Téléchargement
illégal
Posez votre question Signaler

Besoin d aide : win 32 :agent- jdr ( trojan ) [Résolu]

ludossegor 50Messages postés 12 janvier 2007Date d'inscription 3 janvier 2011Dernière intervention - Dernière réponse le 6 févr. 2008 à 20:18
Bonjour,j ai attrapé win 32 : agent jdr ... g avast en antivirus et spybot. g fais un scan au demarage en mettant les intrus en quarantaine puis suppression mais g toujours des problemes ... aidez moi svp. ludo
Lire la suite 

Besoin d aide : win 32 :agent- jdr ( trojan ) »

7 réponses
Réponse
+0
moins plus
Bonjour

Quels sont tes problèmes ? On doit les deviner ? ;-)

Fais ce qui est indiqué sur le lien ci-dessous et colle le rapport ici on y verra plus clair
---> http://kerio.probb.fr/...

A++
Ajouter un commentaire
Réponse
+0
moins plus
voila le resultat du scan merci d avance ludo




Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:57:50, on 22/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Archivos de programa\Alwil Software\Avast4\aswUpdSv.exe
C:\Archivos de programa\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Archivos de programa\Alwil Software\Avast4\ashMaiSv.exe
C:\Archivos de programa\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\VTTimer.exe
C:\Archivos de programa\Lexmark X1100 Series\lxbkbmgr.exe
C:\ARCHIV~1\ALWILS~1\Avast4\ashDisp.exe
C:\Archivos de programa\iTunes\iTunesHelper.exe
C:\Archivos de programa\Lexmark X1100 Series\lxbkbmon.exe
C:\WINDOWS\mrofinu1148.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Archivos de programa\iPod\bin\iPodService.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe
C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Documents and Settings\ludo\Mis documentos\abcde.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=66017
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\ARCHIV~1\Skype\Phone\IEPlugin\SKYPEI~1.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Windows Live Aplicación auxiliar de inicio de sesión - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [Lexmark X1100 Series] "C:\Archivos de programa\Lexmark X1100 Series\lxbkbmgr.exe"
O4 - HKLM\..\Run: [avast!] C:\ARCHIV~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Archivos de programa\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Archivos de programa\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Flash Player2] C:\DOCUME~1\Usuario\CONFIG~1\Temp\services.exe
O4 - HKLM\..\Run: [runner1] C:\WINDOWS\mrofinu1148.exe 61A847B5BBF72813339F30466188719AB689201522886B092CBD44BD8689220221DD3257
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Archivos de programa\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Servicio de red')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Archivos de programa\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Archivos de programa\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\ARCHIV~1\Skype\Phone\IEPlugin\SKYPEI~1.DLL
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://ludossegor.spaces.live.com/PhotoUpload/MsnPUpld.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{969C91F2-DB5E-4A8C-A70C-A746C2EE05F5}: Domain = 22.88.1.218
O17 - HKLM\System\CS1\Services\Tcpip\..\{969C91F2-DB5E-4A8C-A70C-A746C2EE05F5}: Domain = 22.88.1.218
O17 - HKLM\System\CS2\Services\Tcpip\..\{969C91F2-DB5E-4A8C-A70C-A746C2EE05F5}: Domain = 22.88.1.218
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\ARCHIV~1\ARCHIV~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Archivos de programa\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Archivos de programa\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Archivos de programa\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Archivos de programa\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: FFI - Unknown owner - C:\WINDOWS\system32\svchost.exe:exm.exe
O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Microsoft security update service (msupdate) - Unknown owner - c:\windows\system32\msvcrtd.exe (file missing)
O23 - Service: NMIndexingService - Unknown owner - C:\Archivos de programa\Archivos comunes\Ahead\Lib\NMIndexingService.exe (file missing)
Ajouter un commentaire
Réponse
+0
moins plus
j ai refait un scan l autre etait en session invLogfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:51:35, on 22/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Archivos de programa\Alwil Software\Avast4\aswUpdSv.exe
C:\Archivos de programa\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Archivos de programa\Alwil Software\Avast4\ashMaiSv.exe
C:\Archivos de programa\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Archivos de programa\iPod\bin\iPodService.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\VTTimer.exe
C:\Archivos de programa\Lexmark X1100 Series\lxbkbmgr.exe
C:\ARCHIV~1\ALWILS~1\Avast4\ashDisp.exe
C:\Archivos de programa\iTunes\iTunesHelper.exe
C:\Archivos de programa\Lexmark X1100 Series\lxbkbmon.exe
C:\DOCUME~1\Usuario\CONFIG~1\Temp\services.exe
C:\WINDOWS\mrofinu1148.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Archivos de programa\Spybot - Search & Destroy\TeaTimer.exe
C:\bhij.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe
