Aller au contenu

Pierre2.0

Membres
  • Compteur de contenus

    34
  • Inscription

  • Dernière visite

Profile Information

  • Sexe
    Male
  • Localisation
    Tours

Autres informations

  • Mes langues
    français, anglais, espagnol

Pierre2.0's Achievements

Member

Member (4/12)

0

Réputation sur la communauté

  1. Bonjour, il y a quelques temps, j'avais demandé conseil sur l'éradication de malwares aux noms exotiques, genre tevaziva. Ils sont revenus (quelques années après?). J'ai donc été rechercher sur Zebulon le vieux sujet que j'ai aussitôt trouvé, mais lorsque dans la recherche, je clique sur le nom du sujet, j'obtiens la page suivante : "Warning: explode() [function.explode]: Empty delimiter in /home/forum/www/forum/admin/applications_addon/other/communityseo/sources/functions.php on line 1573 Warning: Invalid argument supplied for foreach() in /home/forum/www/forum/admin/applications_addon/other/communityseo/sources/functions.php on line 1609 Warning: Cannot modify header information - headers already sent by (output started at /home/forum/www/forum/admin/applications_addon/other/communityseo/sources/functions.php:1573) in /home/forum/www/forum/admin/sources/classes/output/formats/html/htmlOutput.php on line 109 Warning: Cannot modify header information - headers already sent by (output started at /home/forum/www/forum/admin/applications_addon/other/communityseo/sources/functions.php:1573) in /home/forum/www/forum/admin/sources/classes/output/formats/html/htmlOutput.php on line 120 Warning: Cannot modify header information - headers already sent by (output started at /home/forum/www/forum/admin/applications_addon/other/communityseo/sources/functions.php:1573) in /home/forum/www/forum/admin/sources/classes/output/formats/html/htmlOutput.php on line 129 Warning: Cannot modify header information - headers already sent by (output started at /home/forum/www/forum/admin/applications_addon/other/communityseo/sources/functions.php:1573) in /home/forum/www/forum/admin/sources/classes/output/formats/html/htmlOutput.php on line 130 Warning: Cannot modify header information - headers already sent by (output started at /home/forum/www/forum/admin/applications_addon/other/communityseo/sources/functions.php:1573) in /home/forum/www/forum/admin/sources/classes/output/formats/html/htmlOutput.php on line 134" Est-ce que quelqu'un peut me recopier les instructions d'éradication qu'il y avait dans ce sujet? Merci! Pierre, de Tours.
  2. Merci beaucoup de cette démarche et de votre patience. Tous les problèmes semblent résolus! Encore merci! Pierre, de Tours.
  3. Voici le rapport de Avira que j'ai enfin réussi à installer : Avira AntiVir Personal Report file date: dimanche 5 avril 2009 15:23 Scanning for 1339172 virus strains and unwanted programs. Licensed to: Avira AntiVir PersonalEdition Classic Serial number: 0000149996-ADJIE-0001 Platform: Windows XP Windows version: (Service Pack 2) [5.1.2600] Boot mode: Normally booted Username: SYSTEM Computer name: DESEUF Version information: BUILD.DAT : 8.2.0.347 16934 Bytes 16/03/2009 14:45:00 AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 07:21:26 AVSCAN.DLL : 8.1.4.0 40705 Bytes 26/05/2008 06:56:40 LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 11:44:19 LUKERES.DLL : 8.1.4.0 12033 Bytes 26/05/2008 06:58:52 ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 10:30:36 ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 09:31:44 ANTIVIR2.VDF : 7.1.3.0 1330176 Bytes 01/04/2009 09:31:55 ANTIVIR3.VDF : 7.1.3.13 57344 Bytes 03/04/2009 09:31:56 Engineversion : 8.2.0.138 AEVDF.DLL : 8.1.1.0 106868 Bytes 05/04/2009 09:32:16 AESCRIPT.DLL : 8.1.1.73 373114 Bytes 05/04/2009 09:32:14 AESCN.DLL : 8.1.1.10 127348 Bytes 05/04/2009 09:32:12 AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 12:58:38 AEPACK.DLL : 8.1.3.12 397687 Bytes 05/04/2009 09:32:11 AEOFFICE.DLL : 8.1.0.36 196987 Bytes 05/04/2009 09:32:09 AEHEUR.DLL : 8.1.0.114 1700214 Bytes 05/04/2009 09:32:07 AEHELP.DLL : 8.1.2.2 119158 Bytes 05/04/2009 09:32:01 AEGEN.DLL : 8.1.1.33 340340 Bytes 05/04/2009 09:31:59 AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 09:05:56 AECORE.DLL : 8.1.6.7 176502 Bytes 05/04/2009 09:31:57 AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 09:05:56 AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 07:40:05 AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 08:28:01 AVREP.DLL : 8.0.0.2 98344 Bytes 31/07/2008 11:02:15 AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 10:26:40 AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 07:29:23 AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 11:27:49 SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 16:28:02 SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 11:49:40 NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 11:05:10 RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 12/06/2008 12:48:07 RCTEXT.DLL : 8.0.52.0 86273 Bytes 27/06/2008 12:34:37 Configuration settings for the scan: Jobname..........................: Complete system scan Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp Logging..........................: low Primary action...................: repair Secondary action.................: delete Scan master boot sector..........: on Scan boot sector.................: on Boot sectors.....................: C:, Process scan.....................: on Scan registry....................: on Search for rootkits..............: on Scan all files...................: All files Scan archives....................: on Recursion depth..................: 20 Smart extensions.................: on Macro heuristic..................: on File heuristic...................: medium Start of the scan: dimanche 5 avril 2009 15:23 Starting search for hidden objects. '10581' objects were checked, '0' hidden objects were found. The scan of running processes will be started Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned Scan process 'wuauclt.exe' - '1' Module(s) have been scanned Scan process 'wmiadap.exe' - '1' Module(s) have been scanned Scan process 'avscan.exe' - '1' Module(s) have been scanned Scan process 'wuauclt.exe' - '1' Module(s) have been scanned Scan process 'Watch.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'alg.exe' - '1' Module(s) have been scanned Scan process 'ashWebSv.exe' - '1' Module(s) have been scanned Scan process 'wmiprvse.exe' - '1' Module(s) have been scanned Scan process 'ashMaiSv.exe' - '1' Module(s) have been scanned Scan process 'symwsc.exe' - '1' Module(s) have been scanned Scan process 'ADService.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'slserv.exe' - '1' Module(s) have been scanned Scan process 'setup_7.0.0.180_19.04.2008_13-41.exe' - '1' Module(s) have been scanned Scan process 'SeaPort.exe' - '1' Module(s) have been scanned Scan process 'SAVSCAN.EXE' - '1' Module(s) have been scanned Scan process 'PnkBstrA.exe' - '1' Module(s) have been scanned Scan process 'NAVAPSVC.EXE' - '1' Module(s) have been scanned Scan process 'MDM.EXE' - '1' Module(s) have been scanned Scan process 'jqs.exe' - '1' Module(s) have been scanned Scan process 'AppServices.exe' - '1' Module(s) have been scanned Scan process 'avast.setup' - '1' Module(s) have been scanned Scan process 'FTRTSVC.exe' - '1' Module(s) have been scanned Scan process 'fsssvc.exe' - '1' Module(s) have been scanned Scan process 'CCPROXY.EXE' - '1' Module(s) have been scanned Scan process 'avguard.exe' - '1' Module(s) have been scanned Scan process 'ALERTM~1.EXE' - '1' Module(s) have been scanned Scan process 'PollingModule.exe' - '1' Module(s) have been scanned Scan process 'Inactivity.exe' - '1' Module(s) have been scanned Scan process 'Toaster.exe' - '1' Module(s) have been scanned Scan process 'msmsgs.exe' - '1' Module(s) have been scanned Scan process 'ComComp.exe' - '1' Module(s) have been scanned Scan process 'GestionnaireInternet.exe' - '1' Module(s) have been scanned Scan process 'Mise-a-jour-LiveSearch.exe' - '1' Module(s) have been scanned Scan process 'Notification-LiveSearch.exe' - '1' Module(s) have been scanned Scan process 'ctfmon.exe' - '1' Module(s) have been scanned Scan process 'TaskBarIcon.exe' - '1' Module(s) have been scanned Scan process 'EZStatus.exe' - '1' Module(s) have been scanned Scan process 'avgnt.exe' - '1' Module(s) have been scanned Scan process 'ashDisp.exe' - '1' Module(s) have been scanned Scan process 'sched.exe' - '1' Module(s) have been scanned Scan process 'jusched.exe' - '1' Module(s) have been scanned Scan process 'spoolsv.exe' - '1' Module(s) have been scanned Scan process 'Ikeymain.exe' - '1' Module(s) have been scanned Scan process 'CCAPP.EXE' - '1' Module(s) have been scanned Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned Scan process 'ALCWZRD.EXE' - '1' Module(s) have been scanned Scan process 'SoundMan.exe' - '1' Module(s) have been scanned Scan process 'ashServ.exe' - '1' Module(s) have been scanned Scan process 'aswUpdSv.exe' - '1' Module(s) have been scanned Scan process 'CCEVTMGR.EXE' - '1' Module(s) have been scanned Scan process 'explorer.exe' - '1' Module(s) have been scanned Scan process 'SNDSrvc.exe' - '1' Module(s) have been scanned Scan process 'CCSETMGR.EXE' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'svchost.exe' - '1' Module(s) have been scanned Scan process 'lsass.exe' - '1' Module(s) have been scanned Scan process 'savedump.exe' - '1' Module(s) have been scanned Scan process 'services.exe' - '1' Module(s) have been scanned Scan process 'winlogon.exe' - '1' Module(s) have been scanned Scan process 'csrss.exe' - '1' Module(s) have been scanned Scan process 'smss.exe' - '1' Module(s) have been scanned 67 processes with 67 modules were scanned Starting master boot sector scan: Master boot sector HD0 [iNFO] No virus was found! Master boot sector HD1 [iNFO] No virus was found! [WARNING] System error [21]: Le périphérique n'est pas prêt. Master boot sector HD2 [iNFO] No virus was found! [WARNING] System error [21]: Le périphérique n'est pas prêt. Master boot sector HD3 [iNFO] No virus was found! [WARNING] System error [21]: Le périphérique n'est pas prêt. Master boot sector HD4 [iNFO] No virus was found! [WARNING] System error [21]: Le périphérique n'est pas prêt. Start scanning boot sectors: Boot sector 'C:\' [iNFO] No virus was found! Starting to scan the registry. The registry was scanned ( '65' files ). Starting the file scan: Begin scan in 'C:\' <HDD> C:\hiberfil.sys [WARNING] The file could not be opened! C:\pagefile.sys [WARNING] The file could not be opened! C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\SmitfraudCgp.zip [DETECTION] Contains suspicious code GEN/PwdZIP [NOTE] The detection was classified as suspicious. [NOTE] A backup was created as '4a41b348.qua' ( QUARANTINE ) C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumonde.zip [DETECTION] Contains suspicious code GEN/PwdZIP [NOTE] The detection was classified as suspicious. [NOTE] A backup was created as '4a4ab344.qua' ( QUARANTINE ) C:\Documents and Settings\Pieter\Mes documents\pierre2.0\La dobe\Adobe After Effect 7.0.zip [0] Archive type: ZIP --> 7/After_Effects_7_0_Tryout/Data1.cab [1] Archive type: CAB (Microsoft) --> ae_pluginfolder.ico [WARNING] No further files can be extracted from this archive. The archive will be closed C:\Program Files\Adobe\Reader 8.0\Setup Files\{AC76BA86-7AD7-1033-7B44-A81200000003}\Data1.cab [0] Archive type: CAB (Microsoft) --> JSByteCodeWin.bin [WARNING] The file could not be written! --> usa86.lex [WARNING] No further files can be extracted from this archive. The archive will be closed C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779616.dll [DETECTION] Is the TR/Monder.afvy Trojan [NOTE] A backup was created as '4a0fce01.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779617.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce02.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779618.dll [DETECTION] Is the TR/Monder.afvy Trojan [NOTE] A backup was created as '4b17227b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779619.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Agent.xao back-door program [NOTE] A backup was created as '4a0fce04.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779620.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce03.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779621.dll [DETECTION] Is the TR/Vundo.98011G Trojan [NOTE] A backup was created as '4b17227c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779622.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce05.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779623.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b17227d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779624.dll [DETECTION] Is the TR/Monder.axol Trojan [NOTE] A backup was created as '4a0fce06.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779625.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b17227f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779626.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b17227e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779627.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce07.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779628.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172270.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779629.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fcef8.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779630.dll [DETECTION] Is the TR/Monder.atal Trojan [NOTE] A backup was created as '4b172281.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779631.dll [DETECTION] Is the TR/Vundo.85081AM Trojan [NOTE] A backup was created as '4a0fcefa.