virus et pubs sans arrêt-mon hijackthis rapport-merci
Forum Sécurité - Virus : virus et pubs sans arrêt-mon hijackthis rapport-merci
C'est super cool si vous pouvez y jeter un coup d'oeil!
C'est dur la vie d'ordi...
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:11:30, on 05/11/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WatchGuard\Mobile User VPN\IreIKE.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Video Add-on\icthis.exe
C:\Program Files\Video Add-on\isfmntr.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Video Add-on\icmntr.exe
C:\Program Files\MSI\Live Update 2\LMonitor.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\WinFast\WFTVFM\WFWIZ.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Video Add-on\isfmm.exe
C:\Program Files\WatchGuard\Mobile User VPN\IPSecMon.exe
C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Belkin\F5D8051v2\Belkinwcui.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Downloads\HijackThis.exe
C:\Downloads\HiJackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: (no name) - {B499D34E-58EF-4927-AB9F-7AF52B2C4C82} - C:\Program Files\Video Add-on\isfmdl.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O2 - BHO: IEHlprObj Class - {CD4C3CF0-4B15-11D1-ABED-709549C10000} - C:\Program Files\Go!Zilla\GoIEHlp.dll (file missing)
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: IE Custom Tools - {6CA49FDD-4AEB-4F08-A394-C0A1F82CAA16} - C:\Program Files\Video Add-on\ictmdl.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [LiveMonitor] C:\Program Files\MSI\Live Update 2\LMonitor.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFTVFM\WFWIZ.exe
O4 - HKLM\..\Run: [EPSON Stylus Photo RX620 Series (Copie 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9HE.EXE /P41 "EPSON Stylus Photo RX620 Series (Copie 1)" /O6 "USB001" /M "Stylus Photo RX620"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKLM\..\Policies\Explorer\Run: [some] C:\Program Files\Video Add-on\icthis.exe
O4 - HKLM\..\Policies\Explorer\Run: [start] C:\Program Files\Video Add-on\isfmntr.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: Konfabulator.lnk = C:\Program Files\Pixoria\Konfabulator\Konfabulator.exe
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Mobile User VPN.lnk = C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
O4 - Global Startup: Utilitaire sans fil Belkin.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Download with Go!Zilla - file://C:\Program Files\Go!Zilla\download-with-gozilla.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: boardwalk - {75a65a53-15c9-4a0c-bb40-a7ca8b24f544} - C:\WINDOWS\system32\ugbtna.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: SafeNet Monitor Service (IPSECMON) - SafeNet - C:\Program Files\WatchGuard\Mobile User VPN\IPSecMon.exe
O23 - Service: SafeNet IKE Service (IREIKE) - SafeNet - C:\Program Files\WatchGuard\Mobile User VPN\IreIKE.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\system32\ZipToA.exe (file missing)
--
End of file - 9465 bytes
Bonjour
Télécharge SmitfraudFix de S!Ri:
http://siri.urz.free.fr/Fix/SmitfraudFix.exe
Tu le mets sur le Bureau.
Tu ouvres SmitfraudFix, tu double cliques sur SmitfraudFix.cmd et tu choisis l’option 1
Poste le rapport.
Vous avez un problème ? Créez votre propre post !
Répondre à chercheur_
Voilà le rapport ;
SmitFraudFix v2.249
Rapport fait à 16:09:05,50, 05/11/2007
Executé à partir de C:\Downloads\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal
»»»»»»»»»»»»»»»»»»»»»»»» Process
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WatchGuard\Mobile User VPN\IreIKE.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Video Add-on\icthis.exe
C:\Program Files\Video Add-on\isfmntr.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Video Add-on\icmntr.exe
C:\Program Files\MSI\Live Update 2\LMonitor.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\WinFast\WFTVFM\WFWIZ.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Video Add-on\isfmm.exe
C:\Program Files\WatchGuard\Mobile User VPN\IPSecMon.exe
C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Belkin\F5D8051v2\Belkinwcui.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Downloads\HiJackThis\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\cmd.exe
»»»»»»»»»»»»»»»»»»»»»»»» hosts
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
C:\WINDOWS\system32\ugbtna.dll PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Maxime.F6JEOPT6
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Maxime.F6JEOPT6\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer
C:\DOCUME~1\ALLUSE~1.WIN\MENUDM~1\Online Security Guide.url PRESENT !