C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\ludo\Mis documentos\abcde.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.es/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=66017
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\ARCHIV~1\Skype\Phone\IEPlugin\SKYPEI~1.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\ARCHIV~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Windows Live Aplicación auxiliar de inicio de sesión - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Archivos de programa\Archivos comunes\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Archivos de programa\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [Lexmark X1100 Series] "C:\Archivos de programa\Lexmark X1100 Series\lxbkbmgr.exe"
O4 - HKLM\..\Run: [avast!] C:\ARCHIV~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Archivos de programa\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Archivos de programa\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Archivos de programa\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Flash Player2] C:\DOCUME~1\Usuario\CONFIG~1\Temp\services.exe
O4 - HKLM\..\Run: [runner1] C:\WINDOWS\mrofinu1148.exe 61A847B5BBF72813339F30466188719AB689201522886B092CBD44BD8689220221DD3257
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BitTorrent] "C:\Archivos de programa\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Archivos de programa\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Archivos de programa\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MsnMsgr] "C:\Archivos de programa\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [WintelUpdate] C:\bhij.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICIO LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Servicio de red')
O4 - HKUS\S-1-5-21-1957994488-1647877149-725345543-1005\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'ludo')
O4 - HKUS\S-1-5-21-1957994488-1647877149-725345543-501\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Invitado')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Archivos de programa\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Archivos de programa\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Archivos de programa\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\ARCHIV~1\Skype\Phone\IEPlugin\SKYPEI~1.DLL
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Archivos de programa\Messenger\msmsgs.exe
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://ludossegor.spaces.live.com/PhotoUpload/MsnPUpld.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{969C91F2-DB5E-4A8C-A70C-A746C2EE05F5}: Domain = 22.88.1.218
O17 - HKLM\System\CS1\Services\Tcpip\..\{969C91F2-DB5E-4A8C-A70C-A746C2EE05F5}: Domain = 22.88.1.218
O17 - HKLM\System\CS2\Services\Tcpip\..\{969C91F2-DB5E-4A8C-A70C-A746C2EE05F5}: Domain = 22.88.1.218
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\ARCHIV~1\ARCHIV~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Archivos de programa\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Archivos de programa\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Archivos de programa\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Archivos de programa\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: FFI - Unknown owner - C:\WINDOWS\system32\svchost.exe:exm.exe
O23 - Service: Servicio del iPod (iPod Service) - Apple Inc. - C:\Archivos de programa\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Microsoft security update service (msupdate) - Unknown owner - c:\windows\system32\msvcrtd.exe (file missing)
O23 - Service: NMIndexingService - Unknown owner - C:\Archivos de programa\Archivos comunes\Ahead\Lib\NMIndexingService.exe (file missing)
Ajouter un commentaire
Réponse
+0
moins plus
aidez moi svp mon pare feu windows se desactive sans arret et j ai besoin de mon pc pour le travail . quelqu un peut il me traduire ce rapport et me dire quoi faire apres ca ...
Ajouter un commentaire
Réponse
+0
moins plus
un nouveau service s est ouvert en bas a droite sur la barre il s apelle avast courrier electronique et g sans arret des messages qui me disent que j envoi trop de mails alors que depuis hier je n ai rien envoyé... aparrait des adresses inconnues avec des messages en anglais ... help please
Ajouter un commentaire
Réponse
+0
moins plus
c est avec beaucoup de mal que j ai pu faire ce scan ... result :













BitDefender Online Scanner



Scan report generated at: Tue, Jan 22, 2008 - 17:54:18





Scan path: A:\;C:\;D:\;







Statistics

Time
00:57:46

Files
145479

Folders
3979

Boot Sectors
2

Archives
1190

Packed Files
19987




Results

Identified Viruses
12

Infected Files
90

Suspect Files
2

Warnings
0

Disinfected
0

Deleted Files
91




Engines Info

Virus Definitions
892859

Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)

Scan plugins
14

Archive plugins
38

Unpack plugins
7

E-mail plugins
6

System plugins
1




Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes




Scanned File
Status

C:\Archivos de programa\fdminst free download manager plus de vitess adsl.exe
Infected with: Trojan.Generic.77705

C:\Archivos de programa\fdminst free download manager plus de vitess adsl.exe
Disinfection failed

