Flux rss
Rechercher : dans
Par : Pertinence Date Nom d'utilisateur
Statut : Non résolu

[ezula] le supprimer???

Cc, le samedi 8 octobre 2005 à 13:35:25
bonjour,

j' avais 2 virus sur mon pc, un nommé worm/msn.kelviAC que j'ai supprimé en formatant la partition sur lequel il se trouvait, ANTIVIR n 'arrivait pas a le supprimer, un nomme worm/IRCB0-149504b sur l'autre partition que je pense avoir supprimé grace a ANTIVIR.
Répondre à Cc  Signaler ce message aux modérateurs Aller au dernier message

1


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
regis59, le samedi 8 octobre 2005 à 13:36:45
oui et?
Répondre à regis59

2


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
Cc, le samedi 8 octobre 2005 à 13:37:29
depuis j'ai ezula que je n'arrive pas a supprimer.
qelqu'un pourrait il me dire comment s'y prendre
Merci
Répondre à Cc

3


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
regis59, le samedi 8 octobre 2005 à 16:07:39
télécharge HijackThis ici:
http://www.hijackthis.de/downloads/hijackthis_199.zip

Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum

Démo : (merci à balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm

Bon courage

A+
Répondre à regis59

4


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
Cc, le samedi 8 octobre 2005 à 16:27:46
tout d abord merci de ta reponse.
Je te joins le rapport

Logfile of HijackThis v1.99.1
Scan saved at 13:22:28, on 08/10/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRAM FILES\AVPERSONAL\AVGUARD.EXE
C:\Program Files\AVPersonal\AVWUPSRV.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\Program Files\Pinnacle\Shared Files\Programs\MediaCenterService\PMC.Service.Main.exe
C:\Program Files\Pinnacle\Shared Files\Programs\Remote\Remoterm.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\AVPersonal\AVGNT.EXE
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\Media Access\MediaAccK.exe
C:\Program Files\Media Access\MediaAccess.exe
C:\Program Files\Photodex\ProShowGold\ScsiAccess.exe
C:\PROGRA~1\Web Offer\wo.exe
C:\PROGRA~1\ezula\mmod.exe
c:\program files\pinnacle\shared files\programs\mediaserver\pmshost.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.pmu.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.files-ftp.com/~unicorni/phpBB2/index.php
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O4 - HKLM\..\Run: [PMCS] C:\Program Files\Pinnacle\Shared Files\Programs\MediaCenterService\PMC.Service.Main.exe -host -clearDebug
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe -CheckReg
O4 - HKLM\..\Run: [PMCRemote] C:\Program Files\Pinnacle\Shared Files\Programs\Remote\Remoterm.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [AVGCtrl] "C:\Program Files\AVPersonal\AVGNT.EXE" /min
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [CloneCDElbyCDFL] "C:\Program Files\Elaborate Bytes\CloneCD\ElbyCheck.exe" /L ElbyCDFL
O4 - HKLM\..\Run: [shell32] C:\WINDOWS\system32\wuauclt10.exe
O4 - HKLM\..\Run: [Client Server Runtime Process] C:\WINDOWS\system32\smmss.exe
O4 - HKLM\..\Run: [Windows update] C:\WINDOWS\system32\wudupdate.exe
O4 - HKLM\..\Run: [I downloaded pirated Software from P2P and now I post my Hijack log whining] C:\WINDOWS\system32\Fifa 2006 soccer crack.exe
O4 - HKLM\..\Run: [Media Access] C:\Program Files\Media Access\MediaAccK.exe
O4 - HKLM\..\Run: [Power Scan] C:\Program Files\Power Scan\powerscan.exe
O4 - HKLM\..\Run: [IST Service] C:\Program Files\ISTsvc\istsvc.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKCU\..\Run: [eZWO] C:\PROGRA~1\Web Offer\wo.exe
O4 - HKCU\..\Run: [Spyware Cleaner] "C:\Program Files\Spyware Cleaner\SpywareCleaner.Exe" /boot
O4 - HKCU\..\Run: [eZmmod] C:\PROGRA~1\ezula\mmod.exe
O4 - HKCU\..\RunOnce: [Web Offer] C:\WINDOWS\system32\smmss.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.files-ftp.com/~unicorni/phpBB2/index.php
O15 - Trusted Zone: http://ny.contentmatch.net (HKLM)
O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\PROGRAM FILES\AVPERSONAL\AVGUARD.EXE
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - C:\Program Files\AVPersonal\AVWUPSRV.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Pinnacle Systems Media Service (PinnacleSys.MediaServer) - Pinnacle Systems - c:\program files\pinnacle\shared files\programs\mediaserver\pmshost.exe
O23 - Service: ScsiAccess - Unknown owner - C:\Program Files\Photodex\ProShowGold\ScsiAccess.exe
O23 - Service: SpywareCleanerService - Unknown owner - C:\Program Files\Spyware Cleaner\SCService.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Répondre à Cc

