Pages explorer CID intempestif

Bonjour,

J ai des pages explorer qui s affichent aleatoirement avec des pubs et pour intituler CID au debut.
Je n arrive pas a stopper ca.
Voici mon rapport HijackThis :

Logfile of HijackThis v1.99.1
Scan saved at 15:46:43, on 05/08/2007
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\smax4.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\WINDOWS\System32\temp1.exe
C:\WINDOWS\System32\rmctrl.exe
C:\WINDOWS\TPPALDR.EXE
C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Belkin\F5D9050\Belkinwcui.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\Ati2evxx.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\emule\emule.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\Documents and Settings\xx\Bureau\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.guanahrqxadnlnoodjduap.com/OWPD0RfiVvkNQKi1Gd/K9Rbww_shRgShscjvSRfYNCvg8rtXbwiiXoLoXVyF9BRf.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.orange.com/en
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Orange UK
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
F3 - REG:win.ini: load=C:\WINDOWS\svchost.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Orange - {4E7BD74F-2B8D-469E-A1FB-F862B587B57D} - C:\PROGRA~1\orange3\orange3.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Orange - {4E7BD74F-2B8D-469E-A1FB-F862B587B57D} - C:\PROGRA~1\orange3\orange3.dll
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\smax4.exe" /tray
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [TPP Auto Loader] C:\WINDOWS\TPPALDR.EXE
O4 - HKLM\..\Run: [5qdEGEER] C:\WINDOWS\anntxr.exe
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [TaskMon] C:\WINDOWS\System32\taskmon.exe
O4 - HKLM\..\Run: [bO²ùð!×y-¯Œ] C:\WINDOWS\anntxr.exe
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [F5D9050] C:\Program Files\Belkin\F5D9050\Belkinwcui.exe
O4 - HKLM\..\Run: [up mp3 dart safe] C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe
O4 - HKLM\..\Run: [Ball Eq Fast Safe] C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [seekdownload] C:\DOCUME~1\xx\APPLIC~1\BEEPON~1\DashAxis.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
O8 - Extra context menu item: orange search - file://C:\Program Files\ORANGE3\Cache\SelectedContextSearch.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE (file missing)
O14 - IERESET.INF: START_PAGE_URL=https://www.orange.com/en
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {45E83043-1F6F-4D22-A5E7-0138EA171B49} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/FileSharing/fr/filesharingctrl.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/3049de866c38ac6a7606/netzip/RdxIE601_fr.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
O17 - HKLM\System\CS1\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
O17 - HKLM\System\CS2\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
O20 - AppInit_DLLs: WIKI.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - McAfee, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

Quelqu un aurait une solution?

Merci
Configuration: Windows XP
Firefox 1.0.4

25 réponses

Résumé de la discussion

Le problème décrit une infection où des pages d’Explorateur s’affichent aléatoirement avec des publicités et l’intitulé CID, signe d’une compromission du navigateur et du système. Plusieurs outils et méthodes sont discutés pour nettoyer la machine, notamment HijackThis et l’identification des éléments de démarrage suspects. Les réponses proposent des mesures concrètes comme OTMoveIt, Flash Disinfector, et la suppression des fichiers suspects tels que temp1.exe et svchost.exe dans System32. D'autres observations indiquent que des éléments DNS et des services Windows peuvent maintenir l’infection, et qu’une désactivation temporaire de la restauration sous XP peut être préconisée avant un nouveau scan.

Bobot (l’IA à votre service)
  1. Contributeur
    Re,

    Si tu as encore OtmoveIT :

    Fais un copier colle de ce fichier dans la fenêtre de gauche :

    C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3

    Puis quand tu as copier/coller ce fichier, cliques sur OTmoveIT!
    1. Contributeur
      Re,

      Il faudrait peut-etre supprimer le fichier :

      C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3

      Non pas seulement l'exécutable ;)
      1. Contributeur
        Re,

        Désolé de refaire une interruption ;)
        Comme ton virus qui infecte les disques amovibles, est perlovga, on va vérifier, si il est vraiment parti ;)

        Donc pour cela :

        Téléchargez ce tool de sUBs : http://www.techsupportforum.com/sectools/sUBs/Flash_Disinfector.exe
        Double-cliquez sur le fichier, si votre antivirus fait une alerte, ignorez la.

        ET poste-moi le rapport ;)
        1. resalut darkiller, t'as vu le rapport!!!!

          je lui ai redemandé un scan car sur celui ci je n'ai trouvé que ce fichier non supprimer :

          C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe

          et bit def disais qu'il restait 3 fichiers infectés
      2. ¤Désactive ta restauration système (uniquement si tu es sous XP):
        Clic droit sur poste de travail puis,
        propriété, tu cliques sur onglet restauration système
        tu coches la case « désactiver la restauration » et applique.

