Il y a actuellement 128 visiteurs
Vendredi 03 Mai 2024
accueilactualitésdossierscomparer les prixtélécharger gratuitement vos logicielsoffres d'emploiforum informatique
Connexion
Créer un compte

wintems, virus

Un ordinateur qui ralentit, des écrans publicitaires qui apparaissent, des applications qui refusent de démarrer ou encore votre navigateur qui s'obstine à ouvrir une page douteuse sont autant d'éléments qui indiquent que l'intégrité de votre ordinateur est menacée par un virus. Vous trouverez dans ce forum quelques conseils et logiciels pour surfer tranquillement.
Règles du forum
Pour afficher un rapport d'analyse ou un rapport d'infection (HijackThis, OTL, AdwCleaner etc...)‎, veuillez utiliser le système de fichiers joints interne au forum. Seuls les formats les .txt et .log de moins de 1Mo sont acceptés. Pour obtenir de l'aide pour insérer vos fichiers joints, veuillez consulter ce tutoriel

wintems, virus

Message le 17 Nov 2008 18:03

j'ai un problème avec wintems, entre autre, que dois-je faire merci


gilles
gillouvan
Apprenti(e)
Apprenti(e)
 
Messages: 37
Inscription: 17 Nov 2008 00:50
 


Message le 17 Nov 2008 18:39

gillouvan a écrit:
voici, j'ai réussi la première étape


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:16:03, on 17/11/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal

Running processes:
C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:Program FilesFichiers communsAppleMobile Device SupportinAppleMobileDeviceService.exe
C:WINDOWSeHomeehRecvr.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesFichiers communsLightScribeLSSrvc.exe
C:WINDOWSSystem32spoolDRIVERSW32X863lxdiserv.exe
C:WINDOWSsystem32lxdicoms.exe
C:Program FilesSPAMfightersfus.exe
C:WINDOWSsystem32svchost.exe
C:Program FilesHewlett-PackardSharedhpqwmiex.exe
C:WINDOWSsystem32mqsvc.exe
C:WINDOWSsystem32mqtgsvc.exe
C:WINDOWSsystem32dllhost.exe
C:WINDOWSExplorer.EXE
C:WINDOWSsystem32ctfmon.exe
C:WINDOWSehomeehtray.exe
C:Program FileshpqHP Wireless AssistantHP Wireless Assistant.exe
C:WINDOWSsystem32hkcmd.exe
C:WINDOWSeHomeehmsas.exe
C:WINDOWSsystem32igfxpers.exe
C:Program FilesSynapticsSynTPSynTPEnh.exe
C:PROGRA~1hpqSharedHPQTOA~1.EXE
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesWindows LiveToolbarwltuser.exe
C:Program FilesFichiers communsMicrosoft SharedWindows LiveWLLoginProxy.exe
C:Program FilesWindows LiveMessengermsnmsgr.exe
C:Documents and SettingsGrisselin-Van StalleBureausniffle.exe

R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://be.msn.com/defaultf.aspx
R0 - HKCUSoftwareMicrosoftInternet ExplorerMain,Start Page = http://www.7sur7.be/
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Page_URL = http://be.msn.com/defaultf.aspx
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLMSoftwareMicrosoftInternet ExplorerMain,Start Page = http://be.msn.com/defaultf.aspx
R0 - HKCUSoftwareMicrosoftInternet ExplorerToolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:Program FilesYahoo!CompanionInstallscpn0yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:Program FilesYahoo!CompanionInstallscpn0yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:Program FilesFichiers communsAdobeAcrobatActiveXAcroIEHelper.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:Program FilesWindows LiveMessengerwlchtc.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:Program FilesMicrosoftSearch Enhancement PackSearch HelperSearchHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:Program FilesMicrosoft OfficeOffice12GrooveShellExtensions.dll
O2 - BHO: UrlHelper Class - {74322BF9-DF26-493f-B0DA-6D2FC5E6429E} - C:Program FilesBearShare ApplicationsBearShare MediaBarBearShareIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:Program FilesJavajre1.6.0_07inssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:Program FilesFichiers communsMicrosoft SharedWindows LiveWindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:program filesgooglegoogletoolbar4.dll
O2 - BHO: Windows Live Toolbar Beta - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:Program FilesWindows LiveToolbarwltcore.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:program filesgooglegoogletoolbar4.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:Program FilesYahoo!CompanionInstallscpn0yt.dll
O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:Program FilesBearShare ApplicationsBearShare MediaBarBearShareMediaBar.dll
O3 - Toolbar: &Windows Live Toolbar Beta - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:Program FilesWindows LiveToolbarwltcore.dll
O4 - HKLM..Run: [ehTray] C:WINDOWSehomeehtray.exe
O4 - HKLM..Run: [hpWirelessAssistant] C:Program FileshpqHP Wireless AssistantHP Wireless Assistant.exe
O4 - HKLM..Run: [igfxtray] C:WINDOWSsystem32igfxtray.exe
O4 - HKLM..Run: [igfxhkcmd] C:WINDOWSsystem32hkcmd.exe
O4 - HKLM..Run: [igfxpers] C:WINDOWSsystem32igfxpers.exe
O4 - HKLM..Run: [MsmqIntCert] regsvr32 /s mqrt.dll
O4 - HKLM..Run: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe
O4 - HKLM..Run: [SynTPEnh] C:Program FilesSynapticsSynTPSynTPEnh.exe
O4 - HKLM..Run: [RecGuard] C:WindowsSMINSTRecGuard.exe
O4 - HKLM..Run: [Reminder] C:WindowsCREATORRemind_XP.exe
O4 - HKLM..Run: [nnrucrf] c:windowssystem32
nrucrf.exe nnrucrf
O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime
O4 - HKLM..Run: [Adobe Reader Speed Launcher] "C:Program FilesAdobeReader 8.0ReaderReader_sl.exe"
O4 - HKLM..Run: [avast!] C:PROGRA~1ALWILS~1Avast4ashDisp.exe
O4 - HKCU..Run: [CTFMON.EXE] C:WINDOWSsystem32ctfmon.exe
O4 - HKUSS-1-5-19..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUSS-1-5-20..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SERVICE RESEAU')
O4 - HKUSS-1-5-18..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'SYSTEM')
O4 - HKUS.DEFAULT..Run: [CTFMON.EXE] C:WINDOWSsystem32CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Windows Live Search - res://C:Program FilesWindows Live Toolbarmsntb.dll/search.htm
O8 - Extra context menu item: Download with &Shareaza - res://C:Program FilesShareazaPluginsRazaWebHook.dll/3000
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:PROGRA~1MICROS~2Office12EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_07inssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:Program FilesJavajre1.6.0_07inssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:Program FilesWindows LiveWriterWriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~1MICROS~2Office12ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:PROGRA~1MICROS~2Office12ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:PROGRA~1MICROS~2Office12REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:WINDOWSNetwork Diagnosticxpnetdiag.exe
O10 - Unknown file in Winsock LSP: c:windowssystem32
wprovau.dll
O14 - IERESET.INF: START_PAGE_URL=http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_BE&c=64&bd=pavilion&pf=laptop
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://gillouvan.spaces.live.com/PhotoU ... nPUpld.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:Program FilesMicrosoft OfficeOffice12GrooveSystemServices.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:Program FilesHewlett-PackardHP Quick Launch ButtonsAddFiltr.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:Program FilesFichiers communsAppleMobile Device SupportinAppleMobileDeviceService.exe
O23 - Service: AVG Anti-Spyware Guard - Unknown owner - C:Program FilesGrisoftAVG Anti-Spyware 7.5guard.exe (file missing)
O23 - Service: Boonty Games - Unknown owner - C:Program FilesFichiers communsBOONTY SharedServiceBoonty.exe (file missing)
O23 - Service: Google Updater Service (gusvc) - Google - C:Program FilesGoogleCommonGoogle UpdaterGoogleUpdaterService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:Program FilesHewlett-PackardSharedhpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:Program FilesFichiers communsInstallShieldDriver1050Intel 32IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:Program FilesiPodiniPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:Program FilesFichiers communsLightScribeLSSrvc.exe
O23 - Service: lxdiCATSCustConnectService - Lexmark International, Inc. - C:WINDOWSSystem32spoolDRIVERSW32X863\lxdiserv.exe
O23 - Service: lxdi_device - - C:WINDOWSsystem32lxdicoms.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:Program FilesSPAMfightersfus.exe

