

Gribouille21
Membres-
Compteur de contenus
20 -
Inscription
-
Dernière visite
À propos de Gribouille21
- Date de naissance 08/07/1984
Contact Methods
-
Website URL
http://
Profile Information
-
Localisation
Belgium
Autres informations
-
Mes langues
Francais // Anglais // Néérlandais
Gribouille21's Achievements

Junior Member (3/12)
0
Réputation sur la communauté
-
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Mon pc et moi te remercions de tout coeur! Evidemment j'espere que je n'aurai plus besoin de toi mais maintenant je sais ou trouver un ptit génie qui combat les virus comme personne Bonne Soirée! BiS BiS -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Terrible!!! Mon problème est réparé Dernier petit rapport juste pour vérifier que tout est ok Logfile of HijackThis v1.99.1 Scan saved at 17:23:23, on 15/04/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\drivers\CDAC11BA.EXE C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE C:\WINDOWS\System32\nvsvc32.exe C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\Dit.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe C:\WINDOWS\system32\NotifyPhoneBook.exe C:\Program Files\D-Tools\daemon.exe C:\Program Files\Citrix\Client ICA\pnagent.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\WINDOWS\DitExp.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Skype\Phone\Skype.exe C:\WINDOWS\system32\verclsid.exe C:\WINDOWS\system32\verclsid.exe C:\WINDOWS\system32\verclsid.exe C:\Program Files\Internet Explorer\iexplore.exe C:\HIJ\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Dit] Dit.exe O4 - HKLM\..\Run: [CapFax] C:\Program Files\Classic PhoneTools\CapFax.EXE O4 - HKLM\..\Run: [share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - Global Startup: Agent Program Neighborhood.lnk = C:\Program Files\Citrix\Client ICA\pnagent.exe O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O14 - IERESET.INF: START_PAGE_URL=http://www.medion.fr O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1145099865187 O17 - HKLM\System\CCS\Services\Tcpip\..\{9FF72B6F-9218-471B-861D-960481CE4C48}: NameServer = 195.238.2.22 195.238.2.21 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe Cette fois ci je réactive la restauration du système? Et je peux éliminer tous les programmes que j'ai telechargé tout au long de tes conseils? Ou il y a en a en particulier que tu me conseilles de garder pour scanner mon pc de temps en temps? On arrive au bout du tunnel -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Non dans ma barre d'adresse quand je veux aller sur un site internet qui est déjà "préenregistré" l'ordinateur commence à chercher indéfiniment à ouvrir la barre d'adresse... La dernière fois que j'avais réussi à l'ouvrir j'ai découvert des fichiers comme C:\Windows ... entre 2 adresse internet comme http://forum.zébulon.fr C'est comme si c'etait trop lourd à ouvrir pr le pc, jcomprend pas ... -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Je dois faire ça en mode sans échec? Et oui j'ai un problème avec ma barre d'adresse, lorsque je cherche une adresse préenregistrée il cherche longtemps et pour finir je ferme la fenetre internet qui est bloquée. Je pense que c'est parce qu'au lieu d'avoir que des adresses internet j'ai aussi des dossiers comme C:\WINDOWS ect... Comment je peux faire pour effacer tout ce qui se trouve préenregistré dans ma barre internet ? -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
oulaaaa je commence vmt à en avoir marre... J'ai pas trouvé le fichier C:\WINDOWS\mousepad9.exe dans l'explorateur Windows. Dans Easycleaner j'ai supprimer tout ce qui se trouvait dans registre mais dans inutiles il s'est bloqué alors j'ai laissé tomber ! Et puis svp ce serait chouette de plus utiliser EasyClean pcq le scan des inutiles prend au moins 10h en général c'est vmt pénible... Mais bon si y a pas le choix je recommencerai! Dernier rapport Logfile of HijackThis v1.99.1 Scan saved at 13:08:36, on 15/04/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\drivers\CDAC11BA.EXE C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE C:\WINDOWS\System32\nvsvc32.exe C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\Dit.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe C:\WINDOWS\system32\NotifyPhoneBook.exe C:\Program Files\D-Tools\daemon.exe C:\Program Files\Citrix\Client ICA\pnagent.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\WINDOWS\DitExp.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Skype\Phone\Skype.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe C:\HIJ\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.fr/spbasic.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.msn.fr/spbasic.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Dit] Dit.exe O4 - HKLM\..\Run: [CapFax] C:\Program Files\Classic PhoneTools\CapFax.EXE O4 - HKLM\..\Run: [share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKCU\..\Run: [WINSOS VERIFY] "C:\Program Files\WINSOS\WINSOS.EXE" MINI O4 - Global Startup: Agent Program Neighborhood.lnk = C:\Program Files\Citrix\Client ICA\pnagent.exe O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O14 - IERESET.INF: START_PAGE_URL=http://www.medion.fr O17 - HKLM\System\CCS\Services\Tcpip\..\{9FF72B6F-9218-471B-861D-960481CE4C48}: NameServer = 195.238.2.22 195.238.2.21 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Effectivement j'ai un problème encore avec mon pc, je n'ai plus de publicité qui s'affiche mais il se bloque si je veux utiliser une adresse internet préenregistrée... Je comprend pas Quand j'utilise la fonction "registre" dans EasyCleaner, il m'affiche une série de programme trouvé je dois les supprimer? Ceux trouvé dans "inutiles" je les supprimais tous mais ds registre j'osais pas vu que j'y connais rien! A+ -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Dernier rapport Hijack après utilisation de killbox : Logfile of HijackThis v1.99.1 Scan saved at 12:17:22, on 14/04/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\drivers\CDAC11BA.EXE C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE C:\WINDOWS\System32\nvsvc32.exe C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\Dit.exe C:\Program Files\Classic PhoneTools\CapFax.EXE C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe C:\WINDOWS\system32\NotifyPhoneBook.exe C:\Program Files\D-Tools\daemon.exe C:\Program Files\Citrix\Client ICA\pnagent.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\WINDOWS\DitExp.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\WINDOWS\System32\HPZipm12.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\WINDOWS\system32\wuauclt.exe C:\HIJ\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.fr/spbasic.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.msn.fr/spbasic.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Dit] Dit.exe O4 - HKLM\..\Run: [CapFax] C:\Program Files\Classic PhoneTools\CapFax.EXE O4 - HKLM\..\Run: [share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [mousepad] C:\WINDOWS\mousepad9.exe O4 - HKCU\..\Run: [WINSOS VERIFY] "C:\Program Files\WINSOS\WINSOS.EXE" MINI O4 - Global Startup: Agent Program Neighborhood.lnk = C:\Program Files\Citrix\Client ICA\pnagent.exe O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O14 - IERESET.INF: START_PAGE_URL=http://www.medion.fr O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe Ooh miracle je n'ai plus de méchantes publicités Je pense que ça y est tu as réussi ta mission une fois de plus Jack, merci t'es un vrai ptit génie! Maintenant je peux supprimer Killbox - Easycleaner - Ewido - LSPfix - Look2Me - Aboutbuster? Et je réactive ma restauration du système? Je crois que après ça on a fini notre collaboration à moins que tu trouves encore quelques méchants ptits virus cachés dans mon rapport Hijack... J'attends ta réponse pour pouvoir réellement feter notre victoire BiS -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Okéééé j'ai bien suvi tes instructions et voilà le nouveau rapport Logfile of HijackThis v1.99.1 Scan saved at 17:35:37, on 11/04/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\drivers\CDAC11BA.EXE C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE C:\WINDOWS\System32\nvsvc32.exe C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\Dit.exe C:\Program Files\Classic PhoneTools\CapFax.EXE C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe C:\Program Files\D-Tools\daemon.exe C:\WINDOWS\mousepad9.exe C:\Program Files\WINSOS\WINSOS.EXE C:\WINDOWS\system32\NotifyPhoneBook.exe C:\Program Files\Citrix\Client ICA\pnagent.