        Puis,

        ¤Réactive ta restauration système (uniquement si tu es sous XP):
        Clic droit sur poste de travail puis,
        propriété, tu cliques sur onglet restauration système
        tu décoches la case « désactiver la restauration » et applique.

        redemarre et refais un nouveau scan avec bit defender pour verifier car 3 fichier infecté sont toujours la

        1. Voici le resultat de Bitdefender:

          BitDefender Online Scanner
          Rapport d'analyse généré à: Sun, Aug 05, 2007 - 21:06:37
          Voie d'analyse: A:\;C:\;D:\;E:\;F:\;G:\;

          Statistiques
          Temps 02:24:12

          Fichiers 413404
          Directoires 7938
          Secteurs de boot 5
          Archives 1287
          Paquets programmes 34451
          Résultats
          Virus identifiés 43

          Fichiers infectés 258

          Fichiers suspects 0

          Avertissements 0

          Désinfectés 0

          Fichiers effacés 255

          Info sur les moteurs

          Définition virus 689076

          Version des moteurs
          AVCORE v1.0 (build 2410) (i386) (Jun 12 2007 21:08:27)

          Analyse des plugins 14
          Archive des plugins 38
          Unpack des plugins 6
          E-mail plugins 6
          Système plugins 1
          Paramètres d'analyse
          Première action
          Désinfecté
          Seconde Action
          Supprimé

          Heuristique
          Oui

          Acceptez les avertissements
          Oui
          Extensions analysées

          *;

          Excludez les extensions

          Analyse d'emails
          Oui

          Analyse des Archives Oui

          Analyser paquets programmes
          Oui
          Analyse des fichier
          Oui
          Analyse de boot
          Oui
          Fichier analysé

          Statut

          C:\autorun.inf

          Infecté par: Trojan.Autorun.EU

          C:\autorun.inf

          Echec de la désinfection

          C:\autorun.inf

          Supprimé

          C:\copy.exe

          Infecté par: Backdoor.Hupigon.ADI

          C:\copy.exe

          Echec de la désinfection

          C:\copy.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe

          Infecté par: Trojan.FatObfus.AF

          C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\32 Ref Up Mp3\Army List.exe

          Echec de la suppression

          C:\Documents and Settings\All Users\Application Data\free body bleh five\armyfive.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\All Users\Application Data\free body bleh five\armyfive.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\armyfive.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Beep Cake.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Beep Cake.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Beep Cake.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\bind tray.exe

          nfecté par: Trojan.Swizzor.CZ

          C:\Documents and Settings\All Users\Application Data\free body bleh five\bind tray.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\bind tray.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\bolt trust.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\All Users\Application Data\free body bleh five\bolt trust.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\bolt trust.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Build Ref.exe

          Infecté par: Trojan.Downloader.Swizzor.DE

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Build Ref.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Build Ref.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Find start.exe

          Infecté par: Trojan.Downloader.Swizzor.DV

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Find start.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Insidetray.exe

          Infecté par: Trojan.Swizzor.BR

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Insidetray.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Insidetray.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Inter bash.exe

          Infecté par: Trojan.Downloader.Swizzor.CA

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Inter bash.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Inter bash.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Lite wma.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Lite wma.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Lite wma.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\memosoftware.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\All Users\Application Data\free body bleh five\memosoftware.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\memosoftware.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\mfcdseek.exe

          Infecté par: Trojan.Downloader.Swizzor.CN

          C:\Documents and Settings\All Users\Application Data\free body bleh five\mfcdseek.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\mfcdseek.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\multimeal.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\All Users\Application Data\free body bleh five\multimeal.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\multimeal.exe

          Supprimé
          C:\Documents and Settings\All Users\Application Data\free body bleh five\Proxy Store.exe

          Infecté par: Trojan.Downloader.Swizzor.DE

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Proxy Store.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Proxy Store.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\TransBags.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\All Users\Application Data\free body bleh five\TransBags.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\TransBags.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Wavedeaf.exe

          Infecté par: Trojan.FatObfus.Gen

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Wavedeaf.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\Wavedeaf.exe
          Supprimé

          C:\Documents and Settings\All Users\Application Data\free body bleh five\WinCdrom.exe

          Infecté par: Trojan.Downloader.Swizzor.DE

          C:\Documents and Settings\All Users\Application Data\free body bleh five\WinCdrom.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\free body bleh five\WinCdrom.exe

          Supprimé

          C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe

          Infecté par: Trojan.Obfuscated.GZ

          C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe

          Echec de la désinfection

          C:\Documents and Settings\All Users\Application Data\Tray Seek Safe 32\Load htm two.exe

          Supprimé

          C:\Documents and Settings\LocalService\Application Data\Beep One Setup\DashAxis.exe

          Infecté par: Trojan.Lopad.M

          C:\Documents and Settings\LocalService\Application Data\Beep One Setup\DashAxis.exe

          Echec de la désinfection

          C:\Documents and Settings\LocalService\Application Data\Beep One Setup\DashAxis.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\abeyqcoo.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\xx\Application Data\Beep One Setup\abeyqcoo.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\abeyqcoo.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\bcozufjz.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\xx\Application Data\Beep One Setup\bcozufjz.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\bcozufjz.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\boldcastelse.exe

          Infecté par: Trojan.Obfuscated.GZ

          C:\Documents and Settings\xx\Application Data\Beep One Setup\boldcastelse.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\boldcastelse.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\bupcwmle.exe

          Infecté par: Trojan.FatObfus.AF

          C:\Documents and Settings\xx\Application Data\Beep One Setup\bupcwmle.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\ceodtxru.exe

          Infecté par: Trojan.Downloader.Swizzor.DE

          C:\Documents and Settings\xx\Application Data\Beep One Setup\ceodtxru.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\ceodtxru.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\DashAxis.exe

