Problème processus en double [Fermé]

Signaler
-
fix200
Messages postés
3244
Date d'inscription
dimanche 28 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
7 février 2011
-
Bonjour,
Après l'installation du Service Pack 2 de Vista, je suis affublé de plusieurs bug troublant sur mon ordinateur.
L'explorer.Exe qui ne se lance pas au démarrage, des petit processus avec des noms bizarres genres "wgpsmf.exe" qui se lance seul, et Internet Explorer qui se lance tout seuls et qui est tout le temps actif au moins en 7/8 copies.
J'ai évidemment passé un coup de CcCleaner + Ad-Aware + Spybot et ça n'a rien changé.
Je copie mon Lien HijackThis en espérant que vous pourriez m'aider :
Merci.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:46:12, on 10/02/2010
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\svchost.exe
C:\Windows\explorer.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\hp\support\hpsysdrv .exe
C:\windows\vsnpstd .exe
C:\program files\common files\real\update_ob\realsched .exe
C:\program files\java\jre6\bin\jusched .exe
C:\hp\kbd\kbd.exe
C:\program files\common files\nero\lib\nmindexstoresvr .exe
C:\Windows\system32\conime.exe
C:\program files\gemplus\gemsafe libraries\bin\regtool .exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\Mozilla Firefox\firefox.exe
c:\program files\internet explorer\wmpscfgs.exe
C:\program files\common files\logishrd\lcommgr\communications_helper .exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
c:\users\butcher\appdata\local\temp\wmpscfgs.exe
C:\Windows\System32\mobsync.exe
c:\users\butcher\appdata\local\temp\wmpscfgs.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: (no name) - {63CA3B40-BADC-4F29-8736-D9BAADEC0678} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Veoh Web Player Video Finder - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [CCUTRAYICON] FactoryMode
O4 - HKLM\..\Run: [snpstd] C:\Windows\vsnpstd.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\program files\quicktime\qttask .exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [RegTool] C:\Program Files\Gemplus\GemSafe Libraries\BIN\RegTool.exe
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [xguxtcq] C:\Windows\system32\xguxtcq.exe \u
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\program files\common files\nero\lib\nmindexstoresvr .exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/...
O16 - DPF: {5852F5ED-8BF4-11D4-A245-0080C6F74284} (isInstalled Class) - http://javadl-esd.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/...
O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab2.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{7BDF390C-02C9-4767-BE14-BE2517539F4A}: NameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{CE864D1D-E44D-4656-B0F8-6DE99086B201}: NameServer = 192.168.1.1
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: C:\Windows\system32\
O20 - Winlogon Notify: gemsafe - C:\Program Files\Gemplus\GemSafe Libraries\BIN\WLEventNotify.dll
O21 - SSODL: ZpzZvVWHj - {5CD51338-F67F-B992-0BC0-33F078008C6E} - (no file)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Intel(R) Alert Service (AlertService) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\CCU\AlertService.exe
O23 - Service: DQLWinService - Unknown owner - C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Intel DH Service (IntelDHSvcConf) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Tools\IntelDHSvcConf.exe
O23 - Service: Intel(R) Software Services Manager (ISSM) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\logishrd\Bluetooth\LBTServ.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Intel(R) Viiv(TM) Media Server (M1 Server) - Unknown owner - C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: Intel(R) Application Tracker (MCLServiceATL) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Intel(R) Remoting Service (Remote UI Service) - Intel(R) Corporation - C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: stllssvr - Unknown owner - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing)

5 réponses

Messages postés
3244
Date d'inscription
dimanche 28 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
7 février 2011
157
Salut,

T'es gavé d'infections !!!

Télécharge ZHPDiag (de Nicolas Coolman) et enregistre le sur ton Bureau.

▶ Double clique sur ZHPDiag.exe pour lancer l'installation et suis les instructions , n'oublie pas de cocher la case qui permet de mettre un raccourci sur le Bureau.

