32.Xorer.du 1
C:\Documents and Settings\Administra
A voir également:

25 réponses

Utilisateur anonyme
22 juin 2008 à 13:46
Salut pourquoi est il sans protection ?

Télécharge HijackThis ici :

-> http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe


Tutoriel d´instalation : (Merci a Balltrap34 pour cette réalisation)

-> http://pageperso.aol.fr/balltrap34/Hijenr.gif

Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)

-> http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm

Post le rapport généré ici stp...
1
si_omar Messages postés 22 Date d'inscription dimanche 8 juin 2008 Statut Membre Dernière intervention 20 octobre 2010
22 juin 2008 à 13:47
bon je te conseille d'utiliser le bitdefender c le leader dans son genre
0
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009
22 juin 2008 à 13:59
je l'ai installé mais ça bloque quand le scan est terminé
0
Utilisateur anonyme
22 juin 2008 à 14:01
tu parle de hijackthis je suppose

On va faire ceci deja ;

-> Télécharge Ccleaner (n'installe pas la barre d'outil Yahoo):

http://download.piriform.com/ccsetup205.exe

-> L´installer.

-> Une fois installé et lancé :

Dans la colonne de gauche, click sur :

->"registre" :

Coches toutes les cases sous"l´integrité du registre", puis click en bas sur "chercher des erreurs" une fois terminé, clic sur "reparer les erreurs", tu auras un message pour sauvegarder ta base de registre, tu click "oui" puis tu recommence jusqu'à ce qu'il ne trouve plus rien.

ps : les sauvegardes que tu auras faites, pourront etre supprimées ulterieurement si tout va bien.

->"nettoyeur"

quitte ton navigateur avant de le lancer, dans les propriétés du nettoyeur de l´onglet "windows" et "applications"décoche la derniere case (Avancé si elle est cochée) puis click sur "lancer le nettoyage" qunand il aura terminé le scan click en bas a droite sur "lancer le nettoyage" et accepte par oui.

-> Tutoriel en image :

https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php

ensuite :

Telecharge malwarebytes

-> http://www.malwarebytes.org/mbam/program/mbam-setup.exe

Tu l´instale; le programme va se mettre automatiquement a jour.

Une fois a jour, le programme va se lancer; click sur l´onglet parametre, et coche la case : "Arreter internet explorer pendant la suppression".

Click maintenant sur l´onglet recherche et coche la case : "executer un examen complet".

Puis click sur "rechercher".

Laisse le scanner le pc...

Si des elements on ete trouvés > click sur supprimer la selection.

si il t´es demandé de redemarrer > click sur "yes".

A la fin un rapport va s´ouvrir; sauvegarde le de maniere a le retrouver en vu de le poster sur le forum.

Copie et colle le rapport stp.

ps : les rapport sont aussi rangé dans l onglet rapport/log
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009
22 juin 2008 à 15:45
J'ai suivi ce que vous aviez dis !
voici le rapport

Malwarebytes' Anti-Malware 1.18
Version de la base de données: 876

15:38:29 22/06/2008
mbam-log-6-22-2008 (15-38-29).txt

Type de recherche: Examen complet (A:\|C:\|D:\|E:\|F:\|G:\|H:\|I:\|J:\|K:\|L:\|M:\|)
Eléments examinés: 124113
Temps écoulé: 34 minute(s), 30 second(s)

Processus mémoire infecté(s): 2
Module(s) mémoire infecté(s): 2
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 145

Processus mémoire infecté(s):
D:\WINDOWS\system32\Com\lsass.exe (Heuristics.Reserved.Word.Exploit) -> Failed to unload process.
D:\WINDOWS\system32\Com\smss.exe (Heuristics.Reserved.Word.Exploit) -> Failed to unload process.

Module(s) mémoire infecté(s):
D:\WINDOWS\system32\wpcap.dll (Spyware.Agent) -> Unloaded module successfully.
D:\WINDOWS\system32\packet.dll (Spyware.Agent) -> Unloaded module successfully.

