Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Bonsoir à toutes et à tous ;

 

Désolé pour les instructions du Sans Échec ; j'étais à la course. Merci à Lomaster.

 

Pour la restauration, voici ce que l'on nous enseigne dans les grandes écoles : Laissez la restauration intacte jusqu'à la toute fin du nettoyage..

 

Pourquoi ? alors que toutes les compagnies d'antivirus et Microsoft nous disent de la désactiver de suite ? Ben parce que nous sommes plus malins qu'eux !! :P Sérieusement... Garder la restauration intacte nous donne un coussin de sécurité si un fix tourne mal... Vaut mieux restaurer avec un point infecté et de renettoyer que de demander au visiteur de formater. C'est aussi simple que ça :P

 

Si vous avez des commentaires, prière de me les faire en privé (pour ne pas prendre cette discussion en otage..)

Posté(e)

Bonjour aux boss

 

Voila le scan est terminé : (Hum encore du virus , ils veulent pas décrocher ...)

 

File C:\WINDOWS2\temp.bak infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\WINDOWS2\system32\msvcrl.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\WINDOWS2\system32\sachostc.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\WINDOWS2\system32\sachostm.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\WINDOWS2\system32\sachostp.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\WINDOWS2\system32\sachosts.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\WINDOWS2\system32\SACHOSTS.EXE.VIR infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\WINDOWS2\system32\sachostw.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\Documents and Settings\Nomelia\Application Data\SecuROM\UserData\???????????p???????? infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.

File C:\Documents and Settings\Nomelia\Application Data\SecuROM\UserData\???????????p??????????? infected by "BkCln.Unknown" Virus. Action Taken: File Renamed.

