[runtime error !]

Bonjour,
j'ai une fenetre qui apparais souvant
Runtime error !
program ... gram files\sunbelt software\personal firewall\assist.exe
pourriez vous m'aider svp
pour info j'ai:
avast antivirus,sunbelt kerio personal firewall,ccleaner
Configuration: Windows XP
Internet Explorer 7.0

38 réponses

Résumé de la discussion

Un problème récurrent lié à une fenêtre d’erreur d’exécution apparaît sur un système Windows XP, affectant les programmes Sunbelt Personal Firewall et Assist.exe, en présence d Avast, Kerio Personal Firewall et CCleaner. Les échanges indiquent des propositions pour vérifier les configurations, pour désinstaller des composants, pour suivre des manipulations pas à pas, avec des tutoriels et des conseils sur l’usage d’outils de diagnostic. La réponse la plus candide rappelle d’utiliser les instructions postées et décrit des étapes préalables, tandis que d’autres évoquent la réinstallation, la suppression de Kerio et la récupération du fond d’écran.

Bobot (l’IA à votre service)
  1. Contributeur
    Merçi.

    Mais est ce que tout ceci a résolu ton problème de papier peint?
    0
    1. Contributeur
      Ca c'est un écran de veille. A priori, tu n'as pas à accepter.
      0
      1. merci pour toute tes interventions
        un grand respect a toi
        encors merci pour tous
        0
    2. Contributeur
      Oui tu peux supprimer les rapports.

      Pour les programmes, tu acceptes les programmes que tu connais. donc pour les 3 que tu m'as cité'avast, AVG, wanadoo), la réponse est oui.

      Tu dois avoir une options pour accepter de manière définitive les "intrusions" des programmes que tu as cités.
      0
      1. autre message de kerio:
        tentative d'intrusion bloquee:
        c:\windows\system32\logon.scr
        0
    3. Contributeur
      par conte kerio m'affiche souvant de fenetres me disant qu'il bloque des tentatives d'intrusion

      elles parlent de quels programmes, ces fenêtres?
      0
      1. wanadoo,avast,avg,etc...
        0
      2. je peut supprimer les rapport de mon ordi ?
        0
    4. Contributeur
      Avec ça tu devrais plus l'avoir:

      https://www.clubic.com/telecharger-fiche21437-removewga.html

      Faisons le point.
      As-tu d'autres messages, alertes ou erreurs?

      0
      1. apres le redemarrage j'ai plus l'icone,ar conte kerio m'affiche souvant de fenetres me disant qu'il bloque des tentatives d'intrusion.je doit desinsataller des programme que tu ma fait telecharger ?ci oui dit moi les quel svp
        0
    5. Contributeur
      Ben pourquoi tu me reposte un log hijackthis?

      Tu as fais ce qui est marqué post <40>?
      0
      1. j'ai fait ce que tu ma demander par contre impossible de trouve la cle correspondant a ALUSchedulerSvc.exe

        Logfile of HijackThis v1.99.1
        Scan saved at 10:59:12, on 02/02/2007
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        MSIE: Internet Explorer v7.00 (7.00.5730.0011)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\csrss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
        C:\WINDOWS\system32\nvsvc32.exe
        C:\WINDOWS\System32\snmp.exe
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
        C:\WINDOWS\system32\fxssvc.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\System32\alg.exe
        C:\WINDOWS\system32\WgaTray.exe
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        C:\Program Files\SPAMfighter\SFAgent.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
        C:\PROGRA~1\WANADOO\GestionnaireInternet.exe
        C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
        C:\PROGRA~1\WANADOO\ComComp.exe
        C:\PROGRA~1\WANADOO\Toaster.exe
        C:\PROGRA~1\WANADOO\Inactivity.exe
        C:\PROGRA~1\WANADOO\PollingModule.exe
        C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
        C:\PROGRA~1\WANADOO\Watch.exe
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\Internet Explorer\IEXPLORE.EXE
        C:\Program Files\Kerio\Personal Firewall 4\assist.exe
        C:\Documents and Settings\thierry berthier\Mes documents\Thierry BERTHIER\hijackthis\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
        R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://profile.microsoft.com/RegSysProfileCenter/ErrorPage.aspx?aspxerrorpath=/RegSysProfileCenter/pplogon.aspx
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
        O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
        O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\WANADOO\Shell.exe appLaunchClientZone.shl|PARAM= cnx
        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
        O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
        O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
        O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
        O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
        O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
        O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
        O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
        O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
        O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