▶ Double clique sur le raccourci ZHPDiag sur ton Bureau. (l'outil a créé 2 icônes ZHPDiag et ZHPFix)

▶ Clique sur le "Tournevis" puis sur Tous, puis décoche les cases O45 et O61.

▶ Clique sur la loupe pour lancer l'analyse.

⇒ Laisse l'outil travailler, il peut être assez long ...

▶ Une fois terminé , le rapport s'affiche : clique sur bouton "Disquette" pour sauvegarder le rapport obtenu .

Enregistre bien ZHPDiag.txt de façon à le retrouver facilement ( sur le bureau par exemple ).

Pour le transmettre ouvre ce lien

* Clique sur Parcourir et cherche le fichier ci-dessus.

* Clique sur Ouvrir.

* Clique sur "Cliquez ici pour déposer le fichier".

* Un lien de cette forme est ajouté dans la page :

hxxp://www.cijoint.fr/cjlink.php?file=cj200905/cijSKAP5fU.txt

Copie ce lien dans ta réponse.
Messages postés
2
Date d'inscription
mercredi 10 février 2010
Statut
Membre
Dernière intervention
10 février 2010

Messages postés
3244
Date d'inscription
dimanche 28 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
7 février 2011
157
Re,

Ton cas est très délicat ... ^^

On essaye les "grands moyens" :


▶ Sous Vista & Seven :

Désactive l'UAC qui peut gêner fortement la procédure de désinfection. :
-> Pour Vista :

▶ Menu Démarrer > Panneaux de configuration .
▶ Clique sur l'icône " Comptes d'utilisateurs " puis sur " Activer ou désactiver le contrôle des comptes d'utilisateurs ".
▶ Décoche la case : " Utiliser le contrôle des comptes d'utilisateurs pour vous aider à protéger votre ordinateur "
▶ Valide par OK, il sera demandé de redemarrer le PC, fais le !
▶ Pour t'aider : Tutoriel 1 - Tutoriel 2 - Tutoriel 3

========================

TRÈS IMPORTANT :
-> Pendant toute la procédure de désinfection, vérifie que l'UAC soit bien désactivée.
-> Exécute toujours les programmes de désinfection en tant qu'administrateur ( Clic droit > "Exécuter en tant qu'admin..." )

========================

1- Télécharge UsbFix (de C_XX , El Desaparecido , Chimay8)


▶ Lance le fichier téléchargé, ne touche pas aux paramètres de l'installe !.

Branche tes sources de données externes à ton PC, (Clé USB, disque dur externe, carte mémoire, appareil photo ...) susceptible d'avoir été infectés , mais sans les ouvrir

▶ Fais un clic droit sur le raccourci UsbFix présent sur ton bureau et choisis "Exécuter en tant qu'administrateur" .

▶ Au menu principal choisis l'option " F " pour français et tape sur [entrée] .

▶ Au second menu choisis l'option 2 ( Suppression )

▶ Ton bureau disparaîtra et le PC redémarrera . (c'est normal)

▶ Au redémarrage , UsbFix scannera ton pc , laisse travailler l'outil et ne touche a rien.

▶ Une fois terminé, Poste le rapport UsbFix.txt qui apparaîtra avec le bureau .

Note : Le rapport UsbFix.txt est sauvegardé a la racine du disque.( C:\UsbFix.txt )

Aide : :
Comment Utiliser UsbFix

=====

▶ Rends sur cette page .

▶ Clique sur "parcourir" et va jusqu'au fichier UsbFix_Upload_Me_xxxx.zip qui se trouve sur ton bureau .

▶ Clique sur "Envoyer le fichier" , et patiente jusqu'à la fin du transfère .

▶ Une fois terminé , tu peux supprimer le fichier UsbFix_Upload_Me_xxxx.zip ...