C:\DOCUME~1\ALLUSE~1.WIN\MENUDM~1\Security Troubleshooting.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\MAXIME~1.F6J\Favoris
C:\DOCUME~1\MAXIME~1.F6J\Favoris\Online Security Test.url PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Bureau
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
C:\Program Files\Video Add-on\ PRESENT !
»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues
»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="Ma page d'accueil"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{75a65a53-15c9-4a0c-bb40-a7ca8b24f544}"="boardwalk"
[HKEY_CLASSES_ROOT\CLSID\{75a65a53-15c9-4a0c-bb40-a7ca8b24f544}\InProcServer32]
@="C:\WINDOWS\system32\ugbtna.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{75a65a53-15c9-4a0c-bb40-a7ca8b24f544}\InProcServer32]
@="C:\WINDOWS\system32\ugbtna.dll"
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Rustock
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Description: N1 Wireless USB Network Adapter #3 - Miniport d'ordonnancement de paquets
DNS Server Search Order: 212.27.54.252
DNS Server Search Order: 212.27.53.252
Description: N1 Wireless USB Network Adapter #3 - Miniport d'ordonnancement de paquets
DNS Server Search Order: 212.27.54.252
DNS Server Search Order: 212.27.53.252
HKLM\SYSTEM\CCS\Services\Tcpip\..\{E41244E6-D8E1-49FB-9896-48289510FB14}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CCS\Services\Tcpip\..\{F4C2D217-E6C6-4212-B1B0-D8F2EB32424C}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS1\Services\Tcpip\..\{E41244E6-D8E1-49FB-9896-48289510FB14}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS1\Services\Tcpip\..\{F4C2D217-E6C6-4212-B1B0-D8F2EB32424C}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS3\Services\Tcpip\..\{E41244E6-D8E1-49FB-9896-48289510FB14}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS3\Services\Tcpip\..\{F4C2D217-E6C6-4212-B1B0-D8F2EB32424C}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=212.27.54.252 212.27.53.252
»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin
On continue.
* Télécharge
clean.zip
http://www.malekal.com/download/clean.zip
Décompresse-le sur ton bureau (clic droit / extraire tout), tu dois obtenir un dossier clean.
CCleaner.
http://www.pcastuces.com/logitheque/ccleaner.htm
Installe le.
Décoche pendant l'installation
--- les deux cases "Ajouter l'option ... "
--- Contrôler les mises à jour
--- Ajouter la Barre d'Outils Yahoo! CCleaner
* Redémarre en mode sans échec. Attention, tu n'as pas accès à internet dans ce mode, note bien ce que tu as à faire.
Démarre l'ordinateur.
Une fois le chargement du BIOS terminé, il y a un écran noir. Appuye sur la touche F8 ou F5 jusqu'à l'affichage du menu des options avancées de Windows.
En utilisant les touches du curseur, sélectionne le mode sans échec approprié et appuye sur Entrée.
* Lance CCleaner.
Clique sur Options, Avancé et décoche la case "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures".
Coche ces cases dans Windows (Internet Explorer, Windows Explorer et Système) et dans Applications (toutes les cases).
Lance le nettoyage.
* Relance SmitfraudFix. Choisis cette fois l’option 2 et réponds oui à tout.
* Ouvre le dossier Clean qui se trouve sur ton bureau, et double-clic sur clean.cmd.
Choisis l'option 2
Enregistre le rapport une fois le scan terminé
* Redémarre normalement et communique le deuxième rapport de SmitfraudFix, le rapport qui se trouve ici C:\rapport_clean.txt et un nouveau rapport Hijackthis.