        0
      2. suite a la manipe que tu ma demander de faire j'ai un icone sue la barre de tache en bas a droite qui me marque (vous etes peut etre victime d'une contrefacon de logiciel)
        0
    6. Contributeur
      Coches et fixes les lignes suivantes:

      R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
      O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
      O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
      O11 - Options group: [INTERNATIONAL] International*
      O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://thmamano.spaces.live.com//PhotoUpload/MsnPUpld.cab
      O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
      O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
      O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
      O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
      O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
      Ensuite tu fais Démarrer>>executer>>regedit et tu valides.

      Vas jusqu'à la clé suivante:

      [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services]

      Et efface la clé correspondant à ALUSchedulerSvc.exe

      J'attends
      0
      1. Logfile of HijackThis v1.99.1
        Scan saved at 10:02:24, on 02/02/2007
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        MSIE: Internet Explorer v7.00 (7.00.5730.0011)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
        C:\WINDOWS\system32\nvsvc32.exe
        C:\WINDOWS\System32\snmp.exe
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
        C:\WINDOWS\system32\fxssvc.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        C:\Program Files\SPAMfighter\SFAgent.exe
        C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
        C:\PROGRA~1\WANADOO\GestionnaireInternet.exe
        C:\PROGRA~1\WANADOO\ComComp.exe
        C:\PROGRA~1\WANADOO\Toaster.exe
        C:\PROGRA~1\WANADOO\Inactivity.exe
        C:\PROGRA~1\WANADOO\PollingModule.exe
        C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
        C:\PROGRA~1\WANADOO\Watch.exe
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\Internet Explorer\IEXPLORE.EXE
        C:\Documents and Settings\thierry berthier\Mes documents\Thierry BERTHIER\hijackthis\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
        R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://profile.microsoft.com/RegSysProfileCenter/ErrorPage.aspx?aspxerrorpath=/RegSysProfileCenter/pplogon.aspx
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
        O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
        O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
        O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
        O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
        O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\WANADOO\Shell.exe appLaunchClientZone.shl|PARAM= cnx
        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
        O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
        O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
        O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
        O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
        O11 - Options group: [INTERNATIONAL] International*
        O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
        O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
        O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://thmamano.spaces.live.com//PhotoUpload/MsnPUpld.cab
        O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
        O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
        O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
        O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
        O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
        O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
        O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
        O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
        O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
        O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

        0
        1. Contributeur
          Tu parles de ça: ALUSchedulerSvc.exe ?

          Si tu le trouve pas ,tant mieux! Ca veut dire qu'il a disparu des services.

          Repostes un log hijackthis qu'on s'en assure.
          0
          1. rapport d'avg

            ---------------------------------------------------------
            AVG Anti-Spyware - Rapport d'analyse
            ---------------------------------------------------------

            + Créé à: 09:52:34 02/02/2007

            + Résultat de l'analyse:

            [728] VM_034F0000 -> Downloader.Agent.uj : Aucune action entreprise.
            [764] VM_00C20000 -> Downloader.Agent.uj : Aucune action entreprise.

            Fin du rapport

            ---------------------------------------------------------
            AVG Anti-Spyware - Rapport d'analyse
            ---------------------------------------------------------

            + Créé à: 09:56:08 02/02/2007

            + Résultat de l'analyse:

            [728] VM_034F0000 -> Downloader.Agent.uj : Nettoyé et sauvegardé (mise en quarantaine).
            [764] VM_00C20000 -> Downloader.Agent.uj : Nettoyé et sauvegardé (mise en quarantaine).