--
End of file - 9822 bytes
Avatar de l'utilisateur
Ask to Old Man
Moderateur
Moderateur
 
Messages: 19970
Inscription: 14 Mar 2004 10:06
Localisation: Argenteuil,Val d'Oise
 

Message le 18 Nov 2008 11:36

Bonjour.


_ Via HiJackThis, tu supprimes les lignes:

O3 - Toolbar: BearShare MediaBar - {D3DEE18F-DB64-4BEB-9FF1-E1F0A5033E4A} - C:Program FilesBearShare ApplicationsBearShare MediaBarBearShareMediaBar.dll
O4 - HKLM..Run: [nnrucrf] c:windowssystem32
nrucrf.exe nnrucrf
O4 - HKLM..Run: [QuickTime Task] "C:Program FilesQuickTimeqttask.exe" -atboottime
O4 - HKLM..Run: [Adobe Reader Speed Launcher] "C:Program FilesAdobeReader 8.0ReaderReader_sl.exe"
O23 - Service: Boonty Games - Unknown owner - C:Program FilesFichiers communsBOONTY SharedServiceBoonty.exe (file missing)



_ Tu désinstalles BearShare MediaBar via le Panneau de configuration.


_ Tu vas sur http://www.virustotal.com/fr/ puis tu cliques sur [b]Parcourir
.
Tu sélectionnes le fichier c:windowssystem32
nrucrf.exe
et tu cliques sur Ouvrir.

Tu cliques ensuite sur Envoyer le fichier.

A la fin de l'analyse et si au moins un antivirus a détecté une vermine, tu cliques sur Formaté en haut à gauche puis, dans la nouvelle fenètre, tu cliques sur le bouton Image pour faire apparaître le rapport dans la fenètre en question.

Tu sélectionnes ce rapport puis fais un copier-coller et tu le colles dans ton prochain message.
Avatar de l'utilisateur
r@in | b0w
PC-Infopraticien
PC-Infopraticien
 
Messages: 7714
Inscription: 09 Déc 2007 12:37
Localisation: Parrot Sec
 

question

Message le 18 Nov 2008 18:51

hijackthis ne reste pas à l'écran plus de 2 secondes que dois-je faire.

merci
gillouvan
Apprenti(e)
Apprenti(e)
 
Messages: 37
Inscription: 17 Nov 2008 00:50
 

question

Message le 18 Nov 2008 19:26

je ne trouve pas le fichier

nnrucrf.exe

merci
gillouvan
Apprenti(e)
Apprenti(e)
 
Messages: 37
Inscription: 17 Nov 2008 00:50
 

complètement d'info

Message le 18 Nov 2008 19:44

annonce compléte, excuse moi

c/windows/system32/nnrucrf.exe
gillouvan
Apprenti(e)
Apprenti(e)
 
Messages: 37
Inscription: 17 Nov 2008 00:50
 

Message le 18 Nov 2008 19:50

Et donc?

On attend le copier-coller du rapport de VirusTotal.
Avatar de l'utilisateur
r@in | b0w
PC-Infopraticien
PC-Infopraticien
 
Messages: 7714
Inscription: 09 Déc 2007 12:37
Localisation: Parrot Sec
 

réponse

Message le 18 Nov 2008 19:52

oui je ne sais pas faire ce que l'on me demande pour virtualvirus
gillouvan
Apprenti(e)
Apprenti(e)
 
Messages: 37
Inscription: 17 Nov 2008 00:50
 

Message le 18 Nov 2008 19:54

C'est-à-dire?
Avatar de l'utilisateur
r@in | b0w
PC-Infopraticien
PC-Infopraticien
 
Messages: 7714
Inscription: 09 Déc 2007 12:37
Localisation: Parrot Sec
 

Message le 18 Nov 2008 19:58

je ne trouve pas le fichier

cwindowssystems32
nrucrf.exe pour le mettre dans virtualtotal et vous envoyer le copier coller

Hijackthis se ferme au bout de 5 secondes environ que dois-je faire pour supprimer ce que vous me demandez pour haut dans le message
gillouvan
Apprenti(e)
Apprenti(e)
 
Messages: 37
Inscription: 17 Nov 2008 00:50
 

Message le 18 Nov 2008 20:03

Tu télécharges Malwarebytes' Anti-Malware, tu l'installes puis tu procèdes à sa mise à jour.

