Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e) (modifié)

bonjour a tous

j ai un probleme avec l observateur d evenement qui me signale toujours la meme erreur

f secure anti virus

backweb plug_in

j ai beau verifier mon anti virus l abonnement et valide.

les mises a jour aussi.

peut etre que ce n est rien ;mais depuis quelque temps j ai l impression quand j ouvre ma cession que cela prends de plus en plus de temps

merci de votre aide

Modifié par reole

Posté(e) (modifié)

Bonjour reole,

 

Je te souhaite la bienvenue sur Zeb'Sécurité ! Merci de venir sur notre forum ! :P

 

Quels sont les symptômes ? Depuis quel moment as-tu des dysfonctionnements ? Sont-ils arrivés après une manipulation spécifique ? (Ajout de programme, ...)

 

Applique la procédure de pré-nettoyage de Megataupe http://forum.zebulon.fr/index.php?showtopic=83986

Prends soin de bien l'appliquer, notament la configuration d'antivir, ceci est une étape trés importante !

 

Puis poste sur le forum dans le message que tu as déjà ouvert, clique sur "répondre" entre "flash" et "nouveau" le log Hijackthis demandé dans la procédure ansi que celui d'Antivir.

 

@+

Modifié par kevin76
Posté(e)

merci kevin76

activir n a pas marcher en mode sans echec pourquoi ;je sais pas

 

AntiVir PersonalEdition Classic

Report file date: samedi 31 mars 2007 15:15

 

Scanning for 569934 virus strains and unwanted programs.

 

Licensed to: Avira AntiVir PersonalEdition Classic

Serial number: 0000149996-ADJIE-0001

Platform: Windows XP

Windows version: (Service Pack 2) [5.1.2600]

Username: jean

Computer name: ACER-E3B0141A93

 

Version information:

BUILD.DAT : 217 12749 Bytes 05/12/2006 17:00:00

AVSCAN.EXE : 7.0.3.2 208936 Bytes 05/12/2006 14:30:07

AVSCAN.DLL : 7.0.3.1 35880 Bytes 05/12/2006 15:00:22

LUKE.DLL : 7.0.3.2 143400 Bytes 31/10/2006 15:07:46

LUKERES.DLL : 7.0.2.0 9256 Bytes 05/12/2006 15:00:22

ANTIVIR0.VDF : 6.35.0.1 7371264 Bytes 31/05/2006 14:30:06

ANTIVIR1.VDF : 6.36.1.24 2212864 Bytes 14/11/2006 08:12:08

ANTIVIR2.VDF : 6.36.1.113 221696 Bytes 01/12/2006 08:12:12

ANTIVIR3.VDF : 6.37.0.3 6144 Bytes 01/12/2006 08:12:14

AVEWIN32.DLL : 7.3.0.15 1982976 Bytes 04/12/2006 16:18:38

AVPREF.DLL : 7.0.2.0 23592 Bytes 03/11/2006 09:53:44

AVREP.DLL : 6.37.0.3 983080 Bytes 01/12/2006 08:05:52

AVRPBASE.DLL : 7.0.0.0 2162728 Bytes 30/03/2006 07:43:31

AVPACK32.DLL : 7.2.0.5 368680 Bytes 23/10/2006 14:21:31

AVREG.DLL : 7.0.1.1 30760 Bytes 23/10/2006 09:52:27

NETNT.DLL : No Information!

RCIMAGE.DLL : 7.0.1.3 2097192 Bytes 08/11/2006 11:26:26

RCTEXT.DLL : 7.0.12.1 77864 Bytes 05/12/2006 15:00:21

 

Configuration settings for the scan:

Jobname..........................: ShlExt

Configuration file...............: C:\DOCUME~1\jean\LOCALS~1\Temp\3a5d01e7.avp

Logging..........................: low

Primary action...................: interactive

Secondary action.................: ignore

Scan master boot sector..........: off

Scan boot sector.................: on

Boot sectors.....................: C:,

Scan memory......................: on

Process scan.....................: off

Scan registry....................: off

Scan all files...................: All files

Scan archives....................: on

Recursion depth..................: 20

Smart extensions.................: on

Macro heuristic..................: on

File heuristic...................: medium

Expanded search settings.........: 0x00000032

 

Start of the scan: samedi 31 mars 2007 15:15

 

Start scanning boot sectors:

Boot sector 'C:\'

[NOTE] No virus was found!

 

Starting the file scan:

 

Begin scan in 'C:\Program Files\AntiVir PersonalEdition Classic\avcenter.exe'

 

 

End of the scan: samedi 31 mars 2007 15:15

Used time: 00:01 min

 

The scan has been done completely.

 

0 Scanning directories

1 Files were scanned

0 viruses and/or unwanted programs were found

0 files were deleted

0 files were repaired

0 files were moved to quarantine

0 files were renamed

0 Files cannot be scanned

1 Files not concerned

0 Archives were scanned

0 Warnings

0 Notes

 

en mode normal

/2007 15:21:00] [iNFO] [PLG] C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\

[31/03/2007 15:21:00] Command line for update application: "C:\Program Files\AntiVir PersonalEdition Classic\update.exe" --config-file="C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\update.conf" --install-path="C:\Program Files\AntiVir PersonalEdition Classic"

[31/03/2007 15:21:00] User changed the logfile name to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\LOGFILES\Upd-2007-03-31-15-21-00.log

[31/03/2007 15:21:00] Installation Directory: C:\Program Files\AntiVir PersonalEdition Classic\ Backup Dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\BACKUP\ Temp dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\

[31/03/2007 15:21:00] [iNFO] [GUI] Start the Update GUI... Displaymode: 0

[31/03/2007 15:21:01] [iNFO] [PLG] Keyfile: OK [FULL Mode]

[31/03/2007 15:21:01] [iNFO] [PLG] Avira AntiVir PersonalEdition Classic

[31/03/2007 15:21:07] Master IDX file has changed

[31/03/2007 15:21:07] Downloading the product.info file from http://dl2.avgate.net/upd/idx/classic-nt-en.info.gz

[31/03/2007 15:21:08] File basic-nt/2k/avgntflt.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:21:08] File basic-nt/2k/avgntdd.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:21:08] File basic-nt/2k/avgntmgr.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:21:08] File basic-nt/nt/avgntdd.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:21:08] File basic-nt/nt/avgntmgr.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:21:08] Downloading the product.info file from http://dl2.avgate.net/upd/idx/vdf.info.gz

[31/03/2007 15:21:10] [iNFO] [PLG] Keyfile: OK [FULL Mode]

[31/03/2007 15:21:10] Downloading the product.info file from http://dl2.avgate.net/upd/idx/specvir-nt.info.gz

[31/03/2007 15:21:10] Downloading the product.info file from http://dl2.avgate.net/upd/idx/engine.info.gz

[31/03/2007 15:21:11] Downloading the product.info file from http://dl2.avgate.net/upd/idx/engine-nt-en.info.gz

[31/03/2007 15:21:12] Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 15

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avinet.dll v7.0.0.1 MD5:a3aad08fdffe2d1a6d64da17889e68ab

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avinet.dll v7.0.0.1 MD5:a3aad08fdffe2d1a6d64da17889e68ab

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/common_msg.avr MD5:a40ecc64d95d171f5a6f50717e26cbe7

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\common_msg.avr MD5:a40ecc64d95d171f5a6f50717e26cbe7

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/mfc71u.dll v7.10.3077.0 MD5:7bfd56e40bb435c5337dba130a9d4c5f

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\mfc71u.dll v7.10.3077.0 MD5:7bfd56e40bb435c5337dba130a9d4c5f

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/msvcp71.dll v7.10.3077.0 MD5:72cac42b1cabf6e708e90783133a86d3

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\msvcp71.dll v7.10.3077.0 MD5:72cac42b1cabf6e708e90783133a86d3