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779632.dll [DETECTION] Is the TR/Monder.aofq Trojan [NOTE] A backup was created as '4a0fce09.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779633.dll [DETECTION] Is the TR/Vundo.98011G Trojan [NOTE] A backup was created as '4b172272.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779634.dll [DETECTION] Is the TR/Monder.atal Trojan [NOTE] A backup was created as '4a0fce08.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779635.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172271.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779636.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Agent.xao back-door program [NOTE] A backup was created as '4a0fce0a.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779637.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce0b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779638.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172274.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779639.dll [DETECTION] Is the TR/Vundo.98011G Trojan [NOTE] A backup was created as '4a0fce0d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779640.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Agent.xao back-door program [NOTE] A backup was created as '4b172273.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779641.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce0c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779642.dll [DETECTION] Is the TR/Monder.awam Trojan [NOTE] A backup was created as '4b172275.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779644.dll [DETECTION] Is the TR/Vundo.85081AM Trojan [NOTE] A backup was created as '4b172276.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779645.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce0f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779646.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172268.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779647.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce0e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779648.dll [DETECTION] Is the TR/Monder.aofq Trojan [NOTE] A backup was created as '4b172277.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779649.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce00.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779650.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172279.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779651.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce11.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779652.dll [DETECTION] Is the TR/Spy.Agent.NUZ.1 Trojan [NOTE] A backup was created as '4b17226a.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779653.dll [DETECTION] Is the TR/Monder.atal Trojan [NOTE] A backup was created as '4a0fce13.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779654.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Agent.xao back-door program [NOTE] A backup was created as '4b172283.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779655.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fcefc.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779656.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172285.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779657.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fcefe.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779658.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b17226c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779659.dll [DETECTION] Is the TR/Vundo.GGW Trojan [NOTE] A backup was created as '4a0fce15.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779660.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b17226e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779661.dll [DETECTION] Is the TR/Spy.Agent.wlf Trojan [NOTE] A backup was created as '4a0fce10.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779662.dll [DETECTION] Is the TR/Monder.awam Trojan [NOTE] A backup was created as '4b172269.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779663.dll [DETECTION] Is the TR/Monder.afvy Trojan [NOTE] A backup was created as '4a0fce12.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779664.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce17.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779665.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Agent.xao back-door program [NOTE] A backup was created as '4b172260.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779666.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce19.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779667.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172262.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779668.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b17226b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779669.dll [DETECTION] Is the TR/Monder.atal Trojan [NOTE] A backup was created as '4a0fce14.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779670.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Agent.xao back-door program [NOTE] A backup was created as '4b17226d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779671.dll [DETECTION] Is the TR/Agent.bjxa Trojan [NOTE] A backup was created as '4a0fce1b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779672.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172264.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779673.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce1d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779674.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172266.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779731.dll [DETECTION] Is the TR/Spy.Agent.wci Trojan [NOTE] A backup was created as '4a0fce1f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779732.exe [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan [NOTE] A backup was created as '4b172258.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779733.exe [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan [NOTE] A backup was created as '4a0fce16.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779734.dll [DETECTION] Is the TR/Monder.badb Trojan [NOTE] A backup was created as '4b17226f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779735.dll [DETECTION] Is the TR/Spy.Agent.xvd Trojan [NOTE] A backup was created as '4b172287.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779736.dll [DETECTION] Is the TR/PSW.OnlineGames.uopc Trojan [NOTE] A backup was created as '4a0fce21.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1003\A0779737.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b17225a.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0795422.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce3c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0795426.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b172245.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0795428.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Eggdrop.HF back-door program [NOTE] A backup was created as '4a0fce3e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0795429.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce3d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0795430.dll [DETECTION] Is the TR/Monder.aruy Trojan [NOTE] A backup was created as '4b172246.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0795431.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce3f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0795434.dll [DETECTION] Is the TR/Monder.aruy Trojan [NOTE] A backup was created as '4b172247.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0795436.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce30.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0795437.dll [DETECTION] Contains a recognition pattern of the (harmful) BDS/Eggdrop.HF back-door program [NOTE] A backup was created as '4b172249.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798009.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce63.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798010.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b17221c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798078.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce65.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798114.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce67.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798472.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce72.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798473.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a0fce73.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798474.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b17220c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798479.exe [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan [NOTE] A backup was created as '4a0fce75.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798546.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b17220e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798548.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce77.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798550.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce76.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798551.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b17220f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798552.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce68.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798553.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172200.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798554.exe [DETECTION] Is the TR/Dldr.FLoad.vnjg Trojan [NOTE] A backup was created as '4a0fce79.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798555.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172202.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798556.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce78.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798557.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172201.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798558.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce7a.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798559.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce7b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798560.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172204.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798561.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce7d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798562.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172206.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798563.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172203.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798564.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce7c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798565.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172205.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798566.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce7f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798567.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f8.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798568.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce81.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798569.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722fa.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798570.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce7e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798571.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172207.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798572.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce70.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798573.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce83.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798574.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722fc.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798575.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce85.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798576.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172209.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798577.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b17220b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798578.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce74.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798579.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722fe.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798580.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce87.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798581.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f0.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798582.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce80.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798583.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f9.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798584.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce82.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798585.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722fb.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798586.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce89.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798587.