            Fin du rapport

            0
        2. bonjour blondin777,
          j'ai reussi a tous faire sauf les elements qui suivent meme avec le tuto,peut tu encors m'aider svp ?(excuse moi je suis lourd!!!)

          < 28 > blondin777 (jeudi 1 février 2007 à 14:34:15)

          Coches et fixes les lignes suivantes:

          O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
          O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\WANADOO\GestMaj.exe TaskBarIcon.exe
          O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
          O4 - HKLM\..\Run: [dmssg.exe] C:\WINDOWS\system32\dmssg.exe
          O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

          Je continues:

          O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
          O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
          O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://thmamano.spaces.live.com//PhotoUpload/MsnPUpld.cab
          O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
          O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
          O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150

          Vas dans le menu démarrer -> executer et tu tapes : services.msc

          ** Cherche les services suivants :

          ALUSchedulerSvc.exe -> impossible a trouvé

          Double clic dessus : dans le champs "Status du service" met le sur "arrêté"
          dans le champs"Type de démarrage" met le sur "désactivé" puis "Appliquer" puis"ok"
          Quitte les services.

          Fais une recherche sur ces 2 fichiers et supprimes les:
          ALUSchedulerSvc.exe -> impossible a trouvé

          --
          Le savoir n’est richesse que s'il est partagé
          0
          1. Contributeur
            Re

            Eh bien dis moi, pour de l'infection, en voilà une sévère!!!

            Tu vides ta corbeille.
            Tu désactives ta restauration système en faisant start(ou logo windows)+pause>>onglet restauration et tu coches la case correspondante. tu cliques oui dans la fenêtre qui s'ouvre.

            Relances CCleaner. Il devrait pouvoir te virer ce fichier temp.
            Relances AVG

            A+
            0
            1. Logfile of HijackThis v1.99.1
              Scan saved at 10:15:09, on 02/02/2007
              Platform: Windows XP SP2 (WinNT 5.01.2600)
              MSIE: Internet Explorer v7.00 (7.00.5730.0011)

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\system32\spoolsv.exe
              C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
              C:\Program Files\Alwil Software\Avast4\ashServ.exe
              C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
              C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
              C:\WINDOWS\system32\nvsvc32.exe
              C:\WINDOWS\System32\snmp.exe
              C:\WINDOWS\system32\svchost.exe
              C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
              C:\WINDOWS\system32\fxssvc.exe
              C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
              C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
              C:\WINDOWS\Explorer.EXE
              C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
              C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
              C:\Program Files\SPAMfighter\SFAgent.exe
              C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
              C:\PROGRA~1\WANADOO\GestionnaireInternet.exe
              C:\PROGRA~1\WANADOO\ComComp.exe
              C:\PROGRA~1\WANADOO\Toaster.exe
              C:\PROGRA~1\WANADOO\Inactivity.exe
              C:\PROGRA~1\WANADOO\PollingModule.exe
              C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
              C:\PROGRA~1\WANADOO\Watch.exe
              C:\WINDOWS\System32\svchost.exe
              C:\Program Files\Internet Explorer\IEXPLORE.EXE
              C:\Documents and Settings\thierry berthier\Mes documents\Thierry BERTHIER\hijackthis\HijackThis.exe

              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
              R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://profile.microsoft.com/RegSysProfileCenter/ErrorPage.aspx?aspxerrorpath=/RegSysProfileCenter/pplogon.aspx
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
              R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
              O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
              O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
              O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
              O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
              O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
              O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
              O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
              O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
              O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
              O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\WANADOO\Shell.exe appLaunchClientZone.shl|PARAM= cnx
              O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
              O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
              O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
              O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
              O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
              O11 - Options group: [INTERNATIONAL] International*
              O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
              O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
              O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
              O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
              O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
              O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
              O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
              O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
              O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
              O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
              O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
              O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
              O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
              O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
              O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
              O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe

              0
          2. ce fut long mais je pense que ce fut du bon travail
            sur ces quelque mots je vais me coucher
            tient moi au courant svp
            merci de tes consil par avance
            ps:peut tu me dire ce que je doit desinstaller puis avast ma detecter un cheval de troie:
            win 32: fakealert[tri] c:\documen~1\thierr~1\local~1\temp\tmp4
            0
            1. BitDefender Online Scanner

              Rapport d'analyse généré à: Fri, Feb 02, 2007 - 00:24:56

              Voie d'analyse: C:\;D:\;E:\;F:\;G:\;H:\;I:\;

              Statistiques

              Temps
              00:52:44

              Fichiers
              477765

              Directoires
              4541

              Secteurs de boot
              4

              Archives
              20170

              Paquets programmes
              64073

              Résultats

              Virus identifiés
              7

              Fichiers infectés
              285

              Fichiers suspects
              0

              Avertissements
              0

              Désinfectés
              0

              Fichiers effacés
              291

              Info sur les moteurs

              Définition virus
              417820

              Version des moteurs
              AVCORE v1.0 (build 2371) (i386) (Dec 13 2006 11:16:42)

              Analyse des plugins
              14

              Archive des plugins
              38

              Unpack des plugins
              6

              E-mail plugins
              6

              Système plugins
              1

              Paramètres d'analyse

              Première action
              Désinfecté

              Seconde Action
              Supprimé

              Heuristique
              Oui

              Acceptez les avertissements
              Oui

              Extensions analysées
              *;

              Excludez les extensions

              Analyse d'emails
              Oui

              Analyse des Archives
              Oui

              Analyser paquets programmes
              Oui

              Analyse des fichiers
              Oui

              Analyse de boot
              Oui

              Fichier analysé
              Statut

              C:\WINDOWS\system32\dmmha.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\WINDOWS\system32\dmmha.exe
              Echec de la désinfection

              C:\WINDOWS\system32\dmmha.exe
              Supprimé

              C:\WINDOWS\system32\dmcyf.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\WINDOWS\system32\dmcyf.exe
              Echec de la désinfection

              C:\WINDOWS\system32\dmcyf.exe
              Supprimé

              C:\WINDOWS\system32\dmjao.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\WINDOWS\system32\dmjao.exe
              Echec de la désinfection

              C:\WINDOWS\system32\dmjao.exe
              Supprimé

              C:\WINDOWS\system32\dmxxs.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\WINDOWS\system32\dmxxs.exe
              Echec de la désinfection

              C:\WINDOWS\system32\dmxxs.exe
              Supprimé

              C:\WINDOWS\system32\spmrgaat.exe
              Infecté par: Dropped:Trojan.Fakealert.AW

              C:\WINDOWS\system32\spmrgaat.exe
              Echec de la désinfection

              C:\WINDOWS\system32\spmrgaat.exe
              Supprimé

              C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A137A0B.exe=>(Quarantine-2)
              Infecté par: GenPack:Trojan.Swizzor.HH

              C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A137A0B.exe=>(Quarantine-2)
              Supprimé

              C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F6E5C26.exe=>(Quarantine-2)
              Infecté par: GenPack:Trojan.Swizzor.DH

              C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F6E5C26.exe=>(Quarantine-2)
              Echec de la désinfection

              C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F6E5C26.exe=>(Quarantine-2)
              Supprimé

              C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3270530A.exe=>(Quarantine-2)
              Infecté par: Trojan.Downloader.Swizzor.EM

              C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3270530A.exe=>(Quarantine-2)
              Echec de la désinfection