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
D:\WINDOWS\system32\wpcap.dll (Spyware.Agent) -> Delete on reboot.
D:\WINDOWS\system32\packet.dll (Spyware.Agent) -> Delete on reboot.
C:\lsass.exe.214798.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.103649.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.111079.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.114174.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.129726.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.197874.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.209050.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.219836.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.285790.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.4909008.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP20\A0014800.exe (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP20\A0014802.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP20\A0014805.dll (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP20\A0014861.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP20\A0014863.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP20\A0014864.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP20\A0014866.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP24\A0028845.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP24\A0028847.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP24\A0028848.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP24\A0028850.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP26\A0029022.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP26\A0029023.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP26\A0029025.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP26\A0029026.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP27\A0030049.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP27\A0030051.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP27\A0030052.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP27\A0030054.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP29\A0032057.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP29\A0032059.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP29\A0032060.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP29\A0032062.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP37\A0042253.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP37\A0042254.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP39\A0043292.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP39\A0043293.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP44\A0056357.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP44\A0056358.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP45\A0064384.exe (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP45\A0064385.exe (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP45\A0064392.pif (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP45\A0064399.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP45\A0064400.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP46\snapshot\MFEX-1.DAT (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP46\snapshot\MFEX-2.DAT (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP47\snapshot\MFEX-1.DAT (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP47\snapshot\MFEX-2.DAT (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP48\snapshot\MFEX-2.DAT (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP52\A0076511.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP52\A0076512.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP13\A0004390.pif (Trojan.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP14\A0004418.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP14\A0005418.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP14\A0007425.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP15\A0007516.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP15\A0008518.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP15\A0009494.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP16\A0010494.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP17\A0012494.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP10\A0000341.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP11\A0000477.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP14\A0002500.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP22\A0012160.pif (Virus.Xorer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP4\A0000149.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP4\A0000175.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP4\A0000177.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP6\A0000224.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP8\A0000230.pif (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\packet.dll (Spyware.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\wpcap.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.113463.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.118600.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.119732.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.120212.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.120923.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.122105.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.125179.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.127283.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.2436653.exe (Trojan.Xorer) -> Quarantined and deleted successfully.
D:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\~.exe.44353.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP45\A0062382.pif (Virus.Xorer) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP45\A0064393.pif (Virus.Xorer) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP45\A0064405.pif (Virus.Xorer) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{0C0D01AA-13DF-4A69-A06F-E1E1A63B766F}\RP47\A0064428.pif (Virus.Xorer) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP14\A0007421.exe (Virus.Xorer) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP14\A0007426.pif (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP14\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP14\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP14\snapshot\MFEX-4.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP14\snapshot\MFEX-5.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP15\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP15\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP16\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP16\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP17\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP17\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP18\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{3EA95B41-2929-4973-89B3-B99A50FFEBC5}\RP18\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP10\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP10\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP11\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP11\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP12\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP12\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP13\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP13\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP14\A0002493.exe (Virus.Xorer) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP14\A0002494.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP14\A0002499.dll (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP14\A0002501.pif (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP15\A0002520.exe (Virus.Xorer) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP15\A0002525.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP15\A0002527.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP15\A0002528.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP15\A0002530.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP16\A0002548.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP16\A0002550.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP16\A0002552.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP16\A0002555.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP17\A0003125.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP17\A0003127.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP17\A0003128.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP17\A0003130.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP19\A0005162.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP19\A0005163.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP22\A0012151.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP22\A0012152.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP4\A0000150.pif (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP5\A0000186.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP5\A0000188.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP5\A0000189.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP5\A0000191.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP8\snapshot\MFEX-1.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP8\snapshot\MFEX-2.DAT (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP9\A0000231.exe (Spyware.OnLineGames) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP9\A0000233.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP9\A0000234.dll (Spyware.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{8A26EB96-E0C4-45D6-8C02-B89BC1C13A8D}\RP9\A0000237.exe (Trojan.Agent) -> Quarantined and deleted successfully.
D:\System Volume Information\_restore{D8C8F3EA-2B53-42AF-8237-23F59BD33C26}\RP37\A0020805.pif (Trojan.Agent) -> Quarantined and deleted successfully.
D:\AUTORUN.INF (Malware.Trace) -> Delete on reboot.
D:\WINDOWS\system32\Com\lsass.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot.
D:\WINDOWS\system32\Com\smss.exe (Heuristics.Reserved.Word.Exploit) -> Delete on reboot.
0
Utilisateur anonyme
22 juin 2008 à 15:51
oki



télécharge OTMoveIt http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe (de Old_Timer) sur ton Bureau et ni touche pas

-> Redémarre en mode sans échec :

Comment redémarrer en mode sans echec?

Tu redemarre le pc et tapote la touche F8 des le début de l allumage sans t´arrêter.
Une fenêtre sur fond noir va s’ouvrir, tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau si il n y a pas toutes les couleurs et autres c´est normal!
Ps : si F8 ne marche pas utilise la touche F5.

-> Tuto : http://forum.telecharger.01net.com/forum/


double-clique sur OTMoveIt.exe pour le lancer.
copie la liste qui se trouve en gras ci-dessous,
et colle-la dans le cadre de gauche de OTMoveIt :Paste List of Files/Folders to be moved.

D:\WINDOWS\system32\Com\lsass.exe
D:\WINDOWS\system32\Com\smss.exe


clique sur MoveIt! pour lancer la suppression.
le résultat apparaitra dans le cadre "Results".
clique sur Exit pour fermer.
poste le rapport situé dans C:\_OTMoveIt\MovedFiles.

il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes.

en mode normal

réouvre malewarebyte
va sur quarantaine
supprime tout

Télécharge clean.zip, de Malekal
http://www.malekal.com/download/clean.zip



(1) Dézippe-le sur ton bureau (clic droit / extraire tout), tu dois obtenir un dossier clean.

(2) Ouvre le dossier clean qui se trouve sur ton bureau, et double-clic sur clean.cmd

une fenêtre noire va apparaître pendant un instant, laisse la ouverte.

