1 visiteur(s) en ligne
Date actuelle : 29-10-2025, 12:54 PM Bienvenue, Visiteur ! ( Identification S'enregistrer )







 
[RESOLU]Pages pub intempestives +Fichier excel kill
 
Note de cette discussion :
  • Moyenne : 0 (0 vote(s))
  • 1
  • 2
  • 3
  • 4
  • 5
Auteur Message
Cheeta Hors ligne
Newbie
*

Messages : 12
Inscription : Jun 2007
Réputation : 0
Message : #1
[RESOLU]Pages pub intempestives +Fichier excel kill
Bonjour

Mon fils est de nouveau passé par là et nous voilà de nouveau infecté. Deux de nos ordis sont infectés par l'apparition de pages pub intempestives.
Et l'un d'entre eux de surcroît est particulièrement lent et lorsqu'on consulte le gestionnaire de fichiers, le fichier excel nommé kill apparaît.
J'ai essayé d'éliminer ces virus mais en vain. Par où dois-je commencer?
Merci d'avance pour votre aide
28-02-2008 09:55 AM
Envoyer un email à cet utilisateur Trouver tous les messages de cet utilisateur Citer ce message dans une réponse
-Sh4D0w- Hors ligne
~ Modérateur ~
******

Messages : 1 753
Inscription : Sep 2007
Réputation : 3
Message : #2
 
merci de suivre la procédure d'éradication des malwares Wink


Image: modrateurf.png
~~~~~~~ PC INFO-WEB ~~~~~~~

" Sauver ou Périr "
" On peut aimer le sport & l'informatique , si je vous l'assure Smile "
28-02-2008 10:02 AM
Trouver tous les messages de cet utilisateur Citer ce message dans une réponse
Cheeta Hors ligne
Newbie
*

Messages : 12
Inscription : Jun 2007
Réputation : 0
Message : #3
 
ok j'avais deja fait toute la procédure en vain. Mais je vais refaire pour poster les logs. Merci
28-02-2008 10:10 AM
Envoyer un email à cet utilisateur Trouver tous les messages de cet utilisateur Citer ce message dans une réponse
Cheeta Hors ligne
Newbie
*

Messages : 12
Inscription : Jun 2007
Réputation : 0
Message : #4
 
Bon, on va commencer par le pc le plus affecté. J'ai lancé les 4 logiciels , le fichier excel nommé kill a disparu mais les pages pub intempetives continuent.
Voila le rapport d'ewido:
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 15.26.16 28-02-2008

+ Scan result:



C:\Documents and Settings\Fred\Mis documentos\Mes fichiers reçus\messengerskinner.exe -> Dropper.Agent.cwp : Cleaned.
:mozilla.239:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.247:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.249:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.280:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.406:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.407:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@metacafe.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@microsoftwlmessengermkt.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@sonyeurope.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.396:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.424:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.427:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@4.adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@ads.adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.49:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.50:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.51:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.52:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.53:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.408:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.410:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.404:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.414:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.422:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.423:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.383:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.395:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.367:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@www.burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.362:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@casalemedia[1].txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.30:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.33:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.34:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.35:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.36:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.37:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.56:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Cqcounter : Cleaned.
:mozilla.12:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.57:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.349:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.350:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.311:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.346:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@ehg-francetel.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.363:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.370:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.266:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.301:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Msn : Cleaned.
:mozilla.302:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Msn : Cleaned.
:mozilla.303:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Msn : Cleaned.
:mozilla.366:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Msn : Cleaned.
:mozilla.368:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Msn : Cleaned.
:mozilla.393:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Msn : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@auto.search.msn[1].txt -> TrackingCookie.Msn : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@ie.search.msn[2].txt -> TrackingCookie.Msn : Cleaned.
:mozilla.234:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.235:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@stat.onestat[2].txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.221:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@overture[1].txt -> TrackingCookie.Overture : Cleaned.
:mozilla.149:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.150:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.151:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.152:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.153:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.371:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.43:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.44:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.45:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@smartadserver[2].txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.212:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.213:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.214:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.215:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.216:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.217:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.218:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.219:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.222:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.225:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.226:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.26:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.127:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.48:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.54:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.55:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.248:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@m.webtrends[1].txt -> TrackingCookie.Webtrends : Cleaned.
:mozilla.175:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.402:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.403:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.415:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.425:C:\Documents and Settings\guillaume\Datos de programa\Mozilla\Firefox\Profiles\rgvfb0hx.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\guillaume\Cookies\guillaume@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\WINDOWS\Session.exe -> Trojan.VB.atg : Cleaned.
C:\WINDOWS\system32\FileKan.exe -> Trojan.VB.atg : Cleaned.
C:\WINDOWS\system32\SocksA.exe -> Trojan.VB.atg : Cleaned.
C:\tel.xls.exe -> Trojan.VB.atg : Cleaned.


::Report end



et le log hijackthis:
Logfile of HijackThis v1.99.1
Scan saved at 22.03.31, on 28-02-2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Archivos de programa\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Archivos de programa\Bonjour\mDNSResponder.exe
C:\PVSW\Bin\WGE_SRV.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\PVSW\BIN\W3dbsmgr.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Archivos de programa\Apoint\Apoint.exe
C:\Archivos de programa\SigmaTel\C-Major Audio\stacmon.exe
C:\WINDOWS\system32\ICO.EXE
C:\Archivos de programa\Sony\HotKey Utility\HKserv.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\Archivos de programa\Java\jre1.6.0_02\bin\jusched.exe
C:\Archivos de programa\Lexmark 7300 Series\lxcimon.exe
C:\Archivos de programa\Lexmark 7300 Series\ezprint.exe
C:\Archivos de programa\MSN Messenger\MsnMsgr.Exe
C:\Archivos de programa\Messenger\msmsgs.exe
C:\Archivos de programa\Sony\HotKey Utility\HKWnd.exe
C:\Archivos de programa\Apoint\Apntex.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Archivos de programa\Picasa2\PicasaMediaDetector.exe
C:\Archivos de programa\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
C:\Archivos de programa\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Archivos de programa\IEEE 802.11g Wireless LAN Utility\WLANUTL.exe
C:\Archivos de programa\powerpanel\Program\PcfMgr.exe
C:\Archivos de programa\Ryanair Bargains\1.0\RyanairBargains.exe
C:\WINDOWS\system32\lxcicoms.exe
C:\Archivos de programa\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Archivos de programa\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Archivos de programa\MSN Messenger\usnsvc.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Archivos de programa\ewido anti-spyware 4.0\ewido.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe
C:\hijack\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ares.mp3.es/start.php
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.club-vaio.sony-europe.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.forospyware.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
R3 - URLSearchHook: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Archivos de programa\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Archivos de programa\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Archivos de programa\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O3 - Toolbar: Barra Yahoo! con bloqueador de ventanas emergentes - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Archivos de programa\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Apoint] C:\Archivos de programa\Apoint\Apoint.exe
O4 - HKLM\..\Run: [SigmaTel StacMon] C:\Archivos de programa\SigmaTel\C-Major Audio\stacmon.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [HKSERV.EXE] C:\Archivos de programa\Sony\HotKey Utility\HKserv.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Archivos de p