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\WINDOWS\DitExp.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\WINDOWS\System32\HPZipm12.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\HIJ\HijackThis.exe C:\Program Files\Skype\Phone\Skype.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.fr/spbasic.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.msn.fr/spbasic.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Dit] Dit.exe O4 - HKLM\..\Run: [CapFax] C:\Program Files\Classic PhoneTools\CapFax.EXE O4 - HKLM\..\Run: [share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [mousepad] C:\WINDOWS\mousepad9.exe O4 - HKCU\..\Run: [WINSOS VERIFY] "C:\Program Files\WINSOS\WINSOS.EXE" MINI O4 - Global Startup: Agent Program Neighborhood.lnk = C:\Program Files\Citrix\Client ICA\pnagent.exe O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html O14 - IERESET.INF: START_PAGE_URL=http://www.medion.fr O17 - HKLM\System\CCS\Services\Tcpip\..\{9FF72B6F-9218-471B-861D-960481CE4C48}: NameServer = 195.238.2.22 195.238.2.21 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe Je précise que 4/ Supprime le(s) fichier(s) et dossier(s) incriminé(s) [s'il(s) existe(nt) encore] par l'Explorateur Windows : -C:\WINDOWS\mousepad9.exe =>Ce programme a refusé de disparaitre... Bon, ta restauration systeme a été touchée, nous allons la désactiver pour repartir sur de bonnes bases! =>Et dois-je maintenant réactiver la restauration du système? Hihi j'ai les yeux carrés à force de passer des heures à essayer de sauver mon cher pc! -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Look2Me-Destroyer V1.0.12 Scanning for infected files..... Scan started at 10/04/2006 17:50:12 Infected! C:\WINDOWS\system32\fpl4033qe.dll Infected! C:\WINDOWS\system32\aza6l5ls1.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100549.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100573.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100618.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100625.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100708.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100850.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100880.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101052.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101053.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101067.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101093.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101117.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101162.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101165.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101168.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101169.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101180.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101191.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101192.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101193.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101194.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101195.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101196.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101197.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101198.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101202.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101216.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101233.dll Infected! C:\WINDOWS\system32\abwav.dll Infected! C:\WINDOWS\system32\fpl4033qe.dll Infected! C:\WINDOWS\system32\l8p2li7o18.dll Infected! C:\WINDOWS\system32\oxdbse32.dll Attempting to delete infected files... Attempting to delete: C:\WINDOWS\system32\fpl4033qe.dll C:\WINDOWS\system32\fpl4033qe.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100549.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100549.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100573.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100573.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100618.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100618.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100625.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100625.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100708.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100708.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100850.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100850.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100880.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100880.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101052.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101052.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101053.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101053.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101067.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101067.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101093.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101093.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101117.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101117.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101162.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101162.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101165.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101165.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101168.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101168.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101169.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101169.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101180.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101180.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101191.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101191.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101192.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101192.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101193.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101193.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101194.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101194.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101195.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101195.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101196.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101196.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101197.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101197.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101198.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101198.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101202.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101202.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101216.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101216.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101233.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101233.dll Deleted successfully! Attempting to delete: C:\WINDOWS\system32\abwav.dll C:\WINDOWS\system32\abwav.dll Deleted successfully! Attempting to delete: C:\WINDOWS\system32\fpl4033qe.dll C:\WINDOWS\system32\fpl4033qe.dll Deleted successfully! Attempting to delete: C:\WINDOWS\system32\l8p2li7o18.dll C:\WINDOWS\system32\l8p2li7o18.dll Deleted successfully! Attempting to delete: C:\WINDOWS\system32\oxdbse32.dll C:\WINDOWS\system32\oxdbse32.dll Deleted successfully! Making registry repairs. Removing: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Uninstall Removing: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WindowsUpdate Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{83C0D96A-C0B0-4732-BB92-2397E76FEF3E}" HKCR\Clsid\{83C0D96A-C0B0-4732-BB92-2397E76FEF3E} Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{41CDDC63-8F32-4950-B725-ADF684CB3EBC}" HKCR\Clsid\{41CDDC63-8F32-4950-B725-ADF684CB3EBC} Restoring Windows certificates. Replaced hosts file with default windows hosts file Restoring SeDebugPrivilege for Administrateurs - Succeeded Logfile of HijackThis v1.99.1 Scan saved at 18:17:55, on 10/04/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\drivers\CDAC11BA.EXE C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE C:\WINDOWS\System32\nvsvc32.exe C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\Dit.exe C:\Program Files\Classic PhoneTools\CapFax.EXE C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe C:\Program Files\D-Tools\daemon.exe C:\WINDOWS\mousepad9.exe C:\Program Files\WINSOS\WINSOS.EXE C:\WINDOWS\system32\NotifyPhoneBook.exe C:\Program Files\Citrix\Client ICA\pnagent.