Voilà le rapport de BFU :
BFU v1.00.9
Windows XP SP2 (WinNT 5.01.2600 SP2)
Script started at 15:56:28, on 04/02/2007
Option Delete files to Recycle Bin: Yes
Failed: RegDelValue HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices|MC (key not found)
Failed: RegDelValue HKCU\software\microsoft\windows\currentversion\wintrust\trust providers\software publishing\trust database\0|ELECTRONIC GROUP (key not found)
Failed: DllUnregister C:\WINDOWS\system32\MSWBM32.DLL|1 (file not found)
Failed: DllUnregister C:\Program Files\MailSkinner\OESkinner.dll|1 (file not found)
Failed: FolderDelete C:\Program Files\dialpass (folder not found)
Failed: FolderDelete C:\Program Files\eghtmldialer (folder not found)
Failed: FolderDelete C:\Program Files\egroup (folder not found)
Failed: FolderDelete C:\Program Files\Instant Access (folder not found)
Failed: FolderDelete C:\Program Files\MailSkinner (folder not found)
Failed: FolderDelete C:\Program Files\InternetGameBox (folder not found)
Failed: FolderDelete C:\Program Files\GoRecord2 (folder not found)
Failed: FolderDelete C:\Program Files\GoAstro (folder not found)
Failed: FolderDelete C:\Program Files\SudoPlanet (folder not found)
Failed: FolderDelete C:\Program Files\WebMediaPlayer (folder not found)
Failed: FolderDelete C:\Program Files\MessengerSkinner (operation failed)
Failed: DllUnregister C:\WINDOWS\mslagent\2_mslagent.dll|1 (file not found)
Failed: DllUnregister C:\WINDOWS\navmpc\2_navmpc.dll|1 (file not found)
Failed: FolderDelete C:\WINDOWS\mslagent (folder not found)
Failed: FolderDelete C:\WINDOWS\navmpc (folder not found)
Failed: FolderDelete C:\WINDOWS\msskinner (folder not found)
Failed: FolderDelete C:\WINDOWS\wintrim (folder not found)
Failed: FolderDelete C:\WINDOWS\wincomp (folder not found)
Failed: FolderDelete C:\WINDOWS\winmgts (folder not found)
Failed: FolderDelete C:\WINDOWS\simcss (folder not found)
Failed: FolderDelete C:\WINDOWS\mc (folder not found)
Failed: FileDelete C:\DOCUME~1\MARINE~1\LOCALS~1\Temp\hpodvd09.log (operation failed)
Failed: FileDelete C:\DOCUME~1\MARINE~1\LOCALS~1\Temp\Photoshop Temp750617 (operation failed)
Failed: FileDelete C:\DOCUME~1\MARINE~1\LOCALS~1\Temp\~DF13FA.tmp (operation failed)
Failed: FileDelete C:\DOCUME~1\MARINE~1\LOCALS~1\Temp\~DF3344.tmp (operation failed)
Failed: FileDelete C:\DOCUME~1\MARINE~1\LOCALS~1\Temp\~DF4C44.tmp (operation failed)
Failed: FileDelete C:\DOCUME~1\MARINE~1\LOCALS~1\Temp\~DFD1DA.tmp (operation failed)
Failed: FileDelete C:\DOCUME~1\MARINE~1\LOCALS~1\Temp\~DFE31D.tmp (operation failed)
Failed: FileDelete C:\DOCUME~1\MARINE~1\LOCALS~1\Temp\~DFE391.tmp (operation failed)
Failed: FileDelete C:\DOCUME~1\MARINE~1\LOCALS~1\Temp\~DFFFF0.tmp (operation failed)
Failed: FileDelete C:\WINDOWS\Temp\Perflib_Perfdata_444.dat (operation failed)
Failed: FolderDelete C:\WINDOWS\Temp\_avast4_ (operation failed)
Script completed.
Voilà le rapport de AGV :
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 17:20:17 04/02/2007
+ Résultat de l'analyse:
HKU\S-1-5-21-2285207410-2227358983-1765950724-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{67982BB7-0F95-44C5-92DC-E3AF3DC19D6D} -> Adware.Generic : Nettoyé et sauvegardé (mise en quarantaine).
C:\System Volume Information\_restore{206D5C9A-566B-437B-A762-213EF381532E}\RP66\A0015492.dll -> Adware.WorldSecurityOnline : Nettoyé et sauvegardé (mise en quarantaine).
C:\System Volume Information\_restore{206D5C9A-566B-437B-A762-213EF381532E}\RP65\A0015420.exe -> Downloader.Zlob.bjc : Nettoyé et sauvegardé (mise en quarantaine).
C:\System Volume Information\_restore{206D5C9A-566B-437B-A762-213EF381532E}\RP94\A0023546.exe -> Logger.Banker.byu : Nettoyé et sauvegardé (mise en quarantaine).
C:\Documents and Settings\Marine Coulon\Cookies\marine_coulon@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
C:\Documents and Settings\Marine Coulon\Cookies\marine_coulon@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.
C:\System Volume Information\_restore{206D5C9A-566B-437B-A762-213EF381532E}\RP69\A0015602.rbf -> Trojan.QQPass.ly : Nettoyé et sauvegardé (mise en quarantaine).
C:\System Volume Information\_restore{206D5C9A-566B-437B-A762-213EF381532E}\RP71\A0015633.rbf -> Trojan.QQPass.ly : Nettoyé et sauvegardé (mise en quarantaine).
C:\System Volume Information\_restore{206D5C9A-566B-437B-A762-213EF381532E}\RP74\A0015937.rbf -> Trojan.QQPass.ly : Nettoyé et sauvegardé (mise en quarantaine).
C:\System Volume Information\_restore{206D5C9A-566B-437B-A762-213EF381532E}\RP74\A0015959.exe -> Trojan.QQPass.ly : Nettoyé et sauvegardé (mise en quarantaine).
Fin du rapport