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f2.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798588.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce8b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798589.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce84.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798590.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722fd.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798591.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce86.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798592.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722ff.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798593.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f4.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798594.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce8d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798595.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f6.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798596.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcf78.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798597.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172301.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798598.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcf7a.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798599.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce8f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798600.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722e8.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798601.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce91.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798602.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172303.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798603.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcf7c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798604.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172305.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798605.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcf7e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798606.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722ea.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798607.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce93.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798608.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722ec.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798609.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce88.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798610.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f1.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798611.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce8a.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798612.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce95.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798613.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722ee.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798614.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce97.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798615.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722e0.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798616.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f3.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798617.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce8c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798618.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f5.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798619.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce99.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798620.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722e2.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798621.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce9b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798622.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce8e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798623.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722f7.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798624.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172307.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798625.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722e4.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798626.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce9d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798627.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722e6.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798628.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcf70.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798629.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b172309.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798630.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcf72.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798631.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce9f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798632.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722d8.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798633.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcea1.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798634.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce90.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798635.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722e9.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798636.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce92.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798637.exe [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722da.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798638.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcea3.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798639.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722dc.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798640.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722eb.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798641.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce94.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798642.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722ed.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798643.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcea5.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798644.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722de.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798645.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcea7.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798646.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fce96.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798647.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722ef.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798648.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b17230b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798649.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcf74.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798650.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722d0.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798651.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcea9.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798652.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b1722d2.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798653.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b17230d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798661.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4a0fcf76.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1009\A0798662.dll [DETECTION] Is the TR/Trash.Gen Trojan [NOTE] A backup was created as '4b17230f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801177.dll [DETECTION] Is the TR/BHO.lwq Trojan [NOTE] A backup was created as '4a10cea5.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801178.dll [DETECTION] Is the TR/Spy.Agent.zva Trojan [NOTE] A backup was created as '4a10cea6.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801179.dll [DETECTION] Is the TR/Spy.Agent.uuj Trojan [NOTE] A backup was created as '4b0822df.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801180.dll [DETECTION] Is the TR/Monder.azai Trojan [NOTE] A backup was created as '4a10ce98.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801181.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b0822e1.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801182.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cea7.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801183.dll [DETECTION] Is the TR/Monder.atau Trojan [NOTE] A backup was created as '4b0822d0.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801184.dll [DETECTION] Is the TR/Vundo.zcc.1 Trojan [NOTE] A backup was created as '4a10cea9.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801185.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cea8.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801186.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b0822d1.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801188.dll [DETECTION] Is the TR/Monder.auwn Trojan [NOTE] A backup was created as '4a10ceaa.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801189.dll [DETECTION] Is the TR/Dldr.BHO.gdw Trojan [NOTE] A backup was created as '4b0822d3.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801190.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b0822d2.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801192.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10ceab.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801194.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b0822d4.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801195.dll [DETECTION] Is the TR/PSW.OnlineGames.uopc Trojan [NOTE] A backup was created as '4a10ceac.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801196.dll [DETECTION] Is the TR/Monder.basr Trojan [NOTE] A backup was created as '4b0822d5.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801197.dll [DETECTION] Is the TR/Spy.Agent.wbo Trojan [NOTE] A backup was created as '4a10ceae.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801198.dll [DETECTION] Is the TR/BHO.lwq Trojan [NOTE] A backup was created as '4a10cead.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801200.dll [DETECTION] Is the TR/Spy.Agent.wdr Trojan [NOTE] A backup was created as '4b0822d6.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801201.dll [DETECTION] Is the TR/Spy.Agent.rzk Trojan [NOTE] A backup was created as '4b0822d7.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801204.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cea0.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801205.dll [DETECTION] Is the TR/Monder.arge Trojan [NOTE] A backup was created as '4a10ceaf.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801206.dll [DETECTION] Is the TR/Monder.avtz Trojan [NOTE] A backup was created as '4b0822c8.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801207.dll [DETECTION] Is the TR/BHO.oda.3 Trojan [NOTE] A backup was created as '4a10ceb1.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801208.dll [DETECTION] Is the TR/Dldr.BHO.gho Trojan [NOTE] A backup was created as '4b0822d9.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801209.dll [DETECTION] Is the TR/Spy.Agent.rzk Trojan [NOTE] A backup was created as '4a10cea2.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801212.dll [DETECTION] Is the TR/Dldr.BHO.gho Trojan [NOTE] A backup was created as '4b0822db.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801213.dll [DETECTION] Is the TR/PSW.OnlineGames.uodn Trojan [NOTE] A backup was created as '4b0822ca.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801214.dll [DETECTION] Is the TR/Monder.azai Trojan [NOTE] A backup was created as '4a10ceb3.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801215.dll [DETECTION] Is the TR/Monder.ayvh Trojan [NOTE] A backup was created as '4b0822cc.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801216.dll [DETECTION] Is the TR/Dldr.BHO.gxp Trojan [NOTE] A backup was created as '4a10ceb0.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1011\A0801219.dll [DETECTION] Is the TR/Dldr.BHO.gdw Trojan [NOTE] A backup was created as '4b0822c9.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804454.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cebe.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804455.exe [DETECTION] Is the TR/Dldr.FLoad.vnjg Trojan [NOTE] A backup was created as '4a10cebf.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804456.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4b0822b8.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804457.dll [DETECTION] Is the TR/Monder.badb Trojan [NOTE] A backup was created as '4a10cec1.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804458.dll [DETECTION] Is the TR/Spy.Agent.aapg Trojan [NOTE] A backup was created as '4a10cec0.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804459.dll [DETECTION] Is the TR/Monder.avtz Trojan [NOTE] A backup was created as '4b0822b9.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804460.dll [DETECTION] Is the TR/Spy.Agent.vko Trojan [NOTE] A backup was created as '4a10cec2.