Bagle............encore

Fermé
metalin - 12 nov. 2008 à 14:58
anthony5151 Messages postés 10573 Date d'inscription vendredi 27 juin 2008 Statut Contributeur sécurité Dernière intervention 2 mars 2015 - 23 nov. 2008 à 02:20
Bonjour,
moi aussi, je serais infecté par çe virus, puis je suivre la méthode precedemment cité ou y a t'il un cas particulier pour chaque remède? je joints un rapport ELIBAGLA , et à l'avance je vous remercie pour votre aide.
Cordialement

Wed Nov 12 14:02:31 2008
EliBagle v11.95 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 10 de Noviembre del 2008)
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Bagle Acceso Denegado.
C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS --> Bagle (rootkit) Acceso Denegado.
Restaurada Clave: "SafeBoot\Minimal y Network"
Reinicie para Completar la Limpieza.

Wed Nov 12 14:03:13 2008
EliBagle v11.95 (c)2008 S.G.H. / Satinfo S.L. (Actualizado el 10 de Noviembre del 2008)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
C:\Program Files\Fichiers communs\Adobe\Updater5\ADOBEUPDATER.EXE --> Eliminado Bagle.dldr

Nº Total de Directorios: 15854
Nº Total de Ficheros: 198993
Nº de Ficheros Analizados: 19471
Nº de Ficheros Infectados: 1
Nº de Ficheros Limpiados: 1
A voir également:

20 réponses

totobetourne Messages postés 5592 Date d'inscription dimanche 23 mars 2008 Statut Membre Dernière intervention 6 juin 2012 65
12 nov. 2008 à 16:14
comme antony n est peut etre pas la.on peu pour l instant continuer.



1)desinstalle elibagla.



2)Réouvre FindyKill , choisi cette fois ci l option 2 (Suppression)

/!\ il y aura 2 redémarrage, laisse travailler l outils jusqu a l apparition du message "nettoyage terminé"

-------> ensuite post le rapport FindyKill.txt

Note : le rapport FindyKill.txt est sauvegardé a la racine du disque
1
ok, j'éxécute
0
voila le rapport, par contre il n'y a pas eu de redémarrage, est ce normal ?


----------------- FindyKill V4.500 ------------------

* User : øOo PapOuneT oOø - LIFETEC
* Emplacement : C:\Program Files\FindyKill
* Outils Mis a jours le 12/11/08 par Chiquitine29
* Suppression effectuée à 16:19:11 le 12/11/2008
* Windows XP - Internet Explorer 7.0.5730.13


((((((((((((((( *** Suppression *** ))))))))))))))))))


--------------- [ Processus actifs ] ----------------


C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\agrsmsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\Home Cinema\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\OneStep\onestep.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\OneStep\onestep.exe
C:\WINDOWS\system32\CmUCReye.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\mHotkey.exe
C:\WINDOWS\CNYHKey.exe
C:\Program Files\Home Cinema\PowerDVD\PDVDServ.exe
C:\Program Files\Home Cinema\PowerCinema\PCMService.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\WINDOWS\AdobeR.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ScanWizard 5\ScannerFinder.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\WINDOWS\ALCFDRTM.EXE
C:\PROGRA~1\INCRED~1\bin\ImNotfy.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\Program Files\OneStep\onestep.exe
C:\WINDOWS\system32\CmUCReye.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\mHotkey.exe
C:\WINDOWS\CNYHKey.exe
C:\Program Files\Home Cinema\PowerDVD\PDVDServ.exe
C:\Program Files\Home Cinema\PowerCinema\PCMService.exe
C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
C:\WINDOWS\AdobeR.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Program Files\ScanWizard 5\ScannerFinder.exe
C:\WINDOWS\ALCFDRTM.EXE
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe

--------------- [ Fichiers / Dossiers infectieux ] ----------------


»»»» Supression des fichiers dans C:

Deleted ! - C:\InfoSat.txt

»»»» Supression des fichiers dans C:\WINDOWS


»»»» Supression des fichiers dans C:\WINDOWS\Prefetch

Deleted ! - C:\WINDOWS\prefetch\107671.EXE-0A142F37.pf
Deleted ! - C:\WINDOWS\prefetch\138921.EXE-2C79F83E.pf
Deleted ! - C:\WINDOWS\prefetch\140937.EXE-15AEFE0D.pf
Deleted ! - C:\WINDOWS\prefetch\15942859.EXE-20D79E66.pf
Deleted ! - C:\WINDOWS\prefetch\15966968.EXE-2868EE56.pf
Deleted ! - C:\WINDOWS\prefetch\15970390.EXE-0E17255B.pf
Deleted ! - C:\WINDOWS\prefetch\CNYHKEY.EXE-3024E8B1.pf
Deleted ! - C:\WINDOWS\prefetch\FLEC006.EXE-1F20B197.pf
Deleted ! - C:\WINDOWS\prefetch\MDELK.EXE-1D176F91.pf
Deleted ! - C:\WINDOWS\prefetch\MHOTKEY.EXE-28F476F7.pf
Deleted ! - C:\WINDOWS\prefetch\WINFILSE.EXE-17C2CF68.pf
Deleted ! - C:\WINDOWS\prefetch\WINTEMS.EXE-2A563F9B.pf

»»»» Supression des fichiers dans C:\WINDOWS\system32

Not deleted !! - C:\WINDOWS\system32\mdelk.exe
Not deleted !! - C:\WINDOWS\system32\wintems.exe
Deleted ! - C:\WINDOWS\system32\ban_list.txt

»»»» Supression des fichiers dans C:\WINDOWS\system32\drivers

Not deleted !! - C:\WINDOWS\system32\drivers\srosa.sys
Deleted ! - C:\WINDOWS\system32\drivers\srosa2.sys
Not deleted !! - C:\WINDOWS\system32\drivers\winfilse.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100324281.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100329453.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100330218.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100354718.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100357796.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100374609.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100392031.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100394171.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100517000.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100521546.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100530656.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\100536140.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\107671.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\114988531.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\114989328.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\114997421.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\114998218.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\115042203.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\115059125.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\115061109.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\115187750.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\115192125.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\115208625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\115216859.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\116218.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\117406.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\120859.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\122171.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\122234.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\123031.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\125875.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\127187.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\12950109.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\12957796.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\12958687.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\12979500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\13000515.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\13030906.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\13250687.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\13285765.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\13311109.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\133625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\134500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\137828.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\138625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\138921.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\140937.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\143250.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\145093.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\145812.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\147328.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\14807484.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\14808546.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\14826000.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\14847437.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\14864390.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\14866281.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\14953718.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15002093.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15008750.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15010734.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15021625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15022578.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15048015.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15067968.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15086156.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15088703.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15125015.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15159843.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15161640.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15164656.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15210531.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15241578.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15252500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15265828.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15269406.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15276515.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15298875.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15311484.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15336265.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15345250.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15402500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15430531.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15447234.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15475593.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15506906.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15507453.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15516203.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\155171.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15545875.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1557468.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1558593.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1568828.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1571515.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15755046.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15795937.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15805109.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\158484.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1592296.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15942859.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15948781.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15949984.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15966968.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15970390.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\15988000.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16010796.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1613187.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\161671.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\161687.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16171859.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16181968.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\164656.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16505812.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16511015.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16511859.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16519265.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16542218.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16578312.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\166406.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16657109.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16703562.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16710921.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\16712765.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\167156.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\167687.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\169406.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1780781.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1784171.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1784875.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\179703.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1809468.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1810187.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1813875.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1816562.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1850484.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\185187.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1887234.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\189656.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\193578.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\1966500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\198203.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\198281.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\201312.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\203671.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\203921.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\205359.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\2059765.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\206437.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\2066093.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\2067093.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\216890.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\217265.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\218921.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\221015.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\224937.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\227937.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\228984.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\229906.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\230140.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\232734.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\234625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\237375.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\241500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\250750.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\259265.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\267625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\269468.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\271734.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\27406171.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\27407500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\27452296.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\27477656.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\27496093.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\27598203.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\27646234.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\27653640.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\27655031.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\277312.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\279671.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\285421.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29466578.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29488218.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29493781.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29519328.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29548312.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29569531.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29578640.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29680468.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29720484.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29721296.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29726750.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29732968.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29736421.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29759468.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29777500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29780765.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29923750.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29933125.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\29947031.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\299828.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30026734.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30081453.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30087609.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30149625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30162796.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30190453.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30216515.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30229625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30416109.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30516656.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\30559984.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31152125.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31156953.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31157656.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31182593.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31201546.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31219296.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31221609.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31306328.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31359109.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31366937.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\31368203.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\313890.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\321593.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\321937.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\322625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\322828.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\330312.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\331906.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\333140.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\336890.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\339234.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\342046.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\342609.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\345671.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\352140.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\353203.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\356187.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\360015.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\363140.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\370843.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\379000.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\379828.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\380203.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\384890.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\392375.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\407000.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\412296.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\412359.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\413765.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\420609.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\427125.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\432000.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\441812.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\44190015.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\44191046.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\44237031.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\44254828.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\44256906.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\44336093.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\44384625.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\44391406.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\44392578.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\449453.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\45056265.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\451656.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\462109.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\462609.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\464843.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\478171.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\478937.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\489515.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\491937.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\494984.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\507750.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\514265.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\515328.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\516031.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\523531.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\524734.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\532984.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\546390.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\548421.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\550125.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\567781.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\608609.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\626875.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\645546.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\649578.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\654265.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\672375.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\679765.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\698156.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\704812.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\705828.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85611968.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85622140.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85622828.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85643812.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85646843.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85663921.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85681875.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85684250.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85813906.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85818421.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85850812.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\85859250.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8686953.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8696562.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8697859.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8716500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8720218.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8739218.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8775531.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8928515.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8941656.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\8950500.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9347859.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9375015.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9375796.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9389421.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9395125.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9413281.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9431203.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9433578.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9609125.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9614375.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9635984.exe
Deleted ! - C:\WINDOWS\system32\drivers\downld\9644828.exe
Deleted ! - "C:\WINDOWS\system32\drivers\downld"