Vous avez un problème ? Créez votre propre post !
Répondre à chercheur_
prob quand je télécharge, j'ai cette fenêtre
"freshdownload could not take over the download!
click back button to return to normal mode"
il est noté sur la page "ccsetup202.exe"
je vais chercher ma puce chez la nourice. Tenez moi au courant.
merci
De retour,
2éme rapport Smitfraudfix :
SmitFraudFix v2.249
Rapport fait à 21:15:24,26, 05/11/2007
Executé à partir de C:\Downloads\SmitfraudFix
OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode sans echec
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Avant SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{75a65a53-15c9-4a0c-bb40-a7ca8b24f544}"="boardwalk"
[HKEY_CLASSES_ROOT\CLSID\{75a65a53-15c9-4a0c-bb40-a7ca8b24f544}\InProcServer32]
@="C:\WINDOWS\system32\ugbtna.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{75a65a53-15c9-4a0c-bb40-a7ca8b24f544}\InProcServer32]
@="C:\WINDOWS\system32\ugbtna.dll"
»»»»»»»»»»»»»»»»»»»»»»»» Arret des processus
»»»»»»»»»»»»»»»»»»»»»»»» hosts
127.0.0.1 localhost
»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix
S!Ri's WS2Fix: LSP not Found.
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
C:\WINDOWS\system32\ugbtna.dll -> Hoax.Win32.Renos.gen.o
C:\WINDOWS\system32\ugbtna.dll -> Deleted
»»»»»»»»»»»»»»»»»»»»»»»» Suppression des fichiers infectés
C:\DOCUME~1\ALLUSE~1.WIN\MENUDM~1\Online Security Guide.url supprimé
C:\DOCUME~1\ALLUSE~1.WIN\MENUDM~1\Security Troubleshooting.url supprimé
C:\DOCUME~1\MAXIME~1.F6J\Favoris\Online Security Test.url supprimé
C:\Program Files\Video Add-on\ supprimé
»»»»»»»»»»»»»»»»»»»»»»»» DNS
HKLM\SYSTEM\CCS\Services\Tcpip\..\{E41244E6-D8E1-49FB-9896-48289510FB14}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CCS\Services\Tcpip\..\{F4C2D217-E6C6-4212-B1B0-D8F2EB32424C}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS1\Services\Tcpip\..\{E41244E6-D8E1-49FB-9896-48289510FB14}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS1\Services\Tcpip\..\{F4C2D217-E6C6-4212-B1B0-D8F2EB32424C}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS3\Services\Tcpip\..\{E41244E6-D8E1-49FB-9896-48289510FB14}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS3\Services\Tcpip\..\{F4C2D217-E6C6-4212-B1B0-D8F2EB32424C}: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=212.27.54.252 212.27.53.252
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=212.27.54.252 212.27.53.252
»»»»»»»»»»»»»»»»»»»»»»»» Suppression Fichiers Temporaires
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Nettoyage du registre
Nettoyage terminé.
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Après SmitFraudFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Fin
rapport clean txt :
Script execute en mode sans echec
Rapport clean par Malekal_morte - http://www.malekal.com
Script execute en mode sans echec 05/11/2007 a 21:18:43,20
Microsoft Windows XP [version 5.1.2600]
*** Suppression des fichiers dans C:
tentative de suppression de C:\kmd.exe
*** Suppression des fichiers dans C:\WINDOWS\
*** Suppression des fichiers dans C:\WINDOWS\system32
*** Suppression des fichiers dans C:\Program Files
tentative de suppression de "C:\Program Files\common files\SearchUpgrader\"
tentative de suppression de "C:\Program Files\NewDotNet\"