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804461.exe [DETECTION] Is the TR/Dldr.FraudLoad.vnjh.2 Trojan [NOTE] A backup was created as '4b0822ba.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804462.dll [DETECTION] Is the TR/BHO.lnf Trojan [NOTE] A backup was created as '4a10cec3.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804463.dll [DETECTION] Is the TR/Spy.Agent.aawg Trojan [NOTE] A backup was created as '4b0822bc.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804464.dll [0] Archive type: RSRC --> Object [DETECTION] Is the TR/Crypt.ULPM.Gen Trojan [NOTE] A backup was created as '4b0822bb.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804465.dll [DETECTION] Is the TR/BHO.mfc Trojan [NOTE] A backup was created as '4bb2873b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804466.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cec4.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804467.dll [DETECTION] Is the TR/BHO.mjh Trojan [NOTE] A backup was created as '4bb2873c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804468.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cec5.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804469.dll [DETECTION] Is the TR/Monder.9338 Trojan [NOTE] A backup was created as '4bb2873e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804470.dll [DETECTION] Is the TR/Monder.baon Trojan [NOTE] A backup was created as '4bb2873d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804471.exe [DETECTION] Is the TR/Dldr.FLoad.vnjg Trojan [NOTE] A backup was created as '4a10cec6.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804472.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb2873f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804473.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cec7.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804474.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb28730.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804475.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cec9.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804476.dll [DETECTION] Is the TR/Spy.Agent.aaoo Trojan [NOTE] A backup was created as '4bb28732.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804477.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10ceb8.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804478.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb28741.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804479.dll [DETECTION] Is the TR/Spy.Agent.zva Trojan [NOTE] A backup was created as '4a10ceba.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804480.dll [DETECTION] Is the TR/Monder.assv Trojan [NOTE] A backup was created as '4a10cecb.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804481.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb28734.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804482.dll [DETECTION] Is the TR/Spy.Agent.wci Trojan [NOTE] A backup was created as '4a10cecd.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804483.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cec8.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804484.dll [DETECTION] Is the TR/Dldr.BHO.gdw Trojan [NOTE] A backup was created as '4bb28731.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804485.dll [DETECTION] Contains recognition pattern of the WORM/SdBot.99642 worm [NOTE] A backup was created as '4a10ceca.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804486.dll [DETECTION] Is the TR/Monder.badb Trojan [NOTE] A backup was created as '4bb28736.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804487.dll [DETECTION] Is the TR/Spy.Agent.aawk Trojan [NOTE] A backup was created as '4a10cecf.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804488.dll [DETECTION] Is the TR/BHO.lwm Trojan [NOTE] A backup was created as '4bb28728.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804489.dll [DETECTION] Is the TR/BHO.mfe Trojan [NOTE] A backup was created as '4bb28733.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804490.dll [DETECTION] Is the TR/Monder.baon Trojan [NOTE] A backup was created as '4a10cecc.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804491.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb28735.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804492.dll [DETECTION] Is the TR/BHO.mfc Trojan [NOTE] A backup was created as '4a10cece.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804493.dll [DETECTION] Is the TR/PSW.OnlineGames.umkb Trojan [NOTE] A backup was created as '4a10ced1.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804494.dll [DETECTION] Is the TR/BHO.mfe Trojan [NOTE] A backup was created as '4bb2872a.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804495.dll [DETECTION] Is the TR/Spy.Agent.aaoo Trojan [NOTE] A backup was created as '4a10ced3.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804496.dll [DETECTION] Is the TR/Monder.badb Trojan [NOTE] A backup was created as '4bb28737.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804497.dll [DETECTION] Is the TR/BHO.mfc Trojan [NOTE] A backup was created as '4bb28739.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804498.dll [DETECTION] Is the TR/Spy.Agent.vmf Trojan [NOTE] A backup was created as '4bb2872c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804499.dll [DETECTION] Is the TR/Spy.Agent.wck Trojan [NOTE] A backup was created as '4a10ced5.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804500.dll [DETECTION] Is the TR/Monder.badb Trojan [NOTE] A backup was created as '4bb2872e.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804501.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10ced7.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804502.dll [DETECTION] Is the TR/Monder.atau Trojan [NOTE] A backup was created as '4bb28743.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804503.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cebc.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804504.dll [DETECTION] Is the TR/Monder.baon Trojan [NOTE] A backup was created as '4bb28745.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804505.dll [DETECTION] Is the TR/PSW.OnlineGames.umkb Trojan [NOTE] A backup was created as '4bb28720.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804506.dll [DETECTION] Is the TR/Spy.Agent.rnd Trojan [NOTE] A backup was created as '4a10ced9.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804507.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb28722.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804508.dll [DETECTION] Is the TR/Dldr.BHO.gdw Trojan [NOTE] A backup was created as '4a10ced0.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804509.dll [DETECTION] Is the TR/PSW.OnlineGames.uoxa Trojan [NOTE] A backup was created as '4bb28729.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804510.dll [DETECTION] Is the TR/Spy.Agent.aawg Trojan [NOTE] A backup was created as '4a10ced2.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804511.dll [DETECTION] Is the TR/Spy.Agent.aaon Trojan [NOTE] A backup was created as '4a10cedb.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804512.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb28724.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804513.dll [DETECTION] Is the TR/Spy.Agent.une Trojan [NOTE] A backup was created as '4a10cedd.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804514.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb2872b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804515.dll [DETECTION] Is the TR/Monder.badb Trojan [NOTE] A backup was created as '4a10ced4.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804516.dll [DETECTION] Is the TR/Spy.Agent.xxc Trojan [NOTE] A backup was created as '4bb2872d.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804517.dll [DETECTION] Is the TR/Monder.avud Trojan [NOTE] A backup was created as '4bb28726.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804518.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cedf.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804519.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb28718.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804520.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cee1.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804521.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10ced6.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804522.dll [DETECTION] Is the TR/Spy.Agent.zvo Trojan [NOTE] A backup was created as '4bb2872f.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804523.dll [DETECTION] Is the TR/Dldr.BHO.bvk Trojan [NOTE] A backup was created as '4bb28747.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804524.dll [DETECTION] Is the TR/Monder.badb Trojan [NOTE] A backup was created as '4bb2871a.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804525.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4a10cee3.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804526.dll [DETECTION] Is the TR/Dldr.BHO.gxu Trojan [NOTE] A backup was created as '4bb2871c.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804527.dll [DETECTION] Is the TR/Vundo.Gen Trojan [NOTE] A backup was created as '4bb28749.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804528.dll [DETECTION] Is the TR/Spy.Agent.aaub Trojan [NOTE] A backup was created as '4a10ceb2.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP1014\A0804529.dll [DETECTION] Is the TR/Monder.atau Trojan [NOTE] A backup was created as '4bb2874b.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP980\A0743580.exe [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan [NOTE] A backup was created as '4a0fcedf.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP980\A0743581.exe [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan [NOTE] A backup was created as '4bad8718.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP980\A0743582.exe [DETECTION] Is the TR/Dldr.Swizzor.Gen Trojan [NOTE] A backup was created as '4a0fcee1.qua' ( QUARANTINE ) [NOTE] The file was deleted! C:\WINDOWS\system32\drivers\sptd.sys [WARNING] The file could not be opened! End of the scan: dimanche 5 avril 2009 17:56 Used time: 2:33:54 Hour(s) The scan has been done completely. 11835 Scanning directories 563747 Files were scanned 302 viruses and/or unwanted programs were found 2 Files were classified as suspicious: 302 files were deleted 0 files were repaired 304 files were moved to quarantine 0 files were renamed 3 Files cannot be scanned 563440 Files not concerned 8563 Archives were scanned 10 Warnings 304 Notes 10581 Objects were scanned with rootkit scan 0 Hidden objects were found
  4. bon bon bon... La page ne se charge pas. Désolé pour tous ces dérangements. En attendant, voici le rapport hjt : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 10:10:07, on 05/04/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16791) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Windows Live\Family Safety\fsssvc.exe C:\WINDOWS\System32\FTRTSVC.exe C:\PROGRA~1\Iomega\System32\AppServices.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\WINDOWS\system32\PnkBstrA.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\Documents and Settings\All Users\Bureau\Kaspersky Lab Tool\setup_7.0.0.180_19.04.2008_13-41.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Iomega\AutoDisk\ADService.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\ALCWZRD.EXE C:\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Apps\Powercinema\PCMService.exe C:\Program Files\Keyboard Driver\Keyboard Driver\ikeymain.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Apps\EZHome\EZStatus.exe C:\WINDOWS\system32\ctfmon.exe C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\Documents and Settings\Pieter\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe C:\Documents and Settings\Pieter\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe C:\WINDOWS\System32\svchost.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\PROGRA~1\Wanadoo\Watch.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\Program Files\Outlook Express\msimn.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSCNo.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Windows Live\Toolbar\wltuser.exe C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE C:\Program Files\Microsoft\Office Live\OfficeLiveSignIn.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\OPScan.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://y.lo.st/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://lo.st#first R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [ATIPTA] "C:\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [Keyboard driver ] "C:\Program Files\Keyboard Driver\Keyboard Driver\ikeymain.exe" O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKCU\..\Run: [EzStatus] C:\Apps\EZHome\EZStatus.exe O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: Outil de notification Live Search.lnk = C:\Documents and Settings\Pieter\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm O15 - Trusted Zone: http://www.secuser.com O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/dow...llerControl.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{BDA50872-4680-4ABE-A470-4CB41D13FEFE}: NameServer = 192.168.1.1 O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: Iomega App Services - Iomega Corporation - C:\PROGRA~1\Iomega\System32\AppServices.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: setup_7.0.0.180_19.04.2008_13-41 - Kaspersky Lab - C:\Documents and Settings\All Users\Bureau\Kaspersky Lab Tool\setup_7.0.0.180_19.04.2008_13-41.exe O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe O23 - Service: Iomega Active Disk (_IOMEGA_ACTIVE_DISK_SERVICE_) - Iomega Corporation - C:\Program Files\Iomega\AutoDisk\ADService.exe -- End of file - 12729 bytes