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/msvcr71.dll v7.10.3052.4 MD5:56ac3aeb00c35936487417494c26830c

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\msvcr71.dll v7.10.3052.4 MD5:56ac3aeb00c35936487417494c26830c

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/scewxml.dll v0.4.0.0 MD5:27e65633b3732d26b865a9b76509c6d0

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\scewxml.dll v0.4.0.0 MD5:27e65633b3732d26b865a9b76509c6d0

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/update.exe v1.2.9.7 MD5:b2b413bdaa7aafa0b9b157cf58a6d1cb

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\update.exe v1.2.9.7 MD5:b2b413bdaa7aafa0b9b157cf58a6d1cb

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/update_msg.avr MD5:d36fef392d386572893538f5fdd10309

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\update_msg.avr MD5:d36fef392d386572893538f5fdd10309

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/updgui.dll v1.2.9.10 MD5:1cc1dbd31d4444b35c1113bd00b2ebbb

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updgui.dll v1.2.9.10 MD5:1cc1dbd31d4444b35c1113bd00b2ebbb

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/updguirc.dll v1.2.12.0 MD5:45883c9c627ff3f4081e812f5b49e77e

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updguirc.dll v1.2.12.0 MD5:45883c9c627ff3f4081e812f5b49e77e

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/updlib.dll v1.2.9.47 MD5:cec10ca88cde08c0f22f5180fc5e89aa

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updlib.dll v1.2.9.39 MD5:3b02c760ac730485bea0005865a74675

[31/03/2007 15:21:12] File needs update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/updlibrc.dll v1.2.17.0 MD5:2315984dc3bffb6056f61227d39fb89d

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\updlibrc.dll v1.2.15.0 MD5:073045a9c1fe6643e847da21efb87017

[31/03/2007 15:21:12] File needs update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/antivir.oem MD5:8f7d22bb88ee1952ae0ec2ab865cca6e

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\antivir.oem MD5:8f7d22bb88ee1952ae0ec2ab865cca6e

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/rcimage.dll v7.0.1.3 MD5:d8babde32e004632d7fd2ba910dad4be

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rcimage.dll v7.0.1.3 MD5:d8babde32e004632d7fd2ba910dad4be

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/rctext.dll v7.0.12.1 MD5:d7235154454442078b9670aa7ca7e80b

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rctext.dll v7.0.12.1 MD5:d7235154454442078b9670aa7ca7e80b

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] Module: MAIN Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 64

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avcenter.exe v7.0.1.17 MD5:0639304ca326420fed31114a8f936713

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avcenter.exe v7.0.1.17 MD5:0639304ca326420fed31114a8f936713

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avconfig.cpl v7.0.1.2 MD5:85de4ca6bea24d77198ab2cc38e9b3ac

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avconfig.cpl v7.0.1.2 MD5:85de4ca6bea24d77198ab2cc38e9b3ac

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avconfig.dll v7.0.1.4 MD5:bb43baddb6b4ab164e5362c13357ccac

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avconfig.dll v7.0.1.4 MD5:bb43baddb6b4ab164e5362c13357ccac

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avconfig.exe v7.0.1.20 MD5:9df03f7fc5d0798a2967dc9e1ec15dfb

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avconfig.exe v7.0.1.20 MD5:9df03f7fc5d0798a2967dc9e1ec15dfb

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avevtlog.dll v7.0.0.12 MD5:8190e4bec0a71471cf2705af95cc5df4

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avevtlog.dll v7.0.0.12 MD5:8190e4bec0a71471cf2705af95cc5df4

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avgcmxp.dll v7.0.2.0 MD5:5bc2b2ee4f2268739a36574fb3a6736b

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgcmxp.dll v7.0.1.1 MD5:1459859a267423d1258d522dabeffeae

[31/03/2007 15:21:12] File needs update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avgio.sys v1.0.0.21 MD5:a0010f635170d56a58e0172db7524da7

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgio.sys v1.0.0.21 MD5:a0010f635170d56a58e0172db7524da7

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avgnt.exe v7.0.2.1 MD5:0c6dabfaf229f6222353662179ff3071

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe v7.0.1.6 MD5:0378b446c353e3611c25afc1d13fa5d3

[31/03/2007 15:21:12] File needs update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avguard.exe v7.0.0.45 MD5:484334de6512945c678f43ed2a8cbc82

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe v7.0.0.44 MD5:d38da5e6e8a426d32085a4c24a15bda3

[31/03/2007 15:21:12] File needs update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avnotify.dll v7.0.1.0 MD5:f2158a7bbc538262053cdd880f8b1540

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avnotify.dll v7.0.1.0 MD5:f2158a7bbc538262053cdd880f8b1540

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avnotify.exe v7.0.1.0 MD5:b3e166c9961359c726c3ebaa30337da0

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avnotify.exe v7.0.1.0 MD5:b3e166c9961359c726c3ebaa30337da0

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avpref.dll v7.0.2.0 MD5:7f7991d504802dfc447515e989dbb71b

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avpref.dll v7.0.2.0 MD5:7f7991d504802dfc447515e989dbb71b

[31/03/2007 15:21:12] File doesn't need update

[31/03/2007 15:21:12] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avreg.dll v7.0.1.2 MD5:53d36a1aea84052a86b39d0397f605fb

[31/03/2007 15:21:12] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avreg.dll v7.0.1.1 MD5:5fb3c5d2724d364d9f679c82b59d94a3

[31/03/2007 15:21:12] File needs update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avrpbase.dll v7.0.0.0 MD5:a3dd664583c064fb520cb8c4693de1e7

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avrpbase.dll v7.0.0.0 MD5:a3dd664583c064fb520cb8c4693de1e7

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avscan.dll v7.0.3.1 MD5:da020e8e7b14639fdafeaf52dfd6d9bb

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avscan.dll v7.0.3.1 MD5:da020e8e7b14639fdafeaf52dfd6d9bb

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avscan.exe v7.0.3.5 MD5:08a4e7f74597ca39e41716e7eb44c7a1

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avscan.exe v7.0.3.2 MD5:bfb63ee6f7d80444f83e7e819227794b

[31/03/2007 15:21:13] File needs update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/avwinll.dll v1.0.0.6 MD5:2b7fad3403acce77ba2e40d8ab484433

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avwinll.dll v1.0.0.2 MD5:8eb2bfabcd9911ba220a2239e9c45640

[31/03/2007 15:21:13] File needs update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccev.dll v7.0.1.10 MD5:1bb3dbf394c7e6e73dcc06d26e0f7f48

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccev.dll v7.0.1.10 MD5:1bb3dbf394c7e6e73dcc06d26e0f7f48

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccevrc.dll v7.0.3.1 MD5:2737f2209f48b55c4a807cac24d3b0af

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccevrc.dll v7.0.3.1 MD5:2737f2209f48b55c4a807cac24d3b0af

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccgen.dll v7.0.1.13 MD5:747d689e6fc013e871a804ccbb95dbdf

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccgen.dll v7.0.1.13 MD5:747d689e6fc013e871a804ccbb95dbdf

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccgenrc.dll v7.0.1.7 MD5:4438d528b0c517e5b7a44b51bb479f3b

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccgenrc.dll v7.0.1.7 MD5:4438d528b0c517e5b7a44b51bb479f3b

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccgrdrc.dll v7.0.1.6 MD5:9a02dd38c3506bd0bf329809499eb052

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccgrdrc.dll v7.0.1.6 MD5:9a02dd38c3506bd0bf329809499eb052

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccguard.dll v7.0.1.20 MD5:45bd7d939f66ef55582734c6c4f3b60b

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccguard.dll v7.0.1.20 MD5:45bd7d939f66ef55582734c6c4f3b60b