          Infecté par: Trojan.FatObfus.AK

          C:\Documents and Settings\xx\Application Data\Beep One Setup\DashAxis.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\DashAxis.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\fsxbthkl.exe

          Infecté par: Trojan.FatObfus.Gen

          C:\Documents and Settings\xx\Application Data\Beep One Setup\fsxbthkl.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\fsxbthkl.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\gduzxjxb.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\xx\Application Data\Beep One Setup\gduzxjxb.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\gduzxjxb.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\iuuszdio.exe

          Infecté par: Trojan.Swizzor.CZ

          C:\Documents and Settings\xx\Application Data\Beep One Setup\iuuszdio.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\iuuszdio.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\jztgqitv.exe

          Infecté par: Trojan.Downloader.Swizzor.CC

          C:\Documents and Settings\xx\Application Data\Beep One Setup\jztgqitv.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\jztgqitv.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\kejkzito.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\xx\Application Data\Beep One Setup\kejkzito.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\kejkzito.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\kkgrdirh.exe

          Infecté par: Trojan.Downloader.Swizzor.DJ

          C:\Documents and Settings\xx\Application Data\Beep One Setup\kkgrdirh.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\kkgrdirh.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\owns else chin idol.exe

          Infecté par: Trojan.FatObfus.AG

          C:\Documents and Settings\xx\Application Data\Beep One Setup\owns else chin idol.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\parkleoc.exe

          Infecté par: Trojan.Downloader.Swizzor.DV

          C:\Documents and Settings\xx\Application Data\Beep One Setup\parkleoc.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\shwuctbj.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\xx\Application Data\Beep One Setup\shwuctbj.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\shwuctbj.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\ujbivhfj.exe

          Infecté par: Trojan.Swizzor.BR

          C:\Documents and Settings\xx\Application Data\Beep One Setup\ujbivhfj.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\ujbivhfj.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\venqeijh.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\xx\Application Data\Beep One Setup\venqeijh.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\venqeijh.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\vepsfviv.exe

          Infecté par: Trojan.Swizzor.X

          C:\Documents and Settings\xx\Application Data\Beep One Setup\vepsfviv.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\vepsfviv.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\vfcxiewu.exe

          Infecté par: Trojan.Downloader.Swizzor.DE

          C:\Documents and Settings\xx\Application Data\Beep One Setup\vfcxiewu.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\vfcxiewu.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\vshigjgp.exe

          Infecté par: Trojan.Downloader.Swizzor.DE

          C:\Documents and Settings\xx\Application Data\Beep One Setup\vshigjgp.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\vshigjgp.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\xledsphy.exe

          Infecté par: Trojan.Downloader.Swizzor.CN

          C:\Documents and Settings\xx\Application Data\Beep One Setup\xledsphy.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\xledsphy.exe

          Supprimé

          C:\Documents and Settings\xx\Application Data\Beep One Setup\ztdlwibq.exe

          Infecté par: Trojan.Downloader.Swizzor.CA

          C:\Documents and Settings\xx\Application Data\Beep One Setup\ztdlwibq.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Application Data\Beep One Setup\ztdlwibq.exe

          Supprimé

          C:\Documents and Settings\xx\Bureau\AdobeR.exe

          Infecté par: Worm.RJump.K

          C:\Documents and Settings\xx\Bureau\AdobeR.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Bureau\AdobeR.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\15e76a.exe

          Infecté par: Trojan.Downloader.Swizzor.CA

          C:\Documents and Settings\xx\Local Settings\Temp\15e76a.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\15e76a.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\agfhlfpx.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\agfhlfpx.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\agfhlfpx.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\ahxzuxwj.exe

          Infecté par: Trojan.Swizzor.L

          C:\Documents and Settings\xx\Local Settings\Temp\ahxzuxwj.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\ahxzuxwj.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\apyqmhfh.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\apyqmhfh.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\apyqmhfh.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\bdspgegf.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\bdspgegf.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\bdspgegf.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\cgunqxrs.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\cgunqxrs.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\cgunqxrs.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\ckjjcibl.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\ckjjcibl.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\ckjjcibl.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\cxaigtkj.exe

          Infecté par: Trojan.Downloader.Swizzor.CP

          C:\Documents and Settings\xx\Local Settings\Temp\cxaigtkj.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\cxaigtkj.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\czcbfoiw.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\czcbfoiw.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\czcbfoiw.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\dmklemsk.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\dmklemsk.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\dmklemsk.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\dplezshx.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\dplezshx.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\dplezshx.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\dqqpeidb.exe

          Infecté par: Trojan.Downloader.Swizzor.DG

          C:\Documents and Settings\xx\Local Settings\Temp\dqqpeidb.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\dqqpeidb.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\drmqlecg.exe

          Infecté par: Trojan.Downloader.Swizzor.DG

          C:\Documents and Settings\xx\Local Settings\Temp\drmqlecg.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\drmqlecg.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\eeowexuv.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\eeowexuv.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\eeowexuv.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\eyzilust.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\eyzilust.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\eyzilust.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\f5205da5.exe

          Infecté par: Trojan.Downloader.Swizzor.DI

          C:\Documents and Settings\xx\Local Settings\Temp\f5205da5.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\f5205da5.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\f52614c8.exe

          Infecté par: Trojan.Downloader.Swizzor.DJ

          C:\Documents and Settings\xx\Local Settings\Temp\f52614c8.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\f52614c8.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\f527120e.exe

