Infesté par TROJAN HORSE NAVIPROMO AA

juju62 -  
 juju62 -
Bonjour,
Avec windows xp, avec avg 8.5, je suis infesté depuis le 19/04/2009 par le trojan navipromo aa.
AVG le détecte mais ne m'en débarrasse pas.
L'ordinateur s'eteint ou se met en route seul, problème connection internet.
Comment s'en débarrasser ???
A voir également:

10 réponses

Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 305
 
Bonjour,

--> Télécharge Random's System Information Tool (RSIT) (par random/random) sur ton Bureau.

--> Double-clique sur RSIT.exe afin de lancer le programme.
(Sous Vista, il faut cliquer droit sur RSIT.exe et choisir Exécuter en tant qu'administrateur)

--> Clique sur Continue à l'écran Disclaimer.

--> Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.

--> Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparaît à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).

Note : les rapports sont sauvegardés dans le dossier C:\rsit.
1
juju62
 
voici les rapports
Logfile of random's system information tool 1.06 (written by random/random)
Run by steph at 2009-06-04 15:21:39
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 55 GB (78%) free of 70 GB
Total RAM: 255 MB (11% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:23:44, on 04/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
C:\WINDOWS\wanmpsvc.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\apps\ABoard\ABoard.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\QuickTime\qttask.exe
C:\apps\ABoard\AOSD.exe
C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
C:\PROGRA~1\Wanadoo\CnxMon.exe
C:\PROGRA~1\MESSAG~1\StartMessager.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Lexmark 2400 Series\lxcrmon.exe
C:\Program Files\Lexmark 2400 Series\ezprint.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\windows\system32\eqooi.exe
C:\WINDOWS\system32\lxcrcoms.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\steph\Local Settings\Temporary Internet Files\Content.IE5\M1GP6A1H\RSIT[1].exe
C:\Program Files\trend micro\steph.exe
C:\Program Files\Internet Explorer\iexplore.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ycomp5_3_18_0.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Lexmark Barre d'outils - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ycomp5_3_18_0.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: Lexmark Barre d'outils - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [MessagerStarter Wanadoo] C:\PROGRA~1\MESSAG~1\StartMessager.exe Messager Wanadoo
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [zzzHPSETUP] D:\Setup.exe \RESET
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [rwmsje] c:\windows\system32\rwmsje.exe rwmsje
O4 - HKLM\..\Run: [lxcrmon.exe] "C:\Program Files\Lexmark 2400 Series\lxcrmon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 2400 Series\ezprint.exe"
O4 - HKLM\..\Run: [LXCRCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCRtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [eqooi] "c:\windows\system32\eqooi.exe" eqooi
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {AA59202C-5E41-48FC-AF7D-324F5FD6A9F1} - http://scripts.dlv4.com/binaries/egaccess4/egaccess4_1070_em_XP.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: lxcr_device - - C:\WINDOWS\system32\lxcrcoms.exe
O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
0
Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 305
 
- Télécharge Navilog1 (de IL-MAFIOSO) et enregistre-le sur le Bureau.

- Double-clique sur Navilog1.exe afin de lancer l'installation.

- Si le fix ne se lance pas automatiquement après son installation, double-clique sur Navilog1 présent sur le Bureau.
(Sous Vista, il faut cliquer droit sur le raccourci de Navilog1 et choisir Exécuter en tant qu'administrateur)

- Appuie sur F ou f puis valide par Entrée.

- Appuie sur une touche de ton clavier à chaque fois que cela est demandé, tu arriveras au menu des options.

- Choisis l'option 1 et appuie sur la touche Entrée pour valider ton choix.

- Patiente jusqu'au message : *** Analyse terminée le ..... ***

- Le scan fini, le Bloc-notes contenant le rapport sera affiché, poste le contenu de ce rapport dans ta prochaine réponse.