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/cclic.dll v7.0.1.7 MD5:c214a1919aa5090c253c5f15fa2c32b7

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\cclic.dll v7.0.1.7 MD5:c214a1919aa5090c253c5f15fa2c32b7

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/cclicrc.dll v7.0.2.0 MD5:f50501511f5870669d0b940644e43631

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\cclicrc.dll v7.0.2.0 MD5:f50501511f5870669d0b940644e43631

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccmainrc.dll v7.0.2.1 MD5:87b1e5f755e32d5d93d8acc9407f3f61

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccmainrc.dll v7.0.2.1 MD5:87b1e5f755e32d5d93d8acc9407f3f61

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccprofil.dll v7.0.1.18 MD5:8e6daf8a2872daf8fff08093c1109c43

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccprofil.dll v7.0.1.18 MD5:8e6daf8a2872daf8fff08093c1109c43

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccquamgr.dll v7.0.1.10 MD5:1db08d71ba90f718c57a9f44c70fc9cf

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccquamgr.dll v7.0.1.10 MD5:1db08d71ba90f718c57a9f44c70fc9cf

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccquarc.dll v7.0.2.0 MD5:f29369a0ce0937cba228c7ea3d47f5be

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccquarc.dll v7.0.2.0 MD5:f29369a0ce0937cba228c7ea3d47f5be

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccreporc.dll v7.0.2.0 MD5:9959bf95ddf023b1efa4d42a2a8c08ea

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccreporc.dll v7.0.2.0 MD5:9959bf95ddf023b1efa4d42a2a8c08ea

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccreport.dll v7.0.1.8 MD5:c505c40b0dfa1a434e0d02650ab377c3

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccreport.dll v7.0.1.8 MD5:c505c40b0dfa1a434e0d02650ab377c3

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccscanrc.dll v7.0.1.8 MD5:96c57ee6172ba7e96c68b160cb19e5b5

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccscanrc.dll v7.0.1.8 MD5:96c57ee6172ba7e96c68b160cb19e5b5

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccsched.dll v7.0.1.9 MD5:de81c9b57abb493a3db2ba78d924f08f

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccsched.dll v7.0.1.9 MD5:de81c9b57abb493a3db2ba78d924f08f

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccscherc.dll v7.0.2.1 MD5:65c86db0861a99f0aa25354c5259ca17

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccscherc.dll v7.0.2.1 MD5:65c86db0861a99f0aa25354c5259ca17

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccupdate.dll v7.0.1.11 MD5:80614113fd89cab1c55f0516c06e6676

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccupdate.dll v7.0.1.11 MD5:80614113fd89cab1c55f0516c06e6676

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/ccupdrc.dll v7.0.1.7 MD5:709cf93c2070deeb4c70d3b57f354b2c

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\ccupdrc.dll v7.0.1.7 MD5:709cf93c2070deeb4c70d3b57f354b2c

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/guardgui.exe v7.0.1.1 MD5:087ea88109ebc1543236b2c5b43346e6

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\guardgui.exe v7.0.1.1 MD5:087ea88109ebc1543236b2c5b43346e6

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/guardmsg.dll v7.0.5.0 MD5:db4da6cb25c538dbca55c323404fa97c

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\guardmsg.dll v7.0.5.0 MD5:db4da6cb25c538dbca55c323404fa97c

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/licmgr.dll v7.0.1.0 MD5:c6239d3c630ec0c3d76e3afe1df032a9

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\licmgr.dll v7.0.1.0 MD5:c6239d3c630ec0c3d76e3afe1df032a9

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/licmgr.exe v7.0.1.1 MD5:bab8b86111a8e517b34df776ae0f28a4

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\licmgr.exe v7.0.1.1 MD5:bab8b86111a8e517b34df776ae0f28a4

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/luke.dll v7.0.3.2 MD5:cd9845c67fa88b5fc07bcde33659a888

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\luke.dll v7.0.3.2 MD5:cd9845c67fa88b5fc07bcde33659a888

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/lukeres.dll v7.0.2.0 MD5:b2bf2106676e4d6fdc2c7c949c3b0534

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\lukeres.dll v7.0.2.0 MD5:b2bf2106676e4d6fdc2c7c949c3b0534

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/preupd.exe v7.0.0.19 MD5:79cad5a201589489ee7a0fe90195630f

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\preupd.exe v7.0.0.19 MD5:79cad5a201589489ee7a0fe90195630f

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/psapi.dll v5.1.2600.2180 MD5:4f1f23a7a3cb0aa5b16b711149d3423a

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\psapi.dll v4.0.1371.1 MD5:d9b21afa1a55dc00abf6eb25b2ef6869

[31/03/2007 15:21:13] File needs update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/sched.exe v7.0.0.34 MD5:598f3e61386da7c7732b73560e18a28e

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\sched.exe v7.0.0.34 MD5:598f3e61386da7c7732b73560e18a28e

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/schedr.dll v7.0.18.0 MD5:ac7a0c3e07eef6d24e228a928a7c5dba

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\schedr.dll v7.0.18.0 MD5:ac7a0c3e07eef6d24e228a928a7c5dba

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:13] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/setup.dll v7.0.11.2 MD5:db6ef63bb712074ce48ba47c763688ca

[31/03/2007 15:21:13] Local file: C:\Program Files\AntiVir PersonalEdition Classic\setup.dll v7.0.11.2 MD5:db6ef63bb712074ce48ba47c763688ca

[31/03/2007 15:21:13] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/setup.exe v7.0.1.19 MD5:0bf9a710392bccd2ec10687540f68cf6

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\setup.exe v7.0.1.19 MD5:0bf9a710392bccd2ec10687540f68cf6

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/shlext.dll v7.0.0.4 MD5:60372c284007e4918a1ceecbc2ea4bb6

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\shlext.dll v7.0.0.4 MD5:60372c284007e4918a1ceecbc2ea4bb6

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/smtplib.dll v1.2.0.9 MD5:7051f7f45b8063b8d41793c070c0a42f

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\smtplib.dll v1.2.0.9 MD5:7051f7f45b8063b8d41793c070c0a42f

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/sqlite3.dll v3.3.6.0 MD5:bb1da893f89483c989e6ebeb4a3a6c97

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\sqlite3.dll v3.3.6.0 MD5:bb1da893f89483c989e6ebeb4a3a6c97

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/xp/avgntflt.sys v6.37.0.10 MD5:cbf1fa70d69a9af81303fe30c455f9c8

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avgntflt.sys v6.37.0.10 MD5:cbf1fa70d69a9af81303fe30c455f9c8

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/alldiscs.avp MD5:746ea386adb9a24c99ec33da3870718f

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\alldiscs.avp MD5:746ea386adb9a24c99ec33da3870718f

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/alldrives.avp MD5:292a72626aeea6b7f02618b4af2c57ee

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\alldrives.avp MD5:292a72626aeea6b7f02618b4af2c57ee

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/build.dat MD5:812e4de17164b81b6b5eba47cab0e2bf

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\build.dat MD5:812e4de17164b81b6b5eba47cab0e2bf

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/guardevt.dll v1.1.0.7 MD5:611e331a0e4893a39f9f77d801e96fa8

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\guardevt.dll v1.1.0.7 MD5:611e331a0e4893a39f9f77d801e96fa8

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/hbedv.key MD5:977feaeb37c46eece3d4eb5dc88a4779

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\hbedv.key MD5:977feaeb37c46eece3d4eb5dc88a4779

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/mydocs.avp MD5:1acc2478dca81f804ec102a99b90a1f1

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\mydocs.avp MD5:1acc2478dca81f804ec102a99b90a1f1

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/process.avp MD5:be939cbccceb0fb205804901f414b82a

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\process.avp MD5:be939cbccceb0fb205804901f414b82a