(3) Choisis l'option 1 puis patiente
Poste le rapport obtenu

pour retrouver le rapport : double clique sur > C > double clique sur " rapport_clean txt.
et copie/colle le sur ta prochaine réponse .

Ne passe pas à l'option 2 sans notre avis !








-> --
A découvrir : Estopa, Rosario Flores, La oreja de van gogh.. Bonne écoute
0
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009
22 juin 2008 à 16:02
Quand je fais mode sans echec une nouvelle page s'ouvre bleue
et s'est écris dessu afin de prévenir tout dommage sur votre ordinateur ...
si cette page apparait pour la première fois redémarrer
au cas contraire vérifiez s'il n'y a pas de virus...
0
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009
22 juin 2008 à 16:12
j'ai rééssayé en vain cette fenetre bleue s'ouvre a chaque fois on me demandant de suivre les étapes: recherchez un virus, suprimer disk dur ou je en sais quoi :s
0
Utilisateur anonyme
22 juin 2008 à 16:17
oki

Télécharge combofix : http://download.bleepingcomputer.com/sUBs/ComboFix.exe


-> Double clique combofix.exe.
-> Tape sur la touche 1 (Yes) pour démarrer le scan.
-> Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.

NOTE : Le rapport se trouve également ici : C:\Combofix.txt

Avant d'utiliser ComboFix :

-> Déconnecte toi d'internet et referme les fenêtres de tous les programmes en cours.

-> Désactive provisoirement et seulement le temps de l'utilisation de ComboFix, la protection en temps réel de ton Antivirus et de tes Antispywares, qui peuvent géner fortement la procédure de recherche et de nettoyage de l'outil.

Une fois fait, sur ton bureau double-clic sur Combofix.exe.

- Répond oui au message d'avertissement, pour que le programme commence à procéder à l'analyse du pc.

/!\ Pendant la durée de cette étape, ne te sert pas du pc et n'ouvre aucun programmes.

- En fin de scan il est possible que ComboFix ait besoin de redemarrer le pc pour finaliser la désinfection\recherche, laisses-le faire.

- Un rapport s'ouvrira ensuite dans le bloc notes, ce fichier rapport Combofix.txt, est automatiquement sauvegardé et rangé à C:\Combofix.txt)

-> Réactive la protection en temps réel de ton Antivirus et de tes Antispywares, avant de te reconnecter à internet.

-> Reviens sur le forum, et copie et colle la totalité du contenu de C:\Combofix.txt dans ton prochain message.

-> Tutoriel https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix
0
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009
22 juin 2008 à 16:32
Voici le rapport
( merci pour votre soutien )

ComboFix 08-06-19.4 - youssef 2008-06-22 16:20:43.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.72 [GMT 0:00]
Endroit: D:\Documents and Settings\youssef\Bureau\ComboFix.exe
* Création d'un nouveau point de restauration

[color=red][b]AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !![/b][/color]
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Autorun.inf
C:\pagefile.pif
D:\[u]0[/u]37589.log
D:\Autorun.inf
D:\Documents and Settings\Administrateur.MCE2005\Menu Démarrer\Programmes\Démarrage\~.exe.27970.exe
D:\Documents and Settings\Administrateur.MCE2005\Menu Démarrer\Programmes\Démarrage\~.exe.28050.exe
D:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.26568.exe
D:\Documents and Settings\All Users.WINDOWS\Menu Démarrer\Programmes\Démarrage\~.exe.47037.exe
D:\lsass.exe.27569.exe
D:\NetApi000.sys
D:\pagefile.pif
D:\WINDOWS\system32\29134.log
D:\WINDOWS\system32\788976.log
D:\WINDOWS\system32\com\lsass.exe
D:\WINDOWS\system32\com\netcfg.000
D:\WINDOWS\system32\com\netcfg.dll
D:\WINDOWS\system32\com\smss.exe
D:\WINDOWS\system32\dnsq.dll
D:\WINDOWS\system32\drivers\npf.sys
D:\WINDOWS\system32\packet.dll
D:\WINDOWS\system32\pthreadVC.dll
D:\WINDOWS\system32\wpcap.dll

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_NPF
-------\Service_NetApi000
-------\Service_NPF


((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-05-22 to 2008-06-22 ))))))))))))))))))))))))))))))))))))
.