- Si le résultat du scan ne s'affiche pas, tu le trouveras dans C:\fixnavi.txt

N'utilise pas l'option 2, 3 et 4 sans notre accord, des fichiers légitimes peuvent être inclus dans ce scan.
1
juju62
 
j'ai bien téléchargé navilog1 mais je ne réussis pas à l'éxécuter. que faire?
0
mister bine Messages postés 323 Statut Membre 267
 
bonjour télécharge sa lance le puis poste le rapport donnée http://www.commentcamarche.net/telecharger/telecharger 34055379 malwarebytes anti malware oublie pas de le mettre a jour pendant l'installation
0
Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 305
 
Comment ça ?
0
juju62
 
lorque jec double clique sur l'icône navilog1 il ne se lance pas et j'ai une fen^tre en bas à doite qui me dit qe j'ai des fichiers en attente de gravure et rien d'autre ne se passe. j'ai essayé au moins 10 fois et la ^m chose se produit à chaque fois
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 305
 
Essaie en mode sans échec.
0
juju62
 
comment dois je lancer le mode sans échec?
0
Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 305
 
---> Pour redémarrer en mode sans échec :
- Redémarre ton PC.
- Au démarrage, tapote sur F8 (F5 sur certains PC) juste après l'affichage du BIOS et juste avant le chargement de Windows.
- Dans le menu d'options avancées, choisis Mode sans échec.
- Choisis ta session.
0
juju62
 
bonjour,

J'ai essayé de lancer navilog 1 en mode sans echec et rien ne se passe QUE FAIRE ??????
MERCI
0
juju62
 
voici le rapport mais il n'a pas réussi à tout supprimer et nous demande de redémarrer l'ordi. Que fait-on ?
Malwarebytes' Anti-Malware 1.37
Version de la base de données: 2182
Windows 5.1.2600 Service Pack 3

05/06/2009 13:36:39
mbam-log-2009-06-05 (13-36-16).txt

Type de recherche: Examen rapide
Eléments examinés: 85241
Temps écoulé: 27 minute(s), 33 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 1192
Fichier(s) infecté(s): 1648