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\WINDOWS\DitExp.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\WINDOWS\System32\HPZipm12.exe C:\HIJ\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.fr/spbasic.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.msn.fr/spbasic.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Dit] Dit.exe O4 - HKLM\..\Run: [CapFax] C:\Program Files\Classic PhoneTools\CapFax.EXE O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [mousepad] C:\WINDOWS\mousepad9.exe O4 - HKCU\..\Run: [WINSOS VERIFY] "C:\Program Files\WINSOS\WINSOS.EXE" MINI O4 - Global Startup: Agent Program Neighborhood.lnk = C:\Program Files\Citrix\Client ICA\pnagent.exe O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html O14 - IERESET.INF: START_PAGE_URL=http://www.medion.fr O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
J'espere qu'un jour je vais m'en sortir.... C:\Program Files\WINSOS\WINSOS.EXE C:\WINDOWS\system32\NotifyPhoneBook.exe C:\Program Files\Citrix\Client ICA\pnagent.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\WINDOWS\DitExp.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\WINDOWS\System32\HPZipm12.exe C:\HIJ\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.fr/spbasic.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.msn.fr/spbasic.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Dit] Dit.exe O4 - HKLM\..\Run: [CapFax] C:\Program Files\Classic PhoneTools\CapFax.EXE O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [mousepad] C:\WINDOWS\mousepad9.exe O4 - HKCU\..\Run: [WINSOS VERIFY] "C:\Program Files\WINSOS\WINSOS.EXE" MINI O4 - Global Startup: Agent Program Neighborhood.lnk = C:\Program Files\Citrix\Client ICA\pnagent.exe O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html O14 - IERESET.INF: START_PAGE_URL=http://www.medion.fr O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe Look2Me-Destroyer V1.0.12 Scanning for infected files..... Scan started at 10/04/2006 17:50:12 Infected! C:\WINDOWS\system32\fpl4033qe.dll Infected! C:\WINDOWS\system32\aza6l5ls1.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100549.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100573.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100618.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100625.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100708.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100850.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100880.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101052.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101053.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101067.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101093.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101117.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101162.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101165.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101168.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101169.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101180.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101191.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101192.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101193.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101194.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101195.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101196.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101197.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101198.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101202.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101216.dll Infected! C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101233.dll Infected! C:\WINDOWS\system32\abwav.dll Infected! C:\WINDOWS\system32\fpl4033qe.dll Infected! C:\WINDOWS\system32\l8p2li7o18.dll Infected! C:\WINDOWS\system32\oxdbse32.dll Attempting to delete infected files... Attempting to delete: C:\WINDOWS\system32\fpl4033qe.dll C:\WINDOWS\system32\fpl4033qe.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100549.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100549.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100573.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100573.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100618.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100618.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100625.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP762\A0100625.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100708.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100708.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100850.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100850.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100880.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP763\A0100880.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101052.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101052.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101053.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101053.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101067.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP764\A0101067.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101093.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101093.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101117.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101117.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101162.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101162.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101165.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101165.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101168.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101168.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101169.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101169.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101180.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101180.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101191.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101191.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101192.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101192.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101193.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101193.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101194.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101194.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101195.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101195.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101196.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101196.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101197.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101197.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101198.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101198.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101202.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101202.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101216.