*** Suppression des clefs du registre effectuee..
*** Fin du rapport !
2éme rapport Hijackthis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:35:33, on 05/11/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WatchGuard\Mobile User VPN\IreIKE.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\MSI\Live Update 2\LMonitor.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\WinFast\WFTVFM\WFWIZ.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
C:\Program Files\Belkin\F5D8051v2\Belkinwcui.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\WatchGuard\Mobile User VPN\IPSecMon.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Downloads\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O2 - BHO: IEHlprObj Class - {CD4C3CF0-4B15-11D1-ABED-709549C10000} - C:\Program Files\Go!Zilla\GoIEHlp.dll (file missing)
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [LiveMonitor] C:\Program Files\MSI\Live Update 2\LMonitor.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFTVFM\WFWIZ.exe
O4 - HKLM\..\Run: [EPSON Stylus Photo RX620 Series (Copie 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9HE.EXE /P41 "EPSON Stylus Photo RX620 Series (Copie 1)" /O6 "USB001" /M "Stylus Photo RX620"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\GestMaj.exe EspaceWanadoo.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: Konfabulator.lnk = C:\Program Files\Pixoria\Konfabulator\Konfabulator.exe
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Mobile User VPN.lnk = C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
O4 - Global Startup: Utilitaire sans fil Belkin.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Download with Go!Zilla - file://C:\Program Files\Go!Zilla\download-with-gozilla.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: SafeNet Monitor Service (IPSECMON) - SafeNet - C:\Program Files\WatchGuard\Mobile User VPN\IPSecMon.exe
O23 - Service: SafeNet IKE Service (IREIKE) - SafeNet - C:\Program Files\WatchGuard\Mobile User VPN\IreIKE.exe
O23 - Service: ZipToA - Unknown owner - C:\WINDOWS\system32\ZipToA.exe (file missing)
--
End of file - 8708 bytes
Bien.
Relance un scan HijackThis et coche les lignes ci-dessous :
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: IEHlprObj Class - {CD4C3CF0-4B15-11D1-ABED-709549C10000} - C:\Program Files\Go!Zilla\GoIEHlp.dll (file missing)
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\System32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
Ferme toutes les fenêtres Windows, Internet explorer, Outlook,sauf le logiciel Hijackthis et clique sur « Fix checked »
Fais une analyse antivirus en ligne sur Kaspersky
http://webscanner.kaspersky.fr/
Clique sur Démarrer Online Scanner.
Sélectionne le poste de travail comme analyse.
Colle son rapport ici.
Aide toi de ce lien.
http://www.infos-du-net.com/forum/ [...] -kaspersky
Vous avez un problème ? Créez votre propre post !
Répondre à chercheur_
Voilà un compte rendu (merci)
Tuesday, November 06, 2007 1:08:29 PM
Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version : 5.0.83.0
Dernière mise à jour de la base antivirus Kaspersky : 6/11/2007
Enregistrements dans la base antivirus Kaspersky : 424355
Paramètres d'analyse
Analyser avec la base antivirus suivante standard
Analyser les archives vrai
Analyser les bases de messagerie vrai
Cible de l'analyse Poste de travail
A:\
C:\
D:\
E:\
F:\
Statistiques de l'analyse
Total d'objets analysés 75261
Nombre de virus trouvés 15
Nombre d'objets infectés 172 / 0
Nombre d'objets suspects 0
Durée de l'analyse 02:11:34
Nom de l'objet infecté Nom du virus Dernière action
C:\Documents and Settings\Adeline\All Users\Application Data\Microsoft\Dr Watson\user.dmp L'objet est verrouillé ignoré
C:\Documents and Settings\Adeline\All Users\Menu Démarrer\Programmes\Web Search Tools\Frequently Asked Questions.url L'objet est verrouillé ignoré
C:\Documents and Settings\Adeline\All Users\Menu Démarrer\Programmes\Web Search Tools\Home.url L'objet est verrouillé ignoré
C:\Documents and Settings\Adeline\All Users\Menu Démarrer\Programmes\Web Search Tools\Privacy Policy.url L'objet est verrouillé ignoré
C:\Documents and Settings\Adeline\All Users\Menu Démarrer\Programmes\Web Search Tools\Terms of Use.url L'objet est verrouillé ignoré
C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré
C:\Documents and Settings\All Users.WINDOWS\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService.AUTORITE NT.000\Cookies\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService.AUTORITE NT.000\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService.AUTORITE NT.000\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService.AUTORITE NT.000\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService.AUTORITE NT.000\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService.AUTORITE NT.000\NTUSER.DAT L'objet est verrouillé ignoré