File C:\Documents and Settings\Shepard\temp.bak infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\Program Files\Mozilla Firefox\temp.bak infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP12\A0003539.exe infected by "Backdoor.Win32.IRCBot.o" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP12\A0003559.exe infected by "Backdoor.Win32.IRCBot.o" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP14\A0003610.exe infected by "Backdoor.Win32.IRCBot.o" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP147\A0042516.bat infected by "Trojan.BAT.Zapchast" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP155\A0043465.exe tagged as not-a-virus:AdWare.Win32.SurfAccuracy.d. No Action Taken.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP155\A0043504.bat infected by "Trojan.BAT.Zapchast" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043533.exe infected by "Email-Worm.Win32.Locksky.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043534.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043536.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043537.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043538.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043541.exe infected by "Trojan-Downloader.Win32.Small.cds" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043542.exe infected by "Trojan-Downloader.Win32.Small.cfn" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043545.exe infected by "Trojan-Downloader.Win32.Small.bpz" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043548.exe infected by "Packed.Win32.Klone.b" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043549.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043551.exe infected by "Trojan-Proxy.Win32.Xorpix.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043552.exe infected by "Trojan-Proxy.Win32.Xorpix.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043554.exe infected by "Email-Worm.Win32.Locksky.s" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043579.exe infected by "Email-Worm.Win32.Locksky.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043581.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043582.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043584.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043585.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043587.exe infected by "Trojan-Downloader.Win32.Small.cds" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043589.exe infected by "Trojan-Downloader.Win32.Small.cfn" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043592.exe infected by "Trojan-Downloader.Win32.Small.bpz" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043593.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043594.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043595.exe infected by "Packed.Win32.Klone.b" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043597.exe infected by "Trojan-Proxy.Win32.Xorpix.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043598.exe infected by "Trojan-Proxy.Win32.Xorpix.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043601.exe infected by "Email-Worm.Win32.Locksky.s" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043615.exe infected by "Backdoor.Win32.Agent.tx" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043616.dll infected by "Backdoor.Win32.Agent.tx" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043619.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043620.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043625.exe infected by "Email-Worm.Win32.Locksky.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043626.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043627.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043629.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043633.exe infected by "Trojan-Downloader.Win32.Small.cds" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043634.exe infected by "Trojan-Downloader.Win32.Small.cfn" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043636.exe infected by "Trojan-Downloader.Win32.Small.bpz" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043637.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043638.exe infected by "Packed.Win32.Klone.b" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043640.exe infected by "Trojan-Dropper.Win32.Agent.agh" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043641.exe infected by "Trojan-Dropper.Win32.Agent.agh" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0043642.exe infected by "Email-Worm.Win32.Locksky.s" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044613.exe infected by "Trojan-Downloader.Win32.Tibs.bu" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044614.exe infected by "Trojan-Downloader.Win32.Small.cfx" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044615.exe infected by "Trojan-Downloader.Win32.Small.awa" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044616.exe infected by "Trojan-Proxy.Win32.Xorpix.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044618.exe infected by "Packed.Win32.Klone.b" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044619.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044620.exe infected by "Trojan-Downloader.Win32.Small.bpz" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044622.exe infected by "Trojan-Downloader.Win32.Small.cfn" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044623.exe infected by "Trojan-Downloader.Win32.Small.cds" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044624.exe infected by "Email-Worm.Win32.Locksky.s" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044627.exe infected by "Trojan-Downloader.Win32.Tibs.bu" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044635.exe infected by "Backdoor.Win32.Agent.tx" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044636.dll infected by "Backdoor.Win32.Agent.tx" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044642.exe infected by "Email-Worm.Win32.Locksky.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044643.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044644.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044646.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044648.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0044649.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046637.exe infected by "Email-Worm.Win32.Locksky.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046638.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046639.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046642.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046643.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046645.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046649.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046759.exe infected by "Email-Worm.Win32.Locksky.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046761.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046762.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046764.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046765.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046766.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046767.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP159\A0046769.exe infected by "Backdoor.Win32.IRCBot.o" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046770.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046771.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046772.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046792.exe infected by "Email-Worm.Win32.Locksky.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046794.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046795.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046798.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046800.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046801.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046802.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046811.exe infected by "Email-Worm.Win32.Locksky.s" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046814.exe infected by "Trojan-Downloader.Win32.IstBar.is" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046815.exe infected by "Trojan.Win32.Pakes" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP160\A0046816.bat infected by "Trojan.BAT.Zapchast" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0047026.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0047033.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0047807.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0047810.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0047811.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0047813.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0047815.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0047821.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0048776.exe infected by "Trojan-Proxy.Win32.Xorpix.m" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0048781.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0048782.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0048784.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0048785.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0048786.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0048787.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049780.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049781.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049783.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049784.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049785.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049786.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049805.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049806.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049808.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049809.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049813.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049815.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049841.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049842.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049844.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049845.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049846.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0049847.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0050835.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0050836.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0050838.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0050839.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0050840.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0050841.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051835.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051836.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051838.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051842.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051843.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051844.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051949.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051950.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051952.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051953.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051954.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051956.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051968.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051969.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051971.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051972.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051976.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0051978.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0052969.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0052971.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0052973.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0052974.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0052977.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0052981.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0053969.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0053970.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0053972.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0053973.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP162\A0053975.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP186\A0064890.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP186\A0064891.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP186\A0064893.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP186\A0064894.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP186\A0064895.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP186\A0064899.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0064903.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0064904.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0064905.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0065828.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0065829.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0065831.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0065832.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0065834.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0065838.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0066831.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0066832.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0066834.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0066835.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0066840.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP187\A0066841.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP188\A0066848.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP188\A0066849.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP188\A0066851.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP188\A0066874.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP188\A0066875.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP188\A0066877.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP188\A0066878.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP188\A0066883.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP188\A0066885.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0066888.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0066889.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0066890.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0066985.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0067000.exe infected by "Packed.Win32.Klone.b" Virus. Action Taken: File Renamed.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0067007.dll infected by "Email-Worm.Win32.Locksky.p" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0067008.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0067009.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0067010.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0067011.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP189\A0067012.exe infected by "Email-Worm.Win32.Locksky.z" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP81\A0020870.exe infected by "Trojan.Win32.Pakes" Virus. Action Taken: File Deleted.