Merci d'avoir envoyé le fichier , cela permettra aux auteurs de cet l'outil de travailler sur ce type d'infection et d'aider ainsi à ce que UsbFix soit de plus en plus performant . ^^

==================

2- Télécharge MalwareBytes' Anti-Malware (MBAM) .

▶ Double clique sur le fichier téléchargé pour lancer le processus d’installation , choisis "Français" et accepte lorsqu’il te le sera demandé de le mettre a jour.

▶ Regarde bien ce Tuto pour bien utiliser le programme.

! Déconnecte toi ferme toutes applications en cours !

⇒ Lance MBAM.

⇒ Mets le à jour via l'onglet mises à jours.

▶ Sous l'onglet paramètre, et coche la case : "Arrêter internet explorer pendant la suppression"

▶ Clique maintenant sur l'onglet recherche et coche la case : "Exécuter un examen rapide".

▶ Puis clique sur " Rechercher ".

▶ Laisse le scanner le PC...

▶ Une fois l'analyse terminée, clique sur "OK", Ensuite sur "Afficher les résultats".

▶ Vérifie que tout est bien coché et clique sur "Supprimer la sélection".

▶ Il se peut qu'il te demande de redémarrer pour finir la suppression des nuisibles, accepte en cliquant sur "Yes".

▶ A la fin un rapport va s'ouvrir, sauvegarde le de manière a le retrouver en vu et le poster sur le forum.

Reviens sur le forum et copie et colle le rapport dans ta prochaine réponse .

Note: les rapports sont aussi rangés dans l'onglet Rapport/Log .

====================

3- Refais un scan ZHPDiag, coche bien toutes les options (sauf la 045 et 061), poste le nouveau rapport obtenu (via Cijoint).
Messages postés
2
Date d'inscription
mercredi 10 février 2010
Statut
Membre
Dernière intervention
10 février 2010

Voila :
Malwarebytes' Anti-Malware 1.44
Version de la base de données: 3721
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18702

10/02/2010 21:20:45
mbam-log-2010-02-10 (21-20-45).txt

Type de recherche: Examen rapide
Eléments examinés: 104346
Temps écoulé: 28 minute(s), 44 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 2
Fichier(s) infecté(s): 237

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\cs41275 (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Users\Butcher\AppData\Roaming\m (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared (Trojan.Agent) -> Quarantined and deleted successfully.