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/rchelp.dll v7.0.0.18 MD5:ffde2ddebef0a492408c124a91d1704c

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rchelp.dll v7.0.0.18 MD5:ffde2ddebef0a492408c124a91d1704c

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/rmdiscs.avp MD5:0a1b76737648c63a263c27f33b4bb831

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\rmdiscs.avp MD5:0a1b76737648c63a263c27f33b4bb831

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/setupprf.dat MD5:b7b12f4f6a2089ba8d994f33a34b1bf0

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\setupprf.dat MD5:b7b12f4f6a2089ba8d994f33a34b1bf0

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/sysdir.avp MD5:3a58425393ee51f714ff60668291ffde

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\sysdir.avp MD5:3a58425393ee51f714ff60668291ffde

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/weblink.url MD5:e9bbf34aa3d0391b6815c0efcda1dd77

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\weblink.url MD5:e9bbf34aa3d0391b6815c0efcda1dd77

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] Module: COMMAPPDATA Source: winwks\en\ Destination: C:\Documents and Settings\All Users\Application Data\ Files: 1

[31/03/2007 15:21:14] File C:\Documents and Settings\All Users\Application Data\addr_file.html does not exist. It will be downloaded

[31/03/2007 15:21:14] Module: TEXT Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 3

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/avwin.chm MD5:fb63a670ea1d14d5657baa4977c40d76

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avwin.chm MD5:fb63a670ea1d14d5657baa4977c40d76

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/eula.txt MD5:996badf965b116c548f8bf4073944187

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\eula.txt MD5:996badf965b116c548f8bf4073944187

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/classic-nt/readme.txt MD5:7d1712991034e515535649825f13b705

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\readme.txt MD5:7d1712991034e515535649825f13b705

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] Module: VDF Source: vdf\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 4

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/vdf/antivir0.vdf v6.35.0.1 MD5:9c092f21a7d5c2b44e0a24ab4111ede2

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\antivir0.vdf v6.35.0.1 MD5:9c092f21a7d5c2b44e0a24ab4111ede2

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/vdf/antivir1.vdf v6.37.1.151 MD5:9de61f5f0fbd13859bb43fe32386d373

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\antivir1.vdf v6.36.1.24 MD5:39fbf3242cf563285c7a8f4b0e74e4f8

[31/03/2007 15:21:14] File needs update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/vdf/antivir2.vdf v6.38.0.111 MD5:a058bd33f1cbbf090fd33f8e4de0ef86

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\antivir2.vdf v6.36.1.113 MD5:3675384fd3ed9a03f09a92998528c608

[31/03/2007 15:21:14] File needs update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/vdf/antivir3.vdf v6.38.0.151 MD5:151afa8e9c6d53ec67bec5ebb083c349

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\antivir3.vdf v6.37.0.3 MD5:f93ab100bb6062c8b8c51bfb85e38df1

[31/03/2007 15:21:14] File needs update

[31/03/2007 15:21:14] Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 1

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/engine/nt/avrep.dll v6.38.0.90 MD5:6656343a0e6c1b5502e61f1988361667

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avrep.dll v6.37.0.3 MD5:93d82dbe6b15b20da784ede6363e148c

[31/03/2007 15:21:14] File needs update

[31/03/2007 15:21:14] Module: ENGINE Source: engine\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 2

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/engine/avewin32.dll v7.3.1.46 MD5:f7ba4cee784da9e78078f2e53a2cb7e6

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avewin32.dll v7.3.0.15 MD5:259394a60b424a01f9bf3ac6e12af738

[31/03/2007 15:21:14] File needs update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/engine/unacev2.dll v2.6.0.0 MD5:906b369ae6a36c05bc46768643b13724

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\unacev2.dll v2.6.0.0 MD5:906b369ae6a36c05bc46768643b13724

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] Module: ENGINE_NT_EN Source: engine\nt\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 2

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/engine/nt/avpack32.dll v7.3.0.6 MD5:9630d1792239303a2ec8ca0bf85177a2

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avpack32.dll v7.2.0.5 MD5:3beeb7af9333baf76d284d6aa0421eef

[31/03/2007 15:21:14] File needs update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/engine/nt/en/avcmd.exe v7.3.0.22 MD5:7f16e6c47b33dff59b88992cb71019a9

[31/03/2007 15:21:14] Local file: C:\Program Files\AntiVir PersonalEdition Classic\avcmd.exe v7.3.0.13 MD5:741a9f63c5b43627390aa025c89d3801

[31/03/2007 15:21:14] File needs update

[31/03/2007 15:21:14] Module: DRV Source: winwks\en\ Destination: C:\WINDOWS\SYSTEM32\drivers\ Files: 2

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/xp/avgntdd.sys v6.37.0.2 MD5:c2ddeb111e8bf2867513a0ab45542860

[31/03/2007 15:21:14] Local file: C:\WINDOWS\SYSTEM32\drivers\avgntdd.sys v6.37.0.2 MD5:c2ddeb111e8bf2867513a0ab45542860

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] File in the internet: http://dl2.avgate.net/upd/winwks/en/basic-nt/xp/avgntmgr.sys v6.37.1.1 MD5:322d46f3b809681b594064f452c97f12

[31/03/2007 15:21:14] Local file: C:\WINDOWS\SYSTEM32\drivers\avgntmgr.sys v6.37.1.1 MD5:322d46f3b809681b594064f452c97f12

[31/03/2007 15:21:14] File doesn't need update

[31/03/2007 15:21:14] [iNFO] [PLG] Minifilter is installed

[31/03/2007 15:21:14] [iNFO] [PLG] Minifilter is possible

[31/03/2007 15:21:14] [iNFO] [PLG] Reading registry value successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7 | FilterType

[31/03/2007 15:21:14] [iNFO] [PLG] Initialize avnotify.exe

[31/03/2007 15:21:14] [iNFO] [PLG] Starting avnotify.exe successful

[31/03/2007 15:21:14] Preparing to download files

[31/03/2007 15:21:14] 17 files need to be downloaded / copied from http://dl2.avgate.net/upd/

[31/03/2007 15:21:14] #1: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-nt/updlib.dll.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/updlib.dll

[31/03/2007 15:21:16] #2: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-nt/updlibrc.dll.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/updlibrc.dll

[31/03/2007 15:21:16] #3: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-nt/avgcmxp.dll.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avgcmxp.dll

[31/03/2007 15:21:17] #4: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-nt/avgnt.exe.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avgnt.exe

[31/03/2007 15:21:19] #5: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-nt/avguard.exe.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avguard.exe

[31/03/2007 15:21:20] #6: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-nt/avreg.dll.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avreg.dll

[31/03/2007 15:21:21] #7: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-nt/avscan.exe.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avscan.exe

[31/03/2007 15:21:22] #8: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-nt/avwinll.dll.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avwinll.dll

[31/03/2007 15:21:23] #9: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-nt/psapi.dll.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/psapi.dll

[31/03/2007 15:21:23] #10: Downloading and extracting http://dl2.avgate.net/upd/winwks/en/basic-...dr_file.html.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/addr_file.html

[31/03/2007 15:21:24] #11: Downloading and extracting http://dl2.avgate.net/upd/vdf/antivir1.vdf.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\vdf\antivir1.vdf

[31/03/2007 15:22:05] #12: Downloading and extracting http://dl2.avgate.net/upd/vdf/antivir2.vdf.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\vdf\antivir2.vdf

[31/03/2007 15:22:09] #13: Downloading and extracting http://dl2.avgate.net/upd/vdf/antivir3.vdf.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\vdf\antivir3.vdf

[31/03/2007 15:22:11] #14: Downloading and extracting http://dl2.avgate.net/upd/engine/nt/avrep.dll.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\nt\avrep.dll

[31/03/2007 15:22:13] #15: Downloading and extracting http://dl2.avgate.net/upd/engine/avewin32.dll.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\avewin32.dll

