Mon PC est infecté voici qq rapports
anne
-
anne -
anne -
Bonjour,
antivir a détécté de nombreux virus sur mon PC, une centaine ! ce doit être une erreur... voici pour vous donner un premier aperçu le rapport antivir après le scan et celui de hijackthis. et merci d'avance à celui qui voudra bien me sortir de cette galère...
anne
Avira AntiVir Personal
Report file date: lundi 17 novembre 2008 16:19
Scanning for 1038250 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: ANNE
Version information:
BUILD.DAT : 8.2.0.336 16933 Bytes 30/10/2008 11:40:00
AVSCAN.EXE : 8.1.4.7 315649 Bytes 26/06/2008 09:57:53
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 08:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 13:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 08:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 19:04:40
ANTIVIR1.VDF : 7.1.0.56 411136 Bytes 09/11/2008 15:14:40
ANTIVIR2.VDF : 7.1.0.89 221184 Bytes 16/11/2008 15:14:43
ANTIVIR3.VDF : 7.1.0.95 35328 Bytes 17/11/2008 15:14:44
Engineversion : 8.2.0.31
AEVDF.DLL : 8.1.0.6 102772 Bytes 06/11/2008 19:05:11
AESCRIPT.DLL : 8.1.1.15 332156 Bytes 17/11/2008 15:15:03
AESCN.DLL : 8.1.1.5 123251 Bytes 17/11/2008 15:15:01
AERDL.DLL : 8.1.1.3 438645 Bytes 06/11/2008 19:05:06
AEPACK.DLL : 8.1.3.4 393591 Bytes 17/11/2008 15:15:00
AEOFFICE.DLL : 8.1.0.30 196986 Bytes 17/11/2008 15:14:58
AEHEUR.DLL : 8.1.0.71 1487222 Bytes 17/11/2008 15:14:57
AEHELP.DLL : 8.1.1.3 119157 Bytes 17/11/2008 15:14:48
AEGEN.DLL : 8.1.1.0 319859 Bytes 17/11/2008 15:14:47
AEEMU.DLL : 8.1.0.9 393588 Bytes 06/11/2008 19:04:44
AECORE.DLL : 8.1.4.1 172405 Bytes 17/11/2008 15:14:45
AEBB.DLL : 8.1.0.3 53618 Bytes 06/11/2008 19:04:41
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 09:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 10:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 06/11/2008 19:04:41
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 12:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 09:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 13:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 18:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 13:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 13:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 14:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 14:34:37
Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox,
Macro heuristic..................: on
File heuristic...................: medium
Skipped files....................: C:/ATI,
Deviating risk categories........: +APPL,+GAME,+JOKE,+PCK,+SPR,
Start of the scan: lundi 17 novembre 2008 16:19
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'Watch.exe' - '1' Module(s) have been scanned
Scan process 'ALERTM~1.EXE' - '1' Module(s) have been scanned
Scan process 'PollingModule.exe' - '1' Module(s) have been scanned
Scan process 'Inactivity.exe' - '1' Module(s) have been scanned
Scan process 'Toaster.exe' - '1' Module(s) have been scanned
Scan process 'ComComp.exe' - '1' Module(s) have been scanned
Scan process 'EspaceWanadoo.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'TaskBarIcon.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'CnxDslTb.exe' - '1' Module(s) have been scanned
Scan process 'USBTip.exe' - '1' Module(s) have been scanned
Scan process 'qttask.exe' - '1' Module(s) have been scanned
Scan process 'sm56hlpr.exe' - '1' Module(s) have been scanned
Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'PMSHost.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'sqlservr.exe' - '1' Module(s) have been scanned
Scan process 'MDM.EXE' - '1' Module(s) have been scanned
Scan process 'FTRTSVC.exe' - '1' Module(s) have been scanned
Scan process 'guard.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
46 processes with 46 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '49' files ).