Tu lances l'application en double-cliquant sur l'icône Malwarebytes' Anti Malware.

Tu cliques ensuite sur Exécuter un examen complet puis tu lances l'analyse en cliquant sur Rechercher.

_ Si l'utilitaire ne trouve rien de néfaste, cliques sur Ok. Le Bloc-notes va s'ouvrir avec le rapport d'analyse, celui-ci n'est pas intéressant car la machine est propre.
Tu peux fermer le Bloc-notes.

_ Si l'utilitaire trouve des éléments suspects, tu cliques sur Afficher les résultats puis sur Supprimer la sélection.
Tu enregistres le rapport d'analyse que tu nous copies-colles dans ton prochain message.

Il est possible que le programme te demande de redémarrer pour effectuer des suppressions supplémentaires, tu acceptes le redémarrage volontaire en cliquant sur Ok.
Avatar de l'utilisateur
r@in | b0w
PC-Infopraticien
PC-Infopraticien
 
Messages: 7714
Inscription: 09 Déc 2007 12:37
Localisation: Parrot Sec
 

résultats de l'analyse

Message le 18 Nov 2008 21:24

voici le résultat de malwarebytes

Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1410
Windows 5.1.2600 Service Pack 2

18/11/2008 21:22:00
mbam-log-2008-11-18 (21-22-00).txt

Type de recherche: Examen complet (C:|D:|)
Eléments examinés: 183771
Temps écoulé: 1 hour(s), 13 minute(s), 41 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 140
Valeur(s) du Registre infectée(s): 5
Elément(s) de données du Registre infecté(s): 3
Dossier(s) infecté(s): 2
Fichier(s) infecté(s): 248

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOTfunwebproducts.browseroverlaybarbutton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.browseroverlaybarbutton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.browseroverlayembed (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.browseroverlayembed.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.datacontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.datacontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.historykillerscheduler (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.historykillerscheduler.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.historyswattercontrolbar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.historyswattercontrolbar.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.htmlmenu (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.htmlmenu.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.htmlmenu.2 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.iecookiesmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.iecookiesmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.killerobjmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.killerobjmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.popswatterbarbutton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.popswatterbarbutton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.popswattersettingscontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.popswattersettingscontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.shellviewcontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTfunwebproducts.shellviewcontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearch.chatsessionplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearch.chatsessionplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearch.htmlpanel (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearch.htmlpanel.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearch.outlookaddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearch.outlookaddin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearch.pseudotransparentplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearch.pseudotransparentplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearchtoolbar.settingsplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearchtoolbar.settingsplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearchtoolbar.toolbarplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTmywebsearchtoolbar.toolbarplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTscreensavercontrol.screensaverinstaller (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTscreensavercontrol.screensaverinstaller.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTudcpchk.udcpchk (Rogue.DriveCleaner) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTudcpchk.udcpchk.1 (Rogue.DriveCleaner) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{07b18eaa-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{07b18eac-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{1093995a-ba37-41d2-836e-091067c4ad17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{120927bf-1700-43bc-810f-fab92549b390} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{17de5e5e-bfe3-4e83-8e1f-8755795359ec} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{1f52a5fa-a705-4415-b975-88503b291728} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{247a115f-06c2-4fb3-967d-2d62d3cf4f0a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{2763e333-b168-41a0-a112-d35f96f410c0} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{2e3537fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{38a7c9da-8db7-4d0f-a7b1-c4b1a305bddb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{3e1656ed-f60e-4597-b6aa-b6a58e171495} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{3e53e2cb-86db-4a4a-8bd9-ffeb7a64df82} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{3e720451-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{3e720453-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{63d0ed2b-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{63d0ed2d-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{6e74766c-4d93-4cc0-96d1-47b8e07ff9ca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{72ee7f04-15bd-4845-a005-d6711144d86a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{7473d291-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{7473d293-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{7473d295-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{7473d297-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{8d292ec0-6792-4a38-82ed-73a087e41ba6} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{90449521-d834-4703-bb4e-d3aa44042ff8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{991aac62-b100-47ce-8b75-253965244f69} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{a626cdbd-3d13-4f78-b819-440a28d7e8fc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{bbabdc90-f3d5-4801-863a-ee6ae529862d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{d6ff3684-ad3b-48eb-bbb4-b9e6c5a355c1} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{de38c398-b328-4f4c-a3ad-1b5e4ed93477} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{e342af55-b78a-4cd0-a2bb-da7f52d9d25e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{e342af55-b78a-4cd0-a2bb-da7f52d9d25f} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{e79dfbc9-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{e79dfbcb-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{eb9e5c1c-b1f9-4c2b-be8a-27d6446fdaf8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTInterface{f87d7fb5-9dc5-4c8c-b998-d8dfe02e2978} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{0f8ecf4f-3646-4c3a-8881-8e138ffcaf70} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{2eff3cf7-99c1-4c29-bc2b-68e057e22340} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{53ced2d0-5e9a-4761-9005-648404e6f7e5} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{7473d292-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{7473d296-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{84da4fdf-a1cf-4195-8688-3e961f505983} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{8e6f1832-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{938aa51a-996c-4884-98ce-80dd16a5c9da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{9afb8248-617f-460d-9366-d71cdeda3179} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{a4730ebe-43a6-443e-9776-36915d323ad3} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{a6573479-9075-4a65-98a6-19fd29cf7374} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{a9571378-68a1-443d-b082-284f960c6d17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{adb01e81-3c79-4272-a0f1-7b2be7a782dc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{b813095c-81c0-4e40-aa14-67520372b987} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{c9d7be3e-141a-4c85-8cd6-32461f3df2c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{cff4ce82-3aa2-451f-9b77-7165605fb835} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{d778513b-1c40-4819-b0c5-49e40b39afd0} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{d9fffb27-d62a-4d64-8cec-1ff006528805} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTCLSID{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{07b18ea0-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{0d26bc71-a633-4e71-ad31-eadc3a1b6a3a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{29d67d3c-509a-4544-903f-c8c1b8236554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{3e720450-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{621feacd-8857-43a6-ae26-451d670d5370} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{7473d290-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{8ca01f0e-987c-49c3-b852-2f1ac4a7094c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{8e6f1830-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{98635087-3f5d-418f-990c-b1efe0797a3b} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{c8cecde3-1ae1-4c4a-ad82-6d5b00212144} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{e47caee0-deea-464a-9326-3f2801535a4d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{e79dfbc0-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTTypelib{f42228fb-e84e-479e-b922-fbbd096e792c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExtStats{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{2eff3cf7-99c1-4c29-bc2b-68e057e22340} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{a6573479-9075-4a65-98a6-19fd29cf7374} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionExtPreApproved{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOTMIMEDatabaseContent Typeapplication/x-f3embed (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftMultimediaWMPlayerSchemesf3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionUninstallMyWebSearch bar Uninstall (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftOfficeOutlookAddinsMyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftOfficeWordAddinsMyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREFunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREFocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystemwallpaper (Hijack.Wallpaper) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionRunmule_st_key (Trojan.Agent) -> Delete on reboot.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftkr_done1 (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindows MediaWMSDKSourcesf3PopularScreensavers (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionInternet SettingsUser AgentPost PlatformFunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionExplorerAdvancedStartMenuLogOff (Hijack.StartMenu) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystemDisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionPoliciesExplorerForceActiveDesktopOn (Hijack.Desktop) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Dossier(s) infecté(s):
C:WINDOWSsystem32driversdownld (Trojan.Agent) -> Quarantined and deleted successfully.
C:Documents and SettingsGrisselin-Van StalleApplication Datam (Trojan.Agent) -> Delete on reboot.