Fichier(s) infecté(s):
C:\fffea.exe (Trojan.Orsam) -> Quarantined and deleted successfully.
C:\Windows\System32\abhu .exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\xguxtcq .exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Users\Butcher\nfq.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Users\Butcher\pva.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\data.oct (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\list.oct (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\srvlist.oct (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\1-More Watermarker v1.25 by ARN.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\1stSource 1.0 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\2nd Millennium Invisible Calculator v3.1 by TNT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\4Easysoft DVD to XviD Converter 3.1.06.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\4Movy DVD AVI MP4 IPOD 3GP PSP FLV Converter 4.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Active Portal v7.0 SP 2 for NET.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ActiveFax Server 3.61.0188 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Activity Maker v2.6 by Orion.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Actuate iServer Integration Technology v7.0 SP 2 WinALL Regged by iNFECTED.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Advanced CD Label Maker v1.1.33 by Cim.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Advanced Desktop Shield v1.6 WinALL by CHiCNCREAM.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Advanced Instant Messengers Password Recovery v2.20.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Advanced Speed Typing 2.9.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\African Rally Quad Retail JAVA 6111 by RLYEH.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\AKoff Guitar Assistant v1.01 Keygen by MANTiZ.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Al Qaeda Hunting 3D (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\All AirCraft 2.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\All to Wave Converter v1.92 by LasH.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Allok AVI MPEG WMV RM to MP3 Converter v1.3.8 by BRD.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Amor Video Joiner v2.2 WinALL Incl Keygen by BRD.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Aneesoft Aneesoft HD Video Converter v2.2.0.0 by iCWT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\AnyReader v2.6 build 212 by Kindly.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\AoA DVD Copy v2.7.4 WinALL CRACKED by iNDUCT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\AudioConverter Studio v1.37.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\AudioRealism Bass Line VSTi v1.502 by BEAT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\AxS Direct v1.03.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\BestAddress 2003 v2.1.14 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Better Screenshots v1.2.1 Regged by UnderPl.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\BinarySoft BDI 2.1 crack.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Biromsoft To Do List 2.0 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\BlackICE Defender 2.9cbq (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\BT Engine v5.0.070105 by TE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\C-Organizer Professional v4.0 Generic by FFF.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Call to Power 2 v1.0 [US ENGLISH] No-CD Fixed EXE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Campaign Gettysburg v1.0 [ENGLISH] No-CD Fixed EXE 1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Cantax 2002 FormMaster Gold 2.1.304.160 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\CCS Mini Phone Book 4.98.330.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Cepstral Swifttalker with David v3.4.0 MacOSX by BRD.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\CFi HotShot v1.4.4.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Championship Euchre Pro v5.31.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Choung Networks mToken v4.3.0 Retail for Pocket PC 2005 by RLYEH.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Classical Block 3.0 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Clean Disk Pro 3.4.2 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Clock Tower 3D Photo Screensaver 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Color Pilot Adobe Photoshop Plugin 2.10.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ComAnalyser v1.0.0.0 German Incl Keymaker by ACME.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Conjugue 3.1b.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Cute Context Menu 1.6.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Cybernetic Dietician 2.04w.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Directory Printer v3.53.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Disk2Disk 1.2.151 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\dreamer screensaver 01.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\DVD Audio Extractor v4.2.2 by ICU.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\DVD CD Data Burner v6.2.0.537 by EMBRACE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\DVD-TO-MPEG v1.8 by EMBRACE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\e-Motional Greeting Card Creator v1.20.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Easter v2.10.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\emFitness 1.0 for PalmOS.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\English-Chinese Speereo Voice Translator v3.0 Retail for SymbianOS9.1 S60v3 by RLYEH.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Erics Telnet 98 4.00.03 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Error Repair Pro v3.76.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ETeller 2.80a.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Extensis Suitcase 8.2 for Mac.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Fast Shut Down 1.00.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\FaxMail Network for Windows v9.83.01 by BRD.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\File Edit 2000 by UCU.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\file point 3.0.2 for palmos cracked prc by TSRh.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Final Fantasy VIII 8 by Inferno.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\FlashSee v1.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\FlexiPanels CSS for Dreamweaver 1.1.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Focus Photoeditor 3.0.21 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Foxy v1.7.0 Incl Keygen by diGERATi.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\FSPro (File System cryptographic PROtector) v1.1.3.