2008-06-22 14:10 . 2008-06-22 14:10 <REP> d-------- D:\Program Files\Malwarebytes' Anti-Malware
2008-06-22 14:10 . 2008-06-22 14:10 <REP> d-------- D:\Documents and Settings\youssef\Application Data\Malwarebytes
2008-06-22 14:10 . 2008-06-22 14:10 <REP> d-------- D:\Documents and Settings\All Users.WINDOWS\Application Data\Malwarebytes
2008-06-22 14:10 . 2008-06-19 17:48 34,296 --a------ D:\WINDOWS\system32\drivers\mbamcatchme.sys
2008-06-22 14:10 . 2008-06-19 17:47 17,144 --a------ D:\WINDOWS\system32\drivers\mbam.sys
2008-06-22 13:47 . 2008-06-22 13:47 <REP> d-------- D:\Program Files\Trend Micro
2008-06-21 21:59 . 2008-06-21 21:59 <REP> d-------- D:\Documents and Settings\youssef\Application Data\dvdcss
2008-06-20 23:51 . 2008-06-20 23:51 552 --a------ D:\WINDOWS\system32\d3d8caps.dat
2008-06-20 23:32 . 2008-06-20 23:51 <REP> d-------- D:\Program Files\Conquete 2.0
2008-06-20 23:32 . 2008-06-20 23:32 <REP> d-------- D:\Documents and Settings\youssef\Application Data\InstallShield
2008-06-20 16:35 . 2008-06-20 16:35 <REP> d-------- D:\Program Files\CCleaner
2008-06-20 16:34 . 2008-06-20 16:42 <REP> d-------- D:\WINDOWS\BDOSCAN8
2008-06-20 15:37 . 2008-06-20 15:37 2,560 --a------ D:\WINDOWS\system32\bitcometres.dll
2008-06-20 15:33 . 2008-06-22 13:32 <REP> d-------- D:\Program Files\BitComet
2008-06-18 23:07 . 2008-06-18 23:07 <REP> d-------- D:\Documents and Settings\youssef\Application Data\Nokia Multimedia Player
2008-06-18 22:54 . 2004-08-03 19:08 25,600 --a------ D:\WINDOWS\system32\drivers\usbser.sys
2008-06-18 22:54 . 2004-08-03 19:08 25,600 --a--c--- D:\WINDOWS\system32\dllcache\usbser.sys
2008-06-18 22:54 . 2008-06-18 22:54 0 --ah----- D:\WINDOWS\system32\drivers\Msft_Kernel_ccdcmb_01005.Wdf
2008-06-18 22:53 . 2006-10-08 21:51 23,856 --a------ D:\WINDOWS\system32\spupdsvc.exe
2008-06-18 22:53 . 2008-06-18 22:53 0 --ah----- D:\WINDOWS\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2008-06-18 22:50 . 2008-06-18 22:55 <REP> d-------- D:\Documents and Settings\youssef\Application Data\PC Suite
2008-06-18 22:50 . 2008-06-18 22:50 <REP> d-------- D:\Documents and Settings\All Users.WINDOWS\Application Data\PC Suite
2008-06-18 22:49 . 2008-06-18 23:03 <REP> d-------- D:\Documents and Settings\youssef\Application Data\Nokia
2008-06-18 22:47 . 2008-06-18 22:47 <REP> d-------- D:\Program Files\Fichiers communs\PCSuite
2008-06-18 22:46 . 2008-06-18 22:47 <REP> d-------- D:\Program Files\Fichiers communs\Nokia
2008-06-18 22:44 . 2008-06-18 22:44 <REP> d-------- D:\Program Files\DIFX
2008-06-18 22:44 . 2007-09-17 15:53 21,632 --a------ D:\WINDOWS\system32\drivers\pccsmcfd.sys
2008-06-18 22:43 . 2008-06-18 22:43 <REP> d-------- D:\Program Files\PC Connectivity Solution
2008-06-18 22:43 . 2008-06-18 22:46 <REP> d-------- D:\Program Files\Nokia
2008-06-18 22:43 . 2007-11-29 10:33 1,419,232 --a------ D:\WINDOWS\system32\wdfcoinstaller01005.dll
2008-06-18 22:43 . 2007-11-29 10:39 95,744 --a------ D:\WINDOWS\system32\nmwcdcocls.dll
2008-06-18 22:43 . 2007-11-29 10:32 48,128 --a------ D:\WINDOWS\system32\nmwcdcls.dll
2008-06-18 22:43 . 2007-11-29 10:39 19,328 --a------ D:\WINDOWS\system32\drivers\ccdcmbo.sys
2008-06-18 22:43 . 2007-11-29 10:39 16,896 --a------ D:\WINDOWS\system32\drivers\ccdcmb.sys
2008-06-18 22:43 . 2007-11-29 10:39 8,064 --a------ D:\WINDOWS\system32\drivers\usbser_lowerfltj.sys
2008-06-18 22:43 . 2007-11-29 10:39 8,064 --a------ D:\WINDOWS\system32\drivers\usbser_lowerflt.sys
2008-06-18 22:22 . 2008-06-18 22:22 <REP> d-------- D:\Documents and Settings\All Users.WINDOWS\Application Data\Installations
2008-06-16 18:57 . 2008-06-16 18:57 <REP> d-------- D:\Program Files\Yahoo!
2008-06-16 18:57 . 2008-06-16 18:57 <REP> d-------- D:\Program Files\DivX
2008-06-16 18:57 . 2008-06-16 18:57 <REP> d-------- D:\Documents and Settings\youssef\Application Data\Yahoo!
2008-06-16 18:57 . 2008-06-16 18:57 <REP> d-------- D:\Documents and Settings\All Users.WINDOWS\Application Data\Yahoo! Companion
2008-06-11 15:21 . 2008-06-11 15:21 <REP> d-------- D:\Program Files\Microsoft Games
2008-06-10 18:05 . 2008-06-10 18:05 244 --ah----- D:\sqmnoopt11.sqm
2008-06-10 18:05 . 2008-06-10 18:05 232 --ah----- D:\sqmdata11.sqm
2008-05-30 13:53 . 2008-03-19 18:26 499,712 --a------ D:\WINDOWS\system32\msvcp71.dll
2008-05-30 13:53 . 2008-03-19 18:29 348,160 --a------ D:\WINDOWS\system32\msvcr71.dll
2008-05-25 09:23 . 2008-06-22 16:08 154,112 ---hs---- D:\WINDOWS\system32\AntiTool.exe
2008-05-22 22:20 . 2008-05-22 22:20 1,044,480 --a------ D:\WINDOWS\system32\libdivx.dll
2008-05-22 22:20 . 2008-05-22 22:20 200,704 --a------ D:\WINDOWS\system32\ssldivx.dll