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Instant Access (Adware.InstantAccess) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\fcn (Rogue.Residue) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
C:\Program Files\Instant Access (Adware.EGDAccess) -> Delete on reboot.
c:\program files\instant access\Center (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Center\Icons (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\DesktopIcons (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer (Adware.EGDAccess) -> Delete on reboot.
c:\program files\instant access\Dialer\1001652568 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\fp.gad-network.com\50052 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\fp.gad-network.com\50052\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\fp.gad-network.com\50052\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\www.0texkax7c6hzuidk.com\custom\4328 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\www.0texkax7c6hzuidk.com\custom\4328\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1001652568\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\es6-scripts.downloadv3.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\es6-scripts.downloadv3.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\es6-scripts.downloadv3.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\es6-scripts.downloadv3.com\custom\4252 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\es6-scripts.downloadv3.com\custom\4252\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\media.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\media.rapid-pass.net\fullpages (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\media.rapid-pass.net\fullpages\ds_v3_chatsexy (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\media.rapid-pass.net\fullpages\ds_v3_chatsexy\fullpage01 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\media.rapid-pass.net\fullpages\ds_v3_chatsexy\fullpage01\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\scripts.downloadv3.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\scripts.downloadv3.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\www.epass-key.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1006413033\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1007998769 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1007998769\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1007998769\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1007998769\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1007998769\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1007998769\fp.gad-network.com\50070 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1007998769\fp.gad-network.com\50070\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\fp.gad-network.com\50052 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\fp.gad-network.com\50052\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\fp.gad-network.com\50052\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\www.0texkax7c6hzuidk.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\www.0texkax7c6hzuidk.com\custom\4328 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\www.0texkax7c6hzuidk.com\custom\4328\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1014852584\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1021325317 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1021325317\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1021325317\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1021325317\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1021325317\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1021325317\fp.gad-network.com\50097 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1021325317\fp.gad-network.com\50097\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1041839416 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1041839416\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1041839416\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1041839416\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1041839416\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1041839416\fp.gad-network.com\50104 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1041839416\fp.gad-network.com\50104\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\fp.gad-network.com\4201 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\fp.gad-network.com\4201\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\fp.gad-network.com\4201\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\scripts.dlv4.com\custom\4261 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\scripts.dlv4.com\custom\4261\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1046046307\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\106056868 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\106056868\media.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\106056868\media.rapid-pass.net\fullpages (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\106056868\media.rapid-pass.net\fullpages\ds_v3_chatsexy (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\106056868\media.rapid-pass.net\fullpages\ds_v3_chatsexy\fullpage03 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\106056868\media.rapid-pass.net\fullpages\ds_v3_chatsexy\fullpage03\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\106056868\scripts.downloadv3.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\106056868\scripts.downloadv3.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\106056868\www.epass-key.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\fp.gad-network.com\3881 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\fp.gad-network.com\3881\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\fp.gad-network.com\3881\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\scripts.dlv4.com\custom\4237 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\scripts.dlv4.com\custom\4237\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1066909479\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\fp.gad-network.com\50020 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\fp.gad-network.com\50020\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\fp.gad-network.com\50020\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\scripts.dlv4.com\custom\4307 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\scripts.dlv4.com\custom\4307\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1072165220\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1074447307 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1074447307\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1074447307\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1074447307\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1074447307\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1074447307\fp.gad-network.com\50070 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1074447307\fp.gad-network.com\50070\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1075815960 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1075815960\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1075815960\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1075815960\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1075815960\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1075815960\fp.gad-network.com\50077 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1075815960\fp.gad-network.com\50077\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1077914372 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1077914372\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1077914372\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1077914372\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1077914372\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1077914372\fp.gad-network.com\50077 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1077914372\fp.gad-network.com\50077\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\media.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\media.rapid-pass.net\fullpages (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\media.rapid-pass.net\fullpages\10kgames_v3_gamesdesktop (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\media.rapid-pass.net\fullpages\10kgames_v3_gamesdesktop\fullpage08 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\media.rapid-pass.net\fullpages\10kgames_v3_gamesdesktop\fullpage08\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\media.rapid-pass.net\fullpages\10kgames_v3_gamesdesktop\fullpage08\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\scripts.dlv4.com\custom\4257 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\scripts.dlv4.com\custom\4257\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\scripts.downloadv3.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\scripts.downloadv3.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\www.epass-key.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1086442849\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1090828603 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1090828603\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1090828603\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1090828603\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1090828603\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1090828603\fp.gad-network.com\50069 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1090828603\fp.gad-network.com\50069\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1130555405 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1130555405\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1130555405\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1130555405\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1130555405\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1130555405\fp.gad-network.com\50069 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1130555405\fp.gad-network.com\50069\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1134328303 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1134328303\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1134328303\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1134328303\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1134328303\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1134328303\fp.gad-network.com\50077 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1134328303\fp.gad-network.com\50077\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167183630 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167183630\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167183630\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167183630\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167183630\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167183630\fp.gad-network.com\50067 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167183630\fp.gad-network.com\50067\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167535943 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167535943\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167535943\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167535943\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167535943\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167535943\fp.gad-network.com\50095 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1167535943\fp.gad-network.com\50095\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\fp.gad-network.com\50029 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\fp.gad-network.com\50029\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\fp.gad-network.com\50029\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\scripts.dlv4.com\custom\4311 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\scripts.dlv4.com\custom\4311\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1185407433\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\fp.gad-network.com\50020 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\fp.gad-network.com\50020\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\fp.gad-network.com\50020\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\scripts.dlv4.com\custom\4307 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\scripts.dlv4.com\custom\4307\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1186671503\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1196472568 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1196472568\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1196472568\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1196472568\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1196472568\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1196472568\fp.gad-network.com\50097 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1196472568\fp.gad-network.com\50097\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\media.