»»»» Supression des fichiers dans C:\Documents and Settings\øOo PapOuneT oOø\Application Data


»»»» Supression des fichiers dans C:\DOCUME~1\OOPAPO~1\LOCALS~1\Temp


»»»» Supression des fichiers dans C:\Documents and Settings\øOo PapOuneT oOø\Local Settings\Temporary Internet Files\Content.IE5


--------------- [ Registre / Clés infectieuses ] ----------------

Deleted ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srosa
Deleted ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\srosa
Deleted ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\srosa
Deleted ! - HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA
Deleted ! - HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA

--------------- [ Etat / Redémarage des services ] ----------------

+- Mode sans echec restauré !

+- Affichage des fichiers cachés réparé !



+- Services : [ Auto=2 / Demande=3 / Désactivé=4 ]

Ndisuio - Type de démarrage = 3

EapHost - Type de démarrage = 2

Ip6Fw - Type de démarrage = 2

SharedAccess - Type de démarrage = 2

wuauserv - Type de démarrage = 2

wscsvc - Type de démarrage = 2


--------------- [ Nettoyage des supports amovibles ] ----------------

+- Informations :

C: - Lecteur fixe


+- Suppression des fichiers :


--------------- [ Registre / Moutpoint2 ] ----------------

Deleted ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{388f8f23-9ddc-11dd-b9df-0013d3b36f2f}\Shell\AutoRun\command
Deleted ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{729c11e6-4508-11dd-906b-0013d3b36f2f}\Shell\AutoRun\command
Deleted ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a4f19fc6-c9c4-11dc-b1eb-0012bf4fa2de}\Shell\AutoRun\command
Deleted ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a4f19fc6-c9c4-11dc-b1eb-0012bf4fa2de}\Shell\explore\Command
Deleted ! - HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a4f19fc6-c9c4-11dc-b1eb-0012bf4fa2de}\Shell\open\Command

--------------- [ Recherche Cracks / Keygen ] ----------------



---------------- ! Fin du rapport ! ------------------
0