Fichier(s) infecté(s):
C:Documents and SettingsGrisselin-Van StalleLocal SettingsApplication Dataauaamco_navps.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:Documents and SettingsGrisselin-Van StalleLocal SettingsApplication Dataauaamco_nav.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:Documents and SettingsGrisselin-Van StalleLocal SettingsApplication Dataauaamco.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:Documents and SettingsGrisselin-Van StalleLocal SettingsApplication Datamvuqoi_navps.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:Documents and SettingsGrisselin-Van StalleLocal SettingsApplication Datamvuqoi.dat (Adware.Navipromo.H) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld104187.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld104437.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld105187.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld105515.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld111406.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld111484.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld111562.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld112203.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld115546.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld117843.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld118796.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld122718.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld123171.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld125765.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld126281.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld129640.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld131015.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld131218.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld132187.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld132578.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld132953.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld137437.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld138312.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld139093.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld139109.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld13925687.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld13935265.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld13936359.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld13983000.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld13991937.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld13996984.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld13999078.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14060312.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14116562.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14126000.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld142140.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld142953.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld144187.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld144812.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld145921.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14650703.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14657718.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14658718.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14664484.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14671468.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14676890.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14682921.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14741328.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14775796.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld14784984.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld148500.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld149359.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld154625.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld157640.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld157796.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld159125.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld160281.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld160875.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld163593.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld166390.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld166578.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld166718.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld168203.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld169703.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld170609.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld171687.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld172046.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld173593.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld174359.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld175609.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld176390.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld176609.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld180750.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld182703.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld184390.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld18467250.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld18484734.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld18486484.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld18512765.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld18517500.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld18521250.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld18528375.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld18537046.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld186468.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld187500.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld187906.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld188203.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld188796.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld189234.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld190312.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld191578.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld192656.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld196937.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld197718.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld198671.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld198890.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld199234.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld200187.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld202546.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld205109.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld212625.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld214937.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld216406.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld220500.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld223062.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld226500.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld228125.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld233015.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld233125.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld236750.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld237656.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld237984.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld238859.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld242781.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld242968.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld243531.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld244421.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld247406.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld247765.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld249203.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld251343.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld252218.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld254734.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld258171.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld260187.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld260250.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld263859.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld265093.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld270609.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld271531.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld271578.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld272203.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld273875.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld274296.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld276437.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld277203.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld278531.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld279312.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld282656.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld284218.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld286140.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld291531.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld292593.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld293546.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld299796.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld301156.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld307375.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld316640.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld317906.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld318078.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld319812.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld329578.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld329921.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld331359.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld333937.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld342156.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld349312.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld350984.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld352656.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld353515.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld359125.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld360343.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld361937.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld363250.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld364437.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld365468.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld374296.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld38684640.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld38685750.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld38701531.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld38707984.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld38714531.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld38754250.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld38792828.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld38802203.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld398859.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld408937.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld413531.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld414812.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld422093.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld424781.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld429781.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld437625.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld446890.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld450609.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld459796.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld468421.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld477984.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld489015.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld511250.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld518312.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld526218.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld526234.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld535421.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld573812.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld611500.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld621265.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld66562.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld738968.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld741250.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld74265.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld760015.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld761187.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld785640.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld792187.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld79359.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld799281.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld80468.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld805140.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld809265.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld81156.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld81562.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld82625.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld83484.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld84843.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld871906.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld91968.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld935796.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld946203.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld94750.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld95406.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld95937.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driversdownld95953.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:Documents and SettingsGrisselin-Van StalleApplication Datamdata.oct (Trojan.Agent) -> Quarantined and deleted successfully.
C:Documents and SettingsGrisselin-Van StalleApplication Datamlist.oct (Trojan.Agent) -> Quarantined and deleted successfully.
C:Documents and SettingsGrisselin-Van StalleApplication Datamsrvlist.oct (Trojan.Agent) -> Quarantined and deleted successfully.
C:WINDOWSsystem32mdelk.exe (Trojan.Spammer) -> Quarantined and deleted successfully.
C:WINDOWSsystem32wintems.exe (Trojan.Spammer) -> Delete on reboot.
C:WINDOWSsystem32m1ax1d1213216143v.exe (Dialer) -> Quarantined and deleted successfully.
C:Documents and SettingsGrisselin-Van StalleApplication Datamflec006.exe (Trojan.Agent) -> Delete on reboot.
C:WINDOWSsystem32phce25j0eg61.bmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:WINDOWSsystem32svcp.csv (Malware.Trace) -> Quarantined and deleted successfully.
C:WINDOWSsystem32dmyvjz_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
C:WINDOWSsystem32
nrucrf_navps.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
C:WINDOWSsystem32dmyvjz_nav.dat (Adware.NaviPromo) -> Quarantined and deleted successfully.
C:WINDOWSsystem32
vs2.inf (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:WINDOWSsystem32dllh8jkd1q8.exe (Dialer) -> Quarantined and deleted successfully.
C:WINDOWSsystem32vedxg3am1et3.exe (Heuristics.Malware) -> Quarantined and deleted successfully.
C:WINDOWSsystem32vedxga3me2.exe (Heuristics.Malware) -> Quarantined and deleted successfully.
C:WINDOWSsystem32vedxga4m1et4.exe (Heuristics.Malware) -> Quarantined and deleted successfully.
C:WINDOWSsystem32vedxga4me1.exe (Heuristics.Malware) -> Quarantined and deleted successfully.
C:WINDOWSsystem32vedxga5me3.exe (Heuristics.Malware) -> Quarantined and deleted successfully.
C:WINDOWSsystem32driverssrosa.sys (Rootkit.Bagle) -> Quarantined and deleted successfully.
gillouvan
Apprenti(e)
Apprenti(e)
 