5


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
regis59, le samedi 8 octobre 2005 à 16:50:37
Bonjour,

Méthode à suivre dans l'ordre...

Dans ajout suppression de programme, desinstalle ceci si present:
- Web Offer
- Ezula
- Spyware cleaner
------------------------------------------------------------­----------------
¤Télécharge ces logiciels mais que tu n‘utilises pas tout de suite:

1/

Spybot S&D 1.4 <<nouvelle version.
http://www.safer-networking.org/fr/index.html

Démo d’utilisation (merci à Balltrap34 pour cette réalisation).
http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm

2/

Ad-Aware SE 1.06 <<nouvelle version.
http://www.lavasoftusa.com/software/adaware/
-Une aide:
http://www.tutopat.com/viewtopic.php?t=1191
- installe le patch français, tu pourras le trouver ici:
http://download.lavasoft.de.edgesuite.net/public/pllangs.exe
et une petite vidéo d'utilisation ici:(merci à Moe31 pour cette réalisation).
http://pageperso.aol.fr/balltrap34/adawrevid.asf

----------------------------------------------------------------------------
¤Désactive ta restauration système (uniquement si tu es sous XP):
Clic droit sur poste de travail puis,
propriété, tu cliques sur onglet restauration système
tu coches la case « désactiver la restauration » et applique.
----------------------------------------------------------------------------
¤Démarre en mode sans échec :
Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
(Si F8 ne marche pas utilise la touche F5).
----------------------------------------------------------------------------
¤Affiche tous les fichiers et dossiers :
Clique sur démarrer/panneau de configuration/outil/option des dossiers/affichage

Coche « afficher les fichiers et dossiers cachés »

Décoche la case "Masquer les fichiers protégés du système d'exploitation (recommandé)"

Décoche « masquer les extensions dont le type est connu »
Puis fais «Ok» pour valider les changements.

Et appliquer !
----------------------------------------------------------------------------
¤Vide tes fichiers temps et tempory internet file:

:: Supprimer les fichiers temporaires ::
vider tout le contenu de ces dossiers.

* C:\Documents and Settings\ton compte\Local Settings\Temp
* C:\Documents and Settings\tous les autres comptes\Local Settings\Temp
* C:\Windows\Temp

:: Le contenu du dossier prefetch ::

* C:\WINDOWS\Prefetch <= sauf le fichier layout.ini

* Ne pas oublier de vider la corbeille !
----------------------------------------------------------------------------
¤Relance HijackThis, coche les cases devant ces lignes et ensuite clique sur fix checked :

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.files-ftp.com/~unicorni/phpBB2/index.php

O4 - HKLM\..\Run: [shell32] C:\WINDOWS\system32\wuauclt10.exe

O4 - HKLM\..\Run: [Client Server Runtime Process] C:\WINDOWS\system32\smmss.exe

O4 - HKLM\..\Run: [Windows update] C:\WINDOWS\system32\wudupdate.exe

O4 - HKLM\..\Run: [I downloaded pirated Software from P2P and now I post my Hijack log whining] C:\WINDOWS\system32\Fifa 2006 soccer crack.exe