File C:\System Volume Information\_restore{3D963C4B-DC70-45AD-B22F-78803BD0D9FF}\RP81\A0020871.exe infected by "Trojan-Downloader.Win32.IstBar.is" Virus. Action Taken: File Deleted.

Posté(e)

Excellent :P

 

eScan a fait ce que le scan en ligne ne voualit pas faire !! Bon, il ne reste qu'à voir un tout nouveau rapport HijackThis!, et on poursuivra.

 

Avec le décalage, vous vous levez, et moi je vais faire dodo, donc quelqu'un regardera, ou bien moi je repasserai dans 6 ou 7 heures.

 

@ + tard, et merci pour le rapport de scan,

Posté(e)

Et voila :

 

(merci de m' aider :P )

 

Logfile of HijackThis v1.99.1

Scan saved at 12:10:49, on 03/02/2006

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

Running processes:

C:\WINDOWS2\System32\smss.exe

C:\WINDOWS2\SYSTEM32\winlogon.exe

C:\WINDOWS2\system32\services.exe

C:\WINDOWS2\system32\lsass.exe

C:\WINDOWS2\system32\svchost.exe

C:\WINDOWS2\System32\svchost.exe

C:\WINDOWS2\system32\spoolsv.exe

C:\Program Files\Stardock\Object Desktop\WindowBlinds\wbload.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\Program Files\ewido anti-malware\ewidoctrl.exe

C:\WINDOWS2\system32\nvsvc32.exe

C:\WINDOWS2\Explorer.EXE

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\WINDOWS2\SOUNDMAN.EXE

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS2\ALCWZRD.EXE

C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe

C:\WINDOWS2\system32\ezSP_Px.exe

C:\WINDOWS2\system32\RUNDLL32.EXE

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS2\system32\ctfmon.exe

C:\Program Files\SpywareGuard\sgmain.exe

C:\Program Files\SpywareGuard\sgbhp.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Documents and Settings\Shepard\Mes documents\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://g.msn.com/8SE/1?http://toolbar.msn....&CM=MsgrInstall

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\PROTEC~1\SPYBOT~1\SDHelper.dll

O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll

O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll

O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fr\msntb.dll

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS2\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033

O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE

O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe

O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS2\system32\ezSP_Px.exe

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS2\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS2\system32\ctfmon.exe

O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe

O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.zebulon.fr/outils/antivirus/kav...can_unicode.cab

O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...all/xscan53.cab

O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

O20 - Winlogon Notify: WB - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\fastload.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe

O23 - Service: MD Simple Burner Service (NetMDSB) - Sony Corporation - C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS2\system32\nvsvc32.exe

O23 - Service: Panda Process Protection Service (PavPrSrv) - Unknown owner - C:\Program Files\Fichiers communs\Panda Software\PavShld\pavprsrv.exe (file missing)

 

Posté(e) (modifié)

Bon Vendredi Shepard, bon Vendredi tout le monde :P

 

Ça me semble propre tout ça, alors félicitations à toi, Tornado (et Lomaster) :P

 

On va te nettoyer tous les fichiers temporaires, optimiser la bécane un brin, puis désactiver (Oui !!) ta restauration système et finalement les consignes de sécurité ;

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

Télécharge ATF Cleaner par Atribune.

  • Double-clique ATF-Cleaner.exe afin de lancer le programme.
    Sous l'onglet Main, choisis : Select All
    Clique sur le bouton Empty Selected

Si tu utilises le navigateur Firefox :

  • Clique Firefox au haut et choisis : Select All
    Clique le bouton Empty Selected
    NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.

Si tu utilises le navigateur Opera :

  • Clique Opera au haut et choisis : Select All
    Clique le bouton Empty Selected
    NOTE : Si tu veux conserver tes mots de passe sauvegardés, clique No à l'invite.

Clique Exit, du menu prinicipal, afin de fermer le programme.

Pour obtenir du Support technique, double-clique l'adresse électronique située au bas de chacun des menus.