Messages: 37
Inscription: 17 Nov 2008 00:50
 

Message le 18 Nov 2008 21:35

Il faut arrêter de télécharger des cracks sur internet, ils t'infectent!


_ Tu télécharges FindyKill.

Tu l'installes en gardant les paramètres par défaut.

Tu branches tous tes supports de stockages USB à ta machine.

Tu double cliques ensuite sur le raccourci FindyKill sur ton Bureau pour lancer l'utilitaire.

Tu choisis l'option 1.

Tu postes ensuite le rapport d'analyse dans ton prochain message, il est présent ici: C:FindyKill.txt.


_ Tu vas télécharger Toolbar S&D.

Tu double cliques ensuite sur l'icône Toolbar S&D pour lancer l'application.

Tu tapes sur la touche [F] pour sélectionner la langue franA§aise.

Tu appuies ensuite sur la touche [1] puis sur la touche [Entrée] pour lancer l'analyse.

Quand tu verras indiqué:

Code: Tout sélectionner
Fin du rapport à --:--:--,--


L'analyse sera finie.

Normalement, le rapport d'analyse s'ouvrira dans le Bloc-notes, tu nous copies-colles l'intégralité du fichier.


_ Tu télécharges SDFix.

Tu double cliques ensuite sur l'icône SdFix pour le lancer.
Tu ne touches pas aux configurations et cliques uniquement sur Install.

Tu verras ce message:

Code: Tout sélectionner
SDFix has been extracted to %systemdrive%SDFix
(Drive that contains the Windows directory - typically C:SDFix)

Open the SDFix folder in Safe Mode and double click the RunThis.bat file to start the fixtool
If RunThis.bat is started in Normal Mode, options to download and run Anti-Virus command line scanners are displayed

Catchme.exe Stealth Malware Detector by GMER is also included in the SDFix folder

Additional SDFix Instructions & screen shots can be found here - http://www.bleepingcomputer.com/forums/topic131299.html


Cela confirme l'installation de SDFix.

Tu pars alors en Mode sans échec ([F8] au démarrage).

Après être sur ta session, tu cliques sur Démarrer puis Exécuter;
Tu tapes (ou copies-colles) C:SDFixRunThis.bat puis tu valides en appuyant sur [Entrée] ou en cliquant sur Ok.

Une fenêtre s'ouvrira, tu appuies sur la touche [Entrée] ou [Y].

Le fix va faire le ménage, tu prends ton mal en patience et attends ;)

Quand tu vois écrit:

Code: Tout sélectionner
The PC will now restart, SDFix will run again after reboot.

Press any key to continue...


Tu appuies sur n'importe quelle touche du clavier, ce qui fera redémarrer ta machine.

SDFix se lancera après l'ouverture de ta session pour finir le ménage.

Le Bloc-notes s'ouvrira ensuite avec le rapport, copies-colles celui-ci dans ton prochain message.