          Infecté par: Trojan.Downloader.Swizzor.CA

          C:\Documents and Settings\xx\Local Settings\Temp\f527120e.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\f527120e.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\f52739fb.exe

          Infecté par: Trojan.Downloader.Swizzor.CA

          C:\Documents and Settings\xx\Local Settings\Temp\f52739fb.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\f52739fb.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\f52b1c94.exe

          Infecté par: Trojan.Downloader.Swizzor.CA

          C:\Documents and Settings\xx\Local Settings\Temp\f52b1c94.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\f52b1c94.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\f561ff15.exe

          Infecté par: Trojan.FatObfus.Gen

          C:\Documents and Settings\xx\Local Settings\Temp\f561ff15.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\f561ff15.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\fen0eGA.exe

          Infecté par: Trojan.Downloader.Istbar.FL

          C:\Documents and Settings\xx\Local Settings\Temp\fen0eGA.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\fen0eGA.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\fgxxkkwi.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\fgxxkkwi.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\fgxxkkwi.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\gfoemasv.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\gfoemasv.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\gfoemasv.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\giykgzbp.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\giykgzbp.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\giykgzbp.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\gmtzlsin.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\gmtzlsin.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\gmtzlsin.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\hfhvfgqq.exe

          Infecté par: Trojan.RhmTox.A

          C:\Documents and Settings\xx\Local Settings\Temp\hfhvfgqq.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\Inside Program.exe

          Infecté par: Trojan.Swizzor.DH

          C:\Documents and Settings\xx\Local Settings\Temp\Inside Program.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\Inside Program.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\jnqhgijx.exe

          Infecté par: Trojan.RhmTox.A

          C:\Documents and Settings\xx\Local Settings\Temp\jnqhgijx.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\mayajzxf.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\mayajzxf.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\mayajzxf.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\moevmupe.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\moevmupe.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\moevmupe.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\nsxltqgi.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\nsxltqgi.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\nsxltqgi.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\nwqvebcg.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\nwqvebcg.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\nwqvebcg.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\ovuabrds.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\ovuabrds.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\ovuabrds.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\plfepare.exe

          Infecté par: Trojan.Downloader.Swizzor.DC

          C:\Documents and Settings\xx\Local Settings\Temp\plfepare.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\plfepare.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\pqboxrse.exe

          Infecté par: Trojan.RhmTox.A

          C:\Documents and Settings\xx\Local Settings\Temp\pqboxrse.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\qvywnpdu.exe

          Infecté par: Trojan.Swizzor.L

          C:\Documents and Settings\xx\Local Settings\Temp\qvywnpdu.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\qvywnpdu.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\qxhqbrsm.exe

          Infecté par: Trojan.Swizzor.L

          C:\Documents and Settings\xx\Local Settings\Temp\qxhqbrsm.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\qxhqbrsm.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\rggdsncn.exe

          Infecté par: Trojan.Lopad.M

          C:\Documents and Settings\xx\Local Settings\Temp\rggdsncn.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\rggdsncn.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\ritqeknc.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\ritqeknc.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\ritqeknc.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\rjnlcvxc.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\rjnlcvxc.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\rjnlcvxc.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\rrvzanri.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\rrvzanri.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\rrvzanri.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\rwnccuvf.exe

          Infecté par: Trojan.RhmTox.A

          C:\Documents and Settings\xx\Local Settings\Temp\rwnccuvf.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\rxpotqga.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\rxpotqga.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\rxpotqga.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\sctreykm.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\sctreykm.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\sctreykm.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\senusiai.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\senusiai.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\senusiai.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\sta6B.exe

          Infecté par: Trojan.FatObfus.AK

          C:\Documents and Settings\xx\Local Settings\Temp\sta6B.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\sta6B.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\sta88.exe

          Infecté par: Trojan.FatObfus.Gen

          C:\Documents and Settings\xx\Local Settings\Temp\sta88.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\sta88.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\thlcwsni.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\thlcwsni.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\thlcwsni.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\toagvxmy.exe

          Infecté par: Trojan.Downloader.Swizzor.CP

          C:\Documents and Settings\xx\Local Settings\Temp\toagvxmy.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\toagvxmy.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\tygynsow.exe

          Infecté par: Trojan.Swizzor.L

          C:\Documents and Settings\xx\Local Settings\Temp\tygynsow.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\tygynsow.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\udppxfrf.exe

          Infecté par: Trojan.Downloader.Swizzor.DG

          C:\Documents and Settings\xx\Local Settings\Temp\udppxfrf.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\udppxfrf.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\vblmkqrw.exe

          Infecté par: Trojan.Downloader.Swizzor.CP

          C:\Documents and Settings\xx\Local Settings\Temp\vblmkqrw.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\vblmkqrw.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\vrbdfhbs.exe

          Infecté par: Trojan.Swizzor.L

          C:\Documents and Settings\xx\Local Settings\Temp\vrbdfhbs.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\vrbdfhbs.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\wazypicq.exe

          Détecté avec: Adware.Swizzor.ML

          C:\Documents and Settings\xx\Local Settings\Temp\wazypicq.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\wazypicq.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\xzhujenc.exe