C:\Archivos de programa\fdminst free download manager plus de vitess adsl.exe
Deleted

C:\Documents and Settings\NetworkService\Configuración local\Archivos temporales de Internet\Content.IE5\HREMILK7\mutex_n1_21_01_08_0[1].exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\Documents and Settings\NetworkService\Configuración local\Archivos temporales de Internet\Content.IE5\HREMILK7\mutex_n1_21_01_08_0[1].exe
Disinfection failed

C:\Documents and Settings\NetworkService\Configuración local\Archivos temporales de Internet\Content.IE5\HREMILK7\mutex_n1_21_01_08_0[1].exe
Deleted

C:\Documents and Settings\NetworkService\Configuración local\Archivos temporales de Internet\Content.IE5\TKWMMTIH\mutex_n1_21_01_08_0[1].exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\Documents and Settings\NetworkService\Configuración local\Archivos temporales de Internet\Content.IE5\TKWMMTIH\mutex_n1_21_01_08_0[1].exe
Disinfection failed

C:\Documents and Settings\NetworkService\Configuración local\Archivos temporales de Internet\Content.IE5\TKWMMTIH\mutex_n1_21_01_08_0[1].exe
Deleted

C:\Documents and Settings\Usuario\aycjio.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\aycjio.exe
Disinfection failed

C:\Documents and Settings\Usuario\aycjio.exe
Deleted

C:\Documents and Settings\Usuario\cbhppy.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\cbhppy.exe
Disinfection failed

C:\Documents and Settings\Usuario\cbhppy.exe
Deleted

C:\Documents and Settings\Usuario\cclhcn.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\cclhcn.exe
Disinfection failed

C:\Documents and Settings\Usuario\cclhcn.exe
Deleted

C:\Documents and Settings\Usuario\coigvw.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\coigvw.exe
Disinfection failed

C:\Documents and Settings\Usuario\coigvw.exe
Deleted

C:\Documents and Settings\Usuario\Configuración local\Archivos temporales de Internet\Content.IE5\1FXZKP6D\mutex_n1_21_01_08_0[1].exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\Documents and Settings\Usuario\Configuración local\Archivos temporales de Internet\Content.IE5\1FXZKP6D\mutex_n1_21_01_08_0[1].exe
Disinfection failed

C:\Documents and Settings\Usuario\Configuración local\Archivos temporales de Internet\Content.IE5\1FXZKP6D\mutex_n1_21_01_08_0[1].exe
Deleted

C:\Documents and Settings\Usuario\Configuración local\Temp\1015142713.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\Documents and Settings\Usuario\Configuración local\Temp\1015142713.exe
Disinfection failed

C:\Documents and Settings\Usuario\Configuración local\Temp\1015142713.exe
Deleted

C:\Documents and Settings\Usuario\Configuración local\Temp\1192467384.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\Documents and Settings\Usuario\Configuración local\Temp\1192467384.exe
Disinfection failed

C:\Documents and Settings\Usuario\Configuración local\Temp\1192467384.exe
Deleted

C:\Documents and Settings\Usuario\Configuración local\Temp\1959750773.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\Documents and Settings\Usuario\Configuración local\Temp\1959750773.exe
Disinfection failed

C:\Documents and Settings\Usuario\Configuración local\Temp\1959750773.exe
Deleted

C:\Documents and Settings\Usuario\Configuración local\Temp\2101529341.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\Documents and Settings\Usuario\Configuración local\Temp\2101529341.exe
Disinfection failed

C:\Documents and Settings\Usuario\Configuración local\Temp\2101529341.exe
Deleted

C:\Documents and Settings\Usuario\Configuración local\Temp\586033297.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\Documents and Settings\Usuario\Configuración local\Temp\586033297.exe
Disinfection failed

C:\Documents and Settings\Usuario\Configuración local\Temp\586033297.exe
Deleted

C:\Documents and Settings\Usuario\dpmruj.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\dpmruj.exe
Disinfection failed

C:\Documents and Settings\Usuario\dpmruj.exe
Deleted

C:\Documents and Settings\Usuario\eojpdm.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\eojpdm.exe
Disinfection failed

C:\Documents and Settings\Usuario\eojpdm.exe
Deleted

C:\Documents and Settings\Usuario\hcsofq.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\hcsofq.exe
Disinfection failed

C:\Documents and Settings\Usuario\hcsofq.exe
Deleted

C:\Documents and Settings\Usuario\hlpwev.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\hlpwev.exe
Disinfection failed