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-06-22 16:08 18,829 ----a-w D:\WINDOWS\system32\drivers\alg.exe
2008-06-20 23:32 --------- d--h--w D:\Program Files\InstallShield Installation Information
2008-06-18 19:14 --------- d-----w D:\Program Files\Windows Live Safety Center
2008-05-20 22:26 --------- d-----w D:\Documents and Settings\youssef\Application Data\Skype
2008-05-18 14:27 --------- d-----w D:\Program Files\A4Proxy
2008-05-15 13:44 --------- d-----w D:\Documents and Settings\youssef\Application Data\vlc
2008-05-15 13:14 --------- d-----w D:\Program Files\VideoLAN
2008-04-28 20:46 --------- d-----w D:\Program Files\Sun
2008-04-28 20:46 --------- d-----w D:\Program Files\Java
2008-04-28 20:42 --------- d-----w D:\Program Files\Fichiers communs\Java
2008-04-28 10:13 --------- d-----w D:\Program Files\Menara
2008-03-29 13:00 94,212 ----a-w D:\~.exe.36692.exe
2008-03-29 13:00 94,212 ----a-w D:\~.exe.36522.exe
2008-03-29 13:00 94,212 ----a-w D:\~.exe.35210.exe
2008-03-29 13:00 94,212 ----a-w D:\~.exe.34940.exe
2008-03-29 13:00 94,212 ----a-w D:\~.exe.32687.exe
2008-03-29 12:59 94,212 ----a-w D:\~.exe.35691.exe
2008-03-29 12:59 94,212 ----a-w D:\~.exe.35190.exe
2008-03-29 12:58 94,212 ----a-w D:\~.exe.35891.exe
2008-03-29 12:58 94,212 ----a-w D:\~.exe.35801.exe
2008-03-29 12:58 94,212 ----a-w D:\~.exe.35170.exe
2008-03-29 12:57 93,696 ----a-w D:\~.exe.24174.exe
2008-03-29 12:57 93,696 ----a-w D:\~.exe.23674.exe
2008-03-29 12:56 93,696 ----a-w D:\~.exe.23784.exe
2008-03-29 12:47 93,696 ----a-w D:\~.exe.84841.exe
2008-03-29 12:47 93,696 ----a-w D:\~.exe.81797.exe
2008-03-29 12:47 93,696 ----a-w D:\~.exe.80205.exe
2008-03-29 12:47 93,696 ----a-w D:\~.exe.20038.exe
2008-03-29 12:47 93,696 ----a-w D:\~.exe.19738.exe
2008-03-29 12:47 93,696 ----a-w D:\~.exe.19457.exe
2008-03-29 11:50 93,696 ----a-w D:\~.exe.22231.exe
2008-03-29 11:50 93,696 ----a-w D:\~.exe.22211.exe
2008-03-29 11:50 93,696 ----a-w D:\~.exe.22201.exe
2008-03-29 11:50 93,696 ----a-w D:\~.exe.22141.exe
2008-03-29 11:50 93,696 ----a-w D:\~.exe.22131.exe
2008-03-29 11:50 93,696 ----a-w D:\~.exe.22121.exe
2008-03-29 11:50 93,696 ----a-w D:\~.exe.20219.exe
2008-03-29 11:50 93,696 ----a-w D:\~.exe.20058.exe
2008-03-24 11:30 100,130 --sh--r D:\ino6.com
2008-03-23 00:46 100,883 --sh--r D:\cb.bat
2008-03-22 10:29 101,608 --sh--r D:\h1dwg20.exe
.