          Infecté par: Trojan.Downloader.Swizzor.DG

          C:\Documents and Settings\xx\Local Settings\Temp\xzhujenc.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\xzhujenc.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\ybrwouju.exe

          Infecté par: Trojan.RhmTox.A

          C:\Documents and Settings\xx\Local Settings\Temp\ybrwouju.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\yjmzzoit.exe

          Infecté par: Trojan.Swizzor.L

          C:\Documents and Settings\xx\Local Settings\Temp\yjmzzoit.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\yjmzzoit.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temp\zknpxhav.exe

          Infecté par: Trojan.Lopad.G

          C:\Documents and Settings\xx\Local Settings\Temp\zknpxhav.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temp\zknpxhav.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\6V2TGJ4X\default[1].cab=>games.exe

          Infecté par: Trojan.Dropper.Agent.XB

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\6V2TGJ4X\default[1].cab=>games.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\6V2TGJ4X\default[1].cab=>games.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\6V2TGJ4X\default[1].cab

          Echec de la mise à jour

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ANURMDMJ\upAYB[1].int

          Infecté par: Trojan.Swizzor.DH

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ANURMDMJ\upAYB[1].int

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ANURMDMJ\upAYB[1].int

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ATWFY565\games4[1].cab=>games.exe

          Infecté par: Trojan.Dialer.FY

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ATWFY565\games4[1].cab=>games.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ATWFY565\games4[1].cab=>games.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\ATWFY565\games4[1].cab

          Echec de la mise à jour

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\C50NKZOV\default[1].cab=>games.exe

          Infecté par: Generic.Malware.FYd!.55D81982

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\C50NKZOV\default[1].cab=>games.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\C50NKZOV\default[1].cab=>games.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\C50NKZOV\default[1].cab

          Echec de la mise à jour

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\GZED636H\default[1].cab=>games.exe

          Infecté par: Generic.Malware.FYd!.36208ACC

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\GZED636H\default[1].cab=>games.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\GZED636H\default[1].cab=>games.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\GZED636H\default[1].cab

          Echec de la mise à jour

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\JEXVBJAW\send_car_int[1].htm

          Infecté par: Trojan.Exploit.Html.Codebaseexec.DA

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\JEXVBJAW\send_car_int[1].htm

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\JEXVBJAW\send_car_int[1].htm

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\KXUJ09I7\upAYB[1].int

          Infecté par: Trojan.Downloader.Swizzor.DI

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\KXUJ09I7\upAYB[1].int

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\KXUJ09I7\upAYB[1].int

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\UV03M9MB\default[1].cab=>games.exe

          Infecté par: Generic.Malware.FYd!.EFD5D1DA

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\UV03M9MB\default[1].cab=>games.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\UV03M9MB\default[1].cab=>games.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\UV03M9MB\default[1].cab

          Echec de la mise à jour

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\Y9WFE9M5\default[1].cab=>games.exe

          Infecté par: Generic.Malware.FYd!.9E163E19

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\Y9WFE9M5\default[1].cab=>games.exe

          Echec de la désinfection

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\Y9WFE9M5\default[1].cab=>games.exe

          Supprimé

          C:\Documents and Settings\xx\Local Settings\Temporary Internet Files\Content.IE5\Y9WFE9M5\default[1].cab

          Echec de la mise à jour

          C:\host.exe

          Infecté par: Trojan.Dropper.Small.APL

          C:\host.exe

          Echec de la désinfection

          C:\host.exe

          Supprimé

          C:\Program Files\C2Media\Setup.exe

          Infecté par: Trojan.Downloader.Swizzor.DO

          C:\Program Files\C2Media\Setup.exe

          Echec de la désinfection

          C:\Program Files\C2Media\Setup.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235755.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235755.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235755.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235756.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235756.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235756.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235802.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235802.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235802.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235803.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235803.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235803.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235822.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235822.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235822.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235823.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235823.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP409\A0235823.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235846.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235846.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235846.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235847.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235847.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235847.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235881.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235881.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235881.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235882.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235882.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235882.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235908.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235908.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235908.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235909.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235909.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP410\A0235909.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235950.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235950.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235950.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235951.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235951.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235951.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235973.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235973.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235973.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235974.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235974.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP411\A0235974.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235988.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235988.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235988.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235989.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235989.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP412\A0235989.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236011.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236011.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236011.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236012.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236012.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0236012.exe

          Supprimé
          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237011.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237011.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237011.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237012.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237012.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP413\A0237012.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237035.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237035.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237035.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237036.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237036.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237036.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237049.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237049.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237049.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237050.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237050.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237050.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237060.exe

          Infecté par: Trojan.FatObfus.Gen

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237060.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237060.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237061.exe

          Infecté par: Trojan.Swizzor.X

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237061.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237061.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237062.exe

          Infecté par: Trojan.Swizzor.X

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237062.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237062.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237063.exe

          Infecté par: Trojan.Swizzor.CZ

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237063.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237063.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237064.exe

          Infecté par: Trojan.Swizzor.X

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237064.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237064.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237065.exe

          Infecté par: Trojan.Downloader.Swizzor.DE

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237065.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237065.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237066.exe

          Infecté par: Trojan.Downloader.Swizzor.DV

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237066.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237067.exe

          Infecté par: Trojan.Swizzor.BR

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237067.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237067.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237068.exe

          Infecté par: Trojan.Downloader.Swizzor.CA

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237068.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237068.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237069.exe