[31/03/2007 15:22:21] #16: Downloading and extracting http://dl2.avgate.net/upd/engine/nt/avpack32.dll.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\nt\avpack32.dll

[31/03/2007 15:22:23] #17: Downloading and extracting http://dl2.avgate.net/upd/engine/nt/en/avcmd.exe.gz to C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\nt\en/avcmd.exe

[31/03/2007 15:22:28] [iNFO] [PLG] Service AVEService is not installed

[31/03/2007 15:22:28] [iNFO] [PLG] Service AntiVirMailService is not installed

[31/03/2007 15:22:28] [iNFO] [PLG] Status of service AntiVirService is running

[31/03/2007 15:22:28] [iNFO] [PLG] Initialize avgnt.exe

[31/03/2007 15:22:28] [iNFO] [PLG] Status of service AntiVirScheduler is running

[31/03/2007 15:22:28] [iNFO] [PLG] Minifilter is installed

[31/03/2007 15:22:28] [iNFO] [PLG] Minifilter is possible

[31/03/2007 15:22:28] [iNFO] [PLG] Initialize avscan.exe

[31/03/2007 15:22:28] [iNFO] [PLG] Initialize avconfig.cpl

[31/03/2007 15:22:28] [iNFO] [PLG] Initialize avcenter.exe

[31/03/2007 15:22:28] [iNFO] [PLG] shell extension is installed

[31/03/2007 15:22:28] [iNFO] [PLG] Reading registry value successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7 | FilterType

[31/03/2007 15:22:28] [iNFO] [PLG] Status of service AntiVirService is running

[31/03/2007 15:22:28] [iNFO] [PLG] Service AVEService is not installed

[31/03/2007 15:22:28] [iNFO] [PLG] Service AntiVirMailService is not installed

[31/03/2007 15:22:28] [iNFO] [PLG] shell extension removed successfully

[31/03/2007 15:22:28] [iNFO] [PLG] avgnt.exe closed.

[31/03/2007 15:22:28] [iNFO] [PLG] Status of service AntiVirScheduler is running

[31/03/2007 15:22:29] [iNFO] [PLG] Service AntiVirScheduler successfully stopped

[31/03/2007 15:22:29] [iNFO] [PLG] Status of service AntiVirService is running

[31/03/2007 15:22:30] [iNFO] [PLG] Service AntiVirService successfully stopped

[31/03/2007 15:22:30] [iNFO] [PLG] Status of service AntiVirService is stopped

[31/03/2007 15:22:30] [iNFO] [PLG] Service AntiVirService successfully stopped

[31/03/2007 15:22:30] Starting to install

[31/03/2007 15:22:30] Creating a backup for the files in module SELFUPDATE that will be replaced

[31/03/2007 15:22:30] Creating a backup for the files in module SELFUPDATE that will be replaced

[31/03/2007 15:22:30] Processing module SELFUPDATE Source: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\

[31/03/2007 15:22:30] Current Direcory:C:\Program Files\AntiVir PersonalEdition Classic, About to execute C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\SelfUpdateTemp\update.exe .

Self Update helper

[31/03/2007 15:22:31] Installation Directory: C:\Program Files\AntiVir PersonalEdition Classic\ Backup Dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\BACKUP\ Temp dir: C:\WINDOWS\TEMP\Update_20070331_152231_2060\

[31/03/2007 15:22:31] [iNFO] [PLG] Avira AntiVir PersonalEdition Classic

[31/03/2007 15:22:32] Self update: Copying file C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/updlib.dll to C:\Program Files\AntiVir PersonalEdition Classic\updlib.dll

[31/03/2007 15:22:32] Self update: Copying file C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/updlibrc.dll to C:\Program Files\AntiVir PersonalEdition Classic\updlibrc.dll

[31/03/2007 15:22:33] [iNFO] [PLG] The file C:\Program Files\AntiVir PersonalEdition Classic\updlibrc.dll must be updated and need a reboot to reload it.

[31/03/2007 15:22:33] Executing original update application

[31/03/2007 15:22:33] Current Direcory:C:\Program Files\AntiVir PersonalEdition Classic, About to execute C:\Program Files\AntiVir PersonalEdition Classic\update.exe --config-file="C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\update.conf" --install-path="C:\Program Files\AntiVir PersonalEdition Classic" --NoSelfUpdate "--TmpDir=C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c" "--LogFile=C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\LOGFILES\Upd-2007-03-31-15-21-00.log" "--TmpFilesList=C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\ToRemove.txt" "--SelfupdNotifySharingViolation=updlibrc.dll".

Executing original update application

[31/03/2007 15:22:33] Installation Directory: C:\Program Files\AntiVir PersonalEdition Classic\ Backup Dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\BACKUP\ Temp dir: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\

[31/03/2007 15:22:33] [iNFO] [GUI] Start the Update GUI... Displaymode: 0

[31/03/2007 15:22:33] [iNFO] [PLG] Avira AntiVir PersonalEdition Classic

[31/03/2007 15:22:33] Master IDX file has changed

[31/03/2007 15:22:33] File basic-nt/2k/avgntflt.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:22:33] File basic-nt/2k/avgntdd.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:22:33] File basic-nt/2k/avgntmgr.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:22:33] File basic-nt/nt/avgntdd.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:22:33] File basic-nt/nt/avgntmgr.sys's operating system doesn't match the current one. File ignored.

[31/03/2007 15:22:33] Downloading the product.info file from http://dl4.avgate.net/upd/idx/vdf.info.gz

[31/03/2007 15:22:33] Downloading the product.info file from http://dl4.avgate.net/upd/idx/specvir-nt.info.gz

[31/03/2007 15:22:33] Downloading the product.info file from http://dl4.avgate.net/upd/idx/engine.info.gz

[31/03/2007 15:22:33] Downloading the product.info file from http://dl4.avgate.net/upd/idx/engine-nt-en.info.gz

[31/03/2007 15:22:33] Module: SELFUPDATE Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 15

[31/03/2007 15:22:33] Module: MAIN Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 64

[31/03/2007 15:22:33] Module: COMMAPPDATA Source: winwks\en\ Destination: C:\Documents and Settings\All Users\Application Data\ Files: 1

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\addr_file.html does not exist. It will be downloaded

[31/03/2007 15:22:33] Module: TEXT Source: winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 3

[31/03/2007 15:22:33] Module: VDF Source: vdf\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 4

[31/03/2007 15:22:33] Module: AVREP_NT Source: engine\nt\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 1

[31/03/2007 15:22:33] Module: ENGINE Source: engine\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 2

[31/03/2007 15:22:33] Module: ENGINE_NT_EN Source: engine\nt\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\ Files: 2

[31/03/2007 15:22:33] Module: DRV Source: winwks\en\ Destination: C:\WINDOWS\SYSTEM32\drivers\ Files: 2

[31/03/2007 15:22:33] [iNFO] [PLG] Minifilter is installed

[31/03/2007 15:22:33] [iNFO] [PLG] Minifilter is possible

[31/03/2007 15:22:33] [iNFO] [PLG] Reading registry value successful: Software\H+BEDV\AntiVir PersonalEdition Classic V 7 | FilterType

[31/03/2007 15:22:33] Preparing to download files

[31/03/2007 15:22:33] 15 files need to be downloaded / copied from http://dl4.avgate.net/upd/

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avgcmxp.dll.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avgnt.exe.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avguard.exe.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avreg.dll.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avscan.exe.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/avwinll.dll.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/psapi.dll.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\basic-nt/addr_file.html.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:33] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\vdf\antivir1.vdf.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:34] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\vdf\antivir2.vdf.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:34] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\vdf\antivir3.vdf.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:34] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\nt\avrep.dll.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:34] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\avewin32.dll.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:34] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\nt\avpack32.dll.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:34] File C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\nt\en/avcmd.exe.gz already exists in temporary folder and it will not be downloaded again

[31/03/2007 15:22:34] Starting to install

[31/03/2007 15:22:34] Creating a backup for the files in module MAIN that will be replaced

[31/03/2007 15:22:34] Creating a backup for the files in module MAIN that will be replaced

[31/03/2007 15:22:34] Creating a backup for the files in module MAIN that will be replaced

[31/03/2007 15:22:34] Creating a backup for the files in module MAIN that will be replaced

[31/03/2007 15:22:34] Creating a backup for the files in module MAIN that will be replaced

[31/03/2007 15:22:34] Creating a backup for the files in module MAIN that will be replaced

[31/03/2007 15:22:34] Creating a backup for the files in module MAIN that will be replaced

[31/03/2007 15:22:34] Processing module MAIN Source: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\

[31/03/2007 15:22:35] [iNFO] [PLG] The file C:\Program Files\AntiVir PersonalEdition Classic\avwinll.dll must be updated and need a reboot to reload it.