  5. Bonsoir, je n'ai pas pu le faire car le bouton "accept" est grisé et ne fonctionne pas. Que faire?
  6. Bonjour et merci pour cette procédure claire. Tout s'est passé selon le schéma indiqué, et voici les rapports : SDFIX SDFix: Version 1.240 Run by Administrateur on 01/04/2009 at 16:13 Microsoft Windows XP [version 5.1.2600] Running From: C:\SDFix Checking Services : Restoring Default Security Values Restoring Default Hosts File Rebooting Checking Files : No Trojan Files Found C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat - Contains Links to Malware Sites! - Deleted C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat - Contains Links to Malware Sites! - Deleted Removing Temp Files ADS Check : Final Check : catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-04-01 16:43:47 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden services & system hive ... [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg] "s1"=dword:9fab8b41 "s2"=dword:0b0b8170 "h0"=dword:00000001 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4] "h0"=dword:00000000 "khjeh"=hex:8f,1a,69,92,fb,27,1e,ab,32,7b,99,e1,ee,fd,78,05,02,c6,b9,52,d7,.. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4] "h0"=dword:00000000 "khjeh"=hex:8f,1a,69,92,fb,27,1e,ab,32,7b,99,e1,ee,fd,78,05,02,c6,b9,52,d7,.. scanning hidden registry entries ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden services: 0 hidden files: 0 Remaining Services : Authorized Application Key Export: [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%ProgramFiles%\\AOL 9.0\\aol.exe"="%ProgramFiles%\\AOL 9.0\\aol.exe:*:Enabled:AOL" "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe"="%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe:*:Enabled:SPLINTER CELL PANDORA" "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe"="%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe:*:Enabled:PANDORA" "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\\APPS\\Inventime\\my.exe"="C:\\APPS\\Inventime\\my.exe:*:Enabled:INVENTIME" "C:\\Program Files\\Firaxis Games\\Sid Meier's Civilization 4\\Civilization4.exe"="C:\\Program Files\\Firaxis Games\\Sid Meier's Civilization 4\\Civilization4.exe:*:Enabled:Sid Meier's Civilization 4" "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger" "C:\\Program Files\\Electronic Arts\\La Bataille pour la Terre du Milieu II\\game.dat"="C:\\Program Files\\Electronic Arts\\La Bataille pour la Terre du Milieu II\\game.dat:*:Enabled:La Bataille pour la Terre du Milieu ™ II" "C:\\Program Files\\Macromedia\\Dreamweaver 2\\Dreamweaver.exe"="C:\\Program Files\\Macromedia\\Dreamweaver 2\\Dreamweaver.exe:*:Enabled:Dreamweaver" "C:\\Program Files\\World of Warcraft\\WoW-1.12.0-frFR-downloader.exe"="C:\\Program Files\\World of Warcraft\\WoW-1.12.0-frFR-downloader.exe:*:Enabled:Blizzard Downloader" "C:\\Program Files\\World of Warcraft\\WoW-1.12.0.5595-to-1.12.1.5875-frFR-downloader.exe"="C:\\Program Files\\World of Warcraft\\WoW-1.12.0.5595-to-1.12.1.5875-frFR-downloader.exe:*:Enabled:Blizzard Downloader" "C:\\Program Files\\World of Warcraft\\BackgroundDownloader.exe"="C:\\Program Files\\World of Warcraft\\BackgroundDownloader.exe:*:Enabled:Blizzard Downloader" "C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule" "C:\\Program Files\\World of Warcraft\\WoW-1.12.x-to-2.0.1-frFR-patch-downloader.exe"="C:\\Program Files\\World of Warcraft\\WoW-1.12.x-to-2.0.1-frFR-patch-downloader.exe:*:Enabled:Blizzard Downloader" "C:\\Program Files\\World of Warcraft\\WoW-2.0.3-frFR-downloader.exe"="C:\\Program Files\\World of Warcraft\\WoW-2.0.3-frFR-downloader.exe:*:Enabled:Blizzard Downloader" "C:\\Program Files\\World of Warcraft\\WoW-2.0.3.6299-to-2.0.5.6320-frFR-downloader.exe"="C:\\Program Files\\World of Warcraft\\WoW-2.0.3.6299-to-2.0.5.6320-frFR-downloader.exe:*:Enabled:Blizzard Downloader" "C:\\Program Files\\World of Warcraft\\WoW-2.0.5.6320-to-2.0.6.6337-frFR-downloader.exe"="C:\\Program Files\\World of Warcraft\\WoW-2.0.5.6320-to-2.0.6.6337-frFR-downloader.exe:*:Enabled:Blizzard Downloader" "C:\\Program Files\\Infogrames\\Civilization III\\Conquests\\Civ3Conquests.exe"="C:\\Program Files\\Infogrames\\Civilization III\\Conquests\\Civ3Conquests.exe:*:Enabled:Civ3Conquests" "C:\\Program Files\\Real\\RealPlayer\\realplay.exe"="C:\\Program Files\\Real\\RealPlayer\\realplay.exe:*:Enabled:RealPlayer" "C:\\Program Files\\WinMX\\WinMX.exe"="C:\\Program Files\\WinMX\\WinMX.exe:*:Enabled:WinMX Application" "C:\\Program Files\\World of Warcraft\\WoW-2.0.8.6403-to-2.0.10.6448-frFR-downloader.exe"="C:\\Program Files\\World of Warcraft\\WoW-2.0.8.6403-to-2.0.10.6448-frFR-downloader.exe:*:Enabled:Blizzard Downloader" "C:\\IS\\bin\\appletviewer.exe"="C:\\IS\\bin\\appletviewer.exe:*:Enabled:appletviewer" "C:\\Program Files\\Cossacks\\dmcr.exe"="C:\\Program Files\\Cossacks\\dmcr.exe:*:Disabled:dmcr" "C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade" "C:\\Program Files\\Firefly Studios\\CivCity Rome\\CivCity Rome.exe"="C:\\Program Files\\Firefly Studios\\CivCity Rome\\CivCity Rome.exe:*:Enabled:CivCity Rome" "C:\\Program Files\\NAMCO BANDAI Games\\Warhammer® Mark of Chaos\\Warhammer.exe"="C:\\Program Files\\NAMCO BANDAI Games\\Warhammer® Mark of Chaos\\Warhammer.exe:*:Disabled:Warhammer®: Mark of Chaos™" "C:\\Program Files\\Wings of War DEMO\\WOWdemo.exe"="C:\\Program Files\\Wings of War DEMO\\WOWdemo.exe:*:Enabled:WOWdemo" "C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype" "C:\\Program Files\\Railroad Tycoon 3\\RT3.exe"="C:\\Program Files\\Railroad Tycoon 3\\RT3.exe:*:Disabled:Railroad Tycoon 3" "C:\\Program Files\\Metin2_France\\metin2.bin"="C:\\Program Files\\Metin2_France\\metin2.bin:*:Enabled:metin2" "C:\\Documents and Settings\\Pieter\\Bureau\\DYLAN DOCS\\metihn2\\metin2.bin"="C:\\Documents and Settings\\Pieter\\Bureau\\DYLAN DOCS\\metihn2\\metin2.bin:*:Enabled:metin2" "C:\\Documents and Settings\\Pieter\\Bureau\\DYLAN DOCS\\Jeux\\Rôle\\metihn2\\metin2.bin"="C:\\Documents and Settings\\Pieter\\Bureau\\DYLAN DOCS\\Jeux\\Rôle\\metihn2\\metin2.bin:*:Enabled:metin2" "C:\\WINDOWS\\system32\\dpvsetup.exe"="C:\\WINDOWS\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test" "C:\\WINDOWS\\system32\\rundll32.exe"="C:\\WINDOWS\\system32\\rundll32.exe:*:Enabled:Exécuter une DLL en tant qu'application" "C:\\Program Files\\Ares\\Ares.exe"="C:\\Program Files\\Ares\\Ares.exe:*:Enabled:Ares p2p for windows" "C:\\WINDOWS\\system32\\logonui.exe"="C:\\WINDOWS\\system32\\logonui.exe:*:Enabled:logonui" "C:\\WINDOWS\\system32\\winlogon.exe"="C:\\WINDOWS\\system32\\winlogon.exe:*:Enabled:winlogon" "C:\\Documents and Settings\\Pieter\\Bureau\\40000\\Warahmer40000.exe"="C:\\Documents and Settings\\Pieter\\Bureau\\40000\\Warahmer40000.exe:*:Enabled:Warahmer40000" "C:\\Program Files\\Zapu\\Zapu\\wDivi.exe"="C:\\Program Files\\Zapu\\Zapu\\wDivi.exe:*:Enabled:Zapu Control" "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger" "C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"="C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe:*:Enabled:Windows Live Sync" "C:\\WINDOWS\\explorer.exe"="C:\\WINDOWS\\explorer.exe:*:Enabled:Explorer" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger" "C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"="C:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe:*:Enabled:Windows Live Sync" Remaining Files : Files with Hidden Attributes : Wed 10 Nov 2004 215 A.SHR --- "C:\BOOT.BAK" Mon 26 Jan 2009 1,740,632 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe" Mon 26 Jan 2009 5,365,592 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" Mon 26 Jan 2009 2,144,088 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" --- 61,440 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc1.exe" Sat 21 Feb 2009 2,724 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc10.dll" --- 72,192 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc100.dll" --- 73,216 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc101.dll" --- 109,056 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc102.dll" --- 99,328 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc103.dll" --- 99,328 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc104.dll" --- 101,888 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc105.dll" Sun 28 Sep 2008 63,488 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc106.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc107.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc108.dll" --- 108,544 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc109.dll" --- 64,512 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc11.dll" --- 68,096 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc110.dll" --- 61,440 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc111.dll" --- 86,016 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc112.dll" --- 62,976 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc113.dll" --- 102,912 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc114.dll" --- 102,912 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc115.dll" --- 72,192 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc116.dll" --- 109,056 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc117.dll" --- 97,792 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc118.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc119.dll" Sat 14 Feb 2009 2,724 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc12.dll" --- 99,840 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc120.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc121.dll" --- 84,992 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc122.dll" --- 102,912 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc123.dll" --- 72,192 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc124.dll" Mon 29 Sep 2008 87,040 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc125.dll" --- 91,648 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc126.dll" --- 107,520 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc127.dll" --- 64,512 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc13.dll" --- 65,024 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc14.dll" --- 68,096 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc15.dll" --- 109,056 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc16.dll" --- 107,520 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc17.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc18.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc2.dll" --- 107,520 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc20.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc22.dll" Fri 26 Dec 2008 2,724 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc23.dll" --- 104,448 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc24.dll" --- 98,816 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc25.dll" --- 108,032 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc26.dll" --- 65,024 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc27.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc28.dll" --- 108,544 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc29.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc3.dll" --- 72,192 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc30.dll" --- 109,568 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc31.dll" --- 72,704 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc32.dll" --- 110,080 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc33.dll" --- 72,192 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc34.dll" --- 73,216 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc35.dll" --- 102,400 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc36.dll" --- 100,352 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc37.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc38.dll" Tue 23 Sep 2008 62,464 A..H. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc39.dll" Thu 26 Mar 2009 140,800 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc4.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc40.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc41.dll" --- 73,728 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc42.dll" --- 72,192 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc43.dll" --- 72,704 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc44.dll" --- 109,056 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc46.dll" --- 100,352 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc47.dll" --- 97,280 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc48.dll" --- 101,376 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc49.dll" --- 74,240 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc5.dll" Wed 18 Feb 2009 2,724 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc50.dll" Fri 6 Feb 2009 2,724 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc51.dll" --- 140,800 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc52.dll" --- 86,016 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc53.dll" --- 74,240 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc54.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc55.