------- Sigcheck -------

2006-03-09 08:25 578048 0df75fb73f705b011630159a43d7c354 D:\WINDOWS\system32\user32.dll

2006-04-12 18:13 667648 241dbc4c2714b2f39afded49459ed420 D:\WINDOWS\system32\wininet.dll

2006-02-14 19:56 359808 667192a11db19f36624119c0dd4de4f2 D:\WINDOWS\system32\drivers\tcpip.sys

2006-05-09 08:11 2058880 73fa9c95d235844a36968c7852c7dbdd D:\WINDOWS\system32\ntkrnlpa.exe

2006-03-09 08:25 2181376 63729dd0f2aae36cc52b89c05505146c D:\WINDOWS\system32\ntoskrnl.exe
.
((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
REGEDIT4
*Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MsnMsgr"="D:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 10:34 5724184]
"AdobeUpdater"="D:\Program Files\Fichiers communs\Adobe\Updater5\AdobeUpdater.exe" [2008-01-28 13:53 2321600]
"Nokia.PCSync"="D:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe" [2008-03-26 18:41 1232896]
"PC Suite Tray"="D:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" [2008-04-16 12:53 1079808]
"BitComet"="D:\program files\bitcomet\bitcomet.exe" [2008-06-03 03:42 2596152]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Config"="D:\WINDOWS\system32\run.cmd" [2006-02-14 10:24 248]
"nlsf"="move" []
"tscuninstall"="D:\WINDOWS\system32\tscupgrd.exe" [2004-08-19 14:52 44544]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"MemCheckBoxInRunDlg"= 1 (0x1)
"NoSMBalloonTip"= 1 (0x1)
"NoDesktopCleanupWizard"= 1 (0x1)
"NoWelcomeScreen"= 1 (0x1)
"NoStrCmpLogical"= 0 (0x0)
"NoInstrumentation"= 0 (0x0)

[HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
"MemCheckBoxInRunDlg"= 1 (0x1)
"NoSMBalloonTip"= 1 (0x1)
"NoDesktopCleanupWizard"= 1 (0x1)
"NoWelcomeScreen"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001
"AntiVirusDisableNotify"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"DisablePagingExecutive"=dword:00000001
"SecondLevelDataCache"=dword:00000200

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"DisableUnicastResponsesToMulticastBroadcast"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"D:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"D:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"D:\\Documents and Settings\\All Users.WINDOWS\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Internet Security 7.0.1.325\\French\\setup.exe"=
"D:\\WINDOWS\\system32\\usmt\\migwiz.exe"=
"D:\\Skype.exe"=
"D:\\Program Files\\BitComet\\BitComet.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"21382:TCP"= 21382:TCP:BitComet 21382 TCP
"21382:UDP"= 21382:UDP:BitComet 21382 UDP

R3 CAM1690;USB 2.0 Compliance JPEG Video Camera;D:\WINDOWS\system32\Drivers\cam1690.sys [2007-01-05 12:45]

.
**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-22 16:24:35
Windows 5.1.2600 Service Pack 2 NTFS

Balayage processus cach‚s ...

Balayage cach‚ autostart entries ...

Balayage des fichiers cach‚s ...

Scan termin‚ avec succŠs
Les fichiers cach‚s: 0

**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
D:\Program Files\Menara\dslmon.exe
D:\Program Files\PC Connectivity Solution\ServiceLayer.exe
D:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
D:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
D:\Program Files\Fichiers communs\Nokia\MPAPI\MPAPI3s.exe
.
**************************************************************************
.
Temps d'accomplissement: 2008-06-22 16:29:52 - machine was rebooted
ComboFix-quarantined-files.txt 2008-06-22 16:29:47

Pre-Run: 51,410,575,360 octets libres
Post-Run: 51,455,426,560 octets libres

213
0
Utilisateur anonyme
22 juin 2008 à 16:36
Télécharge HijackThis ici :

-> http://www.trendsecure.com/portal/en-US/_download/HJTInstall.exe


Tutoriel d´instalation : (Merci a Balltrap34 pour cette réalisation)

-> http://pageperso.aol.fr/balltrap34/Hijenr.gif

Tutoriel d´utilisation (video) : (Merci a Balltrap34 pour cette réalisation)

-> http://perso.orange.fr/rginformatique/section%20virus/demohijack.htm

Post le rapport généré ici stp...
0
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009
22 juin 2008 à 16:39
me revoilà
rapport de hijack