_ Tu refais ensuite un nouveau scan avec Mbam dont tu postes le rapport.
Avatar de l'utilisateur
r@in | b0w
PC-Infopraticien
PC-Infopraticien
 
Messages: 7714
Inscription: 09 Déc 2007 12:37
Localisation: Parrot Sec
 

rapport

Message le 18 Nov 2008 21:47

----------------- FindyKill V4.705 ------------------

* User : Grisselin-Van Stalle - GRISSELIN
* Emplacement : C:Program FilesFindyKill
* Outils Mis a jours le 17/11/08 par Chiquitine29
* Recherche effectuée à 21:43:26 le mar. 18/11/2008
* Windows XP - Internet Explorer 7.0.5730.13

((((((((((((((((( *** Recherche *** ))))))))))))))))))


--------------- [ Processus actifs ] ----------------


C:WINDOWSSystem32smss.exe
C:WINDOWSsystem32csrss.exe
C:WINDOWSsystem32winlogon.exe
C:WINDOWSsystem32services.exe
C:WINDOWSsystem32lsass.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSSystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32spoolsv.exe
C:WINDOWSExplorer.EXE
C:WINDOWSehomeehtray.exe
C:Program FileshpqHP Wireless AssistantHP Wireless Assistant.exe
C:WINDOWSsystem32igfxpers.exe
C:Program FilesSynapticsSynTPSynTPEnh.exe
C:WINDOWSsystem32ctfmon.exe
C:Program FilesFichiers communsAppleMobile Device SupportinAppleMobileDeviceService.exe
C:WINDOWSeHomeehRecvr.exe
C:WINDOWSSystem32svchost.exe
C:Program FilesFichiers communsLightScribeLSSrvc.exe
C:WINDOWSSystem32spoolDRIVERSW32X863lxdiserv.exe
C:WINDOWSsystem32lxdicoms.exe
C:Program FilesSPAMfightersfus.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSsystem32svchost.exe
C:WINDOWSehomemcrdsvc.exe
C:Program FilesHewlett-PackardSharedhpqwmiex.exe
C:Program FilesWindows Media PlayerWMPNetwk.exe
C:WINDOWSsystem32wbemwmiprvse.exe
C:WINDOWSeHomeehmsas.exe
C:PROGRA~1hpqSharedHPQTOA~1.EXE
C:Program FilesInternet Exploreriexplore.exe
C:Program FilesWindows LiveToolbarwltuser.exe
C:Program FilesFichiers communsMicrosoft SharedWindows LiveWLLoginProxy.exe
C:Program FilesWindows LiveMessengermsnmsgr.exe
C:Program FilesWindows LiveContactswlcomm.exe

--------------- [ Fichiers/Dossiers infectieux ] ----------------


»»»» Presence des fichiers dans C:

Found ! [17/11/2008 00:16] - C:InfoSat.txt

»»»» Presence des fichiers dans C:WINDOWS


»»»» Presence des fichiers dans C:WINDOWSPrefetch

Found ! - C:WINDOWSprefetchFLEC006.EXE-1450DF00.pf
Found ! - C:WINDOWSprefetchMDELK.EXE-1D176F91.pf
Found ! - C:WINDOWSprefetchWINTEMS.EXE-2A563F9B.pf

»»»» Presence des fichiers dans C:WINDOWSsystem32

Found ! [18/11/2008 21:16] - C:WINDOWSsystem32an_list.txt

»»»» Presence des fichiers dans C:WINDOWSsystem32drivers

Found ! [18/11/2008 21:28] - C:WINDOWSsystem32driverssrosa.sys
Found ! [18/11/2008 21:28] - C:WINDOWSsystem32driverssrosa2.sys
Found ! [25/06/2006 02:01] - C:WINDOWSsystem32driverswinfilse.exe

»»»» Presence des fichiers dans C:Documents and SettingsGrisselin-Van StalleApplication Data


»»»» Presence des fichiers dans C:DOCUME~1GRISSE~1LOCALS~1Temp


»»»» Presence des fichiers dans C:Documents and SettingsGrisselin-Van StalleLocal SettingsTemporary Internet FilesContent.IE5

Found ! [05/10/2007 05:52] - C:Documents and SettingsGrisselin-Van StalleLocal SettingsApplication DataMicrosoftMedia PlayerCache d'imagesLocalMLS{040ACFE8-B645-4B02-8C1A-D27A4AAB3A8A}.jpg
Found ! [31/12/2007 08:10] - C:Documents and SettingsGrisselin-Van StalleLocal SettingsApplication DataMicrosoftMedia PlayerCache d'imagesLocalMLS{672A65D7-1B64-4E49-A47B-7BEDF0CB8A13}.jpg
Found ! [18/11/2008 21:28] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE54R7XQFQ964[1].jpg
Found ! [18/11/2008 05:17] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE54R7XQFQ964_3[1].jpg
Found ! [18/11/2008 18:30] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE54R7XQFQ964_3[2].jpg
Found ! [18/11/2008 18:30] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5CI0N4WPK64[1].jpg
Found ! [18/11/2008 08:59] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5CI0N4WPK64_2[1].jpg
Found ! [18/11/2008 18:30] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5CI0N4WPK64_2[2].jpg
Found ! [18/11/2008 08:58] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5CI0N4WPK64_3[1].jpg
Found ! [18/11/2008 05:17] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5HMGF55X264_2[1].jpg
Found ! [18/11/2008 08:58] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5HMGF55X264_3[1].jpg
Found ! [18/11/2008 21:28] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5HMGF55X264_3[2].jpg
Found ! [18/11/2008 21:28] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5U9440YHV64_1[1].jpg
Found ! [18/11/2008 08:58] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5U9440YHV64_2[1].jpg
Found ! [18/11/2008 18:30] - C:Documents and SettingsGrisselin-Van StalleTemporary Internet FilesContent.IE5U9440YHV64_3[1].jpg

--------------- [ Registre / Startup ] ----------------

[HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersion un]