          Infecté par: Trojan.Swizzor.X

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237069.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237069.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237070.exe

          Infecté par: Trojan.Swizzor.X

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237070.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237070.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237071.exe

          Infecté par: Trojan.Downloader.Swizzor.CN

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237071.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237071.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237072.exe

          Infecté par: Trojan.Swizzor.X

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237072.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237072.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237073.exe

          Infecté par: Trojan.Downloader.Swizzor.DE

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237073.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237073.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237074.exe

          Infecté par: Trojan.Swizzor.X

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237074.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237074.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237075.exe

          Infecté par: Trojan.Downloader.Swizzor.DE

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237075.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237075.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237079.exe

          Infecté par: Trojan.FatObfus.Gen

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237079.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237079.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237080.exe

          Infecté par: Trojan.FatObfus.Gen

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237080.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP414\A0237080.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP415\A0237090.exe

          Infecté par: Trojan.FatObfus.AF

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP415\A0237090.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP416\A0237108.exe

          Infecté par: Trojan.FatObfus.AF

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP416\A0237108.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237125.exe

          Infecté par: Trojan.FatObfus.AF

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237125.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237128.exe

          Infecté par: Trojan.Downloader.Swizzor.R

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237128.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP417\A0237128.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251465.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251465.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251465.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251466.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251466.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251466.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251472.exe

          Infecté par: Trojan.FatObfus.AF

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0251472.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252465.exe

          Infecté par: Trojan.Perlovga.B

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252465.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252465.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252466.exe

          Infecté par: Backdoor.Small.LO

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252466.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252466.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252474.exe

          Infecté par: Trojan.FatObfus.AF

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252474.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252513.exe

          Infecté par: Trojan.Obfuscated.GZ

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252513.exe

          Echec de la désinfection

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP418\A0252513.exe

          Supprimé

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP419\A0252525.exe

          Infecté par: Trojan.FatObfus.AF

          C:\System Volume Information\_restore{2A568078-AEC4-40D9-8BBC-0523150AFB06}\RP419\A0252525.exe

          Supprimé

          C:\System Volume Information\_restore{2
          1. Contributeur
            Re,

            Pour information,

            le fichier

            C:\WINDOWS\System32\temp1.exe
            C:\WINDOWS\svchost.exe

            Faisaient, je pense partis, de l'infection LOP.
            1. J utilise Firefox comme navigateur et Bitdefender ne se lance qu a partie d IE que j ai donc du reinstaller
              a partir d ajout de composants.
              Quand j ai lance IE la page CID est de nouveau apparu. Malgres tout ce que j ai fait cela ne resoud pas ce probleme?
              Bitdefender est actuellement en plein scan est apparement ca va prendre un peu de temps.
              Je mettrais le resultat du scan des que c est fini.

              Merci encore!
              1. fait un scan ici
                https://www.bitdefender.fr/

                * En bas, à gauche de la fenêtre, clique sur BitDefender SCAN ONLINE
                * Dans la nouvelle fenêtre, clique sur j‘accepte
                * Accepte le contrôle Active X et Installe le. Le scanner se charge
                * La fenêtre change encore, clique sur ’cliquez ici pour scanner’
                * Les signatures se chargent, etc.

                tuto en image :
                http://pageperso.aol.fr/rginformatique/mapage/defender.htm

                copie colle le résultat ici

                1. voila le resultat

                  Antivirus Version Last Update Result
                  AhnLab-V3 2007.8.3.0 2007.08.03 -
                  AntiVir 7.4.0.57 2007.08.03 -
                  Authentium 4.93.8 2007.08.03 -
                  Avast 4.7.1029.0 2007.08.05 Win32:Obfuscated-BPS
                  AVG 7.5.0.476 2007.08.05 -
                  BitDefender 7.2 2007.08.05 Trojan.FatObfus.AK
                  CAT-QuickHeal 9.00 2007.08.04 -
                  ClamAV 0.91 2007.08.05 -
                  DrWeb 4.33 2007.08.05 Trojan.Packed.149
                  eSafe 7.0.15.0 2007.07.31 -
                  eTrust-Vet 31.1.5032 2007.08.04 -
                  Ewido 4.0 2007.08.05 -
                  FileAdvisor 1 2007.08.05 -
                  Fortinet 2.91.0.0 2007.08.05 -
                  F-Prot 4.3.2.48 2007.08.03 -
                  F-Secure 6.70.13030.0 2007.08.03 Trojan.Win32.Obfuscated.en
                  Ikarus T3.1.1.8 2007.08.05 -
                  Kaspersky 4.0.2.24 2007.08.05 Trojan.Win32.Obfuscated.en
                  McAfee 5090 2007.08.03 -
                  Microsoft 1.2704 2007.08.05 -
                  NOD32v2 2438 2007.08.05 -
                  Norman 5.80.02 2007.08.03 -
                  Panda 9.0.0.4 2007.08.05 -
                  Rising 19.34.40.00 2007.08.03 Trojan.FatObfus.o
                  Sophos 4.19.0 2007.08.01 -
                  Sunbelt 2.2.907.0 2007.08.04 VIPRE.Suspicious
                  Symantec 10 2007.08.05 -
                  TheHacker 6.1.7.162 2007.08.04 -
                  VBA32 3.12.2.2 2007.08.04 MalwareScope.Trojan-Downloader.Obfuscated.2
                  VirusBuster 4.3.26:9 2007.08.05 -
                  Webwasher-Gateway 6.0.1 2007.08.03 Win32.Malware.gen (suspicious)
                  Additional information
                  File size: 532992 bytes
                  MD5: d71a535779c19d6640deca714a70854c
                  SHA1: 0f5a2825bcd6c8b9b39fb6f07f902b58f65ae061
                  Sunbelt info: VIPRE.Suspicious is a generic detection for potential threats that are deemed suspicious through heuristics.
                  1. Rends toi sur ce site :
                    https://www.virustotal.com/gui/