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:38:43, on 22/06/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\WINDOWS\system32\svchost.exe
D:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe
D:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe
D:\Program Files\Menara\dslmon.exe
D:\Program Files\PC Connectivity Solution\ServiceLayer.exe
D:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
D:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
D:\Program Files\Fichiers communs\Nokia\MPAPI\MPAPI3s.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\explorer.exe
D:\Program Files\internet explorer\iexplore.exe
D:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
D:\Program Files\Windows Live\Messenger\msnmsgr.exe
D:\Program Files\Windows Live\Messenger\usnsvc.exe
D:\Program Files\internet explorer\iexplore.exe
D:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.atcomet.com/b/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ycomp/defaults/su/*https://fr.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://www.menara.ma/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - D:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - D:\program files\BitComet\tools\BitCometBHO_1.2.2.28.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - D:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - D:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKCU\..\Run: [MsnMsgr] "D:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [AdobeUpdater] D:\Program Files\Fichiers communs\Adobe\Updater5\AdobeUpdater.exe
O4 - HKCU\..\Run: [Nokia.PCSync] "D:\Program Files\Nokia\Nokia PC Suite 6\PCSync2.exe" /NoDialog
O4 - HKCU\..\Run: [PC Suite Tray] "D:\Program Files\Nokia\Nokia PC Suite 6\PCSuite.exe" -onlytray
O4 - HKCU\..\Run: [BitComet] "D:\program files\bitcomet\bitcomet.exe" /tray
O4 - HKUS\S-1-5-19\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [nlsf] cmd.exe /C move /Y "%SystemRoot%\System32\syssetub.dll" "%SystemRoot%\System32\syssetup.dll" (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\RunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [Config] %systemroot%\system32\run.cmd (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = D:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: DSLMON.lnk = D:\Program Files\Menara\dslmon.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://D:\program files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://D:\program files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://D:\program files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Add to Anti-Banner - D:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\ie_banner_deny.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - D:\WINDOWS\bdoscandel.exe
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://D:\program files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD40/JSCDL/jre/6u5-b19/jinstall-6u5-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD40/JSCDL/jre/6u5-b19/jinstall-6u5-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u5-windows-i586-jc.cab&AuthParam=1580944752_ad714b48b0d186f5adbe4ba05260ecbd&ext=.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{DF0AF4AE-A09E-46C0-A540-841633CF00E2}: NameServer = 212.217.1.4 212.217.0.14
O23 - Service: ServiceLayer - Nokia. - D:\Program Files\PC Connectivity Solution\ServiceLayer.exe
0
Utilisateur anonyme
22 juin 2008 à 16:51
télécharge OTMoveIt http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe (de Old_Timer) sur ton Bureau.
double-clique sur OTMoveIt.exe pour le lancer.
copie la liste qui se trouve en gras ci-dessous,
et colle-la dans le cadre de gauche de OTMoveIt :Paste List of Files/Folders to be moved.

<gras>D:\WINDOWS\system32\AntiTool.exe
D:\sqmnoopt11.sqm
D:\sqmdata11.sqm
D:\WINDOWS\system32\d3d8caps.dat
D:\ino6.com
D:\cb.bat
D:\h1dwg20.exe </gras



clique sur MoveIt! pour lancer la suppression.
le résultat apparaitra dans le cadre "Results".
clique sur Exit pour fermer.
poste le rapport situé dans C:\_OTMoveIt\MovedFiles.


ensuite :

* Téléchargez ELIBAGLA en bas de cette page http://www.zonavirus.com/datos/descargas/95/elibagla.asp
* Clique sur le bouton Descargar Elibagla cela va télécharger le fichier, placez le sur votre bureau.
* Double-cliquez dessus pour l'ouvrir
* Assurez-vous que dans le menu déroulant Unidad, vous avez bien C:\
* Vérifiquez aussi que l'option en bas de la fenêtre Eliminar Ficheros Automaticamente est bien cochée
* Cliquez sur le bouton Explorar pour lancer l'analyse

Si, dans le rapport,elibaga tu vois un texte semblable à celui-ci

Por favor, envienos una muestra del fichero
C:\Muestras\HLDRRR.EXE.Muestra EliBagle v10.24
a "virus@satinfo.es". Gracias;

envoie ce(s) fichier(s) (dans l'exemple C:\Muestras\HLDRRR.EXE.Muestra EliBagle v10.24 ) à l'adresse e-mail indiquée (virus@satinfo.es).



il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes.

0
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009
22 juin 2008 à 17:10
rapport otmoved dans la zone resultat

File/Folder D:\WINDOWS\system32\AntiTool.exe not found.
File/Folder D:\sqmnoopt11.sqm not found.
File/Folder D:\sqmdata11.sqm not found.
File/Folder D:\WINDOWS\system32\d3d8caps.dat not found.
File/Folder D:\ino6.com not found.
File/Folder D:\cb.bat not found.
File/Folder D:\h1dwg20.exe not found.

OTMoveIt2 by OldTimer - Version 1.0.4.2 log created on 06222008_170240



pour elibagla l'analyse est fini et ya rien ni rapport ni message
0
Utilisateur anonyme
22 juin 2008 à 17:25
réouvre hijackthis
fais scan only
coche ces lignes :