CTFMON.EXE=C:WINDOWSsystem32ctfmon.exe

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersion un]

ehTray=C:WINDOWSehomeehtray.exe
hpWirelessAssistant=C:Program FileshpqHP Wireless AssistantHP Wireless Assistant.exe
igfxtray=C:WINDOWSsystem32igfxtray.exe
igfxhkcmd=C:WINDOWSsystem32hkcmd.exe
igfxpers=C:WINDOWSsystem32igfxpers.exe
MsmqIntCert=regsvr32 /s mqrt.dll
High Definition Audio Property Page Shortcut=CHDAudPropShortcut.exe
SynTPEnh=C:Program FilesSynapticsSynTPSynTPEnh.exe
RecGuard=C:WindowsSMINSTRecGuard.exe
Reminder=C:WindowsCREATORRemind_XP.exe
nnrucrf=c:windowssystem32
nrucrf.exe nnrucrf
QuickTime Task="C:Program FilesQuickTimeqttask.exe" -atboottime
Adobe Reader Speed Launcher="C:Program FilesAdobeReader 8.0ReaderReader_sl.exe"
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversion unOptionalComponents=
<NO NAME>=
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversion unOptionalComponentsIMAIL=
Installed=1
<NO NAME>=
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversion unOptionalComponentsMAPI=
NoChange=1
Installed=1
<NO NAME>=
HKEY_LOCAL_MACHINEsoftwaremicrosoftwindowscurrentversion unOptionalComponentsMSFS=
Installed=1
<NO NAME>=

--------------- [ Registre / Clés infectieuses ] ----------------


Found ! - HKEY_USERSS-1-5-21-1401251031-3997734398-1067636003-1005SoftwareLocal AppWizard-Generated Applicationsflec006
Found ! - HKEY_USERSS-1-5-21-1401251031-3997734398-1067636003-1005SoftwareLocal AppWizard-Generated Applicationsinstall_patch
Found ! - HKEY_USERSS-1-5-21-1401251031-3997734398-1067636003-1005SoftwareLocal AppWizard-Generated Applicationswinfilse
Found ! - HKEY_USERSS-1-5-21-1401251031-3997734398-1067636003-1005Softwareisoft
Found ! - HKEY_USERSS-1-5-21-1401251031-3997734398-1067636003-1005SoftwareDateTime4
Found ! - HKEY_USERSS-1-5-21-1401251031-3997734398-1067636003-1005SoftwareFFC
Found ! - HKEY_USERSS-1-5-21-1401251031-3997734398-1067636003-1005SoftwareFirtR
Found ! - HKEY_USERSS-1-5-21-1401251031-3997734398-1067636003-1005SoftwareMuleAppData
Found ! - HKEY_CURRENT_USERSoftwareLocal AppWizard-Generated Applicationsflec006
Found ! - HKEY_CURRENT_USERSoftwareLocal AppWizard-Generated Applicationsinstall_patch
Found ! - HKEY_CURRENT_USERSoftwareLocal AppWizard-Generated Applicationswinfilse
Found ! - HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicessrosa
Found ! - HKEY_LOCAL_MACHINESYSTEMControlSet002Servicessrosa
Found ! - HKEY_LOCAL_MACHINESYSTEMControlSet003Servicessrosa
Found ! - HKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_SROSA
Found ! - HKEY_LOCAL_MACHINESYSTEMControlSet002EnumRootLEGACY_SROSA
Found ! - HKEY_CURRENT_USERSoftwareisoft
Found ! - HKEY_CURRENT_USERSoftwareDateTime4
Found ! - HKEY_CURRENT_USERSoftwareFirtR
Found ! - HKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINESYSTEMControlSet002EnumRootLEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINESYSTEMControlSet003EnumRootLEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINESYSTEMControlSet004EnumRootLEGACY_SK9OU0S
Found ! - HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServicessK9Ou0s
Found ! - HKEY_LOCAL_MACHINESYSTEMControlSet002ServicessK9Ou0s
Found ! - HKEY_LOCAL_MACHINESYSTEMControlSet003ServicessK9Ou0s
Found ! - HKEY_LOCAL_MACHINESYSTEMControlSet004ServicessK9Ou0s

--------------- [ Etat / Services ] ----------------

Clé manquante : HKLMSYSTEMCurrentControlSetControlSafeBoot

- sans echec non fonctionnel !!

Clé manquante : HKLMSYSTEMCurrentControlSetControlSafeBootMinimal

- sans echec non fonctionnel !!

Clé manquante : HKLMSYSTEMCurrentControlSetControlSafeBootNetwork

- sans echec non fonctionnel !!



+- Services : [ Auto=2 / Demande=3 / Désactivé=4 ]

/! Ndisuio - Type de démarrage = 4

/! Ip6Fw - Type de démarrage = 4

/! SharedAccess - Type de démarrage = 4

/! wuauserv - Type de démarrage = 4

/! wscsvc - Type de démarrage = 4



--------------- [ Recherche dans supports amovibles] ----------------


+- Informations :

C: - Lecteur fixe

D: - Lecteur fixe

F: - Lecteur fixe


+- Contenu de l'autorun : D:autorun.inf

[AUTORUN]
ShellExecute=Info.exe protect.ed 480 480


+- Contenu de l'autorun : F:autorun.inf

[autorun]
open=wd_windows_toolsWDSetup.exe
ICON=AUTORUNWDLOGO.ICO


+- presence des fichiers :

Found ! [30/04/2004 05:01][---hs----] - D:autorun.inf
Found ! [30/11/2004 02:01][---hs----] - D:info.exe
Found ! [01/04/2008 13:53][--ah-----] - F:autorun.inf


--------------- [ Registre / Mountpoint2 ] ----------------


-> Not found !


------------------- ! Fin du rapport ! --------------------
gillouvan
Apprenti(e)
Apprenti(e)
 
Messages: 37
Inscription: 17 Nov 2008 00:50
 

rapport toolbar

Message le 18 Nov 2008 21:51

-----------\ ToolBar S&D 1.2.4 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Genuine Intel(R) CPU T2250 @ 1.73GHz )
BIOS : Ver 1.00PARTTBLh
USER : Grisselin-Van Stalle ( Administrator )
BOOT : Normal boot
Antivirus : Norton Internet Security 2006 2006 (Not Activated)
Firewall : Norton Internet Security 2006 2006 (Not Activated)
C: (Local Disk) - NTFS - Total:102 Go (Free:43 Go)
D: (Local Disk) - FAT32 - Total:8 Go (Free:1 Go)
E: (CD or DVD)
F: (Local Disk) - FAT32 - Total:596 Go (Free:587 Go)

"C:ToolBar SD" ( MAJ : 27-10-2008|09:25 )
Option : [1] ( mar. 18/11/2008|21:49 )

-----------\ Recherche de Fichiers / Dossiers ...