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101216.dll Deleted successfully! Attempting to delete: C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101233.dll C:\System Volume Information\_restore{E03B5FFD-805C-484B-95C8-068FE4D1BDCA}\RP765\A0101233.dll Deleted successfully! Attempting to delete: C:\WINDOWS\system32\abwav.dll C:\WINDOWS\system32\abwav.dll Deleted successfully! Attempting to delete: C:\WINDOWS\system32\fpl4033qe.dll C:\WINDOWS\system32\fpl4033qe.dll Deleted successfully! Attempting to delete: C:\WINDOWS\system32\l8p2li7o18.dll C:\WINDOWS\system32\l8p2li7o18.dll Deleted successfully! Attempting to delete: C:\WINDOWS\system32\oxdbse32.dll C:\WINDOWS\system32\oxdbse32.dll Deleted successfully! Making registry repairs. Removing: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Uninstall Removing: HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WindowsUpdate Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{83C0D96A-C0B0-4732-BB92-2397E76FEF3E}" HKCR\Clsid\{83C0D96A-C0B0-4732-BB92-2397E76FEF3E} Removing: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved "{41CDDC63-8F32-4950-B725-ADF684CB3EBC}" HKCR\Clsid\{41CDDC63-8F32-4950-B725-ADF684CB3EBC} Restoring Windows certificates. Replaced hosts file with default windows hosts file Restoring SeDebugPrivilege for Administrateurs - Succeeded -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Voilà j'ai le meme problème aucun rapport ne s'affiche... Pourtant des kil me demande d'appuyer sur une touche j'enfonce le 1 et puis entrée rien d'autre! Je suis maudite -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Cher Jack mon sauveur J'ai recommencé toute la procédure comme tu me l'avais demandé et c'est dingue ça m'a pris la nuit et jusqu'à maintenant... Voilà le nouveau rapport de Hijack Logfile of HijackThis v1.99.1 Scan saved at 14:30:51, on 10/04/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\drivers\CDAC11BA.EXE C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE C:\WINDOWS\System32\nvsvc32.exe C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\Dit.exe C:\Program Files\Classic PhoneTools\CapFax.EXE C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe C:\Program Files\D-Tools\daemon.exe C:\WINDOWS\mousepad9.exe C:\WINDOWS\system32\NotifyPhoneBook.exe C:\Program Files\WINSOS\WINSOS.EXE C:\Program Files\Citrix\Client ICA\pnagent.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\WINDOWS\DitExp.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\WINDOWS\System32\HPZipm12.exe C:\HIJ\HijackThis.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.fr/spbasic.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.msn.fr/spbasic.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Dit] Dit.exe O4 - HKLM\..\Run: [CapFax] C:\Program Files\Classic PhoneTools\CapFax.EXE O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [mousepad] C:\WINDOWS\mousepad9.exe O4 - HKCU\..\Run: [WINSOS VERIFY] "C:\Program Files\WINSOS\WINSOS.EXE" MINI O4 - Global Startup: Agent Program Neighborhood.lnk = C:\Program Files\Citrix\Client ICA\pnagent.exe O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html O14 - IERESET.INF: START_PAGE_URL=http://www.medion.fr O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: Uninstall - C:\WINDOWS\system32\fpl4033qe.dll O20 - Winlogon Notify: WindowsUpdate - C:\WINDOWS\system32\aza6l5ls1.dll (file missing) O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe Et j'ai encore ces publicités... Bis Bis -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
et merde désolé novice comme je suis cette procédure m'a pris la journée et j'ai encore reussi à me planter, honte sur moi J'ai juste rencontré un problème, à l'etape numero 6 quand je dois cocher les lignes que tu m'enonces une fois que c'est fait je dois juste laisser la fenetre ouverte? Parce que je n'ai pas l'impression de "fixer" les lignes en laissant simplement la fenetre ouverte, tout n'est pas perdu quand je redemarre le pc après l'etape 10? Et aussi à l'etape 8 avec Easycleaner, tu me dis d'utiliser juste les fonctions registre et inutile, je dois donc lancer un scan aussi dans chacune de ces fonctions dans EasyCleaner? Bon après je relance tout et promis je fais de mon mieux pr rien louper cette fois -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
Bon le rapport de Ewido est encore long mais je t'envoi direct la rapport de Hijack alors Logfile of HijackThis v1.99.1 Scan saved at 19:12:27, on 9/04/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\drivers\CDAC11BA.EXE C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE C:\WINDOWS\System32\nvsvc32.exe C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\Dit.exe C:\Program Files\Medion\PowerCinema\My_TV\Agent.exe C:\Program Files\Classic PhoneTools\CapFax.EXE C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe C:\WINDOWS\system32\rundll32.exe C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\D-Tools\daemon.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\WINDOWS\system32\NotifyPhoneBook.exe C:\Program Files\Picasa2\PicasaMediaDetector.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\WINDOWS\mousepad9.exe C:\WINDOWS\system32\wscntfy.exe C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\DitExp.exe C:\Program Files\Skype\Phone\Skype.exe C:\WINDOWS\s?mbols\m?hta.exe C:\Program Files\WINSOS\WINSOS.EXE C:\Program Files\Citrix\Client ICA\pnagent.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe C:\Program Files\Real\RealPlayer\RealPlay.exe C:\PROGRA~1\INCRED~1\bin\IMApp.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe C:\WINDOWS\System32\HPZipm12.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe C:\DOCUME~1\julie\LOCALS~1\Temp\Rar$EX01.390\HijackThis.exe C:\WINDOWS\system32\WNSXS~1\svchost.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://search.msn.fr/spbasic.htm R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.msn.fr/spbasic.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.be R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.be R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbar.findthewebsiteyouneed.com R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = about:blank R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: (no name) - {00D6A7E7-4A97-456f-848A-3B75BF7554D7} - (no file) O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [Dit] Dit.exe O4 - HKLM\..\Run: [Agent] C:\Program Files\Medion\PowerCinema\My_TV\Agent.exe O4 - HKLM\..\Run: [CapFax] C:\Program Files\Classic PhoneTools\CapFax.EXE O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL O4 - HKLM\..\Run: [CloseDNF] C:\WINDOWS\System32\Utility.exe \1008 O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe O4 - HKLM\..\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [mousepad] C:\WINDOWS\mousepad9.exe O4 - HKLM\..\Run: [w0034651.dll] RUNDLL32.EXE w0034651.dll,I2 0003376100034651 O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [incrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe" O4 - HKCU\..\Run: [services32] C:\Program Files\Fichiers communs\Windows\mc-110-12-0000140.exe O4 - HKCU\..\Run: [rzrq] C:\PROGRA~1\FICHIE~1\rzrq\rzrqm.exe O4 - HKCU\..\Run: [udot] "C:\DOCUME~1\julie\MESDOC~1\PPATCH~1\regedit.exe" -vt ndrv O4 - HKCU\..\Run: [Pxgpbhl] C:\WINDOWS\s?mbols\m?hta.exe O4 - HKCU\..\Run: [Error Safe] "C:\Program Files\Error Safe Free\ers.exe" /min O4 - HKCU\..\Run: [WINSOS VERIFY] "C:\Program Files\WINSOS\WINSOS.EXE" MINI O4 - Global Startup: Agent Program Neighborhood.lnk = C:\Program Files\Citrix\Client ICA\pnagent.exe O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: New Shortcut-1.lnk = ? O4 - Global Startup: officejet 6100.lnk = ? O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://www.medion.fr O16 - DPF: JT's Blocks - http://download.games.yahoo.com/games/clients/y/blt1_x.cab O16 - DPF: Yahoo! Fleet - http://download.games.yahoo.com/games/clients/y/fltt3_x.cab O16 - DPF: Yahoo! Hearts - http://download.games.yahoo.com/games/clients/y/ht1_x.cab O16 - DPF: Yahoo! Pool 2 - http://download.games.yahoo.com/games/clients/y/potc_x.cab O16 - DPF: Yahoo! Pyramids - http://download.games.yahoo.com/games/clients/y/pyt1_x.cab O16 - DPF: {0246ECA8-996F-11D1-BE2F-00A0C9037DFE} (TDServer Control) - http://fr.encyclopedia.yahoo.com/rsc/tdserver.cab O16 - DPF: {084DAC27-6FA3-4F55-9005-033F2F102F5C} (ITPPDiagIE Class) - http://data.jeuxclassiques.com/npwwg.cab O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} - O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://host.cycore.net/plugins/windows/ie/...E_5.3.0.228.cab O16 - DPF: {3B02AAA2-327C-40ED-A849-4BE819AE5385} (ImgSizer Control) - file://C:\Documents and Settings\OEM\Local Settings\Temp\~DlfnTmp0\imgSizer.ocx O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061...all/xscan53.cab O16 - DPF: {80DD2229-B8E4-4C77-B72F-F22972D723EA} (AvxScanOnline Control) - http://www.inoculer.com/antivirus/Msie/bitdefender.cab O16 - DPF: {88C51E90-8E9C-4C96-8A45-574D88B63FAF} - http://acceso.masminutos.com/aplicacion.