[31/03/2007 15:22:35] Creating a backup for the files in module COMMAPPDATA that will be replaced

[31/03/2007 15:22:35] File C:\Documents and Settings\All Users\Application Data\addr_file.html will not be backed because it doesn't exist

[31/03/2007 15:22:35] Processing module COMMAPPDATA Source: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\winwks\en\ Destination: C:\Documents and Settings\All Users\Application Data\

[31/03/2007 15:22:35] Creating a backup for the files in module VDF that will be replaced

[31/03/2007 15:22:35] Creating a backup for the files in module VDF that will be replaced

[31/03/2007 15:22:35] Creating a backup for the files in module VDF that will be replaced

[31/03/2007 15:22:35] Processing module VDF Source: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\vdf\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\

[31/03/2007 15:22:36] Creating a backup for the files in module AVREP_NT that will be replaced

[31/03/2007 15:22:36] Processing module AVREP_NT Source: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\nt\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\

[31/03/2007 15:22:36] Creating a backup for the files in module ENGINE that will be replaced

[31/03/2007 15:22:36] Processing module ENGINE Source: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\

[31/03/2007 15:22:36] Creating a backup for the files in module ENGINE_NT_EN that will be replaced

[31/03/2007 15:22:36] Creating a backup for the files in module ENGINE_NT_EN that will be replaced

[31/03/2007 15:22:36] Processing module ENGINE_NT_EN Source: C:\Documents and Settings\All Users\Application Data\AntiVir PersonalEdition Classic\TEMP\AVUPDATE_460e603c\engine\nt\ Destination: C:\Program Files\AntiVir PersonalEdition Classic\

[31/03/2007 15:22:36] A total of 15 files were updated

[31/03/2007 15:22:36] [iNFO] [PLG] Service AVEService is not installed

[31/03/2007 15:22:36] [iNFO] [PLG] Service AntiVirMailService is not installed

[31/03/2007 15:22:36] [iNFO] [PLG] Service AntiVirFirewallService is not installed

[31/03/2007 15:22:36] [iNFO] [PLG] Status of service AntiVirService is stopped

[31/03/2007 15:22:36] [iNFO] [PLG] Initialize avgnt.exe

[31/03/2007 15:22:36] [iNFO] [PLG] Status of service AntiVirScheduler is stopped

[31/03/2007 15:22:36] [iNFO] [PLG] Minifilter is installed

[31/03/2007 15:22:36] [iNFO] [PLG] Minifilter is possible

[31/03/2007 15:22:36] [iNFO] [PLG] Initialize avscan.exe

[31/03/2007 15:22:36] [iNFO] [PLG] Initialize avconfig.cpl

[31/03/2007 15:22:36] [iNFO] [PLG] Initialize avcenter.exe

[31/03/2007 15:22:36] [iNFO] [PLG] shell extension is not installed

[31/03/2007 15:22:36] [iNFO] [PLG] Starting avgnt.exe successful

[31/03/2007 15:22:39] [iNFO] [PLG] Service AntiVirScheduler successfully started

[31/03/2007 15:22:39] [iNFO] [PLG] installation of shell extension successful

[31/03/2007 15:22:39] [iNFO] [PLG] Dialup: 0

[31/03/2007 15:22:39] [iNFO] [PLG] Downloaded bytes: 6671960

[31/03/2007 15:22:39] [iNFO] [PLG] Downloaded file(s): 17

[31/03/2007 15:22:39] [iNFO] [PLG] Downloaded file(s):updlib.dll; updlibrc.dll; avgcmxp.dll; avgnt.exe; avguard.exe; avreg.dll; avscan.exe; avwinll.dll; psapi.dll; addr_file.html; antivir1.vdf; antivir2.vdf; antivir3.vdf; avrep.dll; avewin32.dll; avpack32.dll; avcmd.exe

[31/03/2007 15:22:39] [iNFO] [PLG] Engine version local : 7.3.0.15

[31/03/2007 15:22:39] [iNFO] [PLG] Engine version internet: 7.3.1.46

[31/03/2007 15:22:39] [iNFO] [PLG] 0. VDF version local : 6.35.0.1

[31/03/2007 15:22:39] [iNFO] [PLG] 0. VDF version internet: 6.35.0.1

[31/03/2007 15:22:39] [iNFO] [PLG] 1. VDF version local : 6.36.1.24

[31/03/2007 15:22:39] [iNFO] [PLG] 1. VDF version internet: 6.37.1.151

[31/03/2007 15:22:39] [iNFO] [PLG] 2. VDF version local : 6.36.1.113

[31/03/2007 15:22:39] [iNFO] [PLG] 2. VDF version internet: 6.38.0.111

[31/03/2007 15:22:39] [iNFO] [PLG] 3. VDF version local : 6.37.0.3

[31/03/2007 15:22:39] [iNFO] [PLG] 3. VDF version internet: 6.38.0.151

[31/03/2007 15:22:39] [iNFO] [PLG] Start time: 2007.3.31 15:22:33

[31/03/2007 15:22:39] [iNFO] [PLG] Required time: 00:06

[31/03/2007 15:22:39] [iNFO] [PLG] Registry entry created successfully: Software\H+BEDV\AntiVir PersonalEdition Classic V 7 |LastUpdate

[31/03/2007 15:22:48] Update finished successfully

 

et enfin hijackthisogfile of HijackThis v1.99.1

Scan saved at 15:32:39, on 31/03/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16414)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\acer\Acer eConsole\MediaServerService.exe

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE

C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe

C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe

C:\Program Files\Securitoo\Av_Fw\Anti-Virus\FSGK32.EXE

C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe

C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe

C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE

C:\Program Files\Securitoo\Av_Fw\Common\FSMB32.EXE

C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fssm32.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Securitoo\Av_Fw\Common\FCH32.EXE

C:\Program Files\Securitoo\Av_Fw\Common\FAMEH32.EXE

C:\WINDOWS\Explorer.EXE

C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsav32.exe

C:\Program Files\Securitoo\Av_Fw\backweb\8520111\Program\fspex.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE

C:\Program Files\Securitoo\Av_Fw\FSGUI\fsguiexe.exe

C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe

C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\Documents and Settings\jean\Bureau\hijackthis\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll

O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)

O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE" /splash

O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\Av_Fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW

O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\Av_Fw\FSGUI\FSSW.EXE" /reboot

O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe"

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB2.05.0000.1105\fr-fr\msntb.dll/search.htm

O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB2.05.0000.1105\fr-fr\msntabres.dll/229?fd7c73fbba90460d93ea7dddc888d83b

O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB2.05.0000.1105\fr-fr\msntabres.dll/230?fd7c73fbba90460d93ea7dddc888d83b

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll

O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\system32\shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe

O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe

O11 - Options group: [iNTERNATIONAL] International*

O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone

O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone

O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone

O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone

O15 - ProtocolDefaults: 'https' protocol is in My Computer Zone, should be Internet Zone

O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone (HKLM)

O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone (HKLM)

O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone (HKLM)

O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone (HKLM)

O15 - ProtocolDefaults: 'https' protocol is in My Computer Zone, should be Internet Zone (HKLM)

O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://www.touslesdrivers.com/fichiers/har...on.cab?version=

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5.0/jin...ows-i586-jc.cab

O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~2\msgrapp.dll" (file missing)

O20 - AppInit_DLLs: pushow57.dll

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE

O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe

O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe

O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe

O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe

O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe

 

merci

Posté(e)

Voici la marche à suivre, tu devras appliquer la procédure dans l'ordre. S'il y a quelque chose que tu ne comprends pas ou si tu bloques quelque part n'hésite pas à m'en faire part.