C:DOCUME~1GRISSE~1APPLIC~1FunWebProducts
C:DOCUME~1GRISSE~1APPLIC~1FunWebProductsData
C:WINDOWSiun6002.exe

-----------\ Extensions

(All Users) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar

(Grisselin-Van Stalle) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar


-----------\ [..Internet ExplorerMain]

[HKEY_CURRENT_USERSoftwareMicrosoftInternet ExplorerMain]
"Local Page"="C:\WINDOWS\system32\blank.htm"
"Start Page"="http://www.7sur7.be/"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Default_Page_URL"="http://be.msn.com/defaultf.aspx"
"SearchMigratedDefaultURL"="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
"Search Bar"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"

[HKEY_LOCAL_MACHINESoftwareMicrosoftInternet ExplorerMain]
"Default_Page_URL"="http://be.msn.com/defaultf.aspx"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="http://be.msn.com/defaultf.aspx"
"Search Bar"="http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm"


--------------------\ Recherche d'autres infections

[HKEY_LOCAL_MACHINESOFTWAREMicrosoftWindowsCurrentVersionRun]
"nnrucrf"="c:\windows\system32\nnrucrf.exe nnrucrf"

C:WINDOWSPack.epk

C:DOCUME~1GRISSE~1LOCALS~1APPLIC~1mvuqoi.dat.bd.ren
C:DOCUME~1GRISSE~1LOCALS~1APPLIC~1mvuqoi_nav.dat.bd.ren
C:DOCUME~1GRISSE~1LOCALS~1APPLIC~1mvuqoi_navps.dat.bd.ren
C:WINDOWSPrefetchMVUQOI.EXE-02945062.pf.bd.ren
C:WINDOWSSystem32
nrucrf.dat
C:WINDOWSSystem32
nrucrf.dat.bd.ren
C:WINDOWSSystem32
nrucrf_nav.dat.bd.ren
C:WINDOWSSystem32
nrucrf_navps.dat.bd.ren
==> EGDACCESS <==

C:WINDOWSsystem32an_list.txt
==> BAGLE <==

--------------------\ ROOTKIT !!

Rootkit Bagle ! .. [HKEY_LOCAL_MACHINESYSTEMControlSet002EnumRootLEGACY_SROSA]
Rootkit Bagle ! .. [HKEY_LOCAL_MACHINESYSTEMControlSet003EnumRootLEGACY_SROSA]
Rootkit Bagle ! .. [HKEY_LOCAL_MACHINESYSTEMControlSet004EnumRootLEGACY_SROSA]
Rootkit Bagle ! .. [HKEY_LOCAL_MACHINESYSTEMCurrentControlSetEnumRootLEGACY_SROSA]

--------------------\ Cracks & Keygens ..

C:DOCUME~1GRISSE~1BureauFichiercrack
C:DOCUME~1GRISSE~1BureauFichiercrackRead Me.txt
C:DOCUME~1GRISSE~1BureausauvegardeFichiercrack
C:DOCUME~1GRISSE~1BureausauvegardeFichiercrackRead Me.txt



1 - "C:ToolBar SDTB_1.txt" - mar. 18/11/2008|21:50 - Option : [1]

-----------\ Fin du rapport a 21:50:11,89
gillouvan
Apprenti(e)
Apprenti(e)
 
Messages: 37
Inscription: 17 Nov 2008 00:50
 

Suivante


Sujets similaires

Message Aide suite à une analyse FRST contre un virus vbc.exe
Bonjour tout le monde, J'ai récemment constaté que j'étais infecté par un virus lié à vbc.exe, ce qui entraîne une utilisation du CPU allant jusqu'à 30% voire 40%. J'ai donc effectué mes analyses FRST et voici les rapports obtenus : - FRST.txt: https://pjjoint.malekal.com/files.php?id=FRST_20240315_ ...
Réponses: 3

Message [Réglé] Petite vérification virus
Salut Heravles ,Merci et bonne année a toi également et aussi a toute ta famille.Oui désolé j'ai pas fais attention quand j'ai téléchargé le logiciel alors que je sais très bien qu'il fallait le faire sur le bureau. Je ferais plus attention la prochaine fois.Nickel si mon Pc et pas infecté.Je t'envo ...
Réponses: 5

Message 22h2 bogues tpm et centre de sécurité: virus?
Salut,J'ai refait iso et formaté override le disque. Un reset électrique du PC.Je suis sur W11 PRO 64 v22621.525 (même bogue sur la première iso 22h2 fournie par Microsoft en 22621.382).WU est désactivé avant connexion a internet via gpedit.msc.J'ai installé à neuf en compte local. J'installe sans i ...
Réponses: 17

Message anti virus gratuit
Bonjour,Avez-vous un anti virus nettoyeur gratuit en français a me conseiller pour mon j3 2016 samsung.Cordialement.
Réponses: 3

Message Des VIRUS (encore ?)
Bonjour Bernard,merci pour ton aide, j'ai donc supprimé les logiciels adobe que j'avais cracké,voici les nouvelles analyses:Addition : https://cjoint.com/c/LKduLSQQmLnFRST : https://cjoint.com/c/LKduNhgM1vnShortcut : https://cjoint.com/c/LKduNycdWwnCordialement
Réponses: 7

Message [Réglé] Anti virus
Bonjour j'ai racheter un pc portable, je voudrais savoir si il existe des activirus gratuits, de bonne qualité merci
Réponses: 7

Message [Réglé]Multiples Virus Sur ordi Hacktool,coinminer
Bonjour, j'espère que vous allez bien en ces temps difficiles.Je suis de nouveau venu chez mes parents pour les fêtes et l'ordinateur de mon père est de nouveau infectée par des cochonneries que je n'arrive pas enlever moi même, c'est pour cela que je requiert votre aide à nouveau.Je fournis les fic ...
Réponses: 26


Qui est en ligne

Utilisateurs parcourant ce forum: Aucun utilisateur enregistré et 6 invités


.: Nous contacter :: Flux RSS :: Données personnelles :.
cron