C:\Documents and Settings\Usuario\hlpwev.exe
Deleted

C:\Documents and Settings\Usuario\iucsma.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\iucsma.exe
Disinfection failed

C:\Documents and Settings\Usuario\iucsma.exe
Deleted

C:\Documents and Settings\Usuario\klierl.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\klierl.exe
Disinfection failed

C:\Documents and Settings\Usuario\klierl.exe
Deleted

C:\Documents and Settings\Usuario\kqkyso.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\kqkyso.exe
Disinfection failed

C:\Documents and Settings\Usuario\kqkyso.exe
Deleted

C:\Documents and Settings\Usuario\miojfv.exe
Suspected of: BehavesLike:Win32.Backdoor

C:\Documents and Settings\Usuario\miojfv.exe
Disinfection failed

C:\Documents and Settings\Usuario\miojfv.exe
Deleted

C:\Documents and Settings\Usuario\mlqojs.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\mlqojs.exe
Disinfection failed

C:\Documents and Settings\Usuario\mlqojs.exe
Deleted

C:\Documents and Settings\Usuario\nnyfzu.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\nnyfzu.exe
Disinfection failed

C:\Documents and Settings\Usuario\nnyfzu.exe
Deleted

C:\Documents and Settings\Usuario\orsdna.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\orsdna.exe
Disinfection failed

C:\Documents and Settings\Usuario\orsdna.exe
Deleted

C:\Documents and Settings\Usuario\oxhksx.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\oxhksx.exe
Disinfection failed

C:\Documents and Settings\Usuario\oxhksx.exe
Deleted

C:\Documents and Settings\Usuario\rjbqak.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\rjbqak.exe
Disinfection failed

C:\Documents and Settings\Usuario\rjbqak.exe
Deleted

C:\Documents and Settings\Usuario\vhljwa.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\vhljwa.exe
Disinfection failed

C:\Documents and Settings\Usuario\vhljwa.exe
Deleted

C:\Documents and Settings\Usuario\wixmqe.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\wixmqe.exe
Disinfection failed

C:\Documents and Settings\Usuario\wixmqe.exe
Deleted

C:\Documents and Settings\Usuario\wmjvpx.exe
Infected with: Trojan.Retapu.D

C:\Documents and Settings\Usuario\wmjvpx.exe
Disinfection failed

C:\Documents and Settings\Usuario\wmjvpx.exe
Deleted

C:\Documents and Settings\Usuario\zpoklo.exe
Infected with: Trojan.DNSChanger.BX

C:\Documents and Settings\Usuario\zpoklo.exe
Disinfection failed

C:\Documents and Settings\Usuario\zpoklo.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214030.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214030.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214030.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214031.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214031.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214031.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214033.exe
Infected with: Trojan.Peed.Gen

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214033.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214033.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214034.exe
Infected with: Dropped:Trojan.Kobcka.CG

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214034.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214034.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214040.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214040.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214040.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214042.exe
Infected with: Dropped:Trojan.Kobcka.CG

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214042.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214042.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214051.exe
Infected with: Trojan.Peed.Gen

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214051.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP502\A0214051.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215058.exe
Infected with: Trojan.Peed.Gen

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215058.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215058.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215059.exe
Infected with: Dropped:Trojan.Kobcka.CG

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215059.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215059.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215081.exe
Infected with: Trojan.Peed.Gen

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215081.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215081.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215083.exe=>:exm.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215083.exe=>:exm.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215083.exe=>:exm.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215083.exe
Updated

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215086.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215086.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215086.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215089.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215089.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215089.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215090.exe
Infected with: Trojan.Peed.Gen

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215090.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215090.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215094.sys
Infected with: Trojan.Downloader.Small.AAKE

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215094.sys
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215094.sys
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215108.sys
Infected with: Trojan.Downloader.Small.AAKE

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215108.sys
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215108.sys
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215116.exe
Infected with: Trojan.Peed.Gen

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215116.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215116.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215118.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215118.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215118.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215122.sys
Infected with: Trojan.Pandex.L

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215122.sys
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215122.sys
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215124.sys
Infected with: Trojan.Downloader.Small.AAKE

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215124.sys
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215124.sys
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215141.exe
Infected with: Trojan.Peed.Gen

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215141.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215141.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215142.sys
Infected with: Trojan.Pandex.L

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215142.sys
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP507\A0215142.sys
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216218.sys
Infected with: Trojan.Downloader.Small.AAKE

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216218.sys
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216218.sys
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216240.exe
Infected with: Trojan.Peed.Gen