O4 - HKLM\..\Run: [Media Access] C:\Program Files\Media Access\MediaAccK.exe

O4 - HKLM\..\Run: [Power Scan] C:\Program Files\Power Scan\powerscan.exe

O4 - HKLM\..\Run: [IST Service] C:\Program Files\ISTsvc\istsvc.exe

O4 - HKCU\..\Run: [eZWO] C:\PROGRA~1\Web Offer\wo.exe

O4 - HKCU\..\Run: [eZmmod] C:\PROGRA~1\ezula\mmod.exe

O4 - HKCU\..\RunOnce: [Web Offer] C:\WINDOWS\system32\smmss.exe

O4 - HKCU\..\Run: [Spyware Cleaner] "C:\Program Files\Spyware Cleaner\SpywareCleaner.Exe" /boot

O14 - IERESET.INF: START_PAGE_URL=http://www.files-ftp.com/~unicorni/phpBB2/index.php

O15 - Trusted Zone: http://ny.contentmatch.net (HKLM)

O23 - Service: SpywareCleanerService - Unknown owner - C:\Program Files\Spyware Cleaner\SCService.exe (file missing)

----------------------------------------------------------------------------
¤Recherche et supprime ceci:
attention seulement les fichiers (si présents).

C:\WINDOWS\system32\wuauclt10.exe
C:\WINDOWS\system32\smmss.exe
C:\WINDOWS\system32\wudupdate.exe
C:\Program Files\Media Access <---le dossier
C:\Program Files\Power Scan <---le dossier
C:\Program Files\ISTsvc <---le dossier
C:\PROGRA~1\Web Offer
C:\PROGRA~1\ezula
C:\Program Files\Spyware Cleaner <--le dossier

----------------------------------------------------------------------------
¤Arrête ces services :

Clique sur Démarrer->exécuter->tape: services.msc

Double-clique: Service: SpywareCleanerService

Règle-le sur "Arrêté" et "Désactivé".
----------------------------------------------------------------------------
¤ Passe Ad-Aware et supprime tout ce qu’il trouve + supprime les quarantaines…
----------------------------------------------------------------------------
¤ Passe Spybot et corrige tout ce qu’il trouve + vaccine + supprime les quarantaines…
----------------------------------------------------------------------------
¤ Vide ta Corbeille.
----------------------------------------------------------------------------
¤ Redémarre en mode normal, relance Hijackthis et copie/colle un nouveau rapport sur le forum.

Précise tes soucis s’il en reste....

Tiens-moi au courant

A+
Répondre à regis59

6


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
Cc, le samedi 8 octobre 2005 à 19:30:06
re,

merci pour cette precieuse aide, le pb majeur semble resolu(ezula a disparu)
je te joint comme demandé le nouveau rapport

Logfile of HijackThis v1.99.1
Scan saved at 19:22:49, on 08/10/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRAM FILES\AVPERSONAL\AVGUARD.EXE
C:\Program Files\AVPersonal\AVWUPSRV.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$PINNACLESYS\Binn\sqlservr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Photodex\ProShowGold\ScsiAccess.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
c:\program files\pinnacle\shared files\programs\mediaserver\pmshost.exe
C:\Program Files\Pinnacle\Shared Files\Programs\MediaCenterService\PMC.Service.Main.exe
C:\Program Files\Pinnacle\Shared Files\Programs\Remote\Remoterm.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\AVPersonal\AVGNT.EXE
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.pmu.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O4 - HKLM\..\Run: [PMCS] C:\Program Files\Pinnacle\Shared Files\Programs\MediaCenterService\PMC.Service.Main.exe -host -clearDebug
O4 - HKLM\..\Run: [PMCRemote] C:\Program Files\Pinnacle\Shared Files\Programs\Remote\Remoterm.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [AVGCtrl] "C:\Program Files\AVPersonal\AVGNT.EXE" /min
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [CloneCDElbyCDFL] "C:\Program Files\Elaborate Bytes\CloneCD\ElbyCheck.exe" /L ElbyCDFL
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: AntiVir Service (AntiVirService) - H+BEDV Datentechnik GmbH - C:\PROGRAM FILES\AVPERSONAL\AVGUARD.EXE
O23 - Service: AntiVir Update (AVWUpSrv) - H+BEDV Datentechnik GmbH, Germany - C:\Program Files\AVPersonal\AVWUPSRV.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Pinnacle Systems Media Service (PinnacleSys.MediaServer) - Pinnacle Systems - c:\program files\pinnacle\shared files\programs\mediaserver\pmshost.exe
O23 - Service: ScsiAccess - Unknown owner - C:\Program Files\Photodex\ProShowGold\ScsiAccess.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