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Full Audio Converter 4.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\GameHouse Mirror Magic Deluxe Serial by BalCrNepal.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Garden Care Maintenance Software 2.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\GIF Construction Set v2.0a 77 by AGAiN.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\GMSI.NET Alphanumeric LED Component 1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\GoldWave v5.25 by CORE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Good Day 4.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Gore Cheats.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\GraphNow Math Calculator v2.1 Win2kXP Regged by CRD.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Grummel98 v1.21 by DBC.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Guest List Manager 1.01.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Hanewin DHCP Server 2.0.23.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\HDftp 1.3.8 Build 1094.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Hexprobe System Hpmbcalc v3.21 Cracked by RHE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Hitman Codename 47 No-CD.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Hollywood FX Silver 3.1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\HSLAB Print Logger SBE 5.2.2.706.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Html To Image v2.0.4.1107 by ViRiLiTY.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Human Pictcha 1.0.5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Hydra 1.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ICash v3.1 by Core.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\II Workproject 3.64 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\IncUpdate 2.98.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\IP Tools 2.05 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\IP Works! SSL Java Edition v5.0.1285.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ISMail Pro 2.3.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\iView Media Pro 1.5.5 for Mac.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Jewel Quest 2 3D Retail JAVA N73 by RLYEH.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\JoeAlter Shave And A Haircut For Maya 7.0 v4.5v23 Linux Incl Keymaker by ARN.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Jungo KernelDriver v5.02.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Kings Quest 8 [GERMAN] CD-Info.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Laser Squad Nemesis v1.0 [ENGLISH] No-CD Fixed EXE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Lock my Folder v1.0.0 by Core.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Magic File Renamer v4.00.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Magicbit DVD Direct to PSP v1.3.28.316 by TFT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MagicCDR v1.x.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MailEye 1.14.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Maxx Archiv v1.1.133 Professional WinAll by HS.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MecaMatic v3.0 by KOT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MegaMan X8 v1.0 +16 TRAINER.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MeggieSoft Piquet v15.3.15307 by NiTROUS.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MemMonster v4.10.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MessengerLog v3.03.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Microsoft Windows 2003 Enterprise Edition (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MidPoint and MidPoint PLUS.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Mil Shield v2.8 Winall Cracked by iNFECTED.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Millions of Light Years Screensaver v1.6.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MKS Toolkit for Interoperability 8.0 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Mobile Master v5.5.2 build 643.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Mocha W32 TN3270.5.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MomToBe v2.1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Movie Jack DVDv2.04.001 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Movkit Video Pro Suite 3.6.5 keygen.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MP3 Audio Mixer v2.01.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MP3 Burner The Simple Way 2005 v6.1.0.415 by Core.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Music Database 2000 2.262.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\myBatchConverter 2.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\MySecretFolder 4.4 (crack).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Net Cribbage 4.01.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Net Monitor for Classroom 2.1 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\NetPumper Pro v0.1.3.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\NewLive All RM To Mp3 Converter v3.3 Cracked by ARN.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\News Grabber 3.0.04 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Norton Antivirus 2002 v8.00.41C.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\NotePro 1.21.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\OmniFocus v1.0.3 Retail for iPhone (3G) iPod Touch by RLYEH.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\OnSync 1.14 for Mac (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Outfront 2 v1.0 [RUSSIAN] No-DVD-Fixed EXE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Pacman All Stars All Access Cheat.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\PageInspector 0.82 for Mac.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Pagis ScanWorks 2.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Patch Maker v1.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Patterns v25.3.0.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\PCIScope 1.00.014 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Phase One C1 PRO v3.5.1 WinALL Incl Keygen by ECLiPSE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Photoplorer v1.10f by ACME.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Picture Browser v1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Popup Block v1.65 by Provoke.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\PopUp Killer 1.0 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Popup XP 3.2.915.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Precision Builder Express 2.1.2.35.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ProfInventory 2.2.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Prokon 9.9i (Serial) .zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Protected Music Converter v1.0.0.10 by SND.