Starting the file scan:
Begin scan in 'C:\' <n01080>
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\AP\Bureau\clean\pskill.exe
[DETECTION] Contains recognition pattern of the APPL/Tool.PsKill.2 application
[NOTE] The file was moved to '498c8c53.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024381.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196b0.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024390.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196b4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024391.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196b8.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024392.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196bb.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024393.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196be.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024403.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196c0.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024508.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196c6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024519.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196c9.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024520.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196cb.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024521.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196cd.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024533.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196cf.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024534.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196d1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024535.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196d3.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024545.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196d6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024546.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196d8.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024547.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196da.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024561.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196dc.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024562.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeaf.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024563.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeb3.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024577.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aeb6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024578.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeb9.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024579.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aebb.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024592.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aec1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024593.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aec3.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024594.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aec5.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024606.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aec7.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024607.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aecf.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024608.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aed2.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024620.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aed4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024621.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aed6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024622.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aedb.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024632.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aedd.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024633.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aedf.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024634.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aee2.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024635.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aee4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024639.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aee8.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024640.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeea.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024641.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aeec.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024649.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeee.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024650.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aef0.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024651.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aef2.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024662.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aef4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024663.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aef6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024664.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aef8.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024669.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aefc.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024670.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aefe.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024671.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af00.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024678.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af02.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024679.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af04.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024680.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af06.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024681.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af09.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024692.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af0c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024693.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af0e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024694.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af10.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024698.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af13.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024699.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af15.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024700.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af17.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024708.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af19.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024709.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af1b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024710.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af1e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024723.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af20.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024724.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af23.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024725.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af25.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024736.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af27.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024737.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af29.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024738.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af2b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024753.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af2d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024755.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af2f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024757.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af31.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024774.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af33.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024775.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af35.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024776.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af37.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024777.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af39.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024783.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af3c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024784.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af3e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024785.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af40.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024800.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af42.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024801.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af44.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024802.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af46.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024815.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af48.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024816.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af4a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024817.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af4c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024828.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af4e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024830.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af50.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024832.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af52.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024842.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af54.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024843.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af57.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024844.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af59.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024855.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af5d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024856.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af5f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024857.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af62.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024868.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af65.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024869.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af67.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024870.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af69.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024881.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af6b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024882.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af6e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024883.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af70.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024884.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af72.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024895.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af75.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024897.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af77.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024898.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af79.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024914.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af7d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024929.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af7f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024930.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af81.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024944.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af84.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024961.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af87.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024962.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af89.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024976.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af8b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024977.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af8d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024978.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af90.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024994.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af92.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024995.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b09e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024996.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0a1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025009.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b0a4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025010.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0a6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025011.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0a7.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025024.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b0a9.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025025.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0ac.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025026.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0ae.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0026027.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b0b1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0026028.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b111.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0026029.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b113.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0027025.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b115.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0027026.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b117.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0027028.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b119.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027033.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b11c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027034.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b11e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027035.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b120.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027042.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b123.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027043.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b125.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027044.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b127.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027045.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b129.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027058.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b12b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027059.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b12c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027060.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b12e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027061.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b130.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027074.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b132.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027075.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b134.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027076.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b136.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027090.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b138.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027091.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b13a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027092.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b13b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027100.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b13f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027101.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b141.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027102.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b143.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027109.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b145.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027110.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b146.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027111.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b148.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027123.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b14a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027124.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b14c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027125.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b14e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027139.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b152.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027140.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b154.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027141.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b156.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027152.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b157.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027153.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b159.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027154.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b15c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027167.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b15f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027168.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b160.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027169.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b162.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027170.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b164.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027183.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b166.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027184.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b168.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027185.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b16a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027200.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b16c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027201.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b16e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027202.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b170.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP232\A0027298.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b17b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP232\A0027299.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b17d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP232\A0027300.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b17f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP235\A0027449.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b18d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP235\A0027450.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b18f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP235\A0027451.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b191.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0027717.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b1a1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0027718.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b1a3.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0027719.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b1a5.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0027939.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b1b0.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0028072.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b1b4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0028073.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b1b6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP240\A0028414.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] The file was moved to '4951b1fc.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP242\A0028608.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] The file was moved to '4951b206.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP242\A0028609.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] The file was moved to '4951b208.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP242\A0028610.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] The file was moved to '4951b20a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP242\A0028694.exe
[DETECTION] Contains recognition pattern of the APPL/Tool.PsKill.2 application
[NOTE] The file was moved to '4951b221.qua'!
End of the scan: lundi 17 novembre 2008 19:17
Used time: 2:57:53 Hour(s)
The scan has been done completely.
6894 Scanning directories
473187 Files were scanned
185 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
185 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
473000 Files not concerned
13374 Archives were scanned
2 Warnings
185 Notes
Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 19:21:34, on 17/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\Wanadoo\Watch.exe
C:\Documents and Settings\AP\Bureau\HiJackThis_v2.exe
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [USBToolTip] "C:\Program Files\Pinnacle\Shared Files\\Programs\USBTip\USBTip.exe"
O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852"
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [USB2Check] RUNDLL32.EXE "C:\WINDOWS\system32\PCLECoInst.dll",CheckUSBController
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{6E4EF3C6-7209-425A-9015-46C83F8D70B4}: NameServer = 80.10.246.130 81.253.149.10
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe
O23 - Service: Pinnacle Systems Media Service (PinnacleSys.MediaServer) - Pinnacle Systems - C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe
antivir a détécté de nombreux virus sur mon PC, une centaine ! ce doit être une erreur... voici pour vous donner un premier aperçu le rapport antivir après le scan et celui de hijackthis. et merci d'avance à celui qui voudra bien me sortir de cette galère...
anne
Avira AntiVir Personal
Report file date: lundi 17 novembre 2008 16:19
Scanning for 1038250 virus strains and unwanted programs.