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...StatsClient.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmesse...pdownloader.cab O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/a...zylomloader.cab O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://fdl.msn.com/public/chat/msnchat45.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{9FF72B6F-9218-471B-861D-960481CE4C48}: NameServer = 195.238.2.22 195.238.2.21 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: IPConfTSP - C:\WINDOWS\system32\j86m0ij1e8o.dll O20 - Winlogon Notify: WindowsUpdate - C:\WINDOWS\system32\aza6l5ls1.dll (file missing) O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe -
Rapport HitjackThis demande l'aide des pros ;-)
Gribouille21 a répondu à un(e) sujet de Gribouille21 dans Analyses et éradication malwares
resuite rapport Ewido C:\Documents and Settings\julie\Complete\V For Vendetta Ts Xvid Hookah.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Var Psk 0 2 Bat.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtins Sound Card Instrument 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtins Sound Card Oscilloscope 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtins Sound Card Signal Generator 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtins Sound Card Spectrum Analyzer 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtos Noise Wizard .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtua Fighter 2 demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtua Fighter PC demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtua Squad 2 demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtua Tennis demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtuaDisk 1.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Administrator 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Album - Photo Album Software 3.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Album Maker Standard 1.26.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Art Gallery USA Vol.1 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Audio Cable 3.10.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Battle Field 1 Desert Wars Demo 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Bingo and Random Number Generator 4.0.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual CD 7.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Cigarette 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Cover Creator 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Desk 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Desktop Toolbox 2.70.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual DJ 3.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual DJ Studio 4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Domain Name Services 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Drive Creator 2.0.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Drum 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Dumpster Diver Pro 2.0.23.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual DVDShelf 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Edit 1.25.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Encrypted Disk 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Engine Calculator 2.20.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Fader Master 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Fashion MakeUp 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Figure Drawing Studio 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual FireworX Screensaver 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual FlashCards 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Gallery Sandra Bullock v1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Grand Prix 2 1.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Horse Racing Game 2.14.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Hymnal 2.01.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Image Printer 2000 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Impact 1.15.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Intelligence Matrix 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Juggler 3d Gold 2.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Keyboard 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Keyboard Assistant 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Layout Artist 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Midi Controller 1.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Modem 1.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Morse Key 2.5.39.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Music 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Music Jukebox 7.2.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Network Computing 3.3.7.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Null Modem 2.0.1 Build 5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Organizer 2.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Original CD Drive Emulator 2.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Painter 4.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual PDF Printer 1.01.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Pool 3 demo 3.2.1.7.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Pool Windows 95 demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Print Engine Professional Edition 3.20.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Printer Driver for Windows 2000 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual RC Racing demo 3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Rosary 5.1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Rubik Cube 1.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Rubik Snake 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Sailor 6.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Screen Manager 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Screen Spy 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Serial Port ActiveX Control 4.2.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Serial Ports Driver CE 3.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Serial Ports Driver XP 5.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Singer 3.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Skipper 3 demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Skipper 3 v1.2 patch .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Snooker demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Sound Processor-11(VSP-11) 1.02.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Squad demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Stopwatch 3.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Stopwatch Pro 3.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Talker Client 3.0.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Teacher Background Panel 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Teacher Screensaver 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Tennis demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Terminal 2.1.18.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual TimeClock 5.0.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual TimeClock Pro 4.9.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual TimeClock Professional 4.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Tour EXE 1.01.042.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Training Studio 1.12.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual U 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Village 1.7.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Vision 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Volume Browser 1.