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\media.rapid-pass.net\fullpages (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\media.rapid-pass.net\fullpages\ds_v3_chatsexy (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\media.rapid-pass.net\fullpages\ds_v3_chatsexy\fullpage01 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\media.rapid-pass.net\fullpages\ds_v3_chatsexy\fullpage01\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\scripts.dlv4.com\custom\4252 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\scripts.dlv4.com\custom\4252\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\scripts.downloadv3.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\scripts.downloadv3.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1197864924\www.epass-key.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1202791177 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1202791177\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1202791177\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1202791177\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1202791177\fp01.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1202791177\fp01.gad-network.com\50070 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1202791177\fp01.gad-network.com\50070\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1208722701 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1208722701\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1208722701\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1208722701\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1208722701\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1208722701\fp.gad-network.com\50069 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1208722701\fp.gad-network.com\50069\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\media.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\media.rapid-pass.net\fullpages (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\media.rapid-pass.net\fullpages\ser_v3_play (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\media.rapid-pass.net\fullpages\ser_v3_play\fullpage01 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\media.rapid-pass.net\fullpages\ser_v3_play\fullpage01\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\media.rapid-pass.net\fullpages\ser_v3_play\fullpage01\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\scripts.downloadv3.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\scripts.downloadv3.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\scripts.downloadv3.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\scripts.downloadv3.com\custom\4277 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\scripts.downloadv3.com\custom\4277\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1212484650\www.epass-key.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\142976214 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\142976214\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\142976214\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\142976214\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\142976214\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\142976214\fp.gad-network.com\50104 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\142976214\fp.gad-network.com\50104\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\160773316 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\160773316\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\160773316\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\160773316\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\160773316\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\160773316\fp.gad-network.com\50104 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\160773316\fp.gad-network.com\50104\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\161911816 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\161911816\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\161911816\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\161911816\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\161911816\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\161911816\fp.gad-network.com\50067 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\161911816\fp.gad-network.com\50067\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1675634 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1675634\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1675634\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1675634\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1675634\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1675634\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1675634\scripts.dlv4.com\custom\4328 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\1675634\scripts.dlv4.com\custom\4328\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\fp.gad-network.com\4321 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\fp.gad-network.com\4321\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\fp.gad-network.com\4321\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\scripts.dlv4.com\custom\4270 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\scripts.dlv4.com\custom\4270\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\171500402\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\177041014 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\177041014\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\177041014\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\177041014\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\177041014\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\177041014\fp.gad-network.com\50077 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\177041014\fp.gad-network.com\50077\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\fp.gad-network.com\4201 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\fp.gad-network.com\4201\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\fp.gad-network.com\4201\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\scripts.dlv4.com\custom\4261 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\scripts.dlv4.com\custom\4261\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\202427065\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\220297861 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\220297861\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\220297861\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\220297861\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\220297861\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\220297861\fp.gad-network.com\50068 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\220297861\fp.gad-network.com\50068\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\fp.gad-network.com\50041 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\fp.gad-network.com\50041\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\fp.gad-network.com\50041\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\scripts.dlv4.com\custom\4323 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\scripts.dlv4.com\custom\4323\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\24277845\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\es6-external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\es6-external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\es6-scripts.downloadv3.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\es6-scripts.downloadv3.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\es6-scripts.downloadv3.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\es6-scripts.downloadv3.com\custom\4265 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\es6-scripts.downloadv3.com\custom\4265\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\media.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\media.rapid-pass.net\fullpages (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\media.rapid-pass.net\fullpages\ds_v3_chatsexy (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\media.rapid-pass.net\fullpages\ds_v3_chatsexy\fullpage03 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\media.rapid-pass.net\fullpages\ds_v3_chatsexy\fullpage03\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\scripts.downloadv3.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\scripts.downloadv3.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\www.epass-key.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\259852218\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\fp.gad-network.com\4141 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\fp.gad-network.com\4141\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\fp.gad-network.com\4141\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\scripts.dlv4.com\custom\4258 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\scripts.dlv4.com\custom\4258\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\261904641\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\266151999 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\266151999\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\266151999\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\266151999\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\266151999\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\266151999\fp.gad-network.com\50068 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\266151999\fp.gad-network.com\50068\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\media.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\media.rapid-pass.net\fullpages (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\media.rapid-pass.net\fullpages\10kgames_v3_gamesdesktop (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\media.rapid-pass.net\fullpages\10kgames_v3_gamesdesktop\fullpage08 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\media.rapid-pass.net\fullpages\10kgames_v3_gamesdesktop\fullpage08\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\media.rapid-pass.net\fullpages\10kgames_v3_gamesdesktop\fullpage08\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\scripts.downloadv3.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\scripts.downloadv3.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\scripts.downloadv3.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\scripts.downloadv3.com\custom\4257 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\scripts.downloadv3.com\custom\4257\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\www.epass-key.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\26681815\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\fp.gad-network.com\50029 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\fp.gad-network.com\50029\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\fp.gad-network.com\50029\images\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\scripts.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\scripts.dlv4.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\scripts.dlv4.com\custom (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\scripts.dlv4.com\custom\4311 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\scripts.dlv4.com\custom\4311\FR (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\www.0texkax7c6hzuidk.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\www.0texkax7c6hzuidk.com\Common (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\276319649\www.rapid-pass.net (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\283234709 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\283234709\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\283234709\external-api.dlv4.com\hits (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\283234709\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\283234709\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\283234709\fp.gad-network.com\50069 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\283234709\fp.gad-network.com\50069\images (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\293628596 (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\293628596\external-api.dlv4.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\293628596\external-api.dlv4.com\js (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\293628596\fp.gad-network.com (Adware.EGDAccess) -> Quarantined and deleted successfully.
c:\program files\instant access\Dialer\293628596\fp.ga
0
Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 305
 