Licensed to: Avira AntiVir PersonalEdition Classic
Serial number: 0000149996-ADJIE-0001
Platform: Windows XP
Windows version: (Service Pack 2) [5.1.2600]
Boot mode: Normally booted
Username: SYSTEM
Computer name: ANNE
Version information:
BUILD.DAT : 8.2.0.336 16933 Bytes 30/10/2008 11:40:00
AVSCAN.EXE : 8.1.4.7 315649 Bytes 26/06/2008 09:57:53
AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 08:56:40
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 13:44:19
LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 08:58:52
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 19:04:40
ANTIVIR1.VDF : 7.1.0.56 411136 Bytes 09/11/2008 15:14:40
ANTIVIR2.VDF : 7.1.0.89 221184 Bytes 16/11/2008 15:14:43
ANTIVIR3.VDF : 7.1.0.95 35328 Bytes 17/11/2008 15:14:44
Engineversion : 8.2.0.31
AEVDF.DLL : 8.1.0.6 102772 Bytes 06/11/2008 19:05:11
AESCRIPT.DLL : 8.1.1.15 332156 Bytes 17/11/2008 15:15:03
AESCN.DLL : 8.1.1.5 123251 Bytes 17/11/2008 15:15:01
AERDL.DLL : 8.1.1.3 438645 Bytes 06/11/2008 19:05:06
AEPACK.DLL : 8.1.3.4 393591 Bytes 17/11/2008 15:15:00
AEOFFICE.DLL : 8.1.0.30 196986 Bytes 17/11/2008 15:14:58
AEHEUR.DLL : 8.1.0.71 1487222 Bytes 17/11/2008 15:14:57
AEHELP.DLL : 8.1.1.3 119157 Bytes 17/11/2008 15:14:48
AEGEN.DLL : 8.1.1.0 319859 Bytes 17/11/2008 15:14:47
AEEMU.DLL : 8.1.0.9 393588 Bytes 06/11/2008 19:04:44
AECORE.DLL : 8.1.4.1 172405 Bytes 17/11/2008 15:14:45
AEBB.DLL : 8.1.0.3 53618 Bytes 06/11/2008 19:04:41
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 09:40:05
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 10:28:01
AVREP.DLL : 8.0.0.2 98344 Bytes 06/11/2008 19:04:41
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 12:26:40
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 09:29:23
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 13:27:49
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 18:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 13:49:40
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 13:05:10
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 14:48:07
RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 14:34:37
Configuration settings for the scan:
Jobname..........................: Complete system scan
Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
Logging..........................: low
Primary action...................: interactive
Secondary action.................: ignore
Scan master boot sector..........: on
Scan boot sector.................: on
Boot sectors.....................: C:,
Process scan.....................: on
Scan registry....................: on
Search for rootkits..............: off
Scan all files...................: All files
Scan archives....................: on
Recursion depth..................: 20
Smart extensions.................: on
Deviating archive types..........: +BSD Mailbox, +Netscape/Mozilla Mailbox, +Eudora Mailbox, +Squid cache, +Pegasus Mailbox, +MS Outlook Mailbox,
Macro heuristic..................: on
File heuristic...................: medium
Skipped files....................: C:/ATI,
Deviating risk categories........: +APPL,+GAME,+JOKE,+PCK,+SPR,
Start of the scan: lundi 17 novembre 2008 16:19
The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'Watch.exe' - '1' Module(s) have been scanned
Scan process 'ALERTM~1.EXE' - '1' Module(s) have been scanned
Scan process 'PollingModule.exe' - '1' Module(s) have been scanned
Scan process 'Inactivity.exe' - '1' Module(s) have been scanned
Scan process 'Toaster.exe' - '1' Module(s) have been scanned
Scan process 'ComComp.exe' - '1' Module(s) have been scanned
Scan process 'EspaceWanadoo.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'TaskBarIcon.exe' - '1' Module(s) have been scanned
Scan process 'GoogleToolbarNotifier.exe' - '1' Module(s) have been scanned
Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
Scan process 'avgas.exe' - '1' Module(s) have been scanned
Scan process 'CnxDslTb.exe' - '1' Module(s) have been scanned
Scan process 'USBTip.exe' - '1' Module(s) have been scanned
Scan process 'qttask.exe' - '1' Module(s) have been scanned
Scan process 'sm56hlpr.exe' - '1' Module(s) have been scanned
Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned
Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'PMSHost.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'sqlservr.exe' - '1' Module(s) have been scanned
Scan process 'MDM.EXE' - '1' Module(s) have been scanned
Scan process 'FTRTSVC.exe' - '1' Module(s) have been scanned
Scan process 'guard.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
46 processes with 46 modules were scanned
Starting master boot sector scan:
Master boot sector HD0
[INFO] No virus was found!