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216240.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216240.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216241.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216241.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216241.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216242.exe=>:exm.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216242.exe=>:exm.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216242.exe=>:exm.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216242.exe
Updated

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216431.sys
Infected with: Trojan.Downloader.Small.AAKE

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216431.sys
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216431.sys
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216446.exe=>:exm.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216446.exe=>:exm.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216446.exe=>:exm.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0216446.exe
Updated

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218461.exe=>:exm.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218461.exe=>:exm.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218461.exe=>:exm.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218461.exe
Updated

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218463.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218463.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218463.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218469.sys
Infected with: Trojan.Downloader.Small.AAKE

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218469.sys
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218469.sys
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218482.exe=>:exm.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218482.exe=>:exm.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218482.exe=>:exm.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218482.exe
Updated

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218487.exe
Infected with: Trojan.Downloader.Adload.NCS

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218487.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218487.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218492.exe
Infected with: Trojan.Generic.77705

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218492.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218492.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218493.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218493.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218493.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218494.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218494.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218494.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218495.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218495.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218495.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218496.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218496.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218496.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218497.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218497.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218497.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218498.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218498.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218498.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218499.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218499.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218499.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218500.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218500.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218500.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218501.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218501.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218501.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218502.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218502.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218502.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218503.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218503.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218503.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218504.exe
Suspected of: BehavesLike:Win32.Backdoor

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218504.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218504.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218505.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218505.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218505.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218506.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218506.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218506.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218507.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218507.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218507.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218508.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218508.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218508.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218509.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218509.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218509.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218510.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218510.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218510.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218511.exe
Infected with: Trojan.Retapu.D

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218511.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218511.exe
Deleted

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218512.exe
Infected with: Trojan.DNSChanger.BX

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218512.exe
Disinfection failed

C:\System Volume Information\_restore{1D892A4D-53E7-4AC6-AD1A-67C8C3B1B2BB}\RP515\A0218512.exe
Deleted

C:\WINDOWS\system32\adsmsexts.exe
Infected with: DeepScan:Generic.Malware.SIF.C0F5D16C

C:\WINDOWS\system32\adsmsexts.exe
Disinfection failed

C:\WINDOWS\system32\adsmsexts.exe
Deleted

C:\WINDOWS\system32\socketa.dll
Infected with: Trojan.Adclicker.GY

C:\WINDOWS\system32\socketa.dll
Disinfection failed

C:\WINDOWS\system32\socketa.dll
Deleted

C:\WINDOWS\system32\socksys.dll
Infected with: Trojan.Adclicker.GY

C:\WINDOWS\system32\socksys.dll
Disinfection failed

C:\WINDOWS\system32\socksys.dll
Deleted

C:\WINDOWS\system32\svchost.exe=>:exm.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\WINDOWS\system32\svchost.exe=>:exm.exe
Disinfection failed

C:\WINDOWS\system32\svchost.exe=>:exm.exe
Deleted

C:\WINDOWS\system32\svchost.exe
Updated

C:\WINDOWS\Temp\110855796.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\WINDOWS\Temp\110855796.exe
Disinfection failed

C:\WINDOWS\Temp\110855796.exe
Deleted

C:\WINDOWS\Temp\1514485452.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\WINDOWS\Temp\1514485452.exe
Disinfection failed

C:\WINDOWS\Temp\1514485452.exe
Deleted

C:\WINDOWS\Temp\282249655.exe
Infected with: BehavesLike:Win32.ExplorerHijack

C:\WINDOWS\Temp\282249655.exe
Disinfection failed

C:\WINDOWS\Temp\282249655.exe
Deleted

C:\WINDOWS\Temp\bla.exe
Infected with: DeepScan:Generic.Malware.dld!!.23385E17

C:\WINDOWS\Temp\bla.exe
Disinfection failed

C:\WINDOWS\Temp\bla.exe
Delete failed
Ajouter un commentaire
Réponse
+0
moins plus
comme personne ne m a repondu j ai porté mon ordi chez un pro c resolu voila y muchas gracias
Ajouter un commentaire
Ce document intitulé « besoin d aide : win 32 :agent- jdr ( trojan ) » issu de CommentCaMarche (www.commentcamarche.net) est mis à disposition sous les termes de la licence Creative Commons. Vous pouvez copier, modifier des copies de cette page, dans les conditions fixées par la licence, tant que cette note apparaît clairement.
Dossier à la une
Passage au tout numérique : quel coût pour les particuliers ?