 

Lors du redémarrage en mode sans échec tu n'auras pas accès à Internet, donc copie ces instructions dans un fichier texte et enregistre le afin de le retrouver facilement.

 

1 Téléchargement des logiciels

 

*Créer un nouveau dossier C:\Désinfection afin d'y placer touts les logiciels servant à la désinfection.

 

*Télécharger Blacklight (de F-Secure); cliquer sur "I ACCEPT" au bas de la page puis cliquer sur "Download Blacklight Beta graphical user interface version". Le sauvegarder dans C:\Désinfection.

 

*Télécharger CCleaner http://www.ccleaner.com/ccdownload.asp et l'installer (attention à l'installation pense à décocher l'installation de Yahoo toolbar discrètement proposée en plus de CCleaner)

 

*Télécharger la version d'évaluation d'AVG AntiSpyware (AVG AS):

http://downloads.grisoft.cz/softw/70/filed...up-7.5.0.50.exe

 

L'installer et la mettre à jour :

Démarrer AVG AS avec l'icône qui se trouve sur ton Bureau.

Cliquer sur Mise à jour,

attendre la fin de cette mise à jour,

puis fermer le programme.

 

 

2 Préparation du système

 

*Redémarrer le PC, impérativement en mode sans échec,

Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé,

Il y a un écran noir qui apparaît rapidement, appuyer sur la touche [F8] ou [F5] jusqu’à l'affichage du menu des options avancées de Windows. Sélectionner "Mode sans échec"et appuyer sur [Entrée].

(en cas de problème pour sélectionner le mode sans échec, applique la procédure de Symantec "Comment démarrer l'ordinateur en mode sans échec" http://service1.symantec.com/support/inter...020905112131924

 

*S'assurer d'avoir accès à touts les fichiers

Démarrer, Poste de travail ou autre dossier, Menu Outils, Option des dossiers, onglet Affichage :

Activer le bouton-radio: Afficher les fichiers et dossiers cachés

Désactiver la case : Masquer les extensions des fichiers dont le type est connu

Désactiver la case : Masquer les fichiers protégés du système d'exploitation

Puis Appliquer a tous les dossiers

3 Scan anti-malware

 

*Lancer AVG AS et cliquer sur Analyse

Puis sur l'onglets Paramètres, pour Actions recommandés sélèctionner Quarantaine.

 

Revenir a l'onglet Analyser puis cliquer sur Analyse complète du système.

Le scan démarre.

 

A la fin cliquer sur Appliquer toutes les actions

Puis sur Enregistrer le rapport et pour finir Enregister le rapport sous,enregistrer sur le Bureau.

 

 

4 Vérification du système

 

Redémarrer en mode "normal"

 

As-tu toujours des dysfonctionnements ?

 

A titre de vérification :

 

*Renommer HijackThis.exe en Scanner.exe (clique droit => Renommer)

Lancer Scanner.exe(Hijackthis) puis Do a system scan and save log

 

*Lancer Blacklight

Double-cliquer blbeta.exe et accepter la licence; cliquer Scan puis Next

 

Tu verras une liste de fichiers détectés apparaître. Tu verras également un rapport, sur ton Bureau, nommé fsbl.xxxxxxx.log (les xxxxxxx sont des chiffres).

 

NE PAS choisir l'option "Rename" de suite : nous devons analyser le rapport, car des fichiers légitimes peuvent être présents, tel wbemtest.exe

 

 

*Puis poster sur le forum dans le message que tu as déjà ouvert, cliquer sur "répondre" entre "flash" et "nouveau"

Le log de :

AVG AS que tu as enregistré sur le bureau

Hijackthis présent dans le dossier où se trouve Hijackthis

Blacklight présent dans C:\Désinfection

 

Voila c'est fini pour l'instant, nous verrons pour mettre a jour ton système et le sécuriser dès que ton PC ne montrera plus de signe d'infection.

 

Bon courage et @+

Posté(e)

bonjour kevin 76

 

voila ce que tu m a demander

 

avg

 

 

------------------------------------------------------

AVG Anti-Spyware - Rapport d'analyse

---------------------------------------------------------

 

+ Créé à: 13:46:55 06/04/2007

 

+ Résultat de l'analyse:

 

 

 

HKLM\SOFTWARE\YourSiteBar -> Adware.ISTBar : Erreur lors du nettoyage.

HKLM\SOFTWARE\YourSiteBar\Historyfiles -> Adware.ISTBar : Erreur lors du nettoyage.

HKLM\SOFTWARE\YourSiteBar\Historymusic_keyword -> Adware.ISTBar : Erreur lors du nettoyage.

HKLM\SOFTWARE\Classes\WUSN.1 -> Adware.SaveNow : Erreur lors du nettoyage.

C:\Documents and Settings\diana\Cookies\diana@2o7[2].txt -> TrackingCookie.2o7 : Nettoyé.

C:\Documents and Settings\diana\Cookies\diana@adtech[2].txt -> TrackingCookie.Adtech : Nettoyé.

C:\Documents and Settings\diana\Cookies\diana@bluestreak[2].txt -> TrackingCookie.Bluestreak : Nettoyé.

C:\Documents and Settings\diana\Cookies\diana@estat[1].txt -> TrackingCookie.Estat : Nettoyé.

C:\Documents and Settings\jean\Cookies\jean@estat[1].txt -> TrackingCookie.Estat : Nettoyé.

C:\Documents and Settings\jean\Cookies\jean@www.paypal[1].txt -> TrackingCookie.Paypal : Nettoyé.

C:\Documents and Settings\diana\Cookies\diana@smartadserver[1].txt -> TrackingCookie.Smartadserver : Nettoyé.

C:\Documents and Settings\diana\Cookies\diana@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.

C:\Documents and Settings\jean\Cookies\jean@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.

C:\Documents and Settings\diana\Cookies\diana@m.webtrends[2].txt -> TrackingCookie.Webtrends : Nettoyé.

C:\Documents and Settings\diana\Cookies\diana@zedo[2].txt -> TrackingCookie.Zedo : Nettoyé.

C:\Documents and Settings\jean\Cookies\jean@zedo[1].txt -> TrackingCookie.Zedo : Nettoyé.