 

**Tu peux le conserver, et l'utiliser régulièrement ce petit prog :-P

 

Ok, cette étape est optionnelle, mais elle permettra à ton PC de démarrer plus rapidement ; les programmes ciblés restent intactes et fonctionnels, mais ne se chargeront pas à chaque démarrage. Lance HijackThis! et clique "Do a system scan only", puis coche ces lignes :

 

O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE

 

O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe

 

O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE

 

Ferme toutes les fenêtres et programmes autres que HijackThis! et clique "Fix checked". Ferme HijackThis! Lance WinAmp et fais sa mise à jour, car une faille importante de sécurité a été décelée il y a quelques jours.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

Afin de désactiver ET réactiver ta Restauration Système, visite ce lien :

http://www.libellules.ch/desactiver_restauration.php

 

A présent, quelques conseils de sécurité :

 

-Windows Update parfaitement à jour (catégorie critique, Services Pack et Services Release )

- pare-feu bien paramétré- antivirus bien paramétré et mis à jour régulièrement(quotidiennement s'il le faut) avec un scan complet régulier(journalier s'il le faut).

- une attitude prudente vis à vis de la navigation (pas de sites douteux:cracks, warez, sexe...) et vis à vis de la messagerie (fichiers joints aux messages doivent être scanné avant d'être ouvert)

- ne pas utiliser de logiciel de Peer to Peer (les logiciels de P2P sont sources d infections virales)

- une attitude vigilante (être l'affût des fonctionnements inhabituels de ton système)

- nettoyage hebdomadaire du système (suppression des fichiers inutiles, nettoyage de la base de registre, scandisk, defragmentation)

 

- scan hebdomadaire antispyware

 

Pour en savoir plus, consulte la page de ipl_001

http://gerard.melone.free.fr/IT/IT-AM0.html

 

Tu dois également installer les outils suivants:

 

-=> Firefox , un vrai navigateur que tu pourras sécuriser avec les conseils de megataupe:

 

-Téléchargement: http://www.mozilla-europe.org/fr/products/firefox/

-Tutorial pour le sécuriser: http://forum.zebulon.fr/index.php?showtopic=69628

 

 

Si tu veux toujours utiliser IE! :

 

-=> E-SPYAD:(Ajoute plus de 5000 sites à la zone de restriction pour te protéger lorsque tu attéris sur un site douteux)

Pour Internet Explorer uniquement!( une fois l'utilitaire dézippé dans son dossier, cliquer sur le fichierie-ads.reg:

les modifications ne sont pas visibles mais l'effet est garanti par le message qui suit! )

https://netfiles.uiuc.edu/ehowes/www/resource.htm#IESPYAD

 

 

 

-=> Un vrai pare-feu (pas le joujou offert avec XP)

 

-Kerio

-Zone Alarm

-Sygate Personal Firewall Free

 

tu trouveras ces 3 firewalls gratuits et performants avec des tutos pour les configurer ici http://forum.zebulon.fr/index.php?act=ST&f...t=0#entry487252

 

 

-=> SpywareBlaster:

 

http://www.javacoolsoftware.com/downloads.html

Son tuto:

http://www.ordi-netfr.org/tutorialspywareblaster.html

 

 

-=> Ad-awareSE

 

http://www.ordi-netfr.com/adawarese.html

http://www.lavasoft.de/support/download/#free

Son tuto

http://home.tiscali.be/schouppeguy/adawarese/adawase.htm

 

 

-=> SpyBot-Search & Destroy

 

http://spybot.safer-networking.de/fr/download/index.html

Son tuto

http://assiste.free.fr/p/frameset/07_spybo...rch_destroy.php

 

 

-=> a² free (anti-trojans)

 

- Téléchargement : http://www.emsisoft.net/fr/software/free/

Il est nécessaire de s enregistrer sur le site pour pouvoir utiliser et avoir les mises a jour du logiciel!

 

-=> ZebProtect

 

http://www.zebulon.fr/articles/zebprotect.php

http://telechargement.zebulon.fr/123.html

 

Merci à Jack pour ces consignes :-(

Modifié par Qc001

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...