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Wallet 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Warfare .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Wine Cellar 4.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtual Woman Millennium CNET95.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualBoss 3.68.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualBoss 3.68a.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualBus 2.6.14.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualCamera 0.8.5 build 1125.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualDesktop 2.3.11.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualDrive 9.03.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualDrive CDDVD Utility and Burning Suite 9.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualDub 1.5.10.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualDubMod 1.5.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualLab Data Recovery 3.8.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualPhotographer 1.44.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualRAID Manager 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtualshop 3.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualSpeaker 1.2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtualStage 3.1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtuaRAID Manager 2.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirtuaReminder 1.060.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtue 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtuosa 5.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virtuoso Organizer 2.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virus 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virus 3 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Virus Chaser 5.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirusCop 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirusFighter 5.81.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirusKeeper 2005 3.9.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VirusKeeper 2005 Professional 3.9.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visage 2.2.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visage Surveillance 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisaulROI 3.12 build 206.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Viscom Video Converter 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisDir Free Disk Space Finder 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visec Security Software 3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visendo Fax Server 3.0.0.2520b.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visere 3.1.1.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisErotic Candy 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisiCode 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisiFi 3.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visio Shapes Sampler 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vision Backup Enterprise 10.8.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisionBlazer 1.05.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisionGS PE 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisionLITE 4.1 build 55.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visions of Alaska 1.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisiPics 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visitor Guide City Centre Amsterdam 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisiTrax Lite Edition 2.10.0.248.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\visKeeper 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisLogic Lan-Inspector 3 Build 3081.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisLogic Patch-Magic 1.5.1.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisNetic AntiVirus for Workstations 4.5.0.94.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisNetic AntiVirus Plug-in for VisNetic MailServer 4.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisNetic Firewall 2.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisNetic MailFlow 3.0.1.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisNetic MailScan for SMTP 4.5a.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisNetic MailServer 8.3.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisNotes for Pocket PC 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisSim 6.0A9.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vista Start Menu 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VistaDB 2.1.5.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VistaMetrix 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VistaPro Renderer 4.1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VistaTask 5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual AC4 11.05.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Access XP 1.3.12.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Accounts 2000-32 1.32.0.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Assist X 10.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Audit X3 13.0.0.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Autorun 2.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic .NET Projects 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic 5.0 Runtime Module 5.00.4319.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic and Databases 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic Course 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic Database Projects 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic Express for Kids 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic for Kids 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic Programmers Essential Toolkit 1.53.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic Source Code Controls 3.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Basic Updater 2.0.6108.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Build Professional 6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual C# Express for Kids 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual CE 8.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual CertExam Suite 1.7.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Combo Return .Net Windows Forms 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Communicator 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Comparer 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Cover ++ 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual CyberGest Professional 6.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual DataFlex 8.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Discomix DJ Basic 17.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Documents Pro 1.7.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Drawing Maker 1.13.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual DV Time Stamp 1.70.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual eNote 1.59.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Extend 8.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Folder Tree Builder 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Form Mail 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual FoxPro 6.0 Launch Security Vulnerability Patch MS02-049.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Hindsight Home Edition 2.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Hindsight Professional Edition 1.2.0.412.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Hindsight Viewer Edition 2.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Horse 2.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Hunter 1.8.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Imagemapper 3.1.55.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Importer 4.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Importer Enterprise 7.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Importer Professional 7.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Inventory Control System 2000 build 2.4.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Invoice 1.23.60330.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual IP Trace 2.1c.