O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://D:\program files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - https://sdlc-esd.oracle.com/ESD40/JSCDL/jre/6u5-b19/jinstall-6u5-windows-i586-jc.cab?GroupName=JSC&FilePath=/ESD40/JSCDL/jre/6u5-b19/jinstall-6u5-windows-i586-jc.cab&BHost=javadl.sun.com&File=jinstall-6u5-windows-i586-jc.cab&AuthParam=1580944752_ad714b48b0d186f5adbe4ba05260ecbd&ext=.cab

et clic sur fix checked

ensuite désnstal java car pas a jours et telecharge et instal cette version :

https://www.java.com/fr/download/manual.jsp

internet explorer n est pas a jours telecharge et instal cette version :

https://support.microsoft.com/fr-fr/allproducts

ENSUITE :

tu n as pas de protection :

telecharge et instal antivir (antivirus) :
->https://www.01net.com/telecharger/windows/Securite/antivirus-antitrojan/fiches/13198.html

pas de parefeu :

pare-feu gratuits


télécharger la version gratuite de Zone alarm
https://www.pcastuces.com/logitheque/zonealarm.htm
TUTO
http://securite-facile.ovh.org/zonealarm.php
http://forum.telecharger.01net.com/forum/


ou

télécharger la version gratuite de Kerio
Kerio (parefeu)
https://www.clubic.com/telecharger-fiche11071-sunbelt-personal-firewall-ex-kerio.html
TUTO
https://kerio.probb.fr/
SITE de Kerio
https://kerio.probb.fr/

ou

ComodoFirewallPro 2.4 téléchargement
http://www.personalfirewall.comodo.com/
Tuto pour la 2.4
https://infomars.fr/forum/index.php?s=908072e48ff7cf0359366440cb26c93f&showtopic=389
Tuto pour la 2.4
http://www.nordicnature.net/tutorials/comodo/cf24wiz.htm
Attention la 3.0 est en anglais uniquement et est plus difficile a paramétrer
Tuto pour la 3.0
https://infomars.fr/forum/index.php?showtopic=1225

ou

OnlineArmor :
téléchargement:https://www.commentcamarche.net/telecharger/ 34055356 online armor personal firewall

tutoriels:https://forum.pcastuces.com/sujet.asp?f=25&s=35606
:https://www.malekal.com/tutorial-online-armor-free/



A lire :

https://www.commentcamarche.net/contents/992-firewall-pare-feu


ensuite :

-> Télécharge Ccleaner (n'installe pas la barre d'outil Yahoo):

http://download.piriform.com/ccsetup205.exe

-> L´installer.

-> Une fois installé et lancé :

Dans la colonne de gauche, click sur :

->"registre" :

Coches toutes les cases sous"l´integrité du registre", puis click en bas sur "chercher des erreurs" une fois terminé, clic sur "reparer les erreurs", tu auras un message pour sauvegarder ta base de registre, tu click "oui" puis tu recommence jusqu'à ce qu'il ne trouve plus rien.

ps : les sauvegardes que tu auras faites, pourront etre supprimées ulterieurement si tout va bien.

->"nettoyeur"

quitte ton navigateur avant de le lancer, dans les propriétés du nettoyeur de l´onglet "windows" et "applications"décoche la derniere case (Avancé si elle est cochée) puis click sur "lancer le nettoyage" qunand il aura terminé le scan click en bas a droite sur "lancer le nettoyage" et accepte par oui.

-> Tutoriel en image :

https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php

-> Pour ceux qui voudraient aller plus loin en compagnie de jesses (fonctions avancés) :

http://perso.orange.fr/jesses/Docs/Logiciels/CCleaner.htm


ensuite :

* pour supprimer les outils/fix utilisés :

Télécharge ToolsCleaner sur ton bureau.
-->
http://pagesperso-orange.fr/AceRothstein/ToolsCleaner2.exe
http://a-rothstein.changelog.fr/TC/ToolsCleaner2.exe

# Clique sur Recherche et laisse le scan agir ...
# Clique sur Suppression pour finaliser.
# Tu peux, si tu le souhaites, te servir des Options facultatives.
# Clique sur Quitter pour obtenir le rapport.
# Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).






0
en attendant le téléchargement de ie version 7
antivir me fait a chaque fois qu'un trojan est detecté
normalement je dois move to quarantine, supprimer, renomer, ignorer ou deny access ??

celui là il apparait a chaque fois:
D:\program files\winrar\uninstall.exe
is the trojan horse TR/Crypt.XDR.Gen

normalement je fais move to quarantine
0
Utilisateur anonyme
22 juin 2008 à 18:45
oui quarantaine
0
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009
22 juin 2008 à 19:56
la connexion au réseau local ne marche plus depuis que j'ai téléchargé zone alarm
0
Utilisateur anonyme
22 juin 2008 à 20:02
c un soucis de configuration

aide toi du tuto

sinon change pour kerio car il est plus simple a configurer ...
0
kawtarr Messages postés 16 Date d'inscription samedi 21 juin 2008 Statut Membre Dernière intervention 4 août 2009
22 juin 2008 à 20:46
d'accord
je voulais vous faire part de ce antivir qui me signale chaque 2 seconde un virus ou un trojan :s :s
mais les fenetres ne s'ouvrent plus de plus que la connexion est maintenant impec devrai je m'inquietter ?
une dernière question entre parenthèse est ce que je peux installer kaspersky en+ de antivir car j'ai le cd d'instalation ?

Merci beaucoup pour votre aide je suis très contente !
0