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Pudzian Retail JAVA 6280 240x320 by RLYEH.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\QMax Plug-in for MusicMatch JukeBox by Rivers.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Quake Fortress + Megatf Addon (1999) (Stefan Schwoon) FULL!.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Quick Extract v1.0b.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\QuickCD 1.1 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Raidlabs File Uneraser 1.3.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Rapid Key v1.3 by RP2K.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\RAV Antivirus v8.6.101.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Real Project 2009 2.0.3379.4752 CrAcKed.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Registry Tune 1.5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ResScope 1.9.6-key.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\RipIt 3.65 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\River Past Audio Capture 5.0.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Romi 3.1 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Romi v5.1 DUTCH by HS.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\RPC Shadow Plugin v1.0.3 WinALL Cracked by ENGiNE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\SaveCash 4.5.5.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ScreensaverMaker 1.0.2 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ShareCon 4.5 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ShComboBox ActiveX Control v3.2 by FHCF.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Shutdown Lock v1.5 Build 53 WinALL Cracked by CSS.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Sinking Island v1.0 [GERMAN] Fixed EXE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\SiSoftware Sandra Enterprise v2009.1.15.72 by CORE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Slot Keno10.5.0.0 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Small business server 2000 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\SmEdit 1.0 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\SolSuite 2001 v8.2 by EVC.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\SoundJam MP 2.5.1 for Mac (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Spb plus 3.0.3.0 for Pocket PC.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Speed Up 2008 1.0.0.13.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Spooty Attachment Extractor v1.01 WinALL Cracked by DVT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\SubStudio SAMI v1.1.1b20.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\SwordSearcher v4.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Synchronize Folders 1.0.5 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\SysTrayX v3.52.98.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Target 3001 v9.2.1.80.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Terminal Manager 3.0 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\The House of the Dead 2 v1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\The Matrix Reloaded 3D ScreenSaver v2.0 UselessCreations.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\The Secret Store 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\TombClimber v1.3 ALL ACCESS CHEAT by PiZZA.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Total Video Converter v3.10 by Unknown.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Travel Dictionary French HPC 2.7 keygen.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Tron 2.0 v1.02 [GERMAN] Fixed EXE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\TuTu Video Converter v2.12.08.1105 Keygen 2 by FOFF.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Typer Shark Deluxe 1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Ultra Fractal Animation Edition v4.02 and by CRD.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\UltraMP3 v1.60 Retail for SymbianOS S60 by RLYEH.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Understand for Ada v1.4.352b Incl Keygen by Lz0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Uniblue SpyEraser v1.5.1.1476 by DECODE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\VanDyke SecureFX v3.1 by TBE.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Vehiculos Pro Professional 1.7 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\vertigo 1.5 for palmos cracked prc by TSRh.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Video Vault v2.0.0.0133 by DVT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\VideoDesktop 3.1.0.3 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Visual Basic and Databases 2.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Vocabulary Worksheet Factory 4.1.1.1.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\VueScan v7.3.10.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\w-IP v1.0.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Water Life 3D Screensaver v2.9.6 by s0m.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Web Weaver 98.98.04.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\WebDrive 1.3.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\WebIdeaTree Professional v3.01.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\WinRoute Pro v4.2 v4.x.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\World PC 7.1 (Serial).zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Yellowstone National Park Screensaver.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\Zealot All Video Splitter v1.0.10.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ZoneLabs ZoneAlarm with AntiSpyware v6.5.737.000 by ZWT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Users\Butcher\AppData\Roaming\m\shared\ZoneLabs ZoneAlarm with Antivirus v7.0.302.000 Incl Keymaker by ZWT.zip (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Windows\System32\secupdat.dat (Backdoor.Bot) -> Quarantined and deleted successfully.
C:\Users\Butcher\secupdat.dat (Worm.Autorun) -> Quarantined and deleted successfully.
C:\Windows\System32\WORK.DAT (Malware.Trace) -> Quarantined and deleted successfully.
Messages postés
3244
Date d'inscription
dimanche 28 décembre 2008
Statut
Contributeur sécurité
Dernière intervention
7 février 2011
157
Salut,

Où est le log UsbFix ?

Fais les instructions indiquées + haut (UsbFix puis le ZHPDiag) et fais ceci:

Télécharge FindyKill (Merci a El Desaparecido, C_XX et Chimay8)


▶ Lance l'installation avec les paramètres par défaut

Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) susceptible d'avoir été infectés (!) sans les ouvrir (!)

▶ Fais un clic droit sur le raccourci FindyKill sur ton bureau,puis Choisis "Executer en tant qu administrateur"

▶ Choisissez F pour Français puis pressez Entrée

▶ Au menu principal,choisis l'option 1 (Recherche)

▶ Poste le rapport FindyKill.txt

Note: le rapport FindyKill.txt est sauvegardé a la racine du disque