---> Télécharge Malwarebytes' Anti-Malware (MBAM) sur ton Bureau.
---> Double-clique sur le fichier téléchargé pour lancer le processus d'installation.
---> Dans l'onglet Mise à jour, clique sur le bouton Recherche de mise à jour : si le pare-feu demande l'autorisation à MBAM de se connecter à Internet, accepte.
---> Une fois la mise à jour terminée, rends-toi dans l'onglet Recherche.
---> Sélectionne Exécuter un examen rapide.
---> Clique sur Rechercher. L'analyse démarre.

A la fin de l'analyse, un message s'affiche :

L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.

---> Clique sur OK pour poursuivre. Si MBAM n'a rien trouvé, il te le dira aussi.
---> Ferme tes navigateurs.
Si des malwares ont été détectés, clique sur Afficher les résultats.
---> Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection, MBAM va détruire les fichiers et clés de registre infectés et en mettre une copie dans la quarantaine.
---> MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport dans ta prochaine réponse.
0
Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 305
 
Redémarre comme demandé puis réessaie Navilog1.
0
juju62
 
voici le rapport de navilog
Search Navipromo version 3.7.7 commencé le 05/06/2009 à 14:27:30,10

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1

Mise à jour le 12.05.2009 à 18h00 par IL-MAFIOSO

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.60GHz )
BIOS : Award Medallion BIOS v6.00PG
USER : steph ( Administrator )
BOOT : Normal boot

Antivirus : AVG Anti-Virus Free 8.5 (Activated)


A:\ (USB)
C:\ (Local Disk) - NTFS - Total:68 Go (Free:53 Go)
D:\ (CD or DVD)
E:\ (CD or DVD)


Recherche executé en mode normal


*** Recherche dossiers dans "C:\WINDOWS" ***


*** Recherche dossiers dans "C:\Program Files" ***


*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***


*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\steph\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\steph\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\steph\menudm~1\progra~1" ***


*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net



*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\WINDOWS\system32" *

* Recherche dans "C:\Documents and Settings\steph\locals~1\applic~1" *



*** Recherche fichiers ***


C:\WINDOWS\Downloaded Program Files\IaLdr32.inf trouvé !
C:\WINDOWS\dialerexe.ini trouvé !

*** Recherche clés spécifiques dans le Registre ***
!! Les clés trouvées ne sont pas forcément infectées !!

HKEY_CURRENT_USER\Software\Lanconfig

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"rwmsje"="c:\\windows\\system32\\rwmsje.exe rwmsje"


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans "C:\WINDOWS\system32" :

cikka.dat trouvé !

* Dans "C:\Documents and Settings\steph\locals~1\applic~1" :


3)Recherche Certificats :

Certificat Egroup trouvé !
Certificat Electronic-Group trouvé !
Certificat Montorgueil absent !
Certificat OOO-Favorit trouvé !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche autres dossiers et fichiers connus :



*** Analyse terminée le 05/06/2009 à 14:37:58,75 ***
0
Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 305
 
---> Relance Navilog1, fais l'option 2 et poste le rapport (C:\cleannavi.txt).

Les programmes suivants installent cette infection Navipromo :
- Funky Emoticons
- Games-Attack
- Go-Astro
- GoRecord
- HotTVPlayer
- Live-Player
- MailSkinner
- Messenger Skinner
- Instant Access
- InternetGameBox
- Sudoplanet
- WebMediaPlayer : sauf celui provenant du site suivant > http://www.azertysite.new.fr/
0
juju62
 
ça y est c fait ça avance bien !! voici le rapport
Clean Navipromo version 3.7.7 commencé le 05/06/2009 à 15:55:30,46

Outil exécuté depuis C:\Program Files\navilog1

Mise à jour le 12.05.2009 à 18h00 par IL-MAFIOSO

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : Intel(R) Celeron(R) CPU 2.60GHz )
BIOS : Award Medallion BIOS v6.00PG
USER : steph ( Administrator )
BOOT : Normal boot

Antivirus : AVG Anti-Virus Free 8.5 (Activated)


A:\ (USB)
C:\ (Local Disk) - NTFS - Total:68 Go (Free:53 Go)
D:\ (CD or DVD)
E:\ (CD or DVD)