              C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3270530A.exe=>(Quarantine-2)
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP369\A0070434.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP369\A0070434.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP369\A0070434.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP369\A0070456.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP369\A0070456.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP369\A0070456.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070492.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070492.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070492.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070511.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070511.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070511.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070521.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070521.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070521.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070526.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070526.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0070526.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071521.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071521.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071521.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071526.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071526.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071526.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071529.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071529.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071529.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071535.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071535.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071535.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071537.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071537.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071537.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071542.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071542.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071542.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071545.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071545.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071545.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071550.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071550.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0071550.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072142.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072142.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072142.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072148.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072148.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072148.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072175.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072175.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072175.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072180.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072180.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP370\A0072180.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072398.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072398.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072398.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072426.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072426.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072426.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072430.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072430.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072430.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072436.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072436.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP371\A0072436.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072446.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072446.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072446.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072452.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072452.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072452.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072455.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072455.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072455.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072461.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072461.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP372\A0072461.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073455.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073455.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073455.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073461.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073461.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073461.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073464.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073464.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073464.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073469.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073469.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073469.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073473.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073473.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0073473.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074252.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074252.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074252.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074291.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074291.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074291.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074303.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074303.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074303.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074309.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074309.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP376\A0074309.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074520.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074520.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074520.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074526.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074526.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074526.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074554.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074554.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074554.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074566.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074566.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074566.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074596.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074596.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074596.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074602.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074602.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074602.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074619.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074619.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074619.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074626.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074626.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074626.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074639.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074639.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074639.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074645.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074645.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074645.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074710.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074710.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074710.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074716.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074716.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP377\A0074716.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0074739.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0074739.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0074739.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075024.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075024.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075024.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075814.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075814.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075814.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075820.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075820.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075820.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075822.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075822.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075822.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075828.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075828.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075828.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075830.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075830.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075830.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075836.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075836.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP378\A0075836.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0075842.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0075842.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0075842.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076139.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076139.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076139.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076929.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076929.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076929.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076935.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076935.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076935.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076941.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076941.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076941.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076947.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076947.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076947.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076949.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076949.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076949.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076955.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076955.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076955.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076958.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076958.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076958.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076964.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076964.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP379\A0076964.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP380\A0077211.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP380\A0077211.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP380\A0077211.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP380\A0077217.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP380\A0077217.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP380\A0077217.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP384\A0077264.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP384\A0077264.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP384\A0077264.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP384\A0077269.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP384\A0077269.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP384\A0077269.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077273.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077273.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077273.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077279.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077279.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077279.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077281.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077281.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077281.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077288.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077288.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077288.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077294.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077294.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077294.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077299.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077299.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077299.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077304.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077304.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077304.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077479.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077479.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077479.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077485.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077485.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077485.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077489.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077489.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077489.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077495.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077495.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP385\A0077495.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP386\A0077511.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP386\A0077511.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP386\A0077511.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP386\A0077517.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP386\A0077517.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP386\A0077517.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077527.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077527.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077527.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077533.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077533.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077533.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077535.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077535.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077535.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077541.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077541.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077541.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077543.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077543.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077543.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077549.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077549.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077549.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077551.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077551.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077551.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077557.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077557.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077557.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077559.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077559.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077559.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077565.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077565.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP387\A0077565.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077624.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077624.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077624.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077631.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077631.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077631.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077814.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077814.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077814.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077822.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077822.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077822.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077827.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077827.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP388\A0077827.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0077843.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0077843.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0077843.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0077849.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0077849.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0077849.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078843.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078843.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078843.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078848.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078848.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078848.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078854.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078854.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078854.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078856.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078856.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078856.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078862.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078862.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078862.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078864.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078864.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078864.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078870.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078870.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078870.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078872.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078872.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078872.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078878.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078878.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078878.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078880.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078880.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078880.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078886.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078886.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078886.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078888.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078888.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078888.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078894.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078894.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078894.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078896.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078896.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078896.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078902.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078902.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078902.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078904.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078904.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078904.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078910.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078910.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078910.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078912.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078912.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078912.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078918.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078918.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078918.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078920.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078920.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078920.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078926.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078926.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP389\A0078926.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP390\A0078929.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP390\A0078929.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP390\A0078929.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP390\A0078935.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP390\A0078935.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP390\A0078935.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078974.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078974.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078974.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078979.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078979.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078979.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078984.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078984.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078984.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078989.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078989.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0078989.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0079984.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0079984.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0079984.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0079989.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0079989.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0079989.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080571.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080571.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080571.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080577.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080577.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080577.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080607.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080607.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080607.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080615.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080615.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP391\A0080615.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080620.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080620.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080620.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080625.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080625.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080625.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080641.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080641.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080641.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080647.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080647.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080647.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080656.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080656.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080656.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080664.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080664.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0080664.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0081656.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0081656.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0081656.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0081665.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0081665.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP392\A0081665.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0081680.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0081680.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0081680.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0081687.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0081687.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0081687.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0082680.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0082680.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0082680.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0082689.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0082689.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0082689.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083680.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083680.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083680.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083689.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083689.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083689.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083736.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083736.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083736.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083741.exe
              Infecté par: MemScan:Trojan.Agent.AER