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc56.dll" Mon 29 Sep 2008 61,440 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc57.dll" --- 109,056 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc58.dll" --- 73,728 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc59.dll" --- 109,568 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc6.dll" --- 90,624 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc60.dll" Tue 30 Sep 2008 96,256 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc61.dll" --- 24,418 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc62.dll" --- 100,352 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc63.dll" --- 67,072 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc64.dll" --- 109,056 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc65.dll" --- 64,000 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc66.dll" --- 97,280 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc67.dll" --- 74,240 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc68.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc69.dll" --- 110,080 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc7.dll" --- 72,704 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc70.dll" --- 109,568 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc71.dll" --- 108,544 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc72.dll" --- 109,568 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc73.dll" Tue 17 Feb 2009 2,724 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc74.dll" Tue 17 Feb 2009 2,724 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc75.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc76.dll" --- 107,520 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc77.dll" --- 86,528 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc78.dll" --- 73,728 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc79.dll" --- 74,240 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc8.dll" --- 90,624 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc80.dll" --- 64,000 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc81.dll" --- 73,728 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc82.dll" --- 63,488 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc83.dll" --- 101,888 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc84.dll" --- 109,568 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc85.dll" --- 101,888 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc86.dll" --- 109,568 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc87.dll" --- 108,032 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc88.dll" --- 109,568 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc89.dll" Thu 26 Mar 2009 69,191 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc9.dll" --- 63,488 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc90.dll" --- 73,728 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc91.dll" --- 95,232 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc92.dll" Sat 3 Jan 2009 2,724 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc93.dll" --- 131,584 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc94.dll" Tue 24 Feb 2009 2,724 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc95.dll" --- 109,568 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc96.dll" --- 90,624 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc97.dll" --- 65,024 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc98.dll" --- 86,016 A.SH. --- "C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc99.dll" --- 104,960 A.SH. --- "C:\WINDOWS\system32\buyetuza.dll" Mon 30 Mar 2009 99,840 A..H. --- "C:\WINDOWS\system32\hahohetu.dll" Mon 30 Mar 2009 104,448 A..H. --- "C:\WINDOWS\system32\jebojope.dll" Sat 28 Mar 2009 61,440 A.SH. --- "C:\WINDOWS\system32\jorujedi.exe" Thu 26 Mar 2009 140,800 A.SH. --- "C:\WINDOWS\system32\otwmse.dll" --- 99,840 A.SH. --- "C:\WINDOWS\system32\ratijipe.dll" Sat 31 Jan 2009 2,724 A.SH. --- "C:\WINDOWS\system32\rifubuko.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\rigitaza.dll" --- 108,032 A.SH. --- "C:\WINDOWS\system32\rilonake.dll" --- 108,032 A.SH. --- "C:\WINDOWS\system32\riyakuge.dll" --- 109,056 A.SH. --- "C:\WINDOWS\system32\rizepato.dll" --- 99,328 A.SH. --- "C:\WINDOWS\system32\rodudaya.dll" --- 109,056 A.SH. --- "C:\WINDOWS\system32\romabotu.dll" --- 61,440 A.SH. --- "C:\WINDOWS\system32\romekaye.exe" --- 63,488 A.SH. --- "C:\WINDOWS\system32\romopifo.dll" --- 109,568 A.SH. --- "C:\WINDOWS\system32\roweyubo.dll" Sun 29 Mar 2009 100,352 A.SH. --- "C:\WINDOWS\system32\ruginefo.dll" --- 73,728 A.SH. --- "C:\WINDOWS\system32\rujamika.dll" --- 72,192 A.SH. --- "C:\WINDOWS\system32\rutesawo.dll" --- 74,240 A.SH. --- "C:\WINDOWS\system32\sagimame.dll" --- 61,440 A.SH. --- "C:\WINDOWS\system32\segorado.dll" --- 93,184 A.SH. --- "C:\WINDOWS\system32\sejutedi.dll" Tue 24 Feb 2009 2,724 A.SH. --- "C:\WINDOWS\system32\sesomowo.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\setulame.dll" --- 87,552 A.SH. --- "C:\WINDOWS\system32\seyomaju.dll" Sun 29 Mar 2009 61,440 A.SH. --- "C:\WINDOWS\system32\siliyada.exe" Fri 26 Sep 2008 62,976 A.SH. --- "C:\WINDOWS\system32\sofigeda.dll" --- 69,120 A.SH. --- "C:\WINDOWS\system32\sohovaha.dll" Sun 29 Mar 2009 104,448 A.SH. --- "C:\WINDOWS\system32\sonumiwo.dll" --- 71,168 A.SH. --- "C:\WINDOWS\system32\sosazeri.dll" Fri 26 Sep 2008 87,040 A.SH. --- "C:\WINDOWS\system32\sudinasu.dll" --- 110,080 A.SH. --- "C:\WINDOWS\system32\sufazibu.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\supilime.dll" --- 100,352 A.SH. --- "C:\WINDOWS\system32\suzirowa.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\tehayela.dll" Wed 11 Feb 2009 2,724 A.SH. --- "C:\WINDOWS\system32\temekatu.dll" Sat 27 Sep 2008 63,488 A.SH. --- "C:\WINDOWS\system32\tezepugi.dll" --- 109,056 A.SH. --- "C:\WINDOWS\system32\tifukako.dll" --- 93,184 A.SH. --- "C:\WINDOWS\system32\tigogitu.dll" --- 86,016 A.SH. --- "C:\WINDOWS\system32\tijevufi.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\timijapu.dll" --- 100,352 A.SH. --- "C:\WINDOWS\system32\tivivapi.dll" --- 110,080 A.SH. --- "C:\WINDOWS\system32\torayiya.dll" Tue 23 Sep 2008 62,464 A.SH. --- "C:\WINDOWS\system32\toturobe.dll" --- 65,024 A.SH. --- "C:\WINDOWS\system32\tubivabo.dll" --- 99,328 A.SH. --- "C:\WINDOWS\system32\tusavila.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\vakumene.dll" --- 108,032 A.SH. --- "C:\WINDOWS\system32\vamegeye.dll" --- 74,240 A.SH. --- "C:\WINDOWS\system32\visoziyo.dll" --- 73,216 A.SH. --- "C:\WINDOWS\system32\viveveno.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\viyiyini.dll" --- 73,728 A.SH. --- "C:\WINDOWS\system32\volizita.dll" --- 73,216 A.SH. --- "C:\WINDOWS\system32\volorume.dll" --- 64,512 A.SH. --- "C:\WINDOWS\system32\vubuvuha.dll" --- 73,216 A.SH. --- "C:\WINDOWS\system32\vunogenu.dll" --- 110,080 A.SH. --- "C:\WINDOWS\system32\vupeteho.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\vusiwumi.dll" --- 73,728 A.SH. --- "C:\WINDOWS\system32\wahoneza.dll" --- 107,008 A.SH. --- "C:\WINDOWS\system32\wapozevo.dll" --- 98,816 A.SH. --- "C:\WINDOWS\system32\warejugo.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\wayolelu.dll" --- 67,072 A.SH. --- "C:\WINDOWS\system32\wehokigo.dll" --- 86,016 A.SH. --- "C:\WINDOWS\system32\weholapa.dll" --- 73,728 A.SH. --- "C:\WINDOWS\system32\werihova.dll" Thu 25 Sep 2008 99,328 A.SH. --- "C:\WINDOWS\system32\werolime.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\wivawira.dll" --- 64,512 A.SH. --- "C:\WINDOWS\system32\wivuvala.dll" --- 108,544 A.SH. --- "C:\WINDOWS\system32\wobarale.dll" --- 99,328 A.SH. --- "C:\WINDOWS\system32\wopebulu.dll" --- 99,840 A.SH. --- "C:\WINDOWS\system32\wotologa.dll" --- 65,024 A.SH. --- "C:\WINDOWS\system32\wowafuha.dll" --- 65,024 A.SH. --- "C:\WINDOWS\system32\woyohipo.dll" --- 109,568 A.SH. --- "C:\WINDOWS\system32\wudiyopi.dll" Thu 28 Feb 2008 9 A..H. --- "C:\WINDOWS\system32\wxmmin.dll" --- 108,544 A.SH. --- "C:\WINDOWS\system32\yadebene.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\yapafeju.dll" --- 71,168 A.SH. --- "C:\WINDOWS\system32\yazelado.dll" --- 100,864 A.SH. --- "C:\WINDOWS\system32\yebineza.dll" Tue 30 Sep 2008 62,464 A.SH. --- "C:\WINDOWS\system32\yeyatene.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\yivoboki.dll" --- 100,864 A.SH. --- "C:\WINDOWS\system32\yoguyutu.dll" --- 101,376 A.SH. --- "C:\WINDOWS\system32\yubihimo.dll" --- 103,936 A.SH. --- "C:\WINDOWS\system32\yunohoyo.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\yurezasa.dll" --- 71,168 A.SH. --- "C:\WINDOWS\system32\zabipevi.dll" --- 72,192 A.SH. --- "C:\WINDOWS\system32\zakupuju.dll" --- 74,240 A.SH. --- "C:\WINDOWS\system32\zebelivu.dll" --- 108,032 A.SH. --- "C:\WINDOWS\system32\zegofadu.dll" --- 68,096 A.SH. --- "C:\WINDOWS\system32\zelorogi.dll" Sun 28 Dec 2008 2,724 A.SH. --- "C:\WINDOWS\system32\zemupalu.dll" --- 108,544 A.SH. --- "C:\WINDOWS\system32\zibuyubo.dll" --- 64,000 A.SH. --- "C:\WINDOWS\system32\zihaleha.dll" --- 95,232 A.SH. --- "C:\WINDOWS\system32\ziwotuha.dll" Wed 24 Sep 2008 97,792 A.SH. --- "C:\WINDOWS\system32\zobirawa.dll" --- 87,552 A.SH. --- "C:\WINDOWS\system32\zodofigu.dll" --- 63,488 A.SH. --- "C:\WINDOWS\system32\zodogupe.dll" --- 105,984 A.SH. --- "C:\WINDOWS\system32\zofosude.dll" --- 109,056 A.SH. --- "C:\WINDOWS\system32\zudeyuwi.dll" --- 86,016 A.SH. --- "C:\WINDOWS\system32\zulagovi.dll" Sat 19 Feb 2005 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak" Fri 4 Apr 2008 211 A..H. --- "C:\Program Files\InterActual\InterActual Player\itiC.tmp" Thu 27 Nov 2003 3,239,936 A..HR --- "C:\Program Files\JoWooD\SpellForce\ar.exe" Sun 15 Apr 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv02.tmp" Sat 12 Aug 2006 32,768 ...H. --- "C:\Documents and Settings\Pieter\Application Data\Microsoft\Word\~WRL0103.tmp" Sat 12 Aug 2006 26,112 ...H. --- "C:\Documents and Settings\Pieter\Application Data\Microsoft\Word\~WRL0600.tmp" Sat 12 Aug 2006 32,256 ...H. --- "C:\Documents and Settings\Pieter\Application Data\Microsoft\Word\~WRL1001.tmp" Sat 12 Aug 2006 29,696 ...H. --- "C:\Documents and Settings\Pieter\Application Data\Microsoft\Word\~WRL1928.tmp" Sat 12 Aug 2006 23,040 ...H. --- "C:\Documents and Settings\Pieter\Application Data\Microsoft\Word\~WRL3063.tmp" Sat 12 Aug 2006 23,040 ...H. --- "C:\Documents and Settings\Pieter\Application Data\Microsoft\Word\~WRL3297.tmp" Sat 12 Aug 2006 28,672 ...H. --- "C:\Documents and Settings\Pieter\Application Data\Microsoft\Word\~WRL3398.tmp" Sat 31 Jan 2009 38,912 A..H. --- "C:\Documents and Settings\Pieter\Bureau\dyl\Coop nature Dylan\~WRL2227.tmp" Sat 31 Jan 2009 69,632 A..H. --- "C:\Documents and Settings\Pieter\Bureau\dyl\Coop nature Dylan\~WRL3706.tmp" Fri 12 Mar 2004 106,496 A..H. --- "C:\Program Files\Fichiers communs\aolshare\shell\fr\shellext.dll" Sun 23 Jul 2006 32,256 A..H. --- "C:\Documents and Settings\Pieter\Mes documents\Enfants du Lude\Dossiers par jeu\Pochtron\~WRL2567.tmp" Sat 12 Aug 2006 20,480 A..H. --- "C:\Documents and Settings\Pieter\Mes documents\Enfants du Lude\Dossiers par jeu\Pochtron\~WRL3183.tmp" Tue 9 Nov 2004 19,456 A..H. --- "C:\Documents and Settings\Pieter\Mes documents\Viala\Viala 2004-5\z administration\~WRL0001.tmp" Fri 19 Nov 2004 19,456 A..H. --- "C:\Documents and Settings\Pieter\Mes documents\Viala\Viala 2004-5\z administration\~WRL0005.tmp" Sun 30 Sep 2001 26,624 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Id‚al\~WRL0003.tmp" Sun 11 Nov 2001 30,208 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Id‚al\~WRL1598.tmp" Sun 4 Nov 2001 26,112 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Id‚al\~WRL1601.tmp" Sun 4 Nov 2001 27,648 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Id‚al\~WRL2744.tmp" Sun 2 Dec 2001 19,456 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Jeux et textes con‡us\~WRL0001.tmp" Wed 5 Dec 2001 20,992 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Jeux et textes con‡us\~WRL0002.tmp" Sun 11 Nov 2001 72,192 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL0004.tmp" Sun 11 Nov 2001 70,144 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL1318.tmp" Sun 11 Nov 2001 65,024 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL1337.tmp" Sat 3 Nov 2001 23,552 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL1603.tmp" Sun 11 Nov 2001 69,632 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL1760.tmp" Sun 11 Nov 2001 63,488 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL2060.tmp" Sun 11 Nov 2001 25,088 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL2493.tmp" Sat 3 Nov 2001 27,648 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL2909.tmp" Sun 11 Nov 2001 66,048 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL3293.tmp" Sun 11 Nov 2001 64,512 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL3476.tmp" Sat 3 Nov 2001 24,576 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL3586.tmp" Sun 11 Nov 2001 67,584 A..H. --- "C:\Documents and Settings\Pieter\Bureau\Rec ZIP\Zip 3\E 2001\Progression et Agenda\~WRL3663.tmp" Thu 11 May 2006 27,136 A..H. --- "C:\Documents and Settings\Pieter\Mes documents\Viala\CREP\coordination ZEP - sauvegarde du 5 juillet\Cr‚dits ZEP\~WRL0002.tmp" Wed 1 Dec 2004 27,136 A..H. --- "C:\Documents and Settings\Pieter\Mes documents\Viala\Viala 2006-7 Sauvegarde du 1er octobre 2007\Fran‡ais\Litt‚rature\enfant oc‚an\~WRL0003.tmp" Wed 1 Dec 2004 27,136 A..H. --- "C:\Documents and Settings\Pieter\Mes documents\Viala\Viala 2005-6 sauvegarde du 5 juillet 2006\Fran‡ais\Litt‚rature\enfant oc‚an\~WRL0003.tmp" Sun 9 Sep 2007 81,408 A..H. --- "C:\Documents and Settings\Pieter\Bureau\sauvegarde clef 092008\Viala 2007-8\G‚rer la classe\Emploi du temps\Journal de 2007-2008\per 1\~WRL0002.tmp" Wed 1 Dec 2004 27,136 A..H. --- "C:\Documents and Settings\Pieter\Bureau\sauvegarde clef 092008\Viala 2007-8\Les matiŠres\Fran‡ais\Litt‚rature\enfant oc‚an\~WRL0003.tmp" Finished! MBAM Malwarebytes' Anti-Malware 1.35 Version de la base de données: 1929 Windows 5.1.2600 Service Pack 2 01/04/2009 18:56:06 mbam-log-2009-04-01 (18-56-06).txt Type de recherche: Examen complet (C:\|F:\|) Eléments examinés: 208958 Temps écoulé: 53 minute(s), 39 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 2 Clé(s) du Registre infectée(s): 12 Valeur(s) du Registre infectée(s): 5 Elément(s) de données du Registre infecté(s): 4 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 112 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): C:\WINDOWS\system32\hahohetu.dll (Trojan.Vundo.H) -> Delete on reboot. c:\WINDOWS\system32\jebojope.dll (Trojan.Vundo.H) -> Delete on reboot. Clé(s) du Registre infectée(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4a4bbafb-e635-4938-97ab-161d5cfdab44} (Trojan.Vundo.H) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{4a4bbafb-e635-4938-97ab-161d5cfdab44} (Trojan.Vundo.H) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{bdca25aa-8a06-457e-8fc2-a08882a2f2de} (Trojan.Vundo.H) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{bdca25aa-8a06-457e-8fc2-a08882a2f2de} (Trojan.Vundo.H) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.Vundo.H) -> Delete on reboot. HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\urlsearchhook.toolbarurlsearchhook.1 (Trojan.BHO) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Trymedia Systems (Adware.Trymedia) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\88ad7e37 (Trojan.Vundo.H) -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\cpm8b9e4dab (Trojan.Vundo.H) -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\sihakorayo (Trojan.Vundo.H) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} (Trojan.Vundo.H) -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\ssodl (Trojan.Vundo.H) -> Delete on reboot. Elément(s) de données du Registre infecté(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: c:\windows\system32\jebojope.dll -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\AppInit_DLLs (Trojan.Vundo.H) -> Data: system32\jebojope.dll -> Delete on reboot. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): C:\WINDOWS\system32\otwmse.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\hahohetu.dll (Trojan.Vundo.H) -> Delete on reboot. C:\WINDOWS\system32\utehohah.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\zilabivi.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\system32\ivibaliz.ini (Trojan.Vundo.H) -> Quarantined and deleted successfully. c:\WINDOWS\system32\jebojope.dll (Trojan.Vundo.H) -> Delete on reboot. C:\Program Files\Trend Micro\HijackThis\backups\backup-20090304-160608-874.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Program Files\Trend Micro\HijackThis\backups\backup-20090329-220823-415.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Program Files\Trend Micro\HijackThis\backups\backup-20090330-190944-781.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Program Files\Trend Micro\HijackThis\backups\backup-20090330-214531-113.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc1.exe (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc101.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc104.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc107.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc108.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc109.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc11.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc111.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc28.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc29.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc3.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc30.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc31.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc32.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc33.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc34.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc35.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc38.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc39.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc4.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc40.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc41.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc42.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc44.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc46.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc49.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc5.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc54.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc55.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc56.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc57.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc59.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc6.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc60.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc61.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc62.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc64.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc65.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc68.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc69.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc7.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc70.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc71.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc72.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc73.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc76.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc77.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc78.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc79.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc8.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc80.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc82.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc85.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc87.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc88.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc89.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc9.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc91.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc92.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc94.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc96.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc97.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc99.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc117.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc118.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc119.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc120.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc121.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc122.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc123.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc124.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc125.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc127.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc13.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc16.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc17.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc18.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc2.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc20.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc22.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc24.dll (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc26.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\RECYCLER\S-1-5-21-1563615619-1420707191-2283616952-1008\Dc116.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Documents and Settings\Pieter\Local Settings\Temporary Internet Files\Content.IE5\IGLEWYYY\d[1].htm (Trojan.Vundo.H) -> Quarantined and deleted successfully. C:\WINDOWS\instsp2.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\romabotu.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\wobarale.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\zebelivu.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\tehayela.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\sudinasu.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\supilime.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\seyomaju.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\godobovo.dll.vir (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\riyakuge.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\volorume.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\zegofadu.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\werihova.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\timijapu.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\yapafeju.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\yurezasa.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\zodofigu.dll (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\system32\torayiya.dll (Trojan.Vundo) -> Quarantined and deleted successfully. A noter que MBAM n'a pu supprimer 5 fichiers apparement et m'a demandé de rebooter pour les supprimer, ce qui a eu l'air de marcher, mais je suis novice...
  7. Bonjour, j'ai peur que mon petit, croyant améliorer le pc en installant divers trucs à la mode, ne nous ait infecté de pas mal de choses : - le pc ralentit - on a systématiquement des pages de pub qui s'incrustent - les pages mettent très longtemps à s'afficher. En utilisant hijackthis (je suis très très novice), j'ai déjà fixé un certain nombre de dll aux noms exotiques, comme "horomina", "betipafe", "rugahojo" mais ils reviennent sans cesse... Que faire? Voici la copie de mon rapport HJT : "Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:17:09, on 30/03/2009 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16762) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\ALCWZRD.EXE C:\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\Keyboard Driver\Keyboard Driver\ikeymain.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Apps\EZHome\EZStatus.exe C:\WINDOWS\system32\ctfmon.exe C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\Documents and Settings\Pieter\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe C:\Documents and Settings\Pieter\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Windows Live\Family Safety\fsssvc.exe C:\WINDOWS\System32\FTRTSVC.exe C:\PROGRA~1\Iomega\System32\AppServices.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\Documents and Settings\All Users\Bureau\Kaspersky Lab Tool\setup_7.0.0.180_19.04.2008_13-41.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Iomega\AutoDisk\ADService.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\PROGRA~1\Wanadoo\Watch.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSCNo.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Windows Live\Toolbar\wltuser.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://y.lo.st/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://lo.st#first R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: {44badfc5-d161-ba79-8394-536ebfabb4a4} - {4a4bbafb-e635-4938-97ab-161d5cfdab44} - C:\WINDOWS\system32\otwmse.dll O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: (no name) - {bdca25aa-8a06-457e-8fc2-a08882a2f2de} - C:\WINDOWS\system32\horomina.dll O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [ATIPTA] "C:\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [Keyboard driver ] "C:\Program Files\Keyboard Driver\Keyboard Driver\ikeymain.exe" O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [88ad7e37] rundll32.exe "C:\WINDOWS\system32\dobohero.dll",b O4 - HKLM\..\Run: [CPM8b9e4dab] Rundll32.exe "c:\windows\system32\jebojope.dll",a O4 - HKLM\..\Run: [sihakorayo] Rundll32.exe "C:\WINDOWS\system32\tevaziva.dll",s O4 - HKCU\..\Run: [EzStatus] C:\Apps\EZHome\EZStatus.exe O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\Run: [sihakorayo] Rundll32.exe "C:\WINDOWS\system32\tevaziva.dll",s (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - S-1-5-18 Startup: Outil de notification Live Search.lnk = C:\Documents and Settings\Pieter\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe (User 'SYSTEM') O4 - .DEFAULT Startup: Outil de notification Live Search.lnk = C:\Documents and Settings\Pieter\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe (User 'Default user') O4 - Startup: Outil de notification Live Search.lnk = C:\Documents and Settings\Pieter\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm O15 - Trusted Zone: http://www.secuser.com O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/dow...llerControl.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{BDA50872-4680-4ABE-A470-4CB41D13FEFE}: NameServer = 192.168.1.1 O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O20 - AppInit_DLLs: C:\WINDOWS\system32\mekaboge.dll c:\windows\system32\jebojope.dll O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\jebojope.dll O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\jebojope.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: Iomega App Services - Iomega Corporation - C:\PROGRA~1\Iomega\System32\AppServices.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: setup_7.0.0.180_19.04.2008_13-41 - Kaspersky Lab - C:\Documents and Settings\All Users\Bureau\Kaspersky Lab Tool\setup_7.0.0.180_19.04.2008_13-41.exe O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe O23 - Service: Iomega Active Disk (_IOMEGA_ACTIVE_DISK_SERVICE_) - Iomega Corporation - C:\Program Files\Iomega\AutoDisk\ADService.exe -- End of file - 13550 bytes " Merci de votre aide.