Start scanning boot sectors:
Boot sector 'C:\'
[INFO] No virus was found!
Starting to scan the registry.
The registry was scanned ( '49' files ).
Starting the file scan:
Begin scan in 'C:\' <n01080>
C:\hiberfil.sys
[WARNING] The file could not be opened!
C:\pagefile.sys
[WARNING] The file could not be opened!
C:\Documents and Settings\AP\Bureau\clean\pskill.exe
[DETECTION] Contains recognition pattern of the APPL/Tool.PsKill.2 application
[NOTE] The file was moved to '498c8c53.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024381.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196b0.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024390.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196b4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024391.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196b8.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024392.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196bb.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024393.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196be.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP216\A0024403.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196c0.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024508.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196c6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024519.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196c9.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024520.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196cb.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024521.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196cd.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024533.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196cf.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024534.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196d1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP217\A0024535.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196d3.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024545.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196d6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024546.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '495196d8.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024547.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196da.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024561.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '495196dc.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024562.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeaf.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024563.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeb3.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024577.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aeb6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024578.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeb9.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP218\A0024579.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aebb.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024592.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aec1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024593.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aec3.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024594.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aec5.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024606.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aec7.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024607.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aecf.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024608.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aed2.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024620.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aed4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024621.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aed6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024622.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aedb.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024632.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aedd.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024633.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aedf.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024634.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aee2.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP219\A0024635.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aee4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024639.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aee8.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024640.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeea.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024641.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aeec.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024649.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aeee.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024650.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aef0.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024651.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aef2.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024662.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aef4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024663.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951aef6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP220\A0024664.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aef8.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024669.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aefc.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024670.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951aefe.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024671.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af00.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024678.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af02.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024679.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af04.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024680.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af06.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024681.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af09.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024692.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af0c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024693.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af0e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP221\A0024694.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af10.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024698.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af13.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024699.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af15.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024700.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af17.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024708.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af19.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024709.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af1b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024710.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af1e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024723.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af20.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024724.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af23.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024725.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af25.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024736.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af27.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024737.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af29.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024738.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af2b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024753.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af2d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024755.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af2f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024757.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af31.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024774.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af33.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024775.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af35.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024776.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af37.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP222\A0024777.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af39.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024783.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af3c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024784.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af3e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024785.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af40.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024800.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af42.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024801.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af44.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024802.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af46.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024815.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af48.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024816.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af4a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024817.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af4c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024828.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af4e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024830.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af50.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024832.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af52.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024842.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af54.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024843.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af57.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024844.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af59.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024855.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af5d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024856.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af5f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP223\A0024857.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af62.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024868.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af65.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024869.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af67.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024870.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af69.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024881.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af6b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024882.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af6e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024883.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af70.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024884.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af72.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024895.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af75.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024897.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af77.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP224\A0024898.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af79.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024914.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af7d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024929.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af7f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024930.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af81.