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083741.exe
              Echec de la désinfection

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP393\A0083741.exe
              Supprimé

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP394\A0083760.exe
              Infecté par: Trojan.Downloader.Mohbpork.A

              C:\System Volume Information\_restore{B9D0E5F6-E511-4444-9DC5-6BB00D18522D}\RP394\A0083760.exe
              Echec d
              0
              1. BitDefender Online Scanner - Rapport virus en temps réel

                Généré à: Fri, Feb 02, 2007 - 00:27:37

                --------------------------------------------------------------------------------

                Info d'analyse

                Fichiers scannés
                477797

                Infectés Fichiers
                285

                Virus Détectés

                DeepScan:Generic.Zlob.CDAAE811
                1

                Dropped:Trojan.Fakealert.AW
                2

                MemScan:Trojan.Agent.AER
                140

                Trojan.Downloader.Swizzor.EM
                2

                GenPack:Trojan.Swizzor.HH
                2

                Trojan.Downloader.Mohbpork.A
                136

                GenPack:Trojan.Swizzor.DH
                2

                --------------------------------------------------------------------------------

                Ce sommaire du processus d'analyse sera utilisé par les laboratoires Antivirus BitDefender pour créer des statistiques agréguées sur l'activité des virus dans le monde.

                0
                1. Contributeur
                  Dans le post <22>, je t'ai mis les liens vers des tuto animés qui t'expliques comment procéder.

                  A+

                  PS: t'étais bien infecté...
                  0
                  1. que veut tu dire par:

                    Coches et fixes les lignes suivantes:

                    O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
                    O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\WANADOO\GestMaj.exe TaskBarIcon.exe
                    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                    O4 - HKLM\..\Run: [dmssg.exe] C:\WINDOWS\system32\dmssg.exe
                    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

                    0
                    1. ---------------------------------------------------------
                      AVG Anti-Spyware - Rapport d'analyse
                      ---------------------------------------------------------

                      + Créé à: 16:34:32 01/02/2007

                      + Résultat de l'analyse:

                      C:\Program Files\HQvideo -> Adware.HQvideo : Nettoyé.
                      [1968] VM_00B50000 -> Downloader.Agent.uj : Nettoyé.
                      [416] VM_003D0000 -> Downloader.Agent.uj : Nettoyé.
                      [432] VM_003D0000 -> Downloader.Agent.uj : Nettoyé.
                      [464] VM_00B30000 -> Downloader.Agent.uj : Nettoyé.
                      [480] VM_003F0000 -> Downloader.Agent.uj : Nettoyé.
                      [504] VM_008E0000 -> Downloader.Agent.uj : Nettoyé.
                      [584] VM_009C0000 -> Downloader.Agent.uj : Nettoyé.
                      [728] VM_034F0000 -> Downloader.Agent.uj : Nettoyé.
                      [764] VM_00C20000 -> Downloader.Agent.uj : Nettoyé.
                      :mozilla.65:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
                      :mozilla.67:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
                      :mozilla.69:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
                      :mozilla.70:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
                      C:\Documents and Settings\thierry berthier\Cookies\thierry_berthier@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
                      :mozilla.35:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
                      C:\Documents and Settings\thierry berthier\Cookies\thierry_berthier@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyé.
                      :mozilla.8:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
                      C:\Documents and Settings\thierry berthier\Cookies\thierry_berthier@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
                      C:\Documents and Settings\thierry berthier\Cookies\thierry_berthier@doubleclick[2].txt -> TrackingCookie.Doubleclick : Nettoyé.
                      :mozilla.21:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
                      :mozilla.28:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
                      :mozilla.29:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
                      :mozilla.30:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
                      :mozilla.31:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
                      :mozilla.32:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
                      :mozilla.33:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
                      :mozilla.22:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
                      :mozilla.23:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
                      :mozilla.24:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
                      :mozilla.44:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
                      :mozilla.45:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
                      :mozilla.26:C:\Program Files\Wanadoo\Config\Thierry BERTHIER\Firefox\cookies.txt -> TrackingCookie.Weborama : Nettoyé.