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual J# Express for Kids 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual JavaSWING Components Library 3.5.87.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Jazz Guitar 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Kit 5 Standard 8.0.0.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Localize 3.04.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Log 2.02.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Lottery Analyser 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Mailer 4.05.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Mc 6.1.1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Merge 4.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Model Builder 3.50.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Mortgage Loan Calculator 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual MP3 4.2.9.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual MP3 CD Burner 1.3.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual MP3 To Wav Converter 1.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Music 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Online 0.05.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Online 5C.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Open DB 1.0.75.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Patch 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Photo Time Stamp 1.31.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Photo++ 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Poker Pro 6.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Power ZIP 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual ProBooks Lite 2005.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Prolog 6.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Reports 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual RoundHouse 4.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Shapes 4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Similarity Duplicate Image Finder 1.6.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Spotlight 1.7.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual SQL-Designer 3.99.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual SQLite 1.3.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Staff Scheduler 6.00.06D.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Staff Scheduler Pro 8.00.19d.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Stamp 1.0.1.18.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Studio .Net - Step by Step 7.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Studio Booster 2.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Table Recorder 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Terrain Maker 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Text Template 2.2.1705.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Thesaurus for Word 3.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual TimeAnalyzer 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Typewriter 1.1c.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Vendor 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Video Converter 4.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Watermark 1.0.11.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Web Pro 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Web Spider 5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Web Task 5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual WhoIs 2004 1.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual WinHelp 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual XSD 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visual Zip Password Recovery Processor 5.54.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualACL 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualCatalogues Enterprise 4.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualCatalogues Professional 4.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualConbo NEXT .NET Windows Forms 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualCron 3.1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualCVS Workbench 4.02c.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualGSM Enterprise SMS Gateway 3.6.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualGSM Lite Broadcast Server 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualLookout 5.0g.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualMouse 0.985.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualOne 2005 1.0.12.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualPulse Router Edition 5.2c.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualPulse Web Edition 5.2c.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualRenamer 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualRoute 2006 10.0h build 2908.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualRoute 2006 10.0h.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualScript XML 2.02.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualSearchPro Search and Replace Utility 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualSetup 4.0.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualSlim 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualSniffer 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualStat 5.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Visualware Security Suite 2005 1.2b.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisuaLyzer 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisualZone 5.7.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VisuCalc 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vita-Track 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\vitaero - use your Bluetooth headset with Skype 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vital Desktop Video 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VitalCRM Business Contact Manager 2.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vitamin Test 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VITO QuickContact 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VITO QuickContact for P910P900P800 4.31.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VITO Remote 4.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VITO SketchArtist (ARMMIPSXScale) 2.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VITO SmartMap (Nokia series 60) 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VITO SmartMap for P910P900P800 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VITO SoundExplorer 1.7.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VITO SoundExplorer for P910P900P800 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VITO Voice2Go 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VitoNavigator 2.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vitrite 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vivaldi Gold 2003.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vivaldi Plus 2003a.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vivaldi Scan 2003a.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vivant On Hold 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\ViviClip Pre-Wash DV Basic 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\ViviClip Video Filters Basic 3.01.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VividDesktop 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VividLyrics 2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VividSwitcher 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vivisector Beast Within demo .zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vivisimo MiniBar 2.13 beta.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vivisimo Toolbar 2.13 beta.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vivistar Space VOrb Driver 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VIVOsoft FWD Edition 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VIZ7 1.0.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VizEdge Plus 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vizeon CyberGirl WebTop 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vizeon Office WebTop 3.