  8. J'ai peur que tout cela soit un peu complexe... gulp....
  9. Ce qui m'inquiète, c'est qu'à chaque fois que je tente quelque chose, la situation se dégrade. Pour l'instant, windows continue à fonctionner, je peux me connecter au net, etc... Pour orange : tout marchait très bien avant. C'est depuis que j'ai essayé des mises à jour conseillées par Sécunia que tout a commencé à délirer... J'hésite à toucher davantage....
  10. Je ne sais pas si on avance ou pas mais.... en fait, je ne peux plus ouvrir internet explorer. Actuellement, c'est le navigateur orange qui est ouvert. Je suis allé dans programmes>ie, mais ca n'a pas marché. Je suis allé chercher le .exe dans c:programfiles/ie, et ca n'a pas marché.... oups...
  11. Je ne crois pas avoir de cd de windows xp. Tout était sur l'ordinateur en l'achetant, c'est un packard bell, je ne sais pas si ca joue.... comment lancer la réparation depuis l'ordi lui-même?
  12. Les fichiers ont été fixés par HJT. kaspersky n'a pas pu être supprimé car le fichier uninstall n'a pas fonctionné; Il faudra attendre que je passe en mode sans échec. Pour ce qui est des favoris, ca me le fait quand même sur TOUS les favoris. J'ai trouvé une parade : j'ouvre d'abord une fenêtre par le navigateur orange. Puis je fais le favori. Ca ouvre la page tout en me déclarant : "Windows n'a pas trouvé l'adresse : tattatata, pour un fichier, utilisez rechercher....etc...." Mais c'est quand même très chiant. Pour moi, la priorité pour l'instant est de retrouver cette fonction, ainsi qu'ajout/suppr de programmes.
  13. Bonjour. Taper les lignes une par une : c'est bien ce que j'ai fait, et ça a donné le résultat que j'ai décrit plus haut. J'ai ensuite créé le document regit.reg, j'ai fait fusionner; ca a marché, mais ca n'a rien changé. Je n'ai toujours pas accès à ajout/suppr, et il y a toujours une erreur quand je clique dans mes favoris. Et c'est aussi pareil avec les liens qui se trouvent dans le texte de mails : si je clique, il ne se passe rien.
  14. Bon, le scan kaspersky a pris 13 heures.... Tout a été pulvérisé mais : - je ne peux toujours pas accéder aux sites pour les favoris, même erreur. - je n'ai pas récupéré ajout:suppr.... Rapport kaspersky Scan ---- Scanned: 1102491 Detected: 11 Untreated: 0 Start time: 19/04/2008 22:26:29 Duration: 13:00:58 Finish time: 20/04/2008 11:27:27 Detected -------- Status Object ------ ------ deleted: adware not-a-virus:AdWare.Win32.Gator.1050 File: C:\Documents and Settings\Pieter\Mes documents\pierre2.0\AGSetup0606.exe//fsg-ag.exe disinfected: virus Virus.MSWord.Marker.fq2 File: C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\07D3320C.doc//CryptFF deleted: Trojan program Backdoor.Win32.Agent.rw File: C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\13AB52CC.exe//CryptFF//UPX deleted: adware not-a-virus:AdWare.Win32.SBSoft.h File: C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\2DE93D9F//CryptFF deleted: malware Exploit.HTML.Iframe.FileDownload (modification) File: C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\2EB31817//CryptFF disinfected: virus Virus.MSWord.Marker.fq2 File: C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\42B96110.doc//CryptFF disinfected: virus Virus.MSWord.Marker.fq2 File: C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\43693C4E.doc//CryptFF disinfected: virus Virus.MSWord.Marker.fq2 File: C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\436C664A.doc//CryptFF deleted: malware Exploit.VBS.Phel.a File: C:\Program Files\Norton Internet Security\Norton AntiVirus\Quarantine\5F6011F5.htm//CryptFF deleted: malware Exploit.HTML.Iframe.FileDownload (modification) Email message body: c:\program files\norton internet security\norton antivirus\quarantine\2eb31817//CryptFF/text/html deleted: virus Email-Worm.Win32.NetSky.r Email message attachment: c:\program files\norton internet security\norton antivirus\quarantine\2eb31817//CryptFF/message.pif Events ------ Time Name Status Reason ---- ---- ------ ------ Statistics ---------- Object Scanned Detected Untreated Deleted Moved to Quarantine Archives Packed files Password protected Corrupted ------ ------- -------- --------- ------- ------------------- -------- ------------ ------------------ --------- Settings -------- Parameter Value --------- ----- Security Level Recommended Action Prompt for action when the scan is complete Run mode Manually File types Scan all files Scan only new and changed files No Scan archives All Scan embedded OLE objects All Skip if object is larger than No Skip if scan takes longer than No Parse email formats No Scan password-protected archives No Enable iChecker technology No Enable iSwift technology No Show detected threats on "Detected" tab Yes Quarantine ---------- Status Object Size Added ------ ------ ---- ----- Backup ------ Status Object Size ------ ------ ---- Rapport hjt Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 11:41:51, on 20/04/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\ALCWZRD.EXE C:\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\Keyboard Driver\Keyboard Driver\ikeymain.exe C:\Program Files\HP\HP Software Update\HPWuSchd2.exe C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe C:\Program Files\a-squared Anti-Malware\a2guard.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe C:\Apps\EZHome\EZStatus.exe C:\WINDOWS\system32\ctfmon.exe C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\a-squared Anti-Malware\a2service.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\WINDOWS\System32\FTRTSVC.exe C:\PROGRA~1\Iomega\System32\AppServices.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe C:\WINDOWS\system32\slserv.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Iomega\AutoDisk\ADService.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe C:\WINDOWS\System32\alg.exe C:\PROGRA~1\Wanadoo\Watch.exe C:\PROGRA~1\Wanadoo\WOOBrowser\WOOBrowser.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSCNo.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\WINDOWS\system32\wbem\wmiprvse.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL F2 - REG:system.ini: UserInit=userinit.exe O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [ATIPTA] "C:\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [Keyboard driver ] "C:\Program Files\Keyboard Driver\Keyboard Driver\ikeymain.exe" O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe" O4 - HKLM\..\Run: [a-squared] "C:\Program Files\a-squared Anti-Malware\a2guard.exe" /d=60 O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKLM\..\Run: [AVP] "C:\Documents and Settings\All Users\Bureau\Kaspersky Lab Tool\setup_7.0.0.180_19.04.2008_13-41.exe" O4 - HKCU\..\Run: [EzStatus] C:\Apps\EZHome\EZStatus.exe O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to AMV Converter... - C:\Program Files\MP3 Player Utilities 4.15\AMVConverter\grab.html O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O8 - Extra context menu item: MediaManager tool grab multimedia file - C:\Program Files\MP3 Player Utilities 4.15\MediaManager\grab.html O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: (no name) - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - (no file) O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSAG~1\Messager Wanadoo.exe O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU) O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {97E71027-0BA2-44F2-97DB-F84D808ED0B6} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab55762.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab55579.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{BDA50872-4680-4ABE-A470-4CB41D13FEFE}: NameServer = 192.168.1.1 O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: a-squared Anti-Malware Service (a2AntiMalware) - Emsi Software GmbH - C:\Program Files\a-squared Anti-Malware\a2service.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: Iomega App Services - Iomega Corporation - C:\PROGRA~1\Iomega\System32\AppServices.exe O23 - Service: MysqlInventime - Unknown owner - c:\mysql\bin\mysqld-nt.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe O23 - Service: setup_7.0.0.180_19.04.2008_13-41 - Kaspersky Lab - C:\Documents and Settings\All Users\Bureau\Kaspersky Lab Tool\setup_7.0.0.180_19.04.2008_13-41.exe O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe O23 - Service: Iomega Active Disk (_IOMEGA_ACTIVE_DISK_SERVICE_) - Iomega Corporation - C:\Program Files\Iomega\AutoDisk\ADService.exe -- End of file - 13470 bytes
  15. Tout cela est très compliqué pour moi, mais j'ai essayé. Quand j'ai tapé : REGSVR32 %systemroot%\System32\Mshtml.dll, j'ai eu droit à un message d'erreur genre fichier manquant. Quand j'ai tapé : Tapez REGSVR32 C:\Program Files\Fichiers communs\System\Ole DB\Oledb32.dll Tapez REGSVR32 C:\Program Files\Fichiers communs\System\Ado\Msado15.dll J'ai eu le même message d'erreur que pour les non enregistrables. Je suis allé dans regedit ensuite, mais je ne sais pas comment faire pour recréer une clef manquante.... et je ne sais pas comment savoir si une clef manque.... A "threading model", il y a marqué "both" et pas "apartment" A prog id, il y a marqué : "ADODB.Recordset.2.8" et non pas 2.5 J'ai essayé après la procédure B), mais dans dllcache, il n'y a pas de fichier nommé appwiz.cpl Enfin, j'ai essayé le petit programme zeb-restore, je l'ai installé, utilisé, mais ca n'a rien changé.
×
×
  • Créer...