en esperant que tu me dises que tout est ok...

Encore merci!
Répondre à Cc

7


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
regis59, le samedi 8 octobre 2005 à 20:17:10
re,
tout me parait nikel,

as tu un soucis a deplorer?

a+
Répondre à regis59

8


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
cece, le mercredi 12 octobre 2005 à 20:08:02
desole pour reponse tardive, mais encore une fois un GRAND merci, plus aucun pb a deplorer

Bonne soiree a tous
Répondre à cece

9


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
regis59, le mercredi 12 octobre 2005 à 21:24:10
salut
pas grave pour la reponse tardive

je suis ravi pour toi ^^

recaches tes fichiers caches et reactive ta restauration systeme

a+
Répondre à regis59

10


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
joluax, le vendredi 14 octobre 2005 à 17:52:57
Salut et désolé de te contacter comme ceci mais je ne savais pas comment faire autrement. J'ai le même pb, je t'envoie le log copier . Merci par avance
joluax
Répondre à joluax

11


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
joluax, le vendredi 14 octobre 2005 à 17:55:01
désolé voici le log :
Logfile of HijackThis v1.99.1
Scan saved at 17:45:40, on 14/10/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Steganos AntiSpyware 2006\WRSSSDK.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\qttask.exe
C:\PROGRA~1\HELPAN~1\Pavilion\XPHWWBF4\plugin\bin\pchbutton.­exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Trend Micro\Internet Security\tmproxy.exe
C:\Program Files\Trend Micro\Internet Security\PccPfw.exe
C:\Program Files\Trend Micro\Internet Security\Tmntsrv.exe
C:\Program Files\Trend Micro\Internet Security\PCClient.EXE
C:\Program Files\Trend Micro\Internet Security\PCCGUIDE.EXE
C:\Program Files\Trend Micro\Internet Security\TMOAgent.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\eXeem\eXeem.exe
C:\Program Files\eXeem\client.dll
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Telecom Italia France\Barre Magique 1.05.08.22\BBarHelpers.exe
C:\Program Files\Steganos AntiSpyware 2006\saspy2006.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\HP_PRO~1\LOCALS~1\Temp\Rar$EX00.375\HijackThis.e­xe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_FR&c=Q404&bd=pavilion&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=FR_FR&c=Q404&bd=pavilion&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=FR_FR&c=Q404&bd=pavilion&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aliceadsl.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_FR&c=Q404&bd=pavilion&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=FR_FR&c=Q404&bd=pavilion&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=FR_FR&c=Q404&bd=pavilion&pf=desktop
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=FR_FR&c=Q404&bd=pavilion&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Vue HP - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll
O3 - Toolbar: Barre &Magique - {01A7812B-59E8-4A4F-BFD6-EEE6D4CB6BA2} - C:\Program Files\Telecom Italia France\Barre Magique 1.05.08.22\Tiscali BBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security\pccguide.exe"
O4 - HKLM\..\Run: [PCClient.exe] "C:\Program Files\Trend Micro\Internet Security\PCClient.exe"
O4 - HKLM\..\Run: [TM Outbreak Agent] "C:\Program Files\Trend Micro\Internet Security\TMOAgent.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [TiscaliParam] C:\Program Files\Tiscali\Dialer\bootparam.exe
O4 - HKLM\..\Run: [Client Server Runtime Process] C:\WINDOWS\system32\smmss.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\WINDOWS\system32\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Antispyware 2006] "C:\Program Files\Steganos AntiSpyware 2006\saspy2006.exe" /startintray
O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HELPAN~1\Pavilion\XPHWWBF4\plugin\bin\pchbutton.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Pages liées - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://ny.contentmatch.net (HKLM)
O16 - DPF: {041816FE-7869-4B5F-9BE4-FFF3B7368727} (IsHere Class) - http://barremagique.aliceadsl.fr/download/BarreMagique.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Trend Micro Personal Firewall (PccPfw) - Trend Micro Incorporated. - C:\Program Files\Trend Micro\Internet Security\PccPfw.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Steganos AntiSpyware 2006\WRSSSDK.exe
O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Incorporated. - C:\Program Files\Trend Micro\Internet Security\Tmntsrv.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Incorporated. - C:\Program Files\Trend Micro\Internet Security\tmproxy.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
Répondre à joluax