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\ViziFlow 2.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vizify Presentation Manager 3.11.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vizros Explorer 2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vizros Lake Screen Saver 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VizUp 2.1.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vjamm Blueprint 1.0.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VJamp 2.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VKPlayer 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vladstudio Companion 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vladstuidio Christmas Wallpapers Pack 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VLButtonBar 3.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VLC Media Player 0.8.4a.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VLFormDesigner 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VLFullScreen 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VLMenuPlus 5.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vlog It 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VLPropertyList 2.1 build 0064.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VLViewPort 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VM Information and Control Center 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VMN Toolbar 1.0-4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VMonitor 1.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VMPC Data Security 50201.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VMware Player 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VMware Workstation 5.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VNC Admin Console NG 2.1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VNC Installer Pro 1.1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VNC Remote Install 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VNC Scan Enterprise Console 2006.3.14.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VNCEverywhere Free 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VNCViewer 2.01.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VnSI4H Healthy Registry 2006 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VNUWordPad 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocab 1.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocab Grapher 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocab Tutor 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocab-Flash Two 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocab-French 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VocabGuru 2006 3.0.46.3 build 46.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocaboly 2.03.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabox 1.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary Builder 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary Builder Simple 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary Power 4.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary Program 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary Stretch 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary System 2.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary Trainer 3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary Wizard 6.7.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary Worksheet Factory 3.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulary-Trainer 2.02.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocabulator 2006.02.05.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocal Imitation 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocal Remover (DirectX) 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocal Remover (Winamp) 1.03.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VOCalendar 3.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocalise TTS 1.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocalise Wav 1.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VocalWriter 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vocero 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VocProf Vocabulary Trainer 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoD Maker 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Balancing System 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Buddy 3.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Connector 3.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Emotion with Recorder 2.0.9.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Insert ActiveX SDK 2.5.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice LookUp 3.9.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Mail Compressor 1.82.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice MMS 4.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Recorder 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Sticky Notes 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Streaming Applet 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Studio 1.4.9.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Tools 7.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Tracker 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice Web Studio 1.1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voice2Mail 1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoiceCall 4.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoiceCenter 2.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voiced Keyboard 3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoiceGo 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoiceGuide 5.2.2003.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoiceMX Studio 4.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voicent AutoReminder 3.0.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Voicent BroadcastByPhone Autodialer 3.2.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoiceSecureIt 3.0.16.302.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoiceSFX 1.3.0.9.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoiceSwitch 1.4.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Void War 1.00.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VOIP H323 DLL SDK 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VOIP SIP Phone DLL SDK 1.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoipBuster 2.07 build 241.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VoIPSurfer for Pocket PC 0.13.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vokator (OS X) 1.0.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vokator 1.0.2.009.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vokator 1.0.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Vol-Track 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volcano 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volcano Island 1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volcanos 5.0.13.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VolID(Disk Drives Serial Modifier) 3.0.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volko Baglama 1.0.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volley 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volley Balley 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volley Balley 1.6.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volleyball (Nokia) 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volleyball (UIQ) 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volleyball 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volleyball 1.1.2.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volleyball 1.1.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volt 1.214.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\VolTimer 1.0.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volts 3.33.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volume Logic for iTunes 1.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volume Logic for Musicmatch Jukebox 1.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volume Logic for RealPlayer 1.3.zip/Setup.exe -> Worm.VB.dw : Nettoyer et sauvegarder C:\Documents and Settings\julie\Complete\Volume Lo