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024944.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af84.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024961.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af87.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024962.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af89.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024976.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af8b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024977.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951af8d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024978.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af90.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024994.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951af92.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024995.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b09e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0024996.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0a1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025009.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b0a4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025010.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0a6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025011.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0a7.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025024.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b0a9.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025025.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0ac.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0025026.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b0ae.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0026027.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b0b1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0026028.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b111.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0026029.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b113.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0027025.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b115.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0027026.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b117.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP225\A0027028.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b119.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027033.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b11c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027034.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b11e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027035.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b120.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027042.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b123.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027043.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b125.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027044.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b127.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027045.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b129.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027058.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b12b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027059.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b12c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027060.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b12e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027061.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b130.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027074.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b132.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027075.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b134.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027076.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b136.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027090.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b138.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027091.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b13a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP226\A0027092.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b13b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027100.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b13f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027101.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b141.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027102.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b143.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027109.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b145.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027110.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b146.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027111.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b148.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027123.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b14a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027124.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b14c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP227\A0027125.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b14e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027139.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b152.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027140.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b154.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027141.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b156.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027152.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b157.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027153.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b159.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027154.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b15c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027167.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b15f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027168.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b160.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027169.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b162.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027170.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b164.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027183.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b166.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027184.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b168.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027185.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b16a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027200.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b16c.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027201.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b16e.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP228\A0027202.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b170.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP232\A0027298.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b17b.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP232\A0027299.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b17d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP232\A0027300.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b17f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP235\A0027449.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b18d.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP235\A0027450.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b18f.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP235\A0027451.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b191.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0027717.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b1a1.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0027718.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b1a3.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0027719.inf
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b1a5.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0027939.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b1b0.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0028072.vbs
[DETECTION] Contains recognition pattern of the VBS/IETitle.C VBS script virus
[NOTE] The file was moved to '4951b1b4.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP237\A0028073.INF
[DETECTION] Contains recognition pattern of the VBS/IETitle.A VBS script virus
[NOTE] The file was moved to '4951b1b6.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP240\A0028414.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] The file was moved to '4951b1fc.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP242\A0028608.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] The file was moved to '4951b206.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP242\A0028609.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] The file was moved to '4951b208.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP242\A0028610.exe
[DETECTION] Is the TR/Crypt.CFI.Gen Trojan
[NOTE] The file was moved to '4951b20a.qua'!
C:\System Volume Information\_restore{2FCA1D87-23B3-4B6A-8914-63D068CC57CE}\RP242\A0028694.exe
[DETECTION] Contains recognition pattern of the APPL/Tool.PsKill.2 application
[NOTE] The file was moved to '4951b221.qua'!
End of the scan: lundi 17 novembre 2008 19:17
Used time: 2:57:53 Hour(s)
The scan has been done completely.
6894 Scanning directories
473187 Files were scanned
185 viruses and/or unwanted programs were found
0 Files were classified as suspicious:
0 files were deleted
0 files were repaired
185 files were moved to quarantine
0 files were renamed
2 Files cannot be scanned
473000 Files not concerned
13374 Archives were scanned
2 Warnings
185 Notes
Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 19:21:34, on 17/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Pinnacle\MediaServer\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\sm56hlpr.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Wanadoo\EspaceWanadoo.exe
C:\Program Files\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\Program Files\Wanadoo\Watch.exe
C:\Documents and Settings\AP\Bureau\HiJackThis_v2.exe
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SMSERIAL] sm56hlpr.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [USBToolTip] "C:\Program Files\Pinnacle\Shared Files\\Programs\USBTip\USBTip.exe"
O4 - HKLM\..\Run: [CnxDslTaskBar] "C:\Program Files\ZTE Corporation\ZXDSL852\CnxDslTb.exe" "ZTE Corporation\ZXDSL852"
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [USB2Check] RUNDLL32.EXE "C:\WINDOWS\system32\PCLECoInst.dll",CheckUSBController
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{6E4EF3C6-7209-425A-9015-46C83F8D70B4}: NameServer = 80.10.246.130 81.253.149.10
O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe
O23 - Service: Pinnacle Systems Media Service (PinnacleSys.MediaServer) - Pinnacle Systems - C:\Program Files\Pinnacle\Shared Files\Programs\MediaServer\PMSHost.exe
O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe
A voir également:
- Mon PC est infecté voici qq rapports
- Mon pc est lent - Guide
- Reinitialiser pc - Guide
- Ma cle usb n'est pas reconnu par mon pc - Guide
- Downloader for pc - Télécharger - Téléchargement & Transfert
- Plus de son sur mon pc - Guide
1 réponse
tout est ok
Une version plus récente du service pack est disponible. Les service packs augmentent la sécurité de votre système. Visitez le site de Microsoft Windows update pour télécharger la dernière version du service pack.
Essaye d'installer ccleaner pour faire un petit nettoyage de ton pc, voici le tuto puis ensuite refait une analyse avec ton antivirus.
Une version plus récente du service pack est disponible. Les service packs augmentent la sécurité de votre système. Visitez le site de Microsoft Windows update pour télécharger la dernière version du service pack.
Essaye d'installer ccleaner pour faire un petit nettoyage de ton pc, voici le tuto puis ensuite refait une analyse avec ton antivirus.
Merci beaucoup pour ton message et désolée de te répondre si tard, je n'ai pas touché terre...
j'ai fait un clean , il y avait effectivement 2 ou 3 trucs à supprimer je fais de ce pas un nouveau scan
merci encore
@nne