12


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
regis59, le vendredi 14 octobre 2005 à 22:24:41
salut
Lance ce scan en ligne:
http://www.bitdefender.com/scan/licence.php
Copie/colle le rapport

a+
Répondre à regis59

13


  • Ce message vous semble utile, votez !
  • Signaler ce message aux modérateurs
joluax, le samedi 15 octobre 2005 à 21:25:48
Salut voici le rapport :
BitDefender Online Scanner



Scan report generated at: Sat, Oct 15, 2005 - 21:17:45





Scan path: C:\;D:\;E:\;F:\;G:\;H:\;I:\;J:\;K:\;L:\;M:\;N:\;O:\;







Statistics

Time
00:33:07

Files
171393

Folders
4815

Boot Sectors
3

Archives
2167

Packed Files
16948




Results

Identified Viruses
11

Infected Files
165

Suspect Files
0

Warnings
0

Disinfected
0

Deleted Files
165




Engines Info

Virus Definitions
221681

Engine build
AVCORE v1.0 (build 2292) (i386) (Mar 3 2005 11:57:29)

Scan plugins
13

Archive plugins
39

Unpack plugins
4

E-mail plugins
6

System plugins
1




Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
exe;com;dll;ocx;scr;bin;dat;386;vxd;sys;wdm;cla;class;ovl;ol­e;hlp;doc;dot;xls;ppt;wbk;wiz;pot;ppa;xla;xlt;vbs;vbe;mdb;rt­f;htm;hta;html;xml;xtp;php;asp;js;shs;chm;lnk;pif;prc;url;sm­m;pfd;msi;ini;csc;cmd;bas;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes




Scanned File
Status

C:\Program Files\Web Offer\apev.exe
Detected with: Adware.Weboffer.A

C:\Program Files\Web Offer\apev.exe
Disinfection failed

C:\Program Files\Web Offer\apev.exe
Deleted

C:\Program Files\Web Offer\CHPON.dll
Detected with: Adware.Weboffer.A

C:\Program Files\Web Offer\CHPON.dll
Disinfection failed

C:\Program Files\Web Offer\CHPON.dll
Deleted

C:\Program Files\Web Offer\sepng.dll
Detected with: Adware.Weboffer.A

C:\Program Files\Web Offer\sepng.dll
Disinfection failed

C:\Program Files\Web Offer\sepng.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0137060.exe
Infected with: Trojan.Dropper.Agent.TV

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0137060.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0137060.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0137063.exe
Infected with: Trojan.Pakes.DU