                      Fin du rapport

                      0
                      1. Contributeur
                        Coches et fixes les lignes suivantes:

                        O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
                        O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\WANADOO\GestMaj.exe TaskBarIcon.exe
                        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                        O4 - HKLM\..\Run: [dmssg.exe] C:\WINDOWS\system32\dmssg.exe
                        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

                        Tu fais demarrer>>executer>>msconfig>>onglet démarrage et tu désactives les processus suivants:
                        GestMaj.exe TaskBarIcon.exe
                        dmssg.exe
                        ctfmon.exe
                        qttask.exe

                        Désinstalles windows defender et gardes AVG plutôt.

                        Je continues:

                        O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
                        O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
                        O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://thmamano.spaces.live.com//PhotoUpload/MsnPUpld.cab
                        O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                        O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
                        O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150

                        Vas dans le menu démarrer -> executer et tu tapes : services.msc

                        ** Cherche les services suivants :
                        FTRTSVC.exe
                        ALUSchedulerSvc.exe
                        symlcsvc.exe

                        Double clic dessus : dans le champs "Status du service" met le sur "arrêté"
                        dans le champs"Type de démarrage" met le sur "désactivé" puis "Appliquer" puis"ok"
                        Quitte les services.

                        Fais une recherche sur ces 2 fichiers et supprimes les:
                        ALUSchedulerSvc.exe
                        symlcsvc.exe
                        0
                        1. voici le rapport

                          Logfile of HijackThis v1.99.1
                          Scan saved at 14:53:13, on 01/02/2007
                          Platform: Windows XP SP2 (WinNT 5.01.2600)
                          MSIE: Internet Explorer v7.00 (7.00.5730.0011)

                          Running processes:
                          C:\Documents and Settings\thierry berthier\Mes documents\Thierry BERTHIER\hijackthis\HijackThis.exe

                          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
                          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                          R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://profile.microsoft.com/RegSysProfileCenter/ErrorPage.aspx?aspxerrorpath=/RegSysProfileCenter/pplogon.aspx
                          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
                          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                          R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\WANADOO\SEARCH~1.DLL
                          O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
                          O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)
                          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
                          O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
                          O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\WANADOO\Watch.exe
                          O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\WANADOO\GestMaj.exe TaskBarIcon.exe
                          O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
                          O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                          O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
                          O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
                          O4 - HKLM\..\Run: [dmssg.exe] C:\WINDOWS\system32\dmssg.exe
                          O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
                          O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\WANADOO\Shell.exe appLaunchClientZone.shl|PARAM= cnx
                          O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                          O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
                          O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
                          O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
                          O11 - Options group: [INTERNATIONAL] International*
                          O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab
                          O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
                          O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://thmamano.spaces.live.com//PhotoUpload/MsnPUpld.cab
                          O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                          O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
                          O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.116.73 85.255.112.150
                          O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
                          O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
                          O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
                          O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                          O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
                          O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
                          O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
                          O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
                          O23 - Service: Kerio Personal Firewall 4 (KPF4) - Kerio Technologies - C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
                          O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
                          O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
                          O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
                          O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe

                          0
                          1. Contributeur
                            J'attends, t'inquiètes...;-)
                            0
                            • 1
                            • 2