C:\Documents and Settings\LocalService.AUTORITE NT.000\ntuser.dat.LOG L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst/Dossiers personnels/Éléments supprimés/10 Feb 2005 19:46 from Washington Mutual:IMPORTANT ACCOUNT NOTIF.rtf Infecté : Trojan-Spy.HTML.Wamufraud.bo ignoré
C:\Documents and Settings\Maxime\Local Settings\Application Data\Microsoft\Outlook\Outlook.pst Mail MS Mail: infecté - 1 ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Mozilla\Firefox\Profiles\14tkfqp9.default\cert8.db L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Mozilla\Firefox\Profiles\14tkfqp9.default\formhistory.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Mozilla\Firefox\Profiles\14tkfqp9.default\history.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Mozilla\Firefox\Profiles\14tkfqp9.default\key3.db L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Mozilla\Firefox\Profiles\14tkfqp9.default\parent.lock L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Mozilla\Firefox\Profiles\14tkfqp9.default\search.sqlite L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Mozilla\Firefox\Profiles\14tkfqp9.default\urlclassifier2.sqlite L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\call256.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\callmember256.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\chat512.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\chatmember256.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\chatmsg256.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\chatmsg512.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\chatsync\89\89c2c5cc31d2edc7.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\contactgroup256.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\dyncontent\bundle.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\index2.dat L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\profile256.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\transfer512.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\user1024.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\user16384.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Skype\jonaczyk\voicemail256.dbb L'objet est verrouillé ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED/File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From apageon@nordnet.fr][Date Tue, 06 Dec 2005 18:02:14 GMT]/UNNAMED/File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From apageon@nordnet.fr][Date Tue, 06 Dec 2005 18:02:14 GMT]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:08 +0100 (CET)]/UNNAME ... /[From jonaczyk@yahoo.fr][Date Tue, 06 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:08 +0100 (CET)]/UNNAME ... /[From jonaczyk@yahoo.fr][Date Tue, 06 Dec 2005 16:36:56 UTC]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:08 +0100 (CET)]/UNNAMED/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bauduin / SpecialChem Bulletin ... /[From webmaster@cadresonline.com][Date Mon, 12 De ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bauduin / SpecialChem Bulletin ... /[From webmaster@cadresonline.com][Date Mon, 12 Dec 2005 09:25:11 +0100]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:09 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 19:25:10 +0100 (CET)]/UNNAMED Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 16:35:35 +0100]/text/[From MAILER-DAEMON@wanadoo.fr (Mail Deliv ... /[From "Francois Bau ... /[From MAILER-DAEMON@wanadoo.fr (Mail Delivery System)][Date Tue, 6 Dec 2005 ... /File-packed_dataInfo.exe Infecté : Email-Worm.Win32.Sober.y ignoré
C:\Documents and Settings\Maxime.F6JEOPT6\Application Data\Thunderbird\Profiles\39890t1m.default\Mail\Local Folders\Trash.sbd\Inbox/[From "stansfeld" ][Date Mon, 5 Dec 2005 15:42:04 +0100]/UNNAMED/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:51:22 +0100]/text/[From Aurelie.Denes@a-arnaud.fr][Date Tue, 6 Dec 2005 14:52:04 +0100]/text/[From Aurelie.Denes@a-
Chercheur, qu'en penses-tu? s'il te plaît
Re
Le rapport est incomplet.
Mais 172 fichiers infectés.
Ceux qui sont visibles sont dans les messageries.
Fais un gros ménage dans Outlook et dans Thunderbird.
Et refais un scan avec Kaspersky.
Vous avez un problème ? Créez votre propre post !
Répondre à chercheur_
Il y a 1891 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.