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0137063.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0137063.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0139115.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0139115.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0139115.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0139116.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0139116.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0139116.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0139118.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0139118.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P242\A0139118.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P243\A0139214.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P243\A0139214.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P243\A0139214.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P243\A0139218.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P243\A0139218.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P243\A0139218.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P243\A0139247.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P243\A0139247.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P243\A0139247.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P244\A0144466.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P244\A0144466.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P244\A0144466.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P244\A0144469.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P244\A0144469.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P244\A0144469.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P244\A0144471.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P244\A0144471.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P244\A0144471.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P247\A0144672.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P247\A0144672.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P247\A0144672.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P247\A0144674.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P247\A0144674.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0147864.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0147864.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0147864.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0147867.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0147867.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0147867.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0147880.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0147880.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0147880.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0148877.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0148877.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P249\A0148877.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P250\A0148961.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P250\A0148961.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P250\A0148961.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P250\A0148965.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P250\A0148965.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P250\A0148965.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P250\A0148967.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P250\A0148967.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P250\A0148967.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P251\A0150035.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P251\A0150035.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P251\A0150035.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P251\A0150039.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P251\A0150039.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P251\A0150039.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150168.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150168.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150168.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150171.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150171.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150171.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150366.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150366.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150366.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150434.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150434.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150434.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150436.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150436.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150438.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150438.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P253\A0150438.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150484.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150484.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150484.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150496.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150496.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150498.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150498.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150498.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150506.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150506.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150506.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150513.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150513.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150513.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150515.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150515.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150515.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150523.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150523.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P254\A0150523.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150565.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150565.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150565.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150577.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150577.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150579.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150579.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150579.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150584.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150584.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150584.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150591.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150591.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150591.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150593.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150593.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150593.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150601.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150601.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P255\A0150601.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150640.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150640.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150640.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150652.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150652.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150654.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150654.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150654.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150659.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150659.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150659.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150666.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150666.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150666.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150668.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150668.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150668.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150676.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150676.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P256\A0150676.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150715.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150715.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150715.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150727.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150727.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150729.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150729.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150729.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150734.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150734.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150734.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150741.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150741.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150741.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150743.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150743.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150743.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150751.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150751.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P257\A0150751.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150790.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150790.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150790.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150802.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150802.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150804.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150804.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150804.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150809.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150809.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150809.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150816.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150816.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150816.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150818.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150818.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150818.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150826.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150826.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150826.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150850.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150850.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0150850.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0151920.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0151920.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0151920.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0151965.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0151965.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P258\A0151965.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0152020.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0152020.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0152020.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0152022.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0152022.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0152022.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0152083.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0152083.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0152083.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0153059.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0153059.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0153059.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0153061.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0153061.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P259\A0153061.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156303.exe
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156303.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156303.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156307.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156307.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156307.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156316.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156316.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156316.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156382.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156382.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156382.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156383.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156383.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156383.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156385.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156385.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156385.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156389.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156389.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156389.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156391.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156391.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P261\A0156391.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156858.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156858.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156858.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156860.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156860.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156861.dll
Infected with: Trojan.Isbar.230

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156861.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156861.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156885.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156885.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P265\A0156885.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0156912.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0156912.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0156912.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0156918.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0156918.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0156922.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0156922.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0156922.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157102.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157102.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157102.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157127.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157127.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157127.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157129.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157129.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157129.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157143.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157143.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157143.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157145.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157145.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157145.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157147.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157147.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P266\A0157147.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157182.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157182.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157182.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157187.dll
Infected with: Trojan.Downloader.Dyfuca.DD

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157187.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157191.exe
Infected with: Trojan.Downloader.Dyfuca.EI

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157191.exe
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157191.exe
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157367.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157367.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157367.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157392.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157392.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157392.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157394.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157394.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157394.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157408.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157408.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157408.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157410.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157410.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157410.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157412.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157412.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P267\A0157412.dll
Deleted

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P268\A0157446.dll
Detected with: Adware.Weboffer.A

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P268\A0157446.dll
Disinfection failed

C:\System Volume Information\_restore{86E11626-5203-4B6B-99A3-889F6E4C5699}\R­P268\A0157446.dll
Deleted

C:\System Volume Information\