                    Clique sur parcourir et cherche ce fichier :

                    C:\DOCUME~1\xx\APPLIC~1\BEEPON~1\DashAxis.exe

                    Clique sur send.

                    Un rapport va s'élaborer ligne à ligne.

                    Attends la fin. Il doit comprendre la taille du fichier envoyé.

                    Sauvegarde le rapport avec le bloc-note.

                    Copie le dans ta réponse.
                    1. Voila le nouveau log

                      Logfile of HijackThis v1.99.1
                      Scan saved at 18:10:21, on 05/08/2007
                      Platform: Windows XP (WinNT 5.01.2600)
                      MSIE: Internet Explorer v6.00 (6.00.2600.0000)

                      Running processes:
                      C:\WINDOWS\System32\smss.exe
                      C:\WINDOWS\system32\winlogon.exe
                      C:\WINDOWS\system32\services.exe
                      C:\WINDOWS\system32\lsass.exe
                      C:\WINDOWS\system32\svchost.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\WINDOWS\system32\spoolsv.exe
                      C:\WINDOWS\Explorer.EXE
                      C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
                      C:\Program Files\Analog Devices\SoundMAX\smax4.exe
                      C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                      C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
                      C:\WINDOWS\System32\rmctrl.exe
                      C:\WINDOWS\TPPALDR.EXE
                      C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
                      C:\PROGRA~1\mcafee.com\agent\mcagent.exe
                      c:\progra~1\mcafee.com\vso\mcvsescn.exe
                      C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
                      C:\Program Files\D-Tools\daemon.exe
                      C:\Program Files\Microsoft IntelliType Pro\type32.exe
                      C:\Program Files\Microsoft IntelliPoint\point32.exe
                      C:\Program Files\Winamp\winampa.exe
                      C:\Program Files\Belkin\F5D9050\Belkinwcui.exe
                      C:\WINDOWS\System32\ctfmon.exe
                      C:\WINDOWS\System32\Ati2evxx.exe
                      C:\Program Files\Internet Explorer\iexplore.exe
                      C:\WINDOWS\System32\imapi.exe
                      c:\program files\mcafee.com\agent\mcdetect.exe
                      c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
                      C:\Program Files\Internet Explorer\iexplore.exe
                      c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
                      C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
                      C:\WINDOWS\System32\svchost.exe
                      C:\WINDOWS\system32\svchost.exe
                      c:\PROGRA~1\mcafee.com\vso\mcshield.exe
                      C:\Program Files\Mozilla Firefox\firefox.exe
                      C:\Documents and Settings\xx\Bureau\HijackThis.exe

                      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.guanahrqxadnlnoodjduap.com/OWPD0RfiVvkNQKi1Gd/K9Rbww_shRgShscjvSRfYNCvg8rtXbwiiXoLoXVyF9BRf.html
                      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
                      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.orange.com/en
                      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Orange UK
                      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                      O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
                      O2 - BHO: Orange - {4E7BD74F-2B8D-469E-A1FB-F862B587B57D} - C:\PROGRA~1\orange3\orange3.dll
                      O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
                      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
                      O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
                      O3 - Toolbar: Orange - {4E7BD74F-2B8D-469E-A1FB-F862B587B57D} - C:\PROGRA~1\orange3\orange3.dll
                      O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
                      O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\smax4.exe" /tray
                      O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                      O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
                      O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
                      O4 - HKLM\..\Run: [TPP Auto Loader] C:\WINDOWS\TPPALDR.EXE
                      O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
                      O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
                      O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
                      O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
                      O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
                      O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
                      O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
                      O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
                      O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
                      O4 - HKLM\..\Run: [F5D9050] C:\Program Files\Belkin\F5D9050\Belkinwcui.exe
                      O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
                      O4 - HKCU\..\Run: [seekdownload] C:\DOCUME~1\xx\APPLIC~1\BEEPON~1\DashAxis.exe
                      O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
                      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
                      O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm
                      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
                      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
                      O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
                      O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
                      O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm
                      O14 - IERESET.INF: START_PAGE_URL=https://www.orange.com/en
                      O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab
                      O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
                      O16 - DPF: {45E83043-1F6F-4D22-A5E7-0138EA171B49} (FileSharingCtrl Class) - http://appdirectory.messenger.msn.com/AppDirectory/P4Apps/FileSharing/fr/filesharingctrl.cab
                      O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/3049de866c38ac6a7606/netzip/RdxIE601_fr.cab
                      O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
                      O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab31267.cab
                      O17 - HKLM\System\CCS\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
                      O17 - HKLM\System\CS1\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
                      O17 - HKLM\System\CS2\Services\Tcpip\..\{00D58E26-638B-4804-B4F8-5EBB1F413330}: NameServer = 84.64.236.249
                      O20 - AppInit_DLLs: WIKI.DLL
                      O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
                      O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
                      O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
                      O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
                      O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
                      O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
                      O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
                      O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - McAfee, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
                      O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
                      1. Il n existe pas ce fichier dans C:\WINDOWS
                        Je n ai donc supprimer que le fichier C:\WINDOWS\System32\temp1.exe et j ai reboote mon pc.
                        1. Le fichier anntxr.exe je ne le trouve pas et le fichier svchost.exe se trouve dans le dossier
                          system 32 et aussi C:\WINDOWS\SoftwareDistribution\Download\70ccc3de7e94865059fbcf2f809c03b1
                          Est le meme? Dois je le supprimer aussi dans MoveIt?
                          1. Télécharge OTMoveIt (d'OldTimer). Sauvegarde-le sur ton Bureau.
                            http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe
                            ~Double-clique sur OTMoveIt.exe afin de le lancer.
                            ~Sélectionne TOUS les emplacements suivants :