 

 

Fin du rapport

 

hijackthis

Logfile of HijackThis v1.99.1

Scan saved at 13:54:46, on 06/04/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16414)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\acer\Acer eConsole\MediaServerService.exe

C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE

C:\Program Files\Securitoo\Av_Fw\backweb\8520111\Program\fspex.exe

C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe

C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe

C:\Program Files\Securitoo\Av_Fw\Anti-Virus\FSGK32.EXE

C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe

C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe

C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE

C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fssm32.exe

C:\Program Files\Securitoo\Av_Fw\Common\FSMB32.EXE

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Securitoo\Av_Fw\Common\FCH32.EXE

C:\Program Files\Securitoo\Av_Fw\Common\FAMEH32.EXE

C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsav32.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE

C:\Program Files\Securitoo\Av_Fw\FSGUI\fsguiexe.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe

C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\desinfection\hijackthis\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll

O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)

O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE" /splash

O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\Av_Fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW

O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\Av_Fw\FSGUI\FSSW.EXE" /reboot

O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe"

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"

O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB2.05.0000.1105\fr-fr\msntb.dll/search.htm

O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB2.05.0000.1105\fr-fr\msntabres.dll/229?fd7c73fbba90460d93ea7dddc888d83b

O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB2.05.0000.1105\fr-fr\msntabres.dll/230?fd7c73fbba90460d93ea7dddc888d83b

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll

O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\system32\shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe

O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe

O11 - Options group: [iNTERNATIONAL] International*

O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone

O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone

O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone

O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone

O15 - ProtocolDefaults: 'https' protocol is in My Computer Zone, should be Internet Zone

O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone (HKLM)

O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone (HKLM)

O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone (HKLM)

O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone (HKLM)

O15 - ProtocolDefaults: 'https' protocol is in My Computer Zone, should be Internet Zone (HKLM)

O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://www.touslesdrivers.com/fichiers/har...on.cab?version=

O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0) - http://javadl-esd.sun.com/update/1.5.0/jin...ows-i586-jc.cab

O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~2\msgrapp.dll" (file missing)

O20 - AppInit_DLLs: pushow57.dll

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE

O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe

O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe

O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe

O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe

O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe

 

blacklight

je n ai pas vu belbeta exe c est partit quand meme!!!!!

 

pas de dossier dans c defction mis a part celui la

 

04/06/07 14:11:18 [info]: BlackLight Engine 1.0.61 initialized

04/06/07 14:11:18 [info]: OS: 5.1 build 2600 (Service Pack 2)

04/06/07 14:11:18 [Note]: 7019 4

04/06/07 14:11:18 [Note]: 7005 0

04/06/07 14:11:24 [Note]: 7006 0

04/06/07 14:11:24 [Note]: 7011 624

04/06/07 14:11:24 [Note]: 7026 0

04/06/07 14:11:24 [Note]: 7026 0

04/06/07 14:11:25 [Note]: FSRAW library version 1.7.1021

04/06/07 14:18:36 [Note]: 7007 0

 

alors j ai noter al la fin du scan ceci

 

scan completed

no hidden items found 0

items queued for renaming 0

 

merci

Posté(e)

Re reole,

  • Fais un scan en ligne Kaspersky avec Internet Explorer :
  • Clique sur bouton-scann1.jpg
  • Clique maintenant sur J'accepte.
  • Valide l'installation d'un ou de plusieurs ActiveX si c'est nécessaire.
  • Patiente pendant l'installation des Mises à jour.
  • Choisis par la suite l'analyse du Poste de travail
  • Sauvegarde puis colle le rapport généré en fin d'analyse.

AIDE : Configurer le contrôle des ActiveX

 

NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.

 

A titre de vérification, merci de joindre un nouveau log Hijackthis avec le rapport Kaspersky.

 

@+

Posté(e)

bonjour kevin et encore merci de vous occupez de moi

 

kaspersky ne marche pas je suis desoler j ai cliquer pour les activix et j ai attendu plus d un quard d heure rien

 

j ai supprimer et toujours rien il y a meme marquer en bas ,il existe une erreur sur la page

 

j attend de vos nouvelles des que vous le pourrez,bien entendu,bonsoir

Posté(e) (modifié)

bonjour reole,

 

#1 Suppression de ISTBar

 

Télécharge FxIstBar http://securityresponse.symantec.com/avcenter/FxIstbar.exe de symantec

Clique sur start et attend la fin du scan (celui-ci peut durer un certains selon le nombre de fichiers présent sur ton disque dur).

Dans ta prochaine réponse indique moi le résultat du scan.

 

 

#2 Liste des programmes installé

 

Execute HijackThis

Puis clique sur Open the Misc Tools Section

Ensuite clique sur Open Uninstall Manager

et pour finif clique sur Save List

Copie / Colle le rapport généré dans ta prochaine réponse.

 

 

Bon courage.

Modifié par kevin76
Posté(e)

bonjour kevin 76

 

voila la suite ,excuse pour le delai mais je suis en deplacement la semaine.merci

 

Symantec Adware.Istbar / Trojan.ISTsvc Removal Tool 1.1.0

 

 

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1006\Software\Microsoft\Internet Explorer\Extensions\CmdMapping: {10E42047-DEB9-4535-A118-B3F6EC39B807} (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1007\Software\Microsoft\Internet Explorer\Extensions\CmdMapping: {10E42047-DEB9-4535-A118-B3F6EC39B807} (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1008\Software\Microsoft\Internet Explorer\Extensions\CmdMapping: {10E42047-DEB9-4535-A118-B3F6EC39B807} (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1009\Software\Microsoft\Internet Explorer\Extensions\CmdMapping: {10E42047-DEB9-4535-A118-B3F6EC39B807} (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1006\Software\Microsoft\Internet Explorer\Main: BandRest (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1008\Software\Microsoft\Internet Explorer\Main: BandRest (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1006\Software\Microsoft\Internet Explorer\Main: Search Bar (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1007\Software\Microsoft\Internet Explorer\Main: Search Bar (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1008\Software\Microsoft\Internet Explorer\Main: Search Bar (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1009\Software\Microsoft\Internet Explorer\Main: Search Bar (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1006\Software\Microsoft\Internet Explorer\Search: SearchAssistant (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1008\Software\Microsoft\Internet Explorer\Search: SearchAssistant (value deleted)

registry: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main: BandRest (value deleted)

 

C:\Documents and Settings\laetitia: (not scanned)

C:\Documents and Settings\rama: (not scanned)

C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc208: (not scanned)

C:\System Volume Information: (not scanned)

Adware.Istbar has not been found on your computer.

 

 

 

 

hijackthis

Symantec Adware.Istbar / Trojan.ISTsvc Removal Tool 1.1.0

 

 

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1006\Software\Microsoft\Internet Explorer\Extensions\CmdMapping: {10E42047-DEB9-4535-A118-B3F6EC39B807} (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1007\Software\Microsoft\Internet Explorer\Extensions\CmdMapping: {10E42047-DEB9-4535-A118-B3F6EC39B807} (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1008\Software\Microsoft\Internet Explorer\Extensions\CmdMapping: {10E42047-DEB9-4535-A118-B3F6EC39B807} (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1009\Software\Microsoft\Internet Explorer\Extensions\CmdMapping: {10E42047-DEB9-4535-A118-B3F6EC39B807} (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1006\Software\Microsoft\Internet Explorer\Main: BandRest (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1008\Software\Microsoft\Internet Explorer\Main: BandRest (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1006\Software\Microsoft\Internet Explorer\Main: Search Bar (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1007\Software\Microsoft\Internet Explorer\Main: Search Bar (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1008\Software\Microsoft\Internet Explorer\Main: Search Bar (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1009\Software\Microsoft\Internet Explorer\Main: Search Bar (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1006\Software\Microsoft\Internet Explorer\Search: SearchAssistant (value deleted)

registry: HKEY_USERS\S-1-5-21-678238706-667420344-1933408212-1008\Software\Microsoft\Internet Explorer\Search: SearchAssistant (value deleted)

registry: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main: BandRest (value deleted)

 

C:\Documents and Settings\laetitia: (not scanned)

C:\Documents and Settings\rama: (not scanned)

C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc208: (not scanned)

C:\System Volume Information: (not scanned)

Adware.Istbar has not been found on your computer.

 

 

bonne soiree

Posté(e) (modifié)

Bonjour reole,

 

Tu as oublié l'étape #2 de mon dernier post, veut tu, s'il te plait, l'effectuer.

Peut tu également joindre un nouveau log HijackThis.

 

@+

Modifié par kevin76

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...