Mode suppression automatique
avec prise en charge résultats Catchme et GNS


Nettoyage exécuté au redémarrage de l'ordinateur


*** fsbl1.txt non trouvé ***
(Assurez-vous que Catchme n'avait rien trouvé lors de la recherche)


*** Suppression avec sauvegardes résultats GenericNaviSearch ***

* Suppression dans "C:\WINDOWS\System32" *


* Suppression dans "C:\Documents and Settings\steph\locals~1\applic~1" *



*** Suppression dossiers dans "C:\WINDOWS" ***


*** Suppression dossiers dans "C:\Program Files" ***


*** Suppression dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***


*** Suppression dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***


*** Suppression dossiers dans "c:\docume~1\alluse~1\applic~1" ***


*** Suppression dossiers dans "C:\Documents and Settings\steph\applic~1" ***


*** Suppression dossiers dans "C:\Documents and Settings\steph\locals~1\applic~1" ***


*** Suppression dossiers dans "C:\Documents and Settings\steph\menudm~1\progra~1" ***



*** Suppression fichiers ***

C:\WINDOWS\Downloaded Program Files\IaLdr32.inf supprimé !
C:\WINDOWS\dialerexe.ini supprimé !

*** Suppression fichiers temporaires ***

Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\steph\locals~1\Temp effectué !

*** Traitement Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Suppression avec sauvegardes nouveaux fichiers Instant Access :

2)Recherche, création sauvegardes et suppression Heuristique :


* Dans "C:\WINDOWS\system32" *


cikka.dat trouvé !
Copie cikka.dat réalisée avec succès !
cikka.dat supprimé !

C:\WINDOWS\prefetch\cikka*.pf trouvé !
Copie C:\WINDOWS\prefetch\cikka*.pf réalisée avec succès !
C:\WINDOWS\prefetch\cikka*.pf supprimé !


* Dans "C:\Documents and Settings\steph\locals~1\applic~1" *



*** Sauvegarde du Registre vers dossier Safebackup ***

sauvegarde du Registre réalisée avec succès !

*** Nettoyage Registre ***

Nettoyage Registre Ok


*** Certificats ***

Certificat Egroup supprimé !
Certificat Electronic-Group supprimé !
Certificat Montorgueil absent !
Certificat OOO-Favorit supprimé !
Certificat Sunny-Day-Design-Ltdt absent !

*** Recherche autres dossiers et fichiers connus ***



*** Nettoyage terminé le 05/06/2009 à 16:03:23,31 ***
0
Destrio5 Messages postés 99820 Date d'inscription   Statut Modérateur Dernière intervention   10 305
 
--> Désinstalle Navilog1.

--> Relance MBAM, va dans Quarantaine et supprime tout.

--> Refais un scan RSIT et poste le rapport log.
0
juju62
 
Bonjour,

Me revoilà !!!Logfile of random's system information tool 1.06 (written by random/random)
Run by steph at 2009-06-09 10:32:19
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 55 GB (78%) free of 70 GB
Total RAM: 255 MB (4% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:33:26, on 09/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
C:\WINDOWS\wanmpsvc.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\apps\ABoard\ABoard.exe
C:\apps\ABoard\AOSD.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
C:\PROGRA~1\Wanadoo\CnxMon.exe
C:\PROGRA~1\MESSAG~1\StartMessager.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Lexmark 2400 Series\lxcrmon.exe
C:\Program Files\Lexmark 2400 Series\ezprint.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\lxcrcoms.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\steph\Local Settings\Temporary Internet Files\Content.IE5\CK6VEAPB\RSIT[1].exe
C:\Program Files\trend micro\steph.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ycomp5_3_18_0.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Lexmark Barre d'outils - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn\ycomp5_3_18_0.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: Lexmark Barre d'outils - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [MessagerStarter Wanadoo] C:\PROGRA~1\MESSAG~1\StartMessager.exe Messager Wanadoo
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [zzzHPSETUP] D:\Setup.exe \RESET
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [lxcrmon.exe] "C:\Program Files\Lexmark 2400 Series\lxcrmon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 2400 Series\ezprint.exe"
O4 - HKLM\..\Run: [LXCRCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCRtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: lxcr_device - - C:\WINDOWS\system32\lxcrcoms.exe
O23 - Service: SmartLinkService (SLService) - Smart Link - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
0