                            tu specifies le chemin exact de ton dossier dans le bloc note par exemple

                            ---> Clique-droit sur ces fichiers et tu clique sur "Copier"

                            C:\WINDOWS\System32\temp1.exe
                            C:\WINDOWS\anntxr.exe
                            C:\WINDOWS\svchost.exe

                            Retourne sur OTMoveIt, fais un Clique-droit sur le cadre de gauche puis choisis Coller.
                            ~Clique maintenant surMoveIt!

                            !! Si un fichier ou dossier ne peut être supprimé immédiatement, le logiciel te demandera de redémarrer. Accepte en cliquant sur YES
                            1. Le rapport du "virustotal" pour le fichier:
                              C:\WINDOWS\svchost.exe

                              AhnLab-V3 2007.8.3.0 2007.08.03 Dropper/Downloader.70207
                              AntiVir 7.4.0.57 2007.08.03 TR/Drop.Small.apl
                              Authentium 4.93.8 2007.08.03 W32/Dropper.BMZ
                              Avast 4.7.1029.0 2007.08.05 Win32:Agent-ILR
                              AVG 7.5.0.476 2007.08.04 Generic.VDU
                              BitDefender 7.2 2007.08.05 Trojan.Dropper.Small.APL
                              CAT-QuickHeal 9.00 2007.08.04 TrojanDropper.Small.apl
                              ClamAV 0.91 2007.08.05 Trojan.Dropper-829
                              DrWeb 4.33 2007.08.05 Trojan.MulDrop.4181
                              eSafe 7.0.15.0 2007.07.31 Win32.Small.apl
                              eTrust-Vet 31.1.5032 2007.08.04 Win32/Perlovga.A
                              Ewido 4.0 2007.08.03 Dropper.Small.apl
                              FileAdvisor 1 2007.08.05 High threat detected
                              Fortinet 2.91.0.0 2007.08.05 W32/Perlovga
                              F-Prot 4.3.2.48 2007.08.03 W32/Dropper.BMZ
                              F-Secure 6.70.13030.0 2007.08.03 Trojan-Dropper.Win32.Small.apl
                              Ikarus T3.1.1.8 2007.08.05 Trojan-Dropper.Win32.Small.apl
                              Kaspersky 4.0.2.24 2007.08.05 Trojan-Dropper.Win32.Small.apl
                              McAfee 5090 2007.08.03 W32/Perlovga
                              Microsoft 1.2704 2007.08.05 Backdoor:Win32/Small!175E
                              NOD32v2 2438 2007.08.05 Win32/TrojanDropper.Small.APL
                              Norman 5.80.02 2007.08.03 W32/Smalldrp.JHW
                              Panda 9.0.0.4 2007.08.05 Trj/Dropper.UN
                              Prevx1 V2 2007.08.05 Generic.Malware
                              Rising 19.34.40.00 2007.08.03 Dropper.Tiny.g
                              Sophos 4.19.0 2007.08.01 Troj/Dropper-LC
                              Sunbelt 2.2.907.0 2007.08.04 Trojan-Dropper.Win32.Small.apl
                              Symantec 10 2007.08.05 Backdoor.Formador
                              TheHacker 6.1.7.162 2007.08.04 Trojan/Dropper.Small.apl
                              VBA32 3.12.2.2 2007.08.04 Trojan-Dropper.Win32.Small.apl
                              VirusBuster 4.3.26:9 2007.08.04 -
                              Webwasher-Gateway 6.0.1 2007.08.03 Trojan.Drop.Small.apl
                              Additional information
                              File size: 70207 bytes
                              MD5: 1d4c07370babee309401a73ebaa64f58
                              SHA1: 42ac5ff66e21f7e3b7efb150ab931e3c56247253
                              Bit9 info: http://fileadvisor.bit9.com/services/extinfo.aspx?md5=1d4c07370babee309401a73ebaa64f58
                              Prevx info: http://fileinfo.prevx.com/fileinfo.asp?PX5=14A8E9663FC0E0751264012FA66FDA00FF69CBFE

                              Le fichier suivant n existe pas donc pas pu lancer de scan
                              C:\WINDOWS\System32\taskmon.exe

                              Quel